Mon PC Portable (HP) Rame a mort !

Résolu/Fermé
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014 - 24 janv. 2014 à 00:27
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 - 3 févr. 2014 à 15:39
Bonjour,
Cela fait 3 ans que j'ais mon PC portable et jusque la tout allais bien mais ce matin en voulant aller sur ma session j'ais vu que sa prenait beaucoup de temps je n'arrive même plus a aller dans le menu démarrer , je clique a peine que sa se fige pendant une éternité je suis obliger d'éteindre le PC comme une brute et je sais que sa fait qu'aggraver mon cas...maintenant pour naviguer normalement je suis obliger d'aller en mode sans échec , j'ais tout tester, Malware,ect mais rien y fait, je suis ouvert a toute proposition ! :(

Merci d'avance :)
A voir également:

21 réponses

Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
24 janv. 2014 à 00:30
Bonsoir,

Est-ce un pc fixe ou portable ?

Peux-tu utiliser ce logiciel de diagnostic, ça me permettra de t'aider :

▶ Télécharge ZHPDiag (de Nicolas Coolman)
▶ Lance le (si tu es sous Windows Vista ou Windows 7, fais le par un clic-droit --> Exécuter en temps qu'administrateur)
▶ Laisse toi guider lors de l'installation (pense à cocher la case pour créer un raccourci sur le Bureau). Il se lancera automatiquement à la fin de l'installation.
▶ Clique sur configurer puis sur l'icône représentant une loupe («Diagnostic par défaut avec légitimes») et accepte le "rapport full options"
▶ le rapport se trouve sur ton Bureau
▶ Rends toi sur ce site, clique sur "Parcourir", sélectionne le rapport de ZHPDiag et clique sur Envoyer le fichier. Patiente pendant l'envoi du fichier, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum.

Si tu as besoin d'aide, suis ce tuto : http://www.sosvirus.net/canned-speech-zhpdiag-t712.html. Confond pas ZHPFix et ZHPDiag !

@+
1
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
24 janv. 2014 à 13:08
Désoler d'avoir répondu si longtemps après, c'est un PC portable sous Windows 7 je vais suivre ton conseil mais tu pense que sa marchera en mode sans échec ? parce que en mode normal je peux vraiment rien faire a cause du lag :/
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
24 janv. 2014 à 14:37
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
24 janv. 2014 à 19:54
Bonsoir,

Tu as deux antivirus : Microsoft et Norton. Désinstalle un des deux.

Désinstalle également : Akamai NetSession Interface, Ask Toolbar, Bing Bar, Boxore Client, GinyasBrowserCompanion, IMinent Toolbar, SweetIM Bundle by SweetPacks, Yontoo 1.12.02, tuto4pc_fr_41, tuto4pc_fr_52, tuto4pc_fr_69, tuto4pc_fr_80, tuto4pc_fr_85, tuto4pc_fr_85_is1, tuto4pc_fr_86, Pando Media Booster v2.6.0.8

Une question ? Actuellement tu es en France ?

▶ Télécharge RogueKiller (de Tigzy) sur le Bureau
▶ Quitte tous tes programmes en cours
▶ Lance le (si tu utilises Windows Vista ou 7 : fais un clic-droit dessus et choisis "Exécuter en tant qu'administrateur")
▶ Patiente pendant le pre-scan, puis clique sur le bouton "Scan"
▶ A la fin, vérifie que tous les éléments sont cochés puis clique sur "Suppression"
▶ Un rapport (RKreport.txt) doit être créé sur le Bureau, poste le dans ta prochaine réponse.
▶ Redémarre le pc

Refais le mode Proxy RAZ puis en mode DNS RAZ.

▶ Télécharge https://www.usbfix.net/ (de El desaparecido et C_XX) sur ton Bureau
▶ Branche tes sources de données externes à ton PC (clé USB, disque dur externe, lecteur mp3 etc...) sans les ouvrir
▶ Fais un clic droit sur le programme USBFix et choisis 'Exécuter en tant qu'administrateur'.
▶ Au menu principal, clique sur "Suppression"
▶ Ton Bureau va disparaitre, puis l'ordinateur va redémarrer : c'est normal
▶ Laisse travailler l'outil jusqu'au bout
▶ A la fin, le rapport va s'afficher : poste le dans ta prochaine réponse.

Utilise cet outil de désinfection spécifique aux logiciels publicitaires :

▶ Télécharge AdwCleaner (de Xplode) sur ton Bureau.
▶ Lance le, clique sur Nettoyer puis patiente le temps du scan.
▶ Une fois le nettoyage terminée, un message de prévention va s'afficher, je te conseille de le lire attentivement (n'hésite pas à me poser des questions si tu n'as pas compris certaines choses dans ce message).
▶ Ensuite, le rapport s'ouvrira : poste le dans ta prochaine réponse.

Ensuite télécharge Junk Removal Tool. Suis ce tuto et poste moi le rapport :
https://forum.security-x.fr/tutoriels-317/tutoriel-junkware-removal-tool

Utilise ce logiciel de désinfection généraliste :

▶ Télécharge et installe Malwarebytes' Anti-Malware
▶ A la fin de l'installation, veille à ce que l'option « mettre a jour Malwarebyte's Anti-Malware » soit cochée. Par contre, il n'est pas nécessaire d'activer l'essai gratuit pour la protection.
▶ Lance MBAM et laisse les Mises à jour se télécharger (sinon fais les manuellement au lancement du programme)
▶ Puis va dans l'onglet "Recherche", coche "Exécuter un examen complet" puis "Rechercher"
▶ A la fin de l'analyse, clique sur Afficher les résultats
▶ Coche tous les éléments détectés puis clique sur Supprimer la sélection
▶ S'il t'est demandé de redémarrer l'ordinateur, accepte.
▶ Poste dans ta prochaine réponse le rapport apparaissant après la suppression.

Reparamètre tes navigateurs WEB :

▶ Internet Explorer et modules complémentaires / moteurs de recherche : https://forum.malekal.com/viewtopic.php?t=41399&start=
▶ Firefox : https://www.malekal.com/reparer-firefox/?t=36057&start=
▶ Google Chrome : https://www.malekal.com/reparer-google-chrome/?t=35837&start=

Bonne chance tu as du travail, en cas de bloquage accède en mode sans echec avec prise réseau et réessaie sinon passe outils suivant.

A+
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
25 janv. 2014 à 01:48
Pour RogueKiller j'ais reçu 4 rapport c'est normal ?
Je t'envois le rapport d'Usbfix d'ici la

############################## | UsbFix V 7.161 | [Suppression]

Utilisateur: Phaazer (Administrateur) # PHAAZER-HP
Mis à jour le 15/01/2014 par El Desaparecido - Team SosVirus
Lancé à 01:06:44 | 25/01/2014

Site Web : https://www.usbfix.net/
Changelog : https://www.usb-antivirus.com/fr/maj/
Support : https://www.sosvirus.net/
Upload Malware : http://www.sosvirus.net/upload_malware.php
Contact : https://www.usb-antivirus.com/fr/contact/

PC: Hewlett-Packard (3594)
CPU: Intel(R) Atom(TM) CPU N570 @ 1.66GHz
RAM -> [Total : 1012 Mo| Free : 204 Mo]
Bios: Hewlett-Packard
Boot: Fail-safe with network boot

OS: Microsoft Windows 7 Édition Starter (6.1.7601 32-Bit) Service Pack 1
WB: Windows Internet Explorer : 10.0.9200.16750

SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AS: Windows Defender : 6.1.7600.16385 (win7_rtm.090713-1255)
AS: Malwarebytes' Anti-Malware : 1.75.0001
FW: Windows FireWall Service [Enabled]

C:\ (%systemdrive%) -> Disque fixe # 281 Go (181 Go libre(s) - 64%) [] # NTFS
D:\ -> Disque fixe # 13 Go (1 Go libre(s) - 11%) [Recovery] # NTFS
E:\ -> Disque fixe # 4 Go (4 Go libre(s) - 100%) [HP_TOOLS] # FAT32
F:\ -> Disque amovible # 4 Go (3 Go libre(s) - 83%) [] # FAT32

################## | Processus Stoppés |

Stoppé! c:\Program Files\Microsoft Security Client\MsMpEng.exe (ID: 764 |ParentID: 484)
Stoppé! C:\Windows\Explorer.EXE (ID: 1960 |ParentID: 1952)
Stoppé! C:\Windows\system32\ctfmon.exe (ID: 2016 |ParentID: 1960)
Stoppé! C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe (ID: 248 |ParentID: 1960)
Stoppé! C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe (ID: 384 |ParentID: 248)
Stoppé! C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe (ID: 1620 |ParentID: 248)
Stoppé! C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe (ID: 1420 |ParentID: 248)
Stoppé! C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe (ID: 1896 |ParentID: 248)
Stoppé! C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe (ID: 1256 |ParentID: 248)
Stoppé! C:\Windows\system32\igfxsrvc.exe (ID: 392 |ParentID: 596)
Stoppé! \\?\C:\Windows\system32\wbem\WMIADAP.EXE (ID: 1340 |ParentID: 864)
Stoppé! C:\Windows\system32\DllHost.exe (ID: 1748 |ParentID: 596)

################## | Regedit Run |

04 - HKLM\..\Run : [IgfxTray] C:\Windows\system32\igfxtray.exe
04 - HKLM\..\Run : [HotKeysCmds] C:\Windows\system32\hkcmd.exe
04 - HKLM\..\Run : [Persistence] C:\Windows\system32\igfxpers.exe
04 - HKLM\..\Run : [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
04 - HKLM\..\Run : [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
04 - HKLM\..\Run : [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe
04 - HKLM\..\Run : [AtherosBtStack] "C:\Program Files\Bluetooth Suite\BtvStack.exe"
04 - HKLM\..\Run : [AthBtTray] "C:\Program Files\Bluetooth Suite\AthBtTray.exe"
04 - HKLM\..\Run : [HPQuickWebProxy] "C:\Program Files\Hewlett-Packard\HP QuickWeb\hpqwutils.exe"
04 - HKLM\..\Run : [HPConnectionManager] C:\Program Files\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
04 - HKLM\..\Run : []
04 - HKLM\..\Run : [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe"
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\..\Run : [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
04 - HKLM\..\Run : [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe"
04 - HKLM\..\Run : [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
04 - HKLM\..\Run : [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
04 - HKLM\..\Run : [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
04 - HKLM\..\Run : [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
04 - HKLM\..\Run : [HP Quick Launch] C:\Program Files\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
04 - HKLM\..\Run : [HPOSD] C:\Program Files\Hewlett-Packard\HP On Screen Display\HPOSD.exe
04 - HKLM\..\Run : [Aeria Ignite] "C:\Program Files\Aeria Games\Ignite\aeriaignite.exe" silent
04 - HKLM\..\Run : [tuto4pc_fr_86]
04 - HKLM\..\Run : [tuto4pc_fr_85]
04 - HKLM\..\Run : [offerbox] C:\Program Files\OfferBox\OfferBox.exe
04 - HKLM\..\Run : [IminentMessenger] C:\Program Files\Iminent\Iminent.Messengers.exe /startup
04 - HKLM\..\Run : [Iminent] C:\Program Files\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
04 - HKLM\..\Run : [tuto4pc_fr_41]
04 - HKLM\..\Run : [tuto4pc_fr_52]
04 - HKLM\..\Run : [tuto4pc_fr_69]
04 - HKLM\..\Run : [tuto4pc_fr_80]
04 - HKLM\..\RunOnce : [NCPluginUpdater] "C:\Program Files\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update
04 - HKLM\..\RunOnce : [Discount Dragon]
04 - HKLM\..\RunOnce : []
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run : [Google Update] "C:\Users\Phaazer\AppData\Local\Google\Update\GoogleUpdate.exe" /c
04 - HKU\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run : [Facebook Update] "C:\Users\Phaazer\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKU\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run : [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
04 - HKU\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run : [KPeerNexonEU] C:\Nexon\NEXON_EU_Downloader\nxEULauncher.exe
04 - HKU\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run : [Akamai NetSession Interface] "C:\Users\Phaazer\AppData\Local\Akamai\netsession_win.exe"
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe

################## | Recherche générique |

Supprimé! C:\Users\Public\sdelevURL.tmp
Supprimé! C:\Windows\system32\update.exe

(!) Fichiers temporaires supprimés.

################## | Registre |

Supprimé! HKU\S-1-5-21-2550636160-3718483610-2762821818-1000\Software\.\.\.\.\Mountpoints2\{f5b876ef-9914-11e1-a544-74de2b951c1d}

################## | Listing |

[27/01/2012 - 16:07:20 | SHD] - C:\$Recycle.Bin
[03/02/2012 - 03:08:57 | D] - C:\146c551d0354bb361a6f5daf53
[13/06/2012 - 15:57:13 | D] - C:\28d81cef7588a72ced
[12/04/2012 - 14:49:49 | D] - C:\33798a5b7fbf5ec12b84f34d
[18/03/2012 - 21:12:06 | D] - C:\48d3cc926f22748f30
[13/01/2014 - 10:29:38 | D] - C:\AeriaGames
[18/11/2012 - 15:04:52 | D] - C:\AMD
[10/06/2009 - 22:42:20 | A | 0 Ko] - C:\autoexec.bat
[05/03/2013 - 03:04:04 | D] - C:\bfb30e72fc76e11460a68c2aab9649f3
[16/07/2011 - 14:36:11 | SHD] - C:\boot
[20/11/2010 - 22:29:06 | RASH | 375 Ko] - C:\bootmgr
[18/01/2014 - 23:46:03 | N | 7 Ko] - C:\bootsqm.dat
[21/01/2014 - 16:48:53 | D] - C:\Config.Msi
[10/06/2009 - 22:42:20 | N | 0 Ko] - C:\config.sys
[14/07/2009 - 05:53:55 | SHD] - C:\Documents and Settings
[01/11/2012 - 09:25:26 | D] - C:\e03a9df0786138f7a5
[13/11/2013 - 19:56:34 | N | 0 Ko] - C:\END
[29/04/2012 - 10:08:49 | D] - C:\found.000
[07/10/2012 - 16:30:10 | D] - C:\found.001
[23/01/2014 - 23:25:07 | D] - C:\gPotato.eu
[12/02/2012 - 18:32:07 | D] - C:\Hewlett-Packard
[25/01/2014 - 00:29:28 | ASH | 777112 Ko] - C:\hiberfil.sys
[26/06/2011 - 01:00:43 | D] - C:\HP
[12/02/2012 - 12:15:52 | N | 0 Ko | 3F5B83871DD14D330BC18051B4AC7023] - C:\HPSF_Rep.txt
[26/06/2011 - 00:30:22 | D] - C:\Intel
[23/01/2014 - 23:46:38 | D] - C:\Nexon
[25/01/2014 - 00:29:30 | ASH | 1048576 Ko] - C:\pagefile.sys
[14/07/2009 - 03:37:05 | D] - C:\PerfLogs
[06/05/2012 - 17:16:27 | D] - C:\PHAAZER-HP
[24/01/2014 - 13:51:43 | N | 1 Ko] - C:\PhysicalDisk0_MBR.bin
[24/01/2014 - 23:34:57 | D] - C:\Program Files
[24/01/2014 - 23:36:13 | HD] - C:\ProgramData
[27/01/2012 - 15:52:51 | SHD] - C:\Recovery
[08/07/2013 - 12:06:09 | D] - C:\SWSetup
[24/01/2014 - 23:34:56 | SHD] - C:\System Volume Information
[27/01/2012 - 15:53:00 | D] - C:\SYSTEM.SAV
[25/01/2014 - 01:06:47 | D] - C:\UsbFix
[25/01/2014 - 01:09:53 | A | 8 Ko | BBB9F563BA6799CD51F8AF09F7881642] - C:\UsbFix [Clean 1] PHAAZER-HP.txt
[12/08/2012 - 05:46:06 | N | 0 Ko] - C:\user.js
[04/08/2012 - 03:31:26 | D] - C:\Users
[19/11/2013 - 03:08:01 | D] - C:\Windows
[27/01/2012 - 16:07:20 | SHD] - D:\$RECYCLE.BIN
[27/01/2012 - 16:07:10 | RASHD] - D:\boot
[14/07/2009 - 19:39:00 | RASH | 375 Ko] - D:\bootmgr
[23/05/2010 - 13:55:46 | RASH | 0 Ko] - D:\Desktop.ini
[27/01/2012 - 16:07:11 | D] - D:\FactoryUpdate
[27/01/2012 - 16:07:10 | D] - D:\hp
[12/02/2012 - 12:15:51 | N | 0 Ko | 3F5B83871DD14D330BC18051B4AC7023] - D:\HPSF_Rep.txt
[04/11/2012 - 18:47:45 | N | 0 Ko] - D:\HP_WSD.dat
[27/01/2012 - 16:07:11 | RSHD] - D:\preload
[24/05/2013 - 22:12:58 | RSD] - D:\recovery
[27/01/2012 - 16:07:11 | D] - D:\RM_Reserve
[24/01/2014 - 23:34:56 | SHD] - D:\System Volume Information
[12/02/2012 - 19:06:58 | N | 1 Ko] - E:\MediaID.bin
[04/11/2012 - 18:47:46 | N | 0 Ko] - E:\HP_WSD.dat
[26/06/2011 - 02:09:22 | SHD] - E:\$RECYCLE.BIN
[27/07/2010 - 16:28:18 | D] - F:\DCIM
[23/06/2012 - 01:05:06 | N | 2848 Ko] - F:\Akon - Honey Im Home feat. 2 Chainz - HotNewHipHop.mp3
[24/07/2012 - 05:03:32 | N | 2630 Ko] - F:\Busta Rhymes - 51 Fifty (No Tags) feat. Segara - HotNewHipHop.mp3
[15/08/2012 - 08:43:06 | N | 11594 Ko] - F:\Busta Rhymes - Always Love Thy Family (feat. Yummy) - HotNewHipHop.mp3
[22/08/2012 - 03:45:24 | N | 10595 Ko] - F:\Busta Rhymes - Til We Die - HotNewHipHop.mp3
[24/03/2012 - 18:52:04 | N | 6978 Ko] - F:\Dj Ill Will Presents The Hnhh Cypher Feat Kid Ink Meek Mill Los Tory Lanez Prod By Jahlil Beats - HotNewHipHop.mp3
[05/03/2013 - 17:21:58 | N | 3784 Ko] - F:\03 Im So Fly.mp3
[29/01/2012 - 20:25:20 | N | 4900 Ko] - F:\Kid+Ink+-+Take+Over+the+World+feat+Ty$+(Prod+by+KE)+-+NO+DJ.mp3
[23/04/2013 - 23:26:24 | D] - F:\PICTURE
[05/03/2013 - 17:38:56 | N | 3734 Ko] - F:\15 Trappin All Day Ft. Gillie Da.mp3
[05/03/2013 - 17:33:52 | N | 4054 Ko] - F:\12 Gettin It In Ft. Peedi Crakk.mp3
[05/03/2013 - 17:45:08 | N | 3899 Ko] - F:\17 - They Dont Care (Prod by HM).mp3
[05/03/2013 - 17:46:24 | N | 4788 Ko] - F:\06. I m Winnin feat Meek Mill.mp3
[22/10/2012 - 20:20:10 | N | 3451 Ko] - F:\Kendrick Lamar - Swimming Pools (Drank).mp3
[27/08/2012 - 19:31:44 | N | 3875 Ko] - F:\Kid Ink - Bom Bom (Prod by Aliby) - HotNewHipHop.mp3
[28/01/2012 - 01:31:04 | N | 3622 Ko] - F:\Kid+Ink+-+Insane.mp3
[23/04/2012 - 04:04:46 | N | 4815 Ko] - F:\Kid Ink - Lost In the Sauce (Prod by Jahlil Beats) [No DJ][CDQ] - HotNewHipHop.mp3
[24/03/2012 - 18:51:14 | N | 4050 Ko] - F:\Kid Ink - I Just Want It All (Prod by Ned Cameron) - HotNewHipHop.mp3
[11/02/2012 - 01:53:44 | N | 4302 Ko] - F:\preview.mp3
[05/03/2013 - 17:44:12 | N | 4995 Ko] - F:\03 - Rose Red (Prod by Jahlil Beats).mp3
[05/03/2013 - 17:45:04 | N | 4034 Ko] - F:\15 - Shit On the Industry.mp3
[05/03/2013 - 17:50:06 | N | 6085 Ko] - F:\09. Everyday Ft Rick Ross.mp3
[29/01/2012 - 20:23:46 | N | 4763 Ko] - F:\Kid+Ink+-+Blowin+Swishers.mp3
[29/01/2012 - 22:44:30 | N | 9352 Ko] - F:\Ranbu no Melody.mp3
[05/03/2013 - 17:42:54 | N | 3863 Ko] - F:\17 36-24-26 Bad Body Ft. K.Smith.mp3
[05/03/2013 - 17:43:44 | N | 4607 Ko] - F:\18 Gettin To The Money Ft. Omelly &.mp3
[05/03/2013 - 17:43:54 | N | 1946 Ko] - F:\24 In My Bag (Autotune Rmx).mp3
[07/05/2012 - 17:14:24 | N | 8500 Ko] - F:\08-08-Shoujo_Byou-metaphor_[Seikon_no_Qwaser_II_ED1] (1).mp3
[09/06/2012 - 01:58:56 | N | 8139 Ko] - F:\01-15-Yousei_Teikoku-Kuusou_Mesologie_[Mirai_Nikki_OP].mp3
[27/02/2012 - 04:57:54 | N | 2794 Ko] - F:\4d2ff19b27f8041d9fb265d5fb10150a.mp3
[29/06/2012 - 02:58:52 | N | 6061 Ko] - F:\yousei teikoku - filament.mp3
[20/01/2013 - 16:09:06 | N | 9877 Ko] - F:\Ace Hood - Shit Done Got Real Ft. Busta Rhymes & YelaWolf - HotNewHipHop.mp3
[20/01/2013 - 16:06:26 | N | 9363 Ko] - F:\Busta Rhymes- Why Stop Now Feat. Chris Brown - HotNewHipHop (1).mp3
[02/02/2013 - 21:18:34 | N | 3171 Ko] - F:\Eric Bellinger ft. Mario & J Doe - Navigator (Prod. By H Money) (Final Version) (2012) www.lrfanai.eu (1).mp3
[26/12/2012 - 14:13:30 | N | 7990 Ko] - F:\Chip (Grand Hustle) - Pizza Boy - HotNewHipHop.mp3
[25/11/2012 - 16:07:40 | N | 3360 Ko] - F:\Kid Ink - Badass (Prod by Devin Cruise) - HotNewHipHop.mp3
[05/03/2013 - 04:29:56 | N | 4780 Ko] - F:\Just can't get enough - Black Eyed Peas - Black Eyed Peas.mp3
[30/12/2012 - 14:41:30 | N | 5740 Ko] - F:\Kid Ink - Weekend [Mastered] - HotNewHipHop.mp3
[23/02/2013 - 15:51:04 | N | 2575 Ko] - F:\Tyler_The_Creator_-_Domo_23.mp3
[25/11/2012 - 16:05:28 | N | 4203 Ko] - F:\Kid Ink - Can't Ignore Me (Prod by Cardiak) - HotNewHipHop.mp3
[04/01/2013 - 15:29:16 | N | 7891 Ko] - F:\Meek Mill - This Is How We Do It feat Beanie Sigel, Mel Love & - HotNewHipHop.mp3
[10/02/2013 - 16:31:58 | N | 8224 Ko] - F:\Meek Mill - Polo & Shell Tops (Prod. By Cardiak) ( 2o12 ) [ www.MzHipHop.Me ].mp3
[01/01/1601 - 01:00:00 | D] - F:\RECORD
[07/03/2013 - 13:50:02 | N | 1989 Ko] - F:\Meek Mill - Started From The Bottom (Freestyle) - HotNewHipHop.mp3
[08/03/2013 - 15:55:32 | N | 5971 Ko] - F:\tumblr_m15dlh6b8g1qh16n6o1.mp3
[09/03/2013 - 17:45:32 | N | 8954 Ko] - F:\Bow Wow - Pussy On My Mind Feat. Kid Ink - HotNewHipHop.mp3
[10/03/2013 - 07:09:28 | N | 7428 Ko] - F:\tumblr_ma56x8f3tu1qmtk2lo1.mp3
[13/03/2013 - 20:03:54 | N | 11004 Ko] - F:\Busta Rhymes - Chill Feat. Reek Da Villian & J-Doe - HotNewHipHop.mp3
[17/03/2013 - 04:23:34 | N | 3691 Ko] - F:\VxoWVPw2lC5N.128 (1).mp3
[23/02/2012 - 15:17:10 | N | 3976 Ko] - F:\be9bc80ce6695e7fcd655c781798defd.mp3
[09/07/2012 - 06:13:36 | N | 3644 Ko] - F:\Chris Brown - Turn Up The Music.mp3
[15/07/2012 - 05:45:24 | N | 9348 Ko] - F:\dilemma by ecosystem - gintama opening 10.mp3
[18/03/2013 - 07:03:32 | N | 1670 Ko] - F:\OP3.mp3
[20/03/2013 - 14:47:22 | N | 1792 Ko] - F:\07 Flamers Freestyle.mp3
[20/03/2013 - 14:52:34 | N | 2333 Ko] - F:\21 Brush Em Off Ft. Oschino.mp3
[28/01/2012 - 01:29:24 | N | 3846 Ko] - F:\Kid+Ink+-+La+La+La+(No+DJ).mp3
[29/01/2012 - 20:29:02 | N | 3825 Ko] - F:\Kid+Ink+-+What+I+Do+(Prod+by+T-Nyce)-HotFreshHipHop.com.mp3
[13/05/2012 - 04:37:02 | N | 4291 Ko] - F:\Lil_Wayne_-_Novacane_(Full)__www.hiphop2k.com.mp3
[30/01/2012 - 00:17:28 | N | 7531 Ko] - F:\Lil+Twist+-+Turn't+Up+(Ft.+Busta+Rhymes)+(iTunes+Version).m4a
[26/08/2012 - 05:54:34 | N | 8511 Ko] - F:\oneokrockLiar.mp3
[29/01/2012 - 22:58:16 | N | 5308 Ko] - F:\Nightmare.-.The.World.(Death.Note.Opening.Full).mp3
[07/07/2012 - 05:25:36 | N | 9251 Ko] - F:\tumblr_m3vu03kQ0P1r02zrho1.mp3
[21/03/2013 - 05:43:52 | N | 5212 Ko] - F:\Los - I Got You feat The Weeknd - HotNewHipHop.mp3
[21/03/2013 - 05:39:36 | N | 4728 Ko] - F:\King Los - T.N.B. - HotNewHipHop.mp3
[23/03/2013 - 17:21:44 | N | 4612 Ko] - F:\Soulja_Boy_-_Incredible_War.mp3
[25/03/2013 - 22:54:10 | N | 4548 Ko] - F:\Kid Ink - Gassed Up [HNHH Original] (Prod by Cardiak) - HotNewHipHop.mp3
[29/03/2013 - 04:19:44 | N | 6348 Ko] - F:\Tech N9ne - B.I.T.C.H. (Official Version) Feat. T-Pain - HotNewHipHop.mp3
[01/04/2013 - 17:45:30 | N | 5500 Ko] - F:\B.o.B - Epic feat. Playboy Tre & Meek Mill (Prod. by Lil C) - HotNewHipHop.mp3
[03/04/2013 - 04:11:14 | N | 3535 Ko] - F:\Meek Mill - G5 Freestyle - HotNewHipHop.mp3
[03/04/2013 - 04:16:46 | N | 4364 Ko] - F:\meek_mill___ball_to_da_max__prod_by_jahlil_beats____hotnewhiphop_com - HotNewHipHop.mp3
[03/04/2013 - 04:10:58 | N | 4831 Ko] - F:\Meek Mill - Dont Panic ft. Rick Ross & Yo Gotti - HotNewHipHop.mp3
[05/04/2013 - 13:50:10 | N | 4259 Ko] - F:\Euroz - S.O.F. (Prod By Reezy) - HotNewHipHop.mp3
[06/04/2013 - 19:23:34 | N | 2790 Ko] - F:\Meek Mill - Beamer, Benz, Or Bentley Freestyle - HotNewHipHop.com - HotNewHipHop.mp3
[06/04/2013 - 19:30:32 | N | 5054 Ko] - F:\Meek Mill - Bricks - HotNewHipHop.mp3
[06/04/2013 - 19:33:58 | N | 4215 Ko] - F:\Meek Mill - Show Out - HotNewHipHop.mp3
[06/04/2013 - 19:35:34 | N | 4438 Ko] - F:\Meek Mill - Throw It Back feat Daddy-O (Prod by Sapp) - HotNewHipHop.mp3
[06/04/2013 - 19:12:10 | N | 7068 Ko] - F:\Meek Mill - U Be Killin Em (Freestyle) - HotNewHipHop.mp3
[10/04/2013 - 01:46:56 | N | 3311 Ko] - F:\Meek_Mill_-_Let's_Get_It_ft._Kre_Forch_5STARHIPHOP.COM.mp3
[10/04/2013 - 02:03:14 | N | 6454 Ko] - F:\Meek Mill - Hardbody feat Peedi Crakk & Shizz Nitty (Prod by C - HotNewHipHop.mp3
[12/04/2013 - 12:52:58 | N | 5194 Ko] - F:\Meek Mill - Ballin feat Shizz Nitty (Prod by Jahlil Beats) - HotNewHipHop.mp3
[12/04/2013 - 12:46:32 | N | 4130 Ko] - F:\Meek Mill - Raw - HotNewHipHop.mp3
[16/04/2013 - 18:58:58 | N | 7416 Ko] - F:\Tank - Take You Outta Here Ft. J-Doe - HotNewHipHop.mp3
[17/04/2013 - 05:38:24 | N | 4210 Ko] - F:\tinie tempah - pass out (HQ)[mp3truck.com].mp3
[22/04/2013 - 01:21:02 | N | 3614 Ko] - F:\tumblr_lp0qmvnyPL1qcbjklo1.mp3
[26/04/2013 - 21:39:06 | N | 9966 Ko] - F:\Busta Rhymes - Shake It [CDQ] Feat. Future & Trey Songz - HotNewHipHop.mp3
[10/05/2013 - 19:01:38 | N | 4874 Ko] - F:\25 - Outro.mp3
[02/08/2012 - 08:47:52 | N | 3520 Ko] - F:\Jim Jones - I'll Be Back feat. Meek Mill & Fred The Godson - HotNewHipHop.mp3
[10/05/2013 - 19:13:14 | N | 3249 Ko] - F:\24. You Cant Have My Soul (feat Orlando Brown).mp3
[18/05/2013 - 22:50:54 | N | 3661 Ko] - F:\Louie V Gutta - Coolin Feat. Meek Mill - HotNewHipHop.mp3
[30/05/2013 - 00:12:22 | N | 6200 Ko] - F:\Kid Ink - Almost Home Freestyle - HotNewHipHop.mp3
[30/05/2013 - 01:06:30 | N | 4250 Ko] - F:\Kid Ink - Blackout feat Meek Mill (Prod by Lex Luger) - HotNewHipHop.mp3
[30/05/2013 - 00:56:28 | N | 6915 Ko] - F:\Meek Mill- Don't Do It Feat. Nipsey Hussle & Sean Kingston - HotNewHipHop.mp3
[01/06/2013 - 20:50:52 | N | 3108 Ko] - F:\Kid Ink - Dream Big Freestyle (Prod by Jahlil Beats) - HotNewHipHop.mp3
[03/06/2013 - 12:45:40 | N | 5348 Ko] - F:\J-Corry Antonelli - Busta Rhymes ft. Swizz Beatz - Money In Da Bank (R Feat. Busta Rhymes, Swizz Beatz - HotNewHipHop.mp3
[01/09/2012 - 06:46:52 | D] - F:\WPSystem
[01/09/2012 - 06:47:08 | D] - F:\Music
[01/09/2012 - 06:47:08 | D] - F:\Videos
[01/09/2012 - 06:47:10 | D] - F:\Pictures
[28/06/2013 - 20:51:26 | N | 3700 Ko] - F:\1S6bSfDQEowh.128.mp3
[30/06/2013 - 04:42:24 | N | 4692 Ko] - F:\Big Sean ft. Roscoe Dash & Kanye West - Marvin Gaye & Chardonnay.mp3
[03/07/2013 - 13:25:34 | N | 10815 Ko] - F:\Major Lazer Ft. Busy Signal - Watch Out (Bumaye) [ www.MustJam.com ].mp3
[04/09/2013 - 02:32:30 | N | 3199 Ko] - F:\YTUp6X8bGkmz.128.mp3
[12/04/2012 - 11:25:14 | N | 3623 Ko] - F:\21 Bonus She Likes It - HotNewHipHop.mp3
[06/10/2013 - 04:24:44 | N | 3987 Ko] - F:\08 Prolli Ft. Oschino.mp3
[02/01/2013 - 15:45:04 | N | 8033 Ko] - F:\I Need A Doctor (Asian Trash Boy Remix).mp3
[19/12/2012 - 19:19:32 | N | 3003 Ko] - F:\J-Doe - Conrad Murray - HotNewHipHop.mp3
[19/11/2012 - 22:49:44 | N | 4044 Ko] - F:\Kid Ink - Down 4 - HotNewHipHop.mp3
[29/01/2012 - 21:44:22 | N | 5050 Ko] - F:\Kid+Ink+-+Gary+Payton.mp3
[12/04/2012 - 11:33:54 | N | 4876 Ko] - F:\Meek Mill - Love Done Live Here (Prod by All Star) - HotNewHipHop.mp3
[04/01/2013 - 16:42:44 | N | 4676 Ko] - F:\Meek Mill - Maybach Curtains - Nas, Rick Ross & John Legend (RapGodFathers.info).mp3
[09/03/2012 - 21:36:06 | N | 3231 Ko] - F:\Meek_Mill-Leggo_(ft.Peedi_Crakk_&_Young_Chris)_[Prod_by_Jahlil_Beats].mp3.mp3
[11/02/2012 - 02:54:50 | N | 2043 Ko] - F:\Soul Eater.mp3
[06/07/2012 - 07:33:14 | N | 3399 Ko] - F:\T-Pain Feat. Ne-Yo - Turn All The Lights On (Prod. By D. DoRohn Gough) (www.MusicDjsMp3.Com).mp3
[06/10/2013 - 05:24:24 | N | 5621 Ko] - F:\16 Champion (Feat. Prince Malik, Jim Jones).mp3
[27/10/2013 - 02:14:38 | N | 3560 Ko] - F:\Meek Mill - The End (Outro) - HotNewHipHop.mp3
[27/10/2013 - 02:06:56 | N | 3396 Ko] - F:\Meek Mill - My Life f French Montana - HotNewHipHop.mp3
[05/11/2013 - 01:02:10 | N | 9841 Ko] - F:\Kid Ink - My Own Lane (Prod by Ned Cameron) - HotNewHipHop.mp3
[08/11/2013 - 21:14:04 | N | 7984 Ko] - F:\Lecrae - Lost My Way Feat. King Mez & Daniel Daley (Prod by Boi1da & DZL) - HotNewHipHop.mp3
[09/11/2013 - 04:24:06 | N | 2639 Ko] - F:\J-Doe - Love It - HotNewHipHop.mp3
[10/11/2013 - 03:32:46 | N | 6959 Ko] - F:\Jason_Derulo_-_Talk_Dirty_Feat_2_Chainz.mp3
[10/11/2013 - 04:16:30 | N | 5201 Ko] - F:\HUNTING FOR YOUR DREAM GALNERYUS HUNTER×HUNTER OP02&ED02 Single HUNTING FOR YOUR DREAM www.dilandau.eu.mp3
[22/03/2012 - 02:52:50 | N | 4027 Ko] - F:\0653a3f7111252cb3d1a35a600793979.mp3
[11/01/2013 - 17:54:00 | N | 9945 Ko] - F:\Ace Hood - Motive - HotNewHipHop.mp3
[19/07/2012 - 04:41:40 | N | 3560 Ko] - F:\Ludacris- Stand Up.mp3
[19/04/2013 - 00:54:00 | N | 5627 Ko] - F:\Mork-E - Yikaya.mp3
[19/11/2013 - 07:06:52 | N | 3973 Ko] - F:\22. Closer To My Dreams (feat Leah).mp3
[19/11/2013 - 07:06:04 | N | 3872 Ko] - F:\15. The Way.mp3
[29/11/2013 - 02:55:00 | N | 11689 Ko] - F:\Kid Ink - My Last - HotNewHipHop.mp3
[06/12/2013 - 08:46:46 | N | 2769 Ko] - F:\Kid Ink Intro (Prod by Brix) - HotNewHipHop.mp3
[06/12/2013 - 09:07:20 | N | 5227 Ko] - F:\Kid Ink Party Everywhere (Prod by Sledgren) - HotNewHipHop.mp3
[09/12/2013 - 22:43:54 | N | 8909 Ko] - F:\Tyga Good Day Feat. Lil Wayne & Meek Mill - HotNewHipHop.mp3
[24/12/2013 - 01:40:36 | N | 4517 Ko] - F:\Bang Bang Pow Pow feat. Lil T Pain rEVOLVEr drops Dec 6 www.dilandau.eu.mp3
[24/12/2013 - 01:46:04 | N | 6106 Ko] - F:\T-Pain Blapper Feat. Mistah Fab, Kriss Kaliko & Tech N9ne (Prod By Tha Bizness) - HotNewHipHop.mp3
[12/01/2014 - 03:32:16 | N | 9150 Ko] - F:\Genasis - Touchdown Feat. Busta Rhymes (NFL Version) - HotNewHipHop.mp3

################## | Vaccin |

D:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
E:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
F:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)

################## | E.O.F | https://www.usbfix.net/ - https://www.sosvirus.net/ |
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
25 janv. 2014 à 01:50
Au passage Oui j'habite en France x)
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
25 janv. 2014 à 01:51
Je t'envoi les rapport en Pv ? parce qu'apparemment sa s'envoi pas ici :/
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
25 janv. 2014 à 12:48
Ah non sa a marcher mdr bon bah voila le rapport UsbFix :] ############################## | UsbFix V 7.161 | [Suppression]

Utilisateur: Phaazer (Administrateur) # PHAAZER-HP
Mis à jour le 15/01/2014 par El Desaparecido - Team SosVirus
Lancé à 01:06:44 | 25/01/2014

Site Web : https://www.usbfix.net/
Changelog : https://www.usb-antivirus.com/fr/maj/
Support : https://www.sosvirus.net/
Upload Malware : http://www.sosvirus.net/upload_malware.php
Contact : https://www.usb-antivirus.com/fr/contact/

PC: Hewlett-Packard (3594)
CPU: Intel(R) Atom(TM) CPU N570 @ 1.66GHz
RAM -> [Total : 1012 Mo| Free : 204 Mo]
Bios: Hewlett-Packard
Boot: Fail-safe with network boot

OS: Microsoft Windows 7 Édition Starter (6.1.7601 32-Bit) Service Pack 1
WB: Windows Internet Explorer : 10.0.9200.16750

SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AS: Windows Defender : 6.1.7600.16385 (win7_rtm.090713-1255)
AS: Malwarebytes' Anti-Malware : 1.75.0001
FW: Windows FireWall Service [Enabled]

C:\ (%systemdrive%) -> Disque fixe # 281 Go (181 Go libre(s) - 64%) [] # NTFS
D:\ -> Disque fixe # 13 Go (1 Go libre(s) - 11%) [Recovery] # NTFS
E:\ -> Disque fixe # 4 Go (4 Go libre(s) - 100%) [HP_TOOLS] # FAT32
F:\ -> Disque amovible # 4 Go (3 Go libre(s) - 83%) [] # FAT32

################## | Processus Stoppés |

Stoppé! c:\Program Files\Microsoft Security Client\MsMpEng.exe (ID: 764 |ParentID: 484)
Stoppé! C:\Windows\Explorer.EXE (ID: 1960 |ParentID: 1952)
Stoppé! C:\Windows\system32\ctfmon.exe (ID: 2016 |ParentID: 1960)
Stoppé! C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe (ID: 248 |ParentID: 1960)
Stoppé! C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe (ID: 384 |ParentID: 248)
Stoppé! C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe (ID: 1620 |ParentID: 248)
Stoppé! C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe (ID: 1420 |ParentID: 248)
Stoppé! C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe (ID: 1896 |ParentID: 248)
Stoppé! C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe (ID: 1256 |ParentID: 248)
Stoppé! C:\Windows\system32\igfxsrvc.exe (ID: 392 |ParentID: 596)
Stoppé! \\?\C:\Windows\system32\wbem\WMIADAP.EXE (ID: 1340 |ParentID: 864)
Stoppé! C:\Windows\system32\DllHost.exe (ID: 1748 |ParentID: 596)

################## | Regedit Run |

04 - HKLM\..\Run : [IgfxTray] C:\Windows\system32\igfxtray.exe
04 - HKLM\..\Run : [HotKeysCmds] C:\Windows\system32\hkcmd.exe
04 - HKLM\..\Run : [Persistence] C:\Windows\system32\igfxpers.exe
04 - HKLM\..\Run : [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
04 - HKLM\..\Run : [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
04 - HKLM\..\Run : [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe
04 - HKLM\..\Run : [AtherosBtStack] "C:\Program Files\Bluetooth Suite\BtvStack.exe"
04 - HKLM\..\Run : [AthBtTray] "C:\Program Files\Bluetooth Suite\AthBtTray.exe"
04 - HKLM\..\Run : [HPQuickWebProxy] "C:\Program Files\Hewlett-Packard\HP QuickWeb\hpqwutils.exe"
04 - HKLM\..\Run : [HPConnectionManager] C:\Program Files\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
04 - HKLM\..\Run : []
04 - HKLM\..\Run : [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe"
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\..\Run : [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
04 - HKLM\..\Run : [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe"
04 - HKLM\..\Run : [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
04 - HKLM\..\Run : [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
04 - HKLM\..\Run : [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
04 - HKLM\..\Run : [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
04 - HKLM\..\Run : [HP Quick Launch] C:\Program Files\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
04 - HKLM\..\Run : [HPOSD] C:\Program Files\Hewlett-Packard\HP On Screen Display\HPOSD.exe
04 - HKLM\..\Run : [Aeria Ignite] "C:\Program Files\Aeria Games\Ignite\aeriaignite.exe" silent
04 - HKLM\..\Run : [tuto4pc_fr_86]
04 - HKLM\..\Run : [tuto4pc_fr_85]
04 - HKLM\..\Run : [offerbox] C:\Program Files\OfferBox\OfferBox.exe
04 - HKLM\..\Run : [IminentMessenger] C:\Program Files\Iminent\Iminent.Messengers.exe /startup
04 - HKLM\..\Run : [Iminent] C:\Program Files\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
04 - HKLM\..\Run : [tuto4pc_fr_41]
04 - HKLM\..\Run : [tuto4pc_fr_52]
04 - HKLM\..\Run : [tuto4pc_fr_69]
04 - HKLM\..\Run : [tuto4pc_fr_80]
04 - HKLM\..\RunOnce : [NCPluginUpdater] "C:\Program Files\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update
04 - HKLM\..\RunOnce : [Discount Dragon]
04 - HKLM\..\RunOnce : []
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run : [Google Update] "C:\Users\Phaazer\AppData\Local\Google\Update\GoogleUpdate.exe" /c
04 - HKU\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run : [Facebook Update] "C:\Users\Phaazer\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKU\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run : [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
04 - HKU\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run : [KPeerNexonEU] C:\Nexon\NEXON_EU_Downloader\nxEULauncher.exe
04 - HKU\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run : [Akamai NetSession Interface] "C:\Users\Phaazer\AppData\Local\Akamai\netsession_win.exe"
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe

################## | Recherche générique |

Supprimé! C:\Users\Public\sdelevURL.tmp
Supprimé! C:\Windows\system32\update.exe

(!) Fichiers temporaires supprimés.

################## | Registre |

Supprimé! HKU\S-1-5-21-2550636160-3718483610-2762821818-1000\Software\.\.\.\.\Mountpoints2\{f5b876ef-9914-11e1-a544-74de2b951c1d}

################## | Listing |

[27/01/2012 - 16:07:20 | SHD] - C:\$Recycle.Bin
[03/02/2012 - 03:08:57 | D] - C:\146c551d0354bb361a6f5daf53
[13/06/2012 - 15:57:13 | D] - C:\28d81cef7588a72ced
[12/04/2012 - 14:49:49 | D] - C:\33798a5b7fbf5ec12b84f34d
[18/03/2012 - 21:12:06 | D] - C:\48d3cc926f22748f30
[13/01/2014 - 10:29:38 | D] - C:\AeriaGames
[18/11/2012 - 15:04:52 | D] - C:\AMD
[10/06/2009 - 22:42:20 | A | 0 Ko] - C:\autoexec.bat
[05/03/2013 - 03:04:04 | D] - C:\bfb30e72fc76e11460a68c2aab9649f3
[16/07/2011 - 14:36:11 | SHD] - C:\boot
[20/11/2010 - 22:29:06 | RASH | 375 Ko] - C:\bootmgr
[18/01/2014 - 23:46:03 | N | 7 Ko] - C:\bootsqm.dat
[21/01/2014 - 16:48:53 | D] - C:\Config.Msi
[10/06/2009 - 22:42:20 | N | 0 Ko] - C:\config.sys
[14/07/2009 - 05:53:55 | SHD] - C:\Documents and Settings
[01/11/2012 - 09:25:26 | D] - C:\e03a9df0786138f7a5
[13/11/2013 - 19:56:34 | N | 0 Ko] - C:\END
[29/04/2012 - 10:08:49 | D] - C:\found.000
[07/10/2012 - 16:30:10 | D] - C:\found.001
[23/01/2014 - 23:25:07 | D] - C:\gPotato.eu
[12/02/2012 - 18:32:07 | D] - C:\Hewlett-Packard
[25/01/2014 - 00:29:28 | ASH | 777112 Ko] - C:\hiberfil.sys
[26/06/2011 - 01:00:43 | D] - C:\HP
[12/02/2012 - 12:15:52 | N | 0 Ko | 3F5B83871DD14D330BC18051B4AC7023] - C:\HPSF_Rep.txt
[26/06/2011 - 00:30:22 | D] - C:\Intel
[23/01/2014 - 23:46:38 | D] - C:\Nexon
[25/01/2014 - 00:29:30 | ASH | 1048576 Ko] - C:\pagefile.sys
[14/07/2009 - 03:37:05 | D] - C:\PerfLogs
[06/05/2012 - 17:16:27 | D] - C:\PHAAZER-HP
[24/01/2014 - 13:51:43 | N | 1 Ko] - C:\PhysicalDisk0_MBR.bin
[24/01/2014 - 23:34:57 | D] - C:\Program Files
[24/01/2014 - 23:36:13 | HD] - C:\ProgramData
[27/01/2012 - 15:52:51 | SHD] - C:\Recovery
[08/07/2013 - 12:06:09 | D] - C:\SWSetup
[24/01/2014 - 23:34:56 | SHD] - C:\System Volume Information
[27/01/2012 - 15:53:00 | D] - C:\SYSTEM.SAV
[25/01/2014 - 01:06:47 | D] - C:\UsbFix
[25/01/2014 - 01:09:53 | A | 8 Ko | BBB9F563BA6799CD51F8AF09F7881642] - C:\UsbFix [Clean 1] PHAAZER-HP.txt
[12/08/2012 - 05:46:06 | N | 0 Ko] - C:\user.js
[04/08/2012 - 03:31:26 | D] - C:\Users
[19/11/2013 - 03:08:01 | D] - C:\Windows
[27/01/2012 - 16:07:20 | SHD] - D:\$RECYCLE.BIN
[27/01/2012 - 16:07:10 | RASHD] - D:\boot
[14/07/2009 - 19:39:00 | RASH | 375 Ko] - D:\bootmgr
[23/05/2010 - 13:55:46 | RASH | 0 Ko] - D:\Desktop.ini
[27/01/2012 - 16:07:11 | D] - D:\FactoryUpdate
[27/01/2012 - 16:07:10 | D] - D:\hp
[12/02/2012 - 12:15:51 | N | 0 Ko | 3F5B83871DD14D330BC18051B4AC7023] - D:\HPSF_Rep.txt
[04/11/2012 - 18:47:45 | N | 0 Ko] - D:\HP_WSD.dat
[27/01/2012 - 16:07:11 | RSHD] - D:\preload
[24/05/2013 - 22:12:58 | RSD] - D:\recovery
[27/01/2012 - 16:07:11 | D] - D:\RM_Reserve
[24/01/2014 - 23:34:56 | SHD] - D:\System Volume Information
[12/02/2012 - 19:06:58 | N | 1 Ko] - E:\MediaID.bin
[04/11/2012 - 18:47:46 | N | 0 Ko] - E:\HP_WSD.dat
[26/06/2011 - 02:09:22 | SHD] - E:\$RECYCLE.BIN
[27/07/2010 - 16:28:18 | D] - F:\DCIM
[23/06/2012 - 01:05:06 | N | 2848 Ko] - F:\Akon - Honey Im Home feat. 2 Chainz - HotNewHipHop.mp3
[24/07/2012 - 05:03:32 | N | 2630 Ko] - F:\Busta Rhymes - 51 Fifty (No Tags) feat. Segara - HotNewHipHop.mp3
[15/08/2012 - 08:43:06 | N | 11594 Ko] - F:\Busta Rhymes - Always Love Thy Family (feat. Yummy) - HotNewHipHop.mp3
[22/08/2012 - 03:45:24 | N | 10595 Ko] - F:\Busta Rhymes - Til We Die - HotNewHipHop.mp3
[24/03/2012 - 18:52:04 | N | 6978 Ko] - F:\Dj Ill Will Presents The Hnhh Cypher Feat Kid Ink Meek Mill Los Tory Lanez Prod By Jahlil Beats - HotNewHipHop.mp3
[05/03/2013 - 17:21:58 | N | 3784 Ko] - F:\03 Im So Fly.mp3
[29/01/2012 - 20:25:20 | N | 4900 Ko] - F:\Kid+Ink+-+Take+Over+the+World+feat+Ty$+(Prod+by+KE)+-+NO+DJ.mp3
[23/04/2013 - 23:26:24 | D] - F:\PICTURE
[05/03/2013 - 17:38:56 | N | 3734 Ko] - F:\15 Trappin All Day Ft. Gillie Da.mp3
[05/03/2013 - 17:33:52 | N | 4054 Ko] - F:\12 Gettin It In Ft. Peedi Crakk.mp3
[05/03/2013 - 17:45:08 | N | 3899 Ko] - F:\17 - They Dont Care (Prod by HM).mp3
[05/03/2013 - 17:46:24 | N | 4788 Ko] - F:\06. I m Winnin feat Meek Mill.mp3
[22/10/2012 - 20:20:10 | N | 3451 Ko] - F:\Kendrick Lamar - Swimming Pools (Drank).mp3
[27/08/2012 - 19:31:44 | N | 3875 Ko] - F:\Kid Ink - Bom Bom (Prod by Aliby) - HotNewHipHop.mp3
[28/01/2012 - 01:31:04 | N | 3622 Ko] - F:\Kid+Ink+-+Insane.mp3
[23/04/2012 - 04:04:46 | N | 4815 Ko] - F:\Kid Ink - Lost In the Sauce (Prod by Jahlil Beats) [No DJ][CDQ] - HotNewHipHop.mp3
[24/03/2012 - 18:51:14 | N | 4050 Ko] - F:\Kid Ink - I Just Want It All (Prod by Ned Cameron) - HotNewHipHop.mp3
[11/02/2012 - 01:53:44 | N | 4302 Ko] - F:\preview.mp3
[05/03/2013 - 17:44:12 | N | 4995 Ko] - F:\03 - Rose Red (Prod by Jahlil Beats).mp3
[05/03/2013 - 17:45:04 | N | 4034 Ko] - F:\15 - Shit On the Industry.mp3
[05/03/2013 - 17:50:06 | N | 6085 Ko] - F:\09. Everyday Ft Rick Ross.mp3
[29/01/2012 - 20:23:46 | N | 4763 Ko] - F:\Kid+Ink+-+Blowin+Swishers.mp3
[29/01/2012 - 22:44:30 | N | 9352 Ko] - F:\Ranbu no Melody.mp3
[05/03/2013 - 17:42:54 | N | 3863 Ko] - F:\17 36-24-26 Bad Body Ft. K.Smith.mp3
[05/03/2013 - 17:43:44 | N | 4607 Ko] - F:\18 Gettin To The Money Ft. Omelly &.mp3
[05/03/2013 - 17:43:54 | N | 1946 Ko] - F:\24 In My Bag (Autotune Rmx).mp3
[07/05/2012 - 17:14:24 | N | 8500 Ko] - F:\08-08-Shoujo_Byou-metaphor_[Seikon_no_Qwaser_II_ED1] (1).mp3
[09/06/2012 - 01:58:56 | N | 8139 Ko] - F:\01-15-Yousei_Teikoku-Kuusou_Mesologie_[Mirai_Nikki_OP].mp3
[27/02/2012 - 04:57:54 | N | 2794 Ko] - F:\4d2ff19b27f8041d9fb265d5fb10150a.mp3
[29/06/2012 - 02:58:52 | N | 6061 Ko] - F:\yousei teikoku - filament.mp3
[20/01/2013 - 16:09:06 | N | 9877 Ko] - F:\Ace Hood - Shit Done Got Real Ft. Busta Rhymes & YelaWolf - HotNewHipHop.mp3
[20/01/2013 - 16:06:26 | N | 9363 Ko] - F:\Busta Rhymes- Why Stop Now Feat. Chris Brown - HotNewHipHop (1).mp3
[02/02/2013 - 21:18:34 | N | 3171 Ko] - F:\Eric Bellinger ft. Mario & J Doe - Navigator (Prod. By H Money) (Final Version) (2012) www.lrfanai.eu (1).mp3
[26/12/2012 - 14:13:30 | N | 7990 Ko] - F:\Chip (Grand Hustle) - Pizza Boy - HotNewHipHop.mp3
[25/11/2012 - 16:07:40 | N | 3360 Ko] - F:\Kid Ink - Badass (Prod by Devin Cruise) - HotNewHipHop.mp3
[05/03/2013 - 04:29:56 | N | 4780 Ko] - F:\Just can't get enough - Black Eyed Peas - Black Eyed Peas.mp3
[30/12/2012 - 14:41:30 | N | 5740 Ko] - F:\Kid Ink - Weekend [Mastered] - HotNewHipHop.mp3
[23/02/2013 - 15:51:04 | N | 2575 Ko] - F:\Tyler_The_Creator_-_Domo_23.mp3
[25/11/2012 - 16:05:28 | N | 4203 Ko] - F:\Kid Ink - Can't Ignore Me (Prod by Cardiak) - HotNewHipHop.mp3
[04/01/2013 - 15:29:16 | N | 7891 Ko] - F:\Meek Mill - This Is How We Do It feat Beanie Sigel, Mel Love & - HotNewHipHop.mp3
[10/02/2013 - 16:31:58 | N | 8224 Ko] - F:\Meek Mill - Polo & Shell Tops (Prod. By Cardiak) ( 2o12 ) [ www.MzHipHop.Me ].mp3
[01/01/1601 - 01:00:00 | D] - F:\RECORD
[07/03/2013 - 13:50:02 | N | 1989 Ko] - F:\Meek Mill - Started From The Bottom (Freestyle) - HotNewHipHop.mp3
[08/03/2013 - 15:55:32 | N | 5971 Ko] - F:\tumblr_m15dlh6b8g1qh16n6o1.mp3
[09/03/2013 - 17:45:32 | N | 8954 Ko] - F:\Bow Wow - Pussy On My Mind Feat. Kid Ink - HotNewHipHop.mp3
[10/03/2013 - 07:09:28 | N | 7428 Ko] - F:\tumblr_ma56x8f3tu1qmtk2lo1.mp3
[13/03/2013 - 20:03:54 | N | 11004 Ko] - F:\Busta Rhymes - Chill Feat. Reek Da Villian & J-Doe - HotNewHipHop.mp3
[17/03/2013 - 04:23:34 | N | 3691 Ko] - F:\VxoWVPw2lC5N.128 (1).mp3
[23/02/2012 - 15:17:10 | N | 3976 Ko] - F:\be9bc80ce6695e7fcd655c781798defd.mp3
[09/07/2012 - 06:13:36 | N | 3644 Ko] - F:\Chris Brown - Turn Up The Music.mp3
[15/07/2012 - 05:45:24 | N | 9348 Ko] - F:\dilemma by ecosystem - gintama opening 10.mp3
[18/03/2013 - 07:03:32 | N | 1670 Ko] - F:\OP3.mp3
[20/03/2013 - 14:47:22 | N | 1792 Ko] - F:\07 Flamers Freestyle.mp3
[20/03/2013 - 14:52:34 | N | 2333 Ko] - F:\21 Brush Em Off Ft. Oschino.mp3
[28/01/2012 - 01:29:24 | N | 3846 Ko] - F:\Kid+Ink+-+La+La+La+(No+DJ).mp3
[29/01/2012 - 20:29:02 | N | 3825 Ko] - F:\Kid+Ink+-+What+I+Do+(Prod+by+T-Nyce)-HotFreshHipHop.com.mp3
[13/05/2012 - 04:37:02 | N | 4291 Ko] - F:\Lil_Wayne_-_Novacane_(Full)__www.hiphop2k.com.mp3
[30/01/2012 - 00:17:28 | N | 7531 Ko] - F:\Lil+Twist+-+Turn't+Up+(Ft.+Busta+Rhymes)+(iTunes+Version).m4a
[26/08/2012 - 05:54:34 | N | 8511 Ko] - F:\oneokrockLiar.mp3
[29/01/2012 - 22:58:16 | N | 5308 Ko] - F:\Nightmare.-.The.World.(Death.Note.Opening.Full).mp3
[07/07/2012 - 05:25:36 | N | 9251 Ko] - F:\tumblr_m3vu03kQ0P1r02zrho1.mp3
[21/03/2013 - 05:43:52 | N | 5212 Ko] - F:\Los - I Got You feat The Weeknd - HotNewHipHop.mp3
[21/03/2013 - 05:39:36 | N | 4728 Ko] - F:\King Los - T.N.B. - HotNewHipHop.mp3
[23/03/2013 - 17:21:44 | N | 4612 Ko] - F:\Soulja_Boy_-_Incredible_War.mp3
[25/03/2013 - 22:54:10 | N | 4548 Ko] - F:\Kid Ink - Gassed Up [HNHH Original] (Prod by Cardiak) - HotNewHipHop.mp3
[29/03/2013 - 04:19:44 | N | 6348 Ko] - F:\Tech N9ne - B.I.T.C.H. (Official Version) Feat. T-Pain - HotNewHipHop.mp3
[01/04/2013 - 17:45:30 | N | 5500 Ko] - F:\B.o.B - Epic feat. Playboy Tre & Meek Mill (Prod. by Lil C) - HotNewHipHop.mp3
[03/04/2013 - 04:11:14 | N | 3535 Ko] - F:\Meek Mill - G5 Freestyle - HotNewHipHop.mp3
[03/04/2013 - 04:16:46 | N | 4364 Ko] - F:\meek_mill___ball_to_da_max__prod_by_jahlil_beats____hotnewhiphop_com - HotNewHipHop.mp3
[03/04/2013 - 04:10:58 | N | 4831 Ko] - F:\Meek Mill - Dont Panic ft. Rick Ross & Yo Gotti - HotNewHipHop.mp3
[05/04/2013 - 13:50:10 | N | 4259 Ko] - F:\Euroz - S.O.F. (Prod By Reezy) - HotNewHipHop.mp3
[06/04/2013 - 19:23:34 | N | 2790 Ko] - F:\Meek Mill - Beamer, Benz, Or Bentley Freestyle - HotNewHipHop.com - HotNewHipHop.mp3
[06/04/2013 - 19:30:32 | N | 5054 Ko] - F:\Meek Mill - Bricks - HotNewHipHop.mp3
[06/04/2013 - 19:33:58 | N | 4215 Ko] - F:\Meek Mill - Show Out - HotNewHipHop.mp3
[06/04/2013 - 19:35:34 | N | 4438 Ko] - F:\Meek Mill - Throw It Back feat Daddy-O (Prod by Sapp) - HotNewHipHop.mp3
[06/04/2013 - 19:12:10 | N | 7068 Ko] - F:\Meek Mill - U Be Killin Em (Freestyle) - HotNewHipHop.mp3
[10/04/2013 - 01:46:56 | N | 3311 Ko] - F:\Meek_Mill_-_Let's_Get_It_ft._Kre_Forch_5STARHIPHOP.COM.mp3
[10/04/2013 - 02:03:14 | N | 6454 Ko] - F:\Meek Mill - Hardbody feat Peedi Crakk & Shizz Nitty (Prod by C - HotNewHipHop.mp3
[12/04/2013 - 12:52:58 | N | 5194 Ko] - F:\Meek Mill - Ballin feat Shizz Nitty (Prod by Jahlil Beats) - HotNewHipHop.mp3
[12/04/2013 - 12:46:32 | N | 4130 Ko] - F:\Meek Mill - Raw - HotNewHipHop.mp3
[16/04/2013 - 18:58:58 | N | 7416 Ko] - F:\Tank - Take You Outta Here Ft. J-Doe - HotNewHipHop.mp3
[17/04/2013 - 05:38:24 | N | 4210 Ko] - F:\tinie tempah - pass out (HQ)[mp3truck.com].mp3
[22/04/2013 - 01:21:02 | N | 3614 Ko] - F:\tumblr_lp0qmvnyPL1qcbjklo1.mp3
[26/04/2013 - 21:39:06 | N | 9966 Ko] - F:\Busta Rhymes - Shake It [CDQ] Feat. Future & Trey Songz - HotNewHipHop.mp3
[10/05/2013 - 19:01:38 | N | 4874 Ko] - F:\25 - Outro.mp3
[02/08/2012 - 08:47:52 | N | 3520 Ko] - F:\Jim Jones - I'll Be Back feat. Meek Mill & Fred The Godson - HotNewHipHop.mp3
[10/05/2013 - 19:13:14 | N | 3249 Ko] - F:\24. You Cant Have My Soul (feat Orlando Brown).mp3
[18/05/2013 - 22:50:54 | N | 3661 Ko] - F:\Louie V Gutta - Coolin Feat. Meek Mill - HotNewHipHop.mp3
[30/05/2013 - 00:12:22 | N | 6200 Ko] - F:\Kid Ink - Almost Home Freestyle - HotNewHipHop.mp3
[30/05/2013 - 01:06:30 | N | 4250 Ko] - F:\Kid Ink - Blackout feat Meek Mill (Prod by Lex Luger) - HotNewHipHop.mp3
[30/05/2013 - 00:56:28 | N | 6915 Ko] - F:\Meek Mill- Don't Do It Feat. Nipsey Hussle & Sean Kingston - HotNewHipHop.mp3
[01/06/2013 - 20:50:52 | N | 3108 Ko] - F:\Kid Ink - Dream Big Freestyle (Prod by Jahlil Beats) - HotNewHipHop.mp3
[03/06/2013 - 12:45:40 | N | 5348 Ko] - F:\J-Corry Antonelli - Busta Rhymes ft. Swizz Beatz - Money In Da Bank (R Feat. Busta Rhymes, Swizz Beatz - HotNewHipHop.mp3
[01/09/2012 - 06:46:52 | D] - F:\WPSystem
[01/09/2012 - 06:47:08 | D] - F:\Music
[01/09/2012 - 06:47:08 | D] - F:\Videos
[01/09/2012 - 06:47:10 | D] - F:\Pictures
[28/06/2013 - 20:51:26 | N | 3700 Ko] - F:\1S6bSfDQEowh.128.mp3
[30/06/2013 - 04:42:24 | N | 4692 Ko] - F:\Big Sean ft. Roscoe Dash & Kanye West - Marvin Gaye & Chardonnay.mp3
[03/07/2013 - 13:25:34 | N | 10815 Ko] - F:\Major Lazer Ft. Busy Signal - Watch Out (Bumaye) [ www.MustJam.com ].mp3
[04/09/2013 - 02:32:30 | N | 3199 Ko] - F:\YTUp6X8bGkmz.128.mp3
[12/04/2012 - 11:25:14 | N | 3623 Ko] - F:\21 Bonus She Likes It - HotNewHipHop.mp3
[06/10/2013 - 04:24:44 | N | 3987 Ko] - F:\08 Prolli Ft. Oschino.mp3
[02/01/2013 - 15:45:04 | N | 8033 Ko] - F:\I Need A Doctor (Asian Trash Boy Remix).mp3
[19/12/2012 - 19:19:32 | N | 3003 Ko] - F:\J-Doe - Conrad Murray - HotNewHipHop.mp3
[19/11/2012 - 22:49:44 | N | 4044 Ko] - F:\Kid Ink - Down 4 - HotNewHipHop.mp3
[29/01/2012 - 21:44:22 | N | 5050 Ko] - F:\Kid+Ink+-+Gary+Payton.mp3
[12/04/2012 - 11:33:54 | N | 4876 Ko] - F:\Meek Mill - Love Done Live Here (Prod by All Star) - HotNewHipHop.mp3
[04/01/2013 - 16:42:44 | N | 4676 Ko] - F:\Meek Mill - Maybach Curtains - Nas, Rick Ross & John Legend (RapGodFathers.info).mp3
[09/03/2012 - 21:36:06 | N | 3231 Ko] - F:\Meek_Mill-Leggo_(ft.Peedi_Crakk_&_Young_Chris)_[Prod_by_Jahlil_Beats].mp3.mp3
[11/02/2012 - 02:54:50 | N | 2043 Ko] - F:\Soul Eater.mp3
[06/07/2012 - 07:33:14 | N | 3399 Ko] - F:\T-Pain Feat. Ne-Yo - Turn All The Lights On (Prod. By D. DoRohn Gough) (www.MusicDjsMp3.Com).mp3
[06/10/2013 - 05:24:24 | N | 5621 Ko] - F:\16 Champion (Feat. Prince Malik, Jim Jones).mp3
[27/10/2013 - 02:14:38 | N | 3560 Ko] - F:\Meek Mill - The End (Outro) - HotNewHipHop.mp3
[27/10/2013 - 02:06:56 | N | 3396 Ko] - F:\Meek Mill - My Life f French Montana - HotNewHipHop.mp3
[05/11/2013 - 01:02:10 | N | 9841 Ko] - F:\Kid Ink - My Own Lane (Prod by Ned Cameron) - HotNewHipHop.mp3
[08/11/2013 - 21:14:04 | N | 7984 Ko] - F:\Lecrae - Lost My Way Feat. King Mez & Daniel Daley (Prod by Boi1da & DZL) - HotNewHipHop.mp3
[09/11/2013 - 04:24:06 | N | 2639 Ko] - F:\J-Doe - Love It - HotNewHipHop.mp3
[10/11/2013 - 03:32:46 | N | 6959 Ko] - F:\Jason_Derulo_-_Talk_Dirty_Feat_2_Chainz.mp3
[10/11/2013 - 04:16:30 | N | 5201 Ko] - F:\HUNTING FOR YOUR DREAM GALNERYUS HUNTER×HUNTER OP02&ED02 Single HUNTING FOR YOUR DREAM www.dilandau.eu.mp3
[22/03/2012 - 02:52:50 | N | 4027 Ko] - F:\0653a3f7111252cb3d1a35a600793979.mp3
[11/01/2013 - 17:54:00 | N | 9945 Ko] - F:\Ace Hood - Motive - HotNewHipHop.mp3
[19/07/2012 - 04:41:40 | N | 3560 Ko] - F:\Ludacris- Stand Up.mp3
[19/04/2013 - 00:54:00 | N | 5627 Ko] - F:\Mork-E - Yikaya.mp3
[19/11/2013 - 07:06:52 | N | 3973 Ko] - F:\22. Closer To My Dreams (feat Leah).mp3
[19/11/2013 - 07:06:04 | N | 3872 Ko] - F:\15. The Way.mp3
[29/11/2013 - 02:55:00 | N | 11689 Ko] - F:\Kid Ink - My Last - HotNewHipHop.mp3
[06/12/2013 - 08:46:46 | N | 2769 Ko] - F:\Kid Ink Intro (Prod by Brix) - HotNewHipHop.mp3
[06/12/2013 - 09:07:20 | N | 5227 Ko] - F:\Kid Ink Party Everywhere (Prod by Sledgren) - HotNewHipHop.mp3
[09/12/2013 - 22:43:54 | N | 8909 Ko] - F:\Tyga Good Day Feat. Lil Wayne & Meek Mill - HotNewHipHop.mp3
[24/12/2013 - 01:40:36 | N | 4517 Ko] - F:\Bang Bang Pow Pow feat. Lil T Pain rEVOLVEr drops Dec 6 www.dilandau.eu.mp3
[24/12/2013 - 01:46:04 | N | 6106 Ko] - F:\T-Pain Blapper Feat. Mistah Fab, Kriss Kaliko & Tech N9ne (Prod By Tha Bizness) - HotNewHipHop.mp3
[12/01/2014 - 03:32:16 | N | 9150 Ko] - F:\Genasis - Touchdown Feat. Busta Rhymes (NFL Version) - HotNewHipHop.mp3

################## | Vaccin |

D:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
E:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
F:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)

################## | E.O.F | https://www.usbfix.net/ - https://www.sosvirus.net/ |
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
25 janv. 2014 à 14:50
Pourquoi tu as fait 2 fois usbfix, j'ai demandé de le faire une fois seulement en branchant tout tes périphériques. Continue et héberge moi les rapports Roguekiller ainsi que le reste. +
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014 > Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014
25 janv. 2014 à 19:11
C'est le même rapport envoyer deux fois je croyais qu'il j'avais pas été envoyer, je t'envoi les rapports RogueKiller :]
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
25 janv. 2014 à 19:28
Le 2e : RogueKiller V8.8.3 [Jan 24 2014] par Tigzy
mail : tigzyRK<at>gmail<dot>com
Remontees : http://www.adlice.com/forum/
Site Web : https://www.luanagames.com/index.fr.html
Blog : https://www.adlice.com/

Systeme d'exploitation : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Demarrage : Mode sans echec avec prise en charge reseau
Utilisateur : Phaazer [Droits d'admin]
Mode : DNS RAZ [Annulé] -- Date : 01/25/2014 00:42:37
| ARK || FAK || MBR |

¤¤¤ Processus malicieux : 0 ¤¤¤

¤¤¤ Entrees de registre : 0 ¤¤¤

¤¤¤ Driver : [NON CHARGE 0xc000035f] ¤¤¤

¤¤¤ Ruches Externes: ¤¤¤

¤¤¤ Infection : ¤¤¤

Termine : << RKreport[0]_DN_01252014_004236.txt >>
RKreport[0]_D_01252014_002054.txt;RKreport[0]_S_01252014_002017.txt;RKreport[0]_S_01252014_004204.txt
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
25 janv. 2014 à 19:29
Le 3e : RogueKiller V8.8.3 [Jan 24 2014] par Tigzy
mail : tigzyRK<at>gmail<dot>com
Remontees : http://www.adlice.com/forum/
Site Web : https://www.luanagames.com/index.fr.html
Blog : https://www.adlice.com/

Systeme d'exploitation : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Demarrage : Mode sans echec avec prise en charge reseau
Utilisateur : Phaazer [Droits d'admin]
Mode : Proxy RAZ [Annulé] -- Date : 01/25/2014 00:42:31
| ARK || FAK || MBR |

¤¤¤ Processus malicieux : 0 ¤¤¤

¤¤¤ Entrees de registre : 0 ¤¤¤

¤¤¤ Navigateurs web : 0 ¤¤¤

¤¤¤ Driver : [NON CHARGE 0xc000035f] ¤¤¤

¤¤¤ Ruches Externes: ¤¤¤

¤¤¤ Infection : ¤¤¤

Termine : << RKreport[0]_PR_01252014_004230.txt >>
RKreport[0]_D_01252014_002054.txt;RKreport[0]_S_01252014_002017.txt;RKreport[0]_S_01252014_004204.txt
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
25 janv. 2014 à 19:29
Le 4e : RogueKiller V8.8.3 [Jan 24 2014] par Tigzy
mail : tigzyRK<at>gmail<dot>com
Remontees : http://www.adlice.com/forum/
Site Web : https://www.luanagames.com/index.fr.html
Blog : https://www.adlice.com/

Systeme d'exploitation : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Demarrage : Mode sans echec avec prise en charge reseau
Utilisateur : Phaazer [Droits d'admin]
Mode : Recherche -- Date : 01/25/2014 00:20:17
| ARK || FAK || MBR |

¤¤¤ Processus malicieux : 6 ¤¤¤
[SUSP PATH] old_chrome.exe -- C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe [7] -> TUÉ [TermThr]
[SUSP PATH] old_chrome.exe -- C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe [7] -> TUÉ [TermThr]
[SUSP PATH] old_chrome.exe -- C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe [7] -> TUÉ [TermThr]
[SUSP PATH] old_chrome.exe -- C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe [7] -> TUÉ [TermThr]
[SUSP PATH] old_chrome.exe -- C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe [7] -> TUÉ [TermThr]
[SUSP PATH] old_chrome.exe -- C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe [7] -> TUÉ [TermThr]

¤¤¤ Entrees de registre : 5 ¤¤¤
[RUN][SUSP PATH] HKLM\[...]\RunOnce : Discount Dragon-repairJob (wscript.exe "C:\Users\Phaazer\AppData\Local\Discount Dragon\repair.js" "Discount Dragon-repairJob" [x][-][x]) -> TROUVÉ
[SERVICE][PUP] HKLM\[...]\CS002\[...]\Services : supt4pc_fr_52 (C:\Users\Phaazer\AppData\Local\tuto4pc_fr_52\supt4pc_fr_52.exe [x]) -> TROUVÉ
[PROXY IE][PUM] HKCU\[...]\Internet Settings : ProxyServer (hxxp=127.0.0.1:56847 [Country: (Private Address) (XX), City: (Private Address)]) -> TROUVÉ
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> TROUVÉ
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> TROUVÉ

¤¤¤ Tâches planifiées : 5 ¤¤¤
[V1][SUSP PATH] GinyasBrowserCompanion Chrome Watcher.job : C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe - /task=1 /closebr=1 /InstallOn=7 /active=24 /update=24 /interval=2880 /pubId=ginyas_473 /affId=g473_c25 /uId={DA19CB8F-C6C2-47D8-84B6-F5A1CBB935AA} /version=1.0.0.5 /Override=true /IEhome=0 /IEsearch=0 /FFhome=0 /FFsearch=0 /CHhome=0 /CHsearch=0 /FFaddon=1 /CHaddon=1 /AutoSP=0 /regAppName=GinyasBrowserCompanion [-][x] -> TROUVÉ
[V1][SUSP PATH] GinyasBrowserCompanion FireFox Watcher.job : C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe - /task=0 /closebr=1 /InstallOn=7 /active=24 /update=24 /interval=2880 /pubId=ginyas_473 /affId=g473_c25 /uId={DA19CB8F-C6C2-47D8-84B6-F5A1CBB935AA} /version=1.0.0.5 /Override=true /IEhome=0 /IEsearch=0 /FFhome=0 /FFsearch=0 /CHhome=0 /CHsearch=0 /FFaddon=1 /CHaddon=1 /AutoSP=0 /regAppName=GinyasBrowserCompanion [-][x] -> TROUVÉ
[V1][SUSP PATH] GinyasBrowserCompanion Runner.job : C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe - /task=4 /closebr=1 /InstallOn=7 /active=24 /update=24 /interval=2880 /pubId=ginyas_473 /affId=g473_c25 /uId={DA19CB8F-C6C2-47D8-84B6-F5A1CBB935AA} /version=1.0.0.5 /Override=true /IEhome=0 /IEsearch=0 /FFhome=0 /FFsearch=0 /CHhome=0 /CHsearch=0 /FFaddon=1 /CHaddon=1 /AutoSP=0 /regAppName=GinyasBrowserCompanion [-][x] -> TROUVÉ
[V1][SUSP PATH] GinyasBrowserCompanion Stats Report.job : C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe - /task=2 /closebr=1 /InstallOn=7 /active=24 /update=24 /interval=2880 /pubId=ginyas_473 /affId=g473_c25 /uId={DA19CB8F-C6C2-47D8-84B6-F5A1CBB935AA} /version=1.0.0.5 /Override=true /IEhome=0 /IEsearch=0 /FFhome=0 /FFsearch=0 /CHhome=0 /CHsearch=0 /FFaddon=1 /CHaddon=1 /AutoSP=0 /regAppName=GinyasBrowserCompanion [-][x] -> TROUVÉ
[V1][SUSP PATH] GinyasBrowserCompanion Update Checker.job : C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe - /task=3 /closebr=1 /InstallOn=7 /active=24 /update=24 /interval=2880 /pubId=ginyas_473 /affId=g473_c25 /uId={DA19CB8F-C6C2-47D8-84B6-F5A1CBB935AA} /version=1.0.0.5 /Override=true /IEhome=0 /IEsearch=0 /FFhome=0 /FFsearch=0 /CHhome=0 /CHsearch=0 /FFaddon=1 /CHaddon=1 /AutoSP=0 /regAppName=GinyasBrowserCompanion [-][x] -> TROUVÉ

¤¤¤ Entrées Startup : 0 ¤¤¤

¤¤¤ Navigateurs web : 0 ¤¤¤

¤¤¤ Addons navigateur : 0 ¤¤¤

¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤

¤¤¤ Driver : [NON CHARGE 0xc000035f] ¤¤¤

¤¤¤ Ruches Externes: ¤¤¤

¤¤¤ Infection : PUP ¤¤¤

¤¤¤ Fichier HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


54.225.95.126 nikdaiaidiiiogaidkkekcmokcgcdeac


¤¤¤ MBR Verif: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) Hitachi HTS543232A7A384 +++++
--- User ---
[MBR] 960d0857beb1bccdfda1ea917624da75
[BSP] 3211b5432c3c9f8415f3936b7cf20458 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 199 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 409600 | Size: 287669 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 589555712 | Size: 13312 Mo
3 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 616818688 | Size: 4063 Mo
User = LL1 ... OK!
User != LL2 ... KO!
--- LL2 ---
[MBR] b3bfe577ba1c86ca4d96f488255c004d
[BSP] eab323b81ba1857ac639824a6eefeced : Windows XP MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x17) [HIDDEN!] Offset (sectors): 409600 | Size: 69632 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 143015936 | Size: 40000 Mo
2 - [XXXXXX] FAT32-LBA (0x1c) [HIDDEN!] Offset (sectors): 224935936 | Size: 800 Mo
3 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 226574336 | Size: 200 Mo

Termine : << RKreport[0]_S_01252014_002017.txt >>
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
29 janv. 2014 à 01:25
Bonsoir,

Télécharge SFTGC ici http://www.archive-host.com
Enregistrez le fichier sur le bureau.
Ouvrez SFTGC.exe et patientez durant l'initialisation du logiciel :
Pour lancer le nettoyage, il suffit de cliquer sur Go.

Refais moi un ZHPDiag.

A+
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
29 janv. 2014 à 04:24
SFTGC : fait , je t'envoi le rapport ? ( Je fais ZHPDiag d'ici la :) )
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
29 janv. 2014 à 05:04
ZHPDiag : ~ Rapport de ZHPDiag v2014.1.25.26 - Nicolas Coolman (25/01/2014)
~ Lancé par Phaazer (29/01/2014 04:28:56)
~ Adresse du Site Web https://nicolascoolman.webs.com/
~ Forums gratuits d'Assistance à la désinfection : https://nicolascoolman.webs.com/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Deactivate by program


---\\ Navigateurs Internet
MSIE: Internet Explorer v10.0.9200.16750
GCIE: Google Chrome v23.0.1271.97 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Français
Windows 7 Starter, 32-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
Software Protection Service (Protection logicielle) : KO
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection du système
Malwarebytes Anti-Malware version 1.75.0.1300
Microsoft Security Client FR-FR Language Pack v2.1.1116.0
Windows Defender W7

---\\ Logiciels d'optimisation du système

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Flash Player 11 ActiveX
Adobe Reader X

---\\ Informations sur le système
~ Processor: x86 Family 6 Model 28 Stepping 10, GenuineIntel
~ Operating System: 32 Bits
Boot mode:
Total RAM: 1011 MB (7% free)
System Restore: Activé (Enable)
System drive C: has 184 GB (65%) free of 281 GB

---\\ Mode de connexion au système
~ Computer Name: PHAAZER-HP
~ User Name: Phaazer
~ All Users Names: Phaazer, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Phaazer\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Phaazer\AppData\Roaming\
~ %Desktop% : C:\Users\Phaazer\Desktop\
~ %Favorites% : C:\Users\Phaazer\Favorites\
~ %LocalAppData% : C:\Users\Phaazer\AppData\Local\
~ %StartMenu% : C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 184 Go of 281 Go)
D: Hard drive, Flash drive, Thumb drive (Free 1 Go of 13 Go)
E: Hard drive, Flash drive, Thumb drive (Free 4 Go of 4 Go)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowNetConn: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 41 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) (.16/07/2011 - 13:30:27.) -- C:\Windows\Explorer.exe [2616320]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]
[MD5.3AA6FD9B534F17CBD5D311DDC077973C] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.25/10/2013 - 05:45:11.) -- C:\Windows\System32\wininet.dll [1767936]
[MD5.6D13E1406F50C66E2A95D97F22C47560] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.20/11/2010 - 22:29:06.) -- C:\Windows\System32\Winlogon.exe [286720]
[MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 22:29:24.) -- C:\Windows\System32\sppcomapi.dll [193536]
[MD5.F81BB7E487EDCEAB630A7EE66CF23913] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.14/09/2013 - 01:48:58.) -- C:\Windows\system32\Drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:26:15.) -- C:\Windows\system32\Drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:11:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [70656]
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\Cdrom.sys [108544]
[MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 22:29:07.) -- C:\Windows\system32\Drivers\DfsC.sys [78336]
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:11:24.) -- C:\Windows\system32\Drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 00:54:29.) -- C:\Windows\system32\Drivers\IpNat.sys [101888]
[MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:17:22.) -- C:\Windows\system32\Drivers\MRxSmb.sys [123904]
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 22:29:08.) -- C:\Windows\system32\Drivers\netBT.sys [187904]
[MD5.5E43D2B0EE64123D4880DFA6626DEFDE] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 14:45:29.) -- C:\Windows\system32\Drivers\ntfs.sys [1211752]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 00:45:35.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.14/07/2009 - 00:54:34.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [78848]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 00:53:41.) -- C:\Windows\system32\Drivers\smb.sys [71168]
[MD5.B459575348C20E8121D6039DA063C704] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 22:29:07.) -- C:\Windows\system32\Drivers\tdx.sys [74752]
[MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\volsnap.sys [245632]
~ Generic Processes: Scanned in 00mn 02s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 4/459
Mes musiques (My Musics) : 23/23 (Modified)
~ Mes Videos (My Videos) : 1/68
~ Mes Favoris (My Favorites) : 1/11
~ Mes Documents (My Documents) : 2/767
~ Mon Bureau (My Desktop) : 2/410
~ Menu demarrer (Programs) : 1/65
~ Hidden Files: Scanned in 00mn 14s



---\\ Processus lancés
[MD5.ED6F1DE2B4DB8C87972AFAE50216EB9B] - (.Google Inc. - Google Chrome.) -- C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe [1239064] [PID.3808]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] - (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Phaazer\AppData\Local\Google\Update\GoogleUpdate.exe [116648] [PID.2800]
[MD5.AE5A69F44C1F97EDC83237FC0B29B6FB] - (.Google Inc. - Google Crash Handler.) -- C:\Users\Phaazer\AppData\Local\Google\Update\1.3.21.123\GoogleCrashHandler.exe [212432] [PID.5244]
[MD5.CA25CAEEBDBE25D85565877219F684F8] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8339968] [PID.5144]
~ Processes Running: Scanned in 00mn 01s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Phaazer\AppData\Local\Google\Chrome\User Data\Default\Preferences
G0 - GCSP: Preference [User Data\Default][HomePage] https://www.google.com/?gws_rd=ssl
G0 - GCSP: Preference [User Data\Default] https://www.google.com/?gws_rd=ssl
G1 - GCS: Preference [User Data\Default] None
G2 - GCE: Preference [User Data\Default] [bcfjehbfanfhgoehogmbiebedkidedjb] IMVU Inc v.2.3.17.1 (Désactivé)
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé)
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activé)
G2 - GCE: Preference [User Data\Default] [dhkplhfnhceodhffomolpfigojocbpcb] Babylon Toolbar v.1.14 (Désactivé) =>PUP.Babylon
G2 - GCE: Preference [User Data\Default] [eooncjejnppfjjklapaamhcdmjbilmde] Delta Toolbar v.1.3 (Désactivé) =>Toolbar.DeltaSearch
G2 - GCE: Preference [User Data\Default] [igdhbblpcellaljokkpfhcjlagemhgjl] Iminent v.5.14.1.0 (Désactivé) =>Adware.IMBooster
G2 - GCE: Preference [User Data\Default] [ipihgjdhjoldhpfpmiiimpnmohpfhkcm] Cosmopolise v.1 (Activé)
G2 - GCE: Preference [User Data\Default] [nkgfcicgjhneabbbfhddfcgifljdhhpl] Delta Toolbar v.1.4 (Désactivé) =>Toolbar.DeltaSearch
G2 - GCE: Preference [User Data\Default] [oiokahphinmbmakkehgelkmpolmnbkdh] Battlefield Play4Free v.1.0.96.0 (Activé)
G2 - GCE: Preference [User Data\Default] [pbpohikckhbcljgombipcdoinkaedlfa] Smart Display v.1.6 (Activé) =>Spyware.SmartDisplay
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé)
G2 - GCE: Preference [User Data\Default] [pxpohikckhbcljgombipcdoinkaedlfa] Smart Display v.1.6 (Activé) =>Spyware.SmartDisplay
~ Google Browser: 17 Scanned in 00mn 47s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.5.9.620.) -- C:\Windows\system32\Adobe\Director\np32dsw.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (...) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (...) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (.not file.)
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20913.0.) -- c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3502.0922] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3508.1109] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3538.0513] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3555.0308] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@ngm.nexoneu.com/NxGame] - (.Nexon - Nexon Game Controller.) -- C:\ProgramData\NexonEU\NGM\npNxGameEU.dll
P2 - FPN: [HKLM] [@pandonetworks.com/PandoWebPlugin] - (...) -- C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (.not file.)
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.7] - (.VideoLAN - VLC media player Web Plugin 2.0.6.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll =>.VideoLAN
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (...) -- C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\2\NP_wtapp.dll
P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.9.) -- C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
P2 - FPN: [HKCU] [@Skype Limited.com/Facebook Video Calling Plugin] - (.Skype Limited - Facebook Video Calling Plugin.) -- C:\Users\Phaazer\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Phaazer\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Phaazer\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [facebook.com/fbDesktopPlugin] - (.Facebook, Inc. - Facebook Desktop Plugin.) -- C:\Users\Phaazer\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll
~ Firefox Browser: 19 Scanned in 00mn 01s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Facebook, Inc. - Facebook Desktop Plugin.) (No version) -- (.not file.)
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ IE Browser: 6 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:56847 =>Hijacker.Proxy
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\Userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
O1 - Hosts: 54.225.95.126 nikdaiaidiiiogaidkkekcmokcgcdeac
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 23



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (...) -- C:\Program Files\Java\jre6\bin\ssv.dll (.not file.)
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} . (.Atheros Commnucations - Bluetooth IE PlugIn.) -- C:\Program Files\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (...) -- "C:\Program Files\Microsoft\BingBar\BingExt.dll" (.not file.) =>Toolbar.Bing
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (...) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll (.not file.)
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.Hewlett-Packard - HP Network Check IE Plug-in.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O2 - BHO: Discount Dragon BHO - {EA34C851-D481-49F5-A356-3A8B0A8F3B7E} . (.Pas de propriétaire - FrameworkBHO.) -- C:\Program Files\Discount Dragon\FrameworkBHO.dll =>PUP.DiscountDragon
~ BHO: 14 Scanned in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Bing Bar - [HKLM]{8dcb7100-df86-4384-8842-8fa844297b3f} . (.Microsoft Corporation. - Extensions du client Bing.) -- C:\Program Files\Microsoft\BingBar\BingExt.dll =>Toolbar.Bing
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Clé orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{90B49673-5506-483E-B92B-CA0265BD9CA8} Clé orpheline
~ Toolbar: Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: Adobe Reader X.lnk . (.Adobe Systems Incorporated - Adobe Reader.) -- C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe
O4 - GS\Desktop [Public]: Aeria Ignite.lnk . (.Aeria Games & Entertainment - Aeria Ignite.) -- C:\Program Files\Aeria Games\Ignite\aeriaignite.exe
O4 - GS\Desktop [Public]: HP Camera.lnk . (.ArcSoft Inc. - Camera.) -- C:\Program Files\Hewlett-Packard\Camera\HPCamera.exe
O4 - GS\Desktop [Public]: HP Support Assistant.lnk . (.Hewlett-Packard Company - HP Support Assistant.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe =>.Hewlett-Packard Co
O4 - GS\Desktop [Public]: iTunes.lnk . (.Apple Inc. - iTunes.) -- C:\Program Files\iTunes\iTunes.exe
O4 - GS\Desktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
O4 - GS\Desktop [Public]: QuickTime Player.lnk . (.Apple Inc. - QuickTime Player.) -- C:\Program Files\QuickTime\QuickTimePlayer.exe =>.Apple Inc
O4 - GS\Desktop [Public]: Snapfish.lnk . (...) -- C:\Program Files\Hewlett-Packard\Shared\WizLink.exe
O4 - GS\Desktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player 2.0.7.) -- C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN
O4 - GS\Desktop [Public]: WildTangent Games App - hp.lnk . (...) -- C:\Program Files\HP Games\onplay\onplay.exe
O4 - GS\Program [Public]: Adobe Reader X.lnk . (...) -- C:\Windows\Installer\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}\SC_Reader.ico
O4 - GS\Program [Public]: Apple Software Update.lnk . (...) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc
O4 - GS\Program [Public]: Microsoft Office 2010.lnk . (...) -- C:\Windows\Installer\{95140000-0070-0000-0000-0000000FF1CE}\oobeicon.exe
O4 - GS\Program [Public]: Microsoft Security Essentials.lnk . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe
O4 - GS\Program [Public]: MusicStation.lnk . (.Omnifone Ltd - MusicStation (TM).) -- C:\Program Files\MusicStation\MusicStation.exe
O4 - GS\Program [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) -- C:\Windows\system32\WindowsAnytimeUpgradeUI.exe
O4 - GS\Program [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Live Mail.lnk . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\wlmail.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Live Messenger.lnk . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - GS\Program [Public]: Windows Live Movie Maker.lnk . (.Microsoft Corporation - Windows Live Movie Maker.) -- C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Live Photo Gallery.lnk . (.Microsoft Corporation - Windows Live Photo Gallery.) -- C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) -- C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Mise en route.) -- C:\Windows\system32\OobeFldr.dll =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) -- C:\Windows\system32\perfmon.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) -- C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\system32\taskschd.msc
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) -- C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) -- C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\QuickLaunch [Phaazer]: DJ PRO X 2012.lnk . (...) -- C:\DJProX\Djprox.exe (.not file.)
O4 - GS\TaskBar [Phaazer]: AuraKingdom-FR.lnk . (.Aeria Games & Entertainment - Ignite Launcher.) -- C:\AeriaGames\AuraKingdom-FR\aeria_launcher.exe
O4 - GS\TaskBar [Phaazer]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe
O4 - GS\TaskBar [Phaazer]: Grand Fantasia.lnk . (.X-Legend Entertaimment - GrandFantasia UpgradeClient FR.) -- C:\AeriaGames\GrandFantasia-FR\Launcher.exe
O4 - GS\TaskBar [Phaazer]: hpDST.lnk . (.Hewlett-Packard Company - Setup Manager.) -- C:\Program Files\Hewlett-Packard\Setup Manager\hpDST.exe
O4 - GS\TaskBar [Phaazer]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Phaazer]: Windows Live Movie Maker.lnk . (.Microsoft Corporation - Windows Live Movie Maker.) -- C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Phaazer]: Windows Live Photo Gallery.lnk . (.Microsoft Corporation - Windows Live Photo Gallery.) -- C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation
O4 - GS\Accessories [Phaazer]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Phaazer]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Phaazer]: Run.lnk - Clé orpheline
O4 - GS\Accessories [Phaazer]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Phaazer]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\SendTo [Phaazer]: Evernote.lnk . (.Evernote Corp., 333 W Evelyn Ave. Mountain - Evernote.) -- C:\Program Files\Evernote\Evernote\Evernote.exe
O4 - GS\SendTo [Phaazer]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - GS\Desktop [Phaazer]: AuraKingdom-FR.lnk . (.Aeria Games & Entertainment - Ignite Launcher.) -- C:\AeriaGames\AuraKingdom-FR\aeria_launcher.exe
O4 - GS\Desktop [Phaazer]: Evernote.lnk . (...) -- C:\Windows\Installer\{F761359C-9CED-45AE-9A51-9D6605CD55C4}\Evernote.ico
O4 - GS\Desktop [Phaazer]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Phaazer]: Grand Fantasia.lnk . (.X-Legend Entertaimment - GrandFantasia UpgradeClient FR.) -- C:\AeriaGames\GrandFantasia-FR\Launcher.exe
O4 - GS\Desktop [Phaazer]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\Desktop [Phaazer]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman
~ Global Startup: 63 Scanned in 00mn 04s



---\\ Applications lancées au démarrage du sytème (O4)
O4 - GS\Startup [Phaazer]: Facebook Messenger.lnk . (.Facebook - Facebook Messenger.) -- C:\Users\Phaazer\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [AtherosBtStack] . (.Atheros Communications - Serveur Stack Bluetooth.) -- C:\Program Files\Bluetooth Suite\BtvStack.exe
O4 - HKLM\..\Run: [AthBtTray] . (.Atheros Commnucations - Bluetooth Suite Common Rescource.) -- C:\Program Files\Bluetooth Suite\AthBtTray.exe
O4 - HKLM\..\Run: [HPQuickWebProxy] . (.Hewlett-Packard Company - HP QuickWeb Utilities.) -- C:\Program Files\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
O4 - HKLM\..\Run: [HPConnectionManager] . (.Hewlett-Packard Development Company L.P. - HPCMDelayStart Application.) -- C:\Program Files\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- c:\Program Files\Microsoft Security Client\msseces.exe
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [HP Quick Launch] . (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [HPOSD] . (.Hewlett-Packard Development Company, L.P. - HP On Screen Display.) -- C:\Program Files\Hewlett-Packard\HP On Screen Display\HPOSD.exe
O4 - HKLM\..\Run: [Aeria Ignite] . (.Aeria Games & Entertainment - Aeria Ignite.) -- C:\Program Files\Aeria Games\Ignite\aeriaignite.exe
O4 - HKLM\..\Run: [tuto4pc_fr_86] Clé orpheline =>PUP.Eorezo
O4 - HKLM\..\Run: [tuto4pc_fr_85] Clé orpheline =>PUP.Eorezo
O4 - HKLM\..\Run: [tuto4pc_fr_41] Clé orpheline =>PUP.Eorezo
O4 - HKLM\..\Run: [tuto4pc_fr_52] Clé orpheline =>PUP.Eorezo
O4 - HKLM\..\Run: [tuto4pc_fr_69] Clé orpheline =>PUP.Eorezo
O4 - HKLM\..\Run: [tuto4pc_fr_80] Clé orpheline =>PUP.Eorezo
O4 - HKLM\..\RunOnce: [NCPluginUpdater] . (.Hewlett-Packard - NCPluginUpdater.) -- C:\Program Files\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Phaazer\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\Phaazer\AppData\Local\Facebook\Update\FacebookUpdate.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKCU\..\Run: [KPeerNexonEU] . (.NEXON Inc. - Pas de description.) -- C:\Nexon\NEXON_EU_Downloader\nxEULauncher.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] C:\Users\Phaazer\AppData\Local\Akamai\netsession_win.exe (.not file.)
O4 - HKCU\..\RunOnce: [Report] . (...) -- C:\AdwCleaner\AdwCleaner[S3].txt
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Phaazer\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc
O4 - HKUS\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\Phaazer\AppData\Local\Facebook\Update\FacebookUpdate.exe
O4 - HKUS\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKUS\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run: [KPeerNexonEU] . (.NEXON Inc. - Pas de description.) -- C:\Nexon\NEXON_EU_Downloader\nxEULauncher.exe
O4 - HKUS\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run: [Akamai NetSession Interface] C:\Users\Phaazer\AppData\Local\Akamai\netsession_win.exe (.not file.)
O4 - HKUS\S-1-5-21-2550636160-3718483610-2762821818-1000\..\RunOnce: [Report] . (...) -- C:\AdwCleaner\AdwCleaner[S3].txt
~ Application: Scanned in 00mn 01s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} . (...) -- C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\Resources\Icons\HP.ico
O9 - Extra button: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} -- Clé orpheline
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- C:\Program Files\Skype\Toolbars\Internet Explorer\icon.ico
O9 - Extra button: @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} . (.Evernote Corp., 333 W Evelyn Ave. Mountain - Evernote Clipper for Microsoft Internet Explorer.) -- C:\Program Files\Evernote\Evernote\EvernoteIE.dll
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll
O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation
O10 - WLSP:\000000000010\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation
~ Winsock: 10 Scanned in 00mn 00s



---\\ Site dans la Zone de confiance d'Internet Explorer (O15)
O15 - Trusted Zone: [HKCU\...\Domains] http.aeriagames.com
~ IE Zone Confiance: Scanned in 00mn 00s



---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} ((no name)) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
~ Objets ActiveX: Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{147AC4D5-DAE0-43BA-97F5-6D15E6E6FD87}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{BE0E7610-94D1-450B-9FA1-87A1FF23567B}: DhcpNameServer = 40.23.1.201 40.23.1.202
O17 - HKLM\System\CCS\Services\Tcpip\..\{BE0E7610-94D1-450B-9FA1-87A1FF23567B}: DhcpDomain = D1-Line.COM
O17 - HKLM\System\CS1\Services\Tcpip\..\{147AC4D5-DAE0-43BA-97F5-6D15E6E6FD87}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{BE0E7610-94D1-450B-9FA1-87A1FF23567B}: DhcpNameServer = 40.23.1.201 40.23.1.202
O17 - HKLM\System\CS1\Services\Tcpip\..\{BE0E7610-94D1-450B-9FA1-87A1FF23567B}: DhcpDomain = D1-Line.COM
O17 - HKLM\System\CS2\Services\Tcpip\..\{147AC4D5-DAE0-43BA-97F5-6D15E6E6FD87}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{BE0E7610-94D1-450B-9FA1-87A1FF23567B}: DhcpNameServer = 40.23.1.201 40.23.1.202
O17 - HKLM\System\CS2\Services\Tcpip\..\{BE0E7610-94D1-450B-9FA1-87A1FF23567B}: DhcpDomain = D1-Line.COM
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) - C:\Program Files\IDT\WDM\aestsrv.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Atheros Bt&Wlan Coex Agent (Atheros Bt&Wlan Coex Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: AtherosSvc (AtherosSvc) . (.Atheros Commnucations - AdminService Application.) - C:\Program Files\Bluetooth Suite\adminservice.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios - HiPatchService.) - C:\AeriaGames\TribesAscendFR\HiPatchService.exe
O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files\Hewlett-Packard\HP Support Framework\hpsa_service.exe =>.Hewlett-Packard Co
O23 - Service: HP Client Services (HPClientSvc) . (.Hewlett-Packard Company - HP Client Services.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) . (.Hewlett-Packard Company - HP Quick Synchronization Service.) - C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P. - HP Quick Launch WMI Service.) - C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: C:\Windows\System32\stlang.dll (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\STacSV.exe
~ Services: 15 Scanned in 00mn 11s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000Core.job [1082]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000UA.job [1104]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1054]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1058]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000Core.job [1034]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000UA.job [1086]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForPHAAZER-HP$.job [336]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForPhaazer.job [328]
[MD5.9EB925EDC8CF1C3D06E50E9348B54A0A] [APT] [FacebookUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000Core] (.Facebook Inc..) -- C:\Users\Phaazer\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096]
[MD5.9EB925EDC8CF1C3D06E50E9348B54A0A] [APT] [FacebookUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000UA] (.Facebook Inc..) -- C:\Users\Phaazer\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000Core] (.Google Inc..) -- C:\Users\Phaazer\AppData\Local\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000UA] (.Google Inc..) -- C:\Users\Phaazer\AppData\Local\Google\Update\GoogleUpdate.exe [116648]
[MD5.AF51D4FE088A3EFA5303B36FFFD0581B] [APT] [HPCeeScheduleForPhaazer] (.Hewlett-Packard.) -- C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe [91704]
[MD5.AF51D4FE088A3EFA5303B36FFFD0581B] [APT] [HPCeeScheduleForPHAAZER-HP$] (.Hewlett-Packard.) -- C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe [91704]
[MD5.00000000000000000000000000000000] [APT] [{9D3ED051-C82A-4C85-B7C6-AE421BCEC0D8}] (...) -- C:\Users\Phaazer\Downloads\PSPP12_Corel_TBYB_EN_IE_FR_DE_ES_IT_NL_ESD.exe (.not file.) [0]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984]
[MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [HP Support Assistant Quick Start] (.Hewlett-Packard Company.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [525728]
[MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [525728]
[MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [PC Health Analysis Install] (.Hewlett-Packard Company.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [525728]
[MD5.F89A2101EFFAC2406AAE955502DFC4E6] [APT] [Update Check] (.Hewlett-Packard Company.) -- C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [631608]
[MD5.8B7BD1549EFFA31245CA0EEB38AA869E] [APT] [WarrantyChecker] (.Hewlett-Packard.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1586392]
[MD5.8B7BD1549EFFA31245CA0EEB38AA869E] [APT] [WarrantyChecker_DeviceScan] (.Hewlett-Packard.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1586392]
[MD5.00000000000000000000000000000000] [APT] [Norton Error Analyzer 18.7.2.3] (...) -- C:\Program Files\Norton Internet Security\Engine\18.7.2.3\SymErr.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [Norton Error Processor 18.7.2.3] (...) -- C:\Program Files\Norton Internet Security\Engine\18.7.2.3\SymErr.exe (.not file.) [0]
~ Scheduled Task: 27 Scanned in 00mn 13s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (...) -- C:\Program Files\Java\jre6\bin\regutils.dll
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Internet Explorer - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Active Setup: 11 Scanned in 00mn 00s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\drivers\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (lrpilerb) . (. - .) - C:\Windows\system32\drivers\lrpilerb.sys (.not file.)
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Drivers: 63 Scanned in 00mn 02s



---\\ Logiciels installés (O42)
O42 - Logiciel: ASIO4ALL - (...) [HKLM] -- ASIO4ALL
O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Reader X (10.1.9) MUI - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001}
O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
O42 - Logiciel: Aeria Ignite - (.Aeria Games & Entertainment.) [HKLM] -- Aeria Ignite 1.13.3296
O42 - Logiciel: Aeria Ignite - (.Aeria Games & Entertainment.) [HKLM] -- {22A72F06-FA80-42CB-9A8C-46C6AE53425C}
O42 - Logiciel: Aion (North America) - (.NCsoft.) [HKCU] -- NCsoft-Aion
O42 - Logiciel: Aion - (.NCsoft.) [HKCU] -- NCsoft-AionEU
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {5D09C772-ECB3-442B-9CC6-B4341C78FDC2}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {E14ADE0E-75F3-4A46-87E5-26692DD626EC}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc
O42 - Logiciel: Application Profiles - (.Advanced Micro Devices, Inc..) [HKLM] -- {EBBE64F6-7E23-5857-891F-045560AECC7F}
O42 - Logiciel: ArtRage 2 Starter Edition - (.Ambient Design.) [HKLM] -- {0C75B278-2EE9-4C08-8DEE-1ABAD005F193}
O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7}
O42 - Logiciel: AuraKingdom-FR - (...) [HKLM] -- AuraKingdom-FR
O42 - Logiciel: Bandisoft MPEG-1 Decoder - (...) [HKLM] -- BandiMPEG1
O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM] -- WT089453
O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM] -- {1E03DB52-D5CB-4338-A338-E526DD4D4DB1} =>Toolbar.Bing
O42 - Logiciel: Blasterball 3 - (.WildTangent.) [HKLM] -- WT089308
O42 - Logiciel: Bluetooth Win7 Suite - (.Atheros Communications.) [HKLM] -- {101A497C-7EF6-4001-834D-E5FA1C70FEFA}
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B}
O42 - Logiciel: Bounce Symphony - (.WildTangent.) [HKLM] -- WT087330
O42 - Logiciel: Boxore Client - (.Boxore OU.) [HKLM] -- {903CFFD8-85BF-4A51-8A6D-4BBBCA346A6E} =>Adware.Boxore
O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM] -- WT089454
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9}
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {51C7AD07-C3F6-4635-8E8A-231306D810FE}
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {ED5776D5-59B4-46B7-AF81-5F2D94D7C640}
O42 - Logiciel: City of Heroes (US) - (.NCsoft.) [HKCU] -- NCsoft-CityOfHeroes
O42 - Logiciel: Collab - (.Image-Line bvba.) [HKLM] -- Collab
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Diner Dash 2 Restaurant Rescue - (.WildTangent.) [HKLM] -- WT087536
O42 - Logiciel: Discount Dragon - (.Smart Apps.) [HKLM] -- Discount Dragon =>PUP.DiscountDragon
O42 - Logiciel: Dj Mixer Studio - (.Aedge Performance BCN SL.) [HKLM] -- {9F8DDA54-E98B-4067-A0D8-FB37068964D8}
O42 - Logiciel: Dream Chronicles - (.WildTangent.) [HKLM] -- WT087467
O42 - Logiciel: ESU for Microsoft Windows 7 - (.Hewlett-Packard.) [HKLM] -- {3877C901-7B90-4727-A639-B6ED2DD59D43}
O42 - Logiciel: Energy Star Digital Logo - (.Hewlett-Packard.) [HKLM] -- {BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}
O42 - Logiciel: Evernote v. 4.2.2 - (.Evernote Corp..) [HKLM] -- {F761359C-9CED-45AE-9A51-9D6605CD55C4}
O42 - Logiciel: FATE - (.WildTangent.) [HKLM] -- WT087361
O42 - Logiciel: Facebook Messenger 2.1.4814.0 - (.Facebook.) [HKLM] -- {7204BDEE-1A48-4D95-A964-44A9250B439E}
O42 - Logiciel: Facebook Video Calling 2.0.0.447 - (.Skype Limited.) [HKLM] -- {8DF41A9F-FE13-43E8-A003-5F9B55A011EE}
O42 - Logiciel: Farm Frenzy - (.WildTangent.) [HKLM] -- WT089328
O42 - Logiciel: Fishdom - (.WildTangent.) [HKLM] -- WT089493
O42 - Logiciel: FlowStone FL 3.0 - (...) [HKLM] -- FlowStone
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome
O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM] -- {989FB5FD-9B00-4B32-8663-849CB1370DD1}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Grand Fantasia - (...) [HKLM] -- Grand Fantasia
O42 - Logiciel: HP Auto - (.Hewlett-Packard Company.) [HKLM] -- {CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}
O42 - Logiciel: HP Camera - (.ArcSoft.) [HKLM] -- {CD63F5EF-A0DC-4E5E-8200-E5703531D649}
O42 - Logiciel: HP Client Services - (.Hewlett-Packard.) [HKLM] -- {2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2}
O42 - Logiciel: HP Connection Manager - (.Hewlett-Packard Company.) [HKLM] -- {795AADBF-58C2-42D0-B779-E730702A247E}
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM] -- {07FA4960-B038-49EB-891B-9F95930AA544}
O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM] -- {D4736E41-9A74-4000-BF3E-401812E5B395}
O42 - Logiciel: HP Games - (.WildTangent.) [HKLM] -- WildTangent hp Master Uninstall
O42 - Logiciel: HP On Screen Display - (.Hewlett-Packard Company.) [HKLM] -- {ED1BD69A-07E3-418C-91F1-D856582581BF}
O42 - Logiciel: HP Power Manager - (.Hewlett-Packard Company.) [HKLM] -- {D8BCE5B9-67CF-4F3F-93AE-3ACC754C72EB}
O42 - Logiciel: HP Quick Launch - (.Hewlett-Packard Company.) [HKLM] -- {53B17A98-5BF0-40BC-AAFF-850A357975AC}
O42 - Logiciel: HP QuickWeb - (.Hewlett-Packard Company.) [HKLM] -- {ADE91712-EDDE-4262-9EC2-691BAADA55D1}
O42 - Logiciel: HP Setup - (.Hewlett-Packard Company.) [HKLM] -- {210A03F5-B2ED-4947-B27E-516F50CBB292}
O42 - Logiciel: HP Setup Manager - (.Hewlett-Packard Company.) [HKLM] -- {AE856388-AFAD-4753-81DF-D96B19D0A17C}
O42 - Logiciel: HP Software Framework - (.Hewlett-Packard Company.) [HKLM] -- {43C16A75-0C20-493E-B882-A63B35E2FED7}
O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM] -- {EE202411-2C26-49E8-9784-1BC1DBF7DE96} =>.Hewlett-Packard Co
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.1.1 - (.Hewlett-Packard Company.) [HKLM] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F}
O42 - Logiciel: IDT Audio - (.IDT.) [HKLM] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}
O42 - Logiciel: IL Download Manager - (.Image-Line.) [HKLM] -- IL Download Manager
O42 - Logiciel: IL Shared Libraries - (.Image-Line.) [HKLM] -- IL Shared Libraries
O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM] -- WT087480
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421}
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}
O42 - Logiciel: Java(TM) 6 Update 30 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216024FF}
O42 - Logiciel: Jewel Quest - Heritage - (.WildTangent.) [HKLM] -- WT087374
O42 - Logiciel: Jewel Quest Solitaire - (.WildTangent.) [HKLM] -- WT087490
O42 - Logiciel: JoJo's Fashion Show - (.WildTangent.) [HKLM] -- WT087385
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: Mah Jong Medley - (.WildTangent.) [HKLM] -- WT087393
O42 - Logiciel: Mahjongg Artifacts - (.WildTangent.) [HKLM] -- WT087495
O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Manga Studio Debut 4.0 - (...) [HKLM] -- Manga Studio Debut 4.0
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {32E9C1A5-0FDA-4483-987D-DBABF9CC1DD8}
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {0CD47142-BA4F-46B0-AA92-2675864928B8}
O42 - Logiciel: Microsoft Security Client FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {50779A29-834E-4E36-BBEB-B7CABC67A825}
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: MusicStation - (.Omnifone.) [HKLM] -- {E74E7F63-E70F-43f2-873F-35FB66F263B2}
O42 - Logiciel: Namco All-Stars PAC-MAN - (.WildTangent.) [HKLM] -- WT089484
O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM] -- WT087394
O42 - Logiciel: Plants vs. Zombies - Game of the Year - (.WildTangent.) [HKLM] -- WT089458
O42 - Logiciel: PoiZone - (.Image-Line bvba.) [HKLM] -- PoiZone
O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM] -- WT087396
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {B67BAFBA-4C9F-48FA-9496-933E3B255044}
O42 - Logiciel: ReCycle Demo 2.2.1 - (.Propellerhead Software AB.) [HKLM] -- ReCycleDemo2.2_32_is1
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}
O42 - Logiciel: Recovery Manager - (.Hewlett-Packard.) [
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
29 janv. 2014 à 14:22
Le rapport SFTGC qui a été avant ZHPDiag

Rapport de SFTGC (Pierre13) du Mercredi 29 Janvier 2014 à 04:18:40 version : 2.0.0.65
Mis à jour le 22/01/2014
Outil lancé en Mode sans échec et En tant qu'administrateur
Windows 7 Starter Service Pack 1 32 bits

Tool start in C:\Users\Phaazer\Downloads

12240 éléments supprimés => 13.31 Mo libérés. (12 mn 2 s)

C:\Users\Phaazer\AppData\Local\Temp\01291937-00001450-iwjow1wdxc
C:\Users\Phaazer\AppData\Local\Temp\01301854-00001228-9ailenclfi
C:\Users\Phaazer\AppData\Local\Temp\01312019-00000d04-nmdiefpgzv
C:\Users\Phaazer\AppData\Local\Temp\02022039-00000f8c-zkeftcmb2k
C:\Users\Phaazer\AppData\Local\Temp\02031642-000017f4-5wn35930c4
C:\Users\Phaazer\AppData\Local\Temp\02032051-000017a8-7zd1yi8bsz
C:\Users\Phaazer\AppData\Local\Temp\02041445-000010a0-fc76hidopt
C:\Users\Phaazer\AppData\Local\Temp\02041501-00000d90-4lzrl49wmj
C:\Users\Phaazer\AppData\Local\Temp\02041501-000013ec-u4lehzzeyh
C:\Users\Phaazer\AppData\Local\Temp\02151641-000013b0-ir2flc4tc3
C:\Users\Phaazer\AppData\Local\Temp\02281747-0000177c-59wwq5f1ts
C:\Users\Phaazer\AppData\Local\Temp\04161253-00001334-feoei3zthk
C:\Users\Phaazer\AppData\Local\Temp\06301524-00002574-f2dkqd7n9d
C:\Users\Phaazer\AppData\Local\Temp\1D60.dir
C:\Users\Phaazer\AppData\Local\Temp\2684.dir
C:\Users\Phaazer\AppData\Local\Temp\AdobeARM.log
C:\Users\Phaazer\AppData\Local\Temp\AdwCleaner.jpg
C:\Users\Phaazer\AppData\Local\Temp\AION
C:\Users\Phaazer\AppData\Local\Temp\APN-Stub
C:\Users\Phaazer\AppData\Local\Temp\APNLogs
C:\Users\Phaazer\AppData\Local\Temp\ArmUI.ini
C:\Users\Phaazer\AppData\Local\Temp\bch_001d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_003b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0057.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_00e3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_00e6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_010f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0199.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_01e3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0239.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_02b9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0302.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0316.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_035c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_037f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_03bf.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_03fe.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0412.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_043d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_04c9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_04dc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_04ea.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_056b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0591.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_05dd.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_062c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_06d9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_06e4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_07ac.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0822.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_08d6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_08fa.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_094c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_09c4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0ae4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0af8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0c47.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0cd6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0d8b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0e9b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0eb3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0ee9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0f37.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_0f59.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1053.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_10aa.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1133.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_115c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_11e9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1397.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_13b9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_13cc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_14e6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_151a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_15a5.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_15bc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_164d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_16c5.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1706.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1783.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1799.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_17c2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1810.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_181e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_18ed.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_194e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1972.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1a3e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1a5f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1a92.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1a9c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1ab5.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1abc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1ae0.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1b0f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1b3c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1b68.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1b77.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1b91.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1bf1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1c79.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1cad.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1d15.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1d83.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1e54.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1e97.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1f31.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1f39.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_1faa.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2058.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_20a5.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2173.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2174.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_217f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2189.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_21cd.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_22ed.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_237c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_239f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_23a1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_23d1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_23f2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2426.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2491.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_252b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_255a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2574.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_25e4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_25e7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_25f5.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_25fd.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2606.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2614.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2622.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2625.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2629.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2630.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2676.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_267f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_26a9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_271f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2734.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_273c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_277d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2855.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2967.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_29ca.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_29ed.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2a40.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2a45.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2a4a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2ab0.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2afe.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2b01.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2b27.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2b96.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2b9b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2c7a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2dcb.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2dee.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2e38.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2e3d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_2e41.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3016.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_303d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3063.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_30eb.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_325c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_328a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_32ea.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_337a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3383.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_33c5.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_33ca.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3534.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3557.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3570.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_357e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_366d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3693.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_36be.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_36f7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3701.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_375a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_37ac.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_37ea.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_385c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3863.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3874.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_39f1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3a16.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3a5c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3aee.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3b08.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3b58.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3b61.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3b70.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3b7e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3c5e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3c89.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3ca1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3cfb.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3d11.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3d77.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3d9e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3d9f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3da4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3ec7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3f24.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3f28.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_3f6c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_409a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_40ca.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4132.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_418f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4274.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4283.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_431b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4342.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_434e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_43af.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_43ba.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_43e0.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_442f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4467.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_452f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_458a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_459c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_45b2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4643.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4677.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_467e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4784.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_479a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_47d8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_481e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_48d6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_48ee.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_49c9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4ab9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4b0f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4b3e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4c03.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4c46.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4c52.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4d0e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4d50.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4d61.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4d8c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4e13.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_4e16.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_504e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_505b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_506e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_50c4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_515f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_51ab.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_525c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5266.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_527e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5293.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_52cb.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_52e4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5305.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5306.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_537a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5443.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5457.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_54b7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5513.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5584.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_55fd.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_562b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5657.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5673.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_568f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_56ed.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5711.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_57f1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5826.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_586a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5887.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_58b0.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_58e0.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5926.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5959.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5982.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_59db.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5a22.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5ba7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5bdc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5c1b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5c21.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5c3a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5cc3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5ced.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5e0b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5e73.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5ebb.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5ec6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5f59.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5f8e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_5f9a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6023.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_60c5.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_60d2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_60fc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6109.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6149.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_614b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6179.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_61b6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_61ba.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_61c1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_61cc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_620d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_623d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_627c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6280.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6299.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_62a1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_62e6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6305.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6389.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_63a3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_63e4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_63ff.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_648d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_64ae.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6514.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6605.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6622.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6680.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_66d7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6760.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_677f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6802.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6821.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_682a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6839.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_684f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6883.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_68aa.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_68af.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_68c1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_690d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6955.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6995.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6a4f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6a6f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6bb1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6be9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6c4a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6c8d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6ce3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6dfb.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6e7b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6e97.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6eb5.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6ed4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6f44.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_6fe8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_703b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_70fb.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7130.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7192.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7220.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7224.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7262.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7277.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7280.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7296.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_729f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_72f6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7346.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7443.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_750a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7583.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7617.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_761a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_762b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7632.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7645.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_76a0.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_773c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_77cf.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7813.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_781d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7867.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7923.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7972.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_79ed.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7a2e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7b1d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7c00.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7c30.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7d0a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7d4e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7d86.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7dc1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7e48.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7e8f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7f5f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7f9d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_7fc8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8086.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_811e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_814e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8231.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_828a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_82a4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_82af.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_82b7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8329.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8384.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8401.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_840a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_840e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_847c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_852f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8573.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_857b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8585.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_85c6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_85e9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8700.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_878e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_87d2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_884c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8883.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8885.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8896.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_88c4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_88e2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8948.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_895c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_89c1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_89ef.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8a21.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8a67.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8a69.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8ad8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8af7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8bb3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8c3f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8c6f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8d5b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8e1e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8ed5.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8f28.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_8f9d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_900e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_90ca.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_90cd.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_91b1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_91ed.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_91f7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_928f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_92b2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_937a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9397.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_939b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9411.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9488.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_94b8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_94d0.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_953f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_96b7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_96d4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_96db.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_970d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9793.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_97fe.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9800.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_981a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9856.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_987f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9887.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_98b8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_98d0.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9953.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_99c2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9a20.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9a3c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9a47.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9aa2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9ae6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9b26.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9b70.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9b85.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9b97.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9c16.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9c6c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9cdc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9d64.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9d6b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9d91.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9da4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9db2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9dbc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9dec.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9e01.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9f49.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9f54.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_9fcd.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a03c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a08f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a09e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a14e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a1de.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a23c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a341.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a3df.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a3f3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a4e9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a50a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a563.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a565.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a5d4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a5e9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a662.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a6c9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a720.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a732.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a75c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a760.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a872.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a886.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a9ad.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_a9c4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_aa09.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_aa17.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_aa48.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_aa91.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_aad0.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_abdb.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_abf4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_aedf.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_af58.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_af92.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b04d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b154.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b155.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b276.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b277.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b2d7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b2dc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b2e1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b336.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b36f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b3f1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b43f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b4a9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b4b8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b547.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b552.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b5df.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b5f2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b64e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b683.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b6d2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b725.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b7e7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b842.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b8c8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b8f7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_b9a5.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ba37.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ba85.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_babe.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bb05.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bb1d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bb3c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bb54.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bb5a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bbf0.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bbf9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bc0f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bc61.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bd0c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bd27.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bd78.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bda6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bec1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bf92.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bfbf.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_bfca.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c053.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c06b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c13b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c18b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c198.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c1bb.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c2b3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c32e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c3c2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c566.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c575.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c59a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c619.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c672.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c68a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c6a4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c6c8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c6de.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c750.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c7af.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c833.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c88e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c8a6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c96d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c977.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c990.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c9ab.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_c9d1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ca31.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_caae.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_cb1f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_cc01.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_cc38.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_cc41.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ccc3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ccdc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_cd69.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_cdb4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_cdee.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_cdf2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_cece.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_cf98.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_cffe.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d093.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d17f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d1db.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d26b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d372.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d3db.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d410.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d44a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d484.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d4dd.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d4fb.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d594.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d5bc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d5c9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d5d3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d63a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d666.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d6d6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d6f8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d7b6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d8c8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d8d9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d954.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d957.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_d97b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_db8d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dc20.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dc32.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dc3e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dc42.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dc4a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dc66.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dc7a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dcbe.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dcdd.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dd28.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ddc4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ddcf.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ddfa.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_de71.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_de84.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_de90.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dec7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dee3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_def9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_df4a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_df7d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dfac.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_dfe3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e080.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e0da.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e109.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e16c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e1fc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e20b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e218.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e2e2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e3a2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e411.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e454.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e531.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e55c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e68a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e694.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e698.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e69e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e790.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e799.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e83a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e85d.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e900.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e90b.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_e93a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ea8e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_eac9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_eaed.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_eb51.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_eb65.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ebaf.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ebc7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ebec.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ec26.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ed44.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ed69.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_edc3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ee03.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ee4f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ee5a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_eeff.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_efa6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_efb1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_efb4.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_effd.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f04f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f062.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f06c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f0a5.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f13e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f192.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f197.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f1a7.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f1d3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f27e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f2cd.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f2ed.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f2fb.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f348.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f3d2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f3de.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f480.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f521.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f537.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f59f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f5a8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f5ae.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f718.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f74f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f773.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f7d8.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f81a.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f861.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f8f9.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f982.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_f9e1.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fa49.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fa93.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fb8e.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fbbd.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fbd3.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fc5c.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fce2.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fcfb.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fd34.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fd39.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fd3f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fd5f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fdd6.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fe38.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fe3f.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fe62.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_fedc.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ff32.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ff65.tmp
C:\Users\Phaazer\AppData\Local\Temp\bch_ffeb.tmp
C:\Users\Phaazer\AppData\Local\Temp\bus1102
C:\Users\Phaazer\AppData\Local\Temp\bus1BB4
C:\Users\Phaazer\AppData\Local\Temp\bus44C
C:\Users\Phaazer\AppData\Local\Temp\bus4A71
C:\Users\Phaazer\AppData\Local\Temp\bus4CAE
C:\Users\Phaazer\AppData\Local\Temp\bus598
C:\Users\Phaazer\AppData\Local\Temp\bus5F49
C:\Users\Phaazer\AppData\Local\Temp\bus8719
C:\Users\Phaazer\AppData\Local\Temp\bus9714
C:\Users\Phaazer\AppData\Local\Temp\bus9DB1
C:\Users\Phaazer\AppData\Local\Temp\busC7BE
C:\Users\Phaazer\AppData\Local\Temp\busD51B
C:\Users\Phaazer\AppData\Local\Temp\busD69D
C:\Users\Phaazer\AppData\Local\Temp\busECD4
C:\Users\Phaazer\AppData\Local\Temp\busF408
C:\Users\Phaazer\AppData\Local\Temp\CCIS
C:\Users\Phaazer\AppData\Local\Temp\chrome_installer.log
C:\Users\Phaazer\AppData\Local\Temp\CityOfHeroesLiteInstaller
C:\Users\Phaazer\AppData\Local\Temp\Cleaning.ico
C:\Users\Phaazer\AppData\Local\Temp\Cookies
C:\Users\Phaazer\AppData\Local\Temp\CRX_75DAF8CB7768
C:\Users\Phaazer\AppData\Local\Temp\CRX_DF399A9B283A
C:\Users\Phaazer\AppData\Local\Temp\Deployment
C:\Users\Phaazer\AppData\Local\Temp\Donate.ico
C:\Users\Phaazer\AppData\Local\Temp\etilqs_0wh1WU2nrikE8fK
C:\Users\Phaazer\AppData\Local\Temp\etilqs_g8xFlSVPpFnNYT8
C:\Users\Phaazer\AppData\Local\Temp\etilqs_oTUyyo8abCGwq3Y
C:\Users\Phaazer\AppData\Local\Temp\etilqs_RgJpPi8wbxg23qe
C:\Users\Phaazer\AppData\Local\Temp\etilqs_ZUVYOvr1SkNtxk3
C:\Users\Phaazer\AppData\Local\Temp\HP Support Framework
C:\Users\Phaazer\AppData\Local\Temp\hsperfdata_Phaazer
C:\Users\Phaazer\AppData\Local\Temp\is-9O3G2.tmp
C:\Users\Phaazer\AppData\Local\Temp\is-J01M3.tmp
C:\Users\Phaazer\AppData\Local\Temp\is-LHCH3.tmp
C:\Users\Phaazer\AppData\Local\Temp\is-M1OBI.tmp
C:\Users\Phaazer\AppData\Local\Temp\is-PTG8U.tmp
C:\Users\Phaazer\AppData\Local\Temp\is-V5NJA.tmp
C:\Users\Phaazer\AppData\Local\Temp\is1668783924
C:\Users\Phaazer\AppData\Local\Temp\is42483369
C:\Users\Phaazer\AppData\Local\Temp\JRT.txt
C:\Users\Phaazer\AppData\Local\Temp\jusched.log
C:\Users\Phaazer\AppData\LocalLow\Temp\Logs
C:\Users\Phaazer\AppData\LocalLow\Sun\Java\AU
C:\Users\Phaazer\AppData\LocalLow\Sun\Java\jre1.6.0_30
C:\Users\Phaazer\AppData\LocalLow\Sun\Java\jre1.6.0_32
C:\Users\Phaazer\AppData\LocalLow\Sun\Java\jre1.6.0_33
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\desktop.ini
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\Low\desktop.ini
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\Low\History.IE5
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\Low\History.IE5\container.dat
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\Low\History.IE5\desktop.ini
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\container.dat
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\desktop.ini
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012013052020130521
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012013052120130522
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012013052220130523
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012013052320130524
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014010620140113
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014011320140120
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014012020140127
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014012720140128
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014012820140129
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014012820140129\container.dat
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014012720140128\container.dat
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014012020140127\container.dat
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014011320140120\container.dat
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014010620140113\container.dat
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012013052320130524\container.dat
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012013052220130523\container.dat
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012013052120130522\container.dat
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012013052020130521\container.dat
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\Temporary Internet Files\desktop.ini
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Sqm
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\Phaazer\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
C:\Users\Phaazer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\Phaazer\AppData\Local\GDIPFONTCACHEV1.DAT
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\(2) Anime Lovers 'AL'.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\1251884240377-558210.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\1475825_1384819095102297_1332398861_n.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\1510522_613866145353948_1583241755_n.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\1779721_680195472031065_957548062_n.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\2013_04_23_20_46_00_419.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\213.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\22.0.1229.92.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\352e3789148809be709c5101f4882440_large.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\3AA.tmp.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\50 Cent - The Lost Tape (Hosted By DJ Drama) - HotNewHipHop.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\AdwCleaner[R4].lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Affichage.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Alice Alice Alice.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Alice Alice².lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\ANGLAIS ONU.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Autre.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Autre².lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Awther.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Awther².lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Awwwwwwly Shiet.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\bitch-we-are-fabulous.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Bitch.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\By Alice 3.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\By Alice.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\By Alice².lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\c3d0981ae770f926eedf4eda7505b006.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Chamillionaire - Hands On The Wheel (Freestyle) - HotNewHipHop.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Conclusion ENG.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Conclusion FR.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CV (2).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\desktop.ini
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Disque amovible (F).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Document.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Documents.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\download.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Enough.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\exemple-cv-cvm111.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\FINISH !.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\FINISH².lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Flamers 2 (2).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Flamers 2.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Flamers_3-(DatPiff.com) (2).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Flamers_3-(DatPiff.com).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\GBoost_Bootstrap.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Gestion Presentation.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Gestion1.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Gestion².lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Gooow.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Grand Dieux....lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\HA.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\HAHA.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Histoire du siège de New Yorkeuh ENG.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Histoire du siège de New Yorkeuh FR.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\HunterxHunter 2011.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\images (1).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\images (14).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\images (18).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\images (2).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\images (20).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Images.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\imgres.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\J-Doe - Love It - HotNewHipHop.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Jahlil Beats - Legend Music - HotNewHipHop.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Joe Moses I Run Dis Hosted By Waka Flocka - HotNewHipHop.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\JRT.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\King Los - Born A King (HNHH Original) - HotNewHipHop.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Lettre de Motiv'.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Lil+Twist+-+Turn't+Up+(Ft.+Busta+Rhymes)+(iTunes+Version).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Logs.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\LUCHINI DU 19 03 2013.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Ma musique.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Major Lazer Ft. Busy Signal - Watch Out (Bumaye) [ www.MustJam.com ].lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\MangaStudioEXWinDemo.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\MBAM-log-2014-01-27 (18-07-23).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Meek Mill - Dreamchasers 2 - HotNewHipHop.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Meek Mill - Philadelphia Eagles 3 (2).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Meek Mill - Philadelphia Eagles 3.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Mes images.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Mimi.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\muGz - The Dream (Prod. by TMO) - HotNewHipHop.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Music.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Musique.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Naruto-Ramen-uzumaki-naruto-14634861-260-260.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\NETERO.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\NewStuff.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Options d'ergonomie.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Originals.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Other Social Network.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Other.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Patrick.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\pffffffffffff.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Photo maintenant.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\photo.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Pictures.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\preview (2).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Programmes.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\ragecomic.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Rapport de stage.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Rapport et logi de nettoyage.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Rapport.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Revelation !.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\RKreport[0]_DN_01252014_004236.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\RKreport[0]_D_01252014_002054.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\RKreport[0]_PR_01252014_004230.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\RKreport[0]_S_01252014_002017.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\RKreport[0]_S_01252014_004204.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Sans titre.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Saved Pictures.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Shingeki No Kyojin Great Escape - Free Mp3 Download.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Shingeki.No.Kyojin.19.VOSTFR.720p[melan].lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Shinjeki No Kyojin.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SnK_01.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SnK_02.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SnK_03.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SnK_05.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SnK_06.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SnK_07.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SnK_08.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SnK_09.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SnK_10.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SnK_12.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SnK_13.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SnK_14.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SnK_15.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Sofiaa.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Sofiaa².lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\SRH - Drive & Smoke (Prod. FrankMusik) - HotNewHipHop.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Think Like a Man (2) 720p BluRay x264 [GlowGaze.Com].lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Titans21_HD.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Tous les Panneaux de configuration.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\trd.bin.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\tumblr_lt2o1veZVd1qji5odo1.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\tumblr_lu4bsl2f731qfu4tho1_500.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\tumblr_lvwepirujK1qbjo08o1_400.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\tumblr_m4ngth58CF1qm1tylo1_500.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\téléchargement (2).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\téléchargement.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Téléchargements.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Uninstall STAR WARS The Old Republic.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\UsbFix [Clean 1] PHAAZER-HP.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\video.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\video_HD.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\WhatsNew.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\Yo Gotti - Bulletproof - HotNewHipHop.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\YTUp6X8bGkmz.128.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\ZHPDiag.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\[DB-Z.com] Dragon Ball Z Battle of Gods [720p][VOSTFR].lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\[MAX]L'ATDT22vostfr.lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\[WSO-KLF]Shingeki no Kyojin - OAV vostfr (Ilse no Techou Episode 03.5 - HQ480p).lnk
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\1b4dd67f29cb1962.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\42eea37db80677be.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\5afe4de1b92fc382.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\5d696d521de238c3.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\63d1bc4ab2ba36f9.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\74d7f43c1561fc1e.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\74ea779831912e30.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\784d74e86dbb193b.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\7e4dca80246863e3.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\83b03b46dcd30a0e.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\9645f58513b1a821.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\AZKABUZJ23LC7RSIUF97.temp
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\bd249197a6faeff2.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\d2c5e5d4fc78ba93.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\d5832d6d3353755a.customDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\1b4dd67f29cb1962.automaticDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\2b88af31b31e51e0.automaticDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\427921c092c0ab8d.automaticDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\54122ad2577d89ea.automaticDestinations-ms
C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\5cba76820e941dfe.automaticDestinations-ms
C:\Users\Phaazer
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
29 janv. 2014 à 20:31
héberge moi le rapport ZHPDiag comme indiqué.
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
29 janv. 2014 à 21:29
~ Rapport de ZHPDiag v2014.1.25.26 - Nicolas Coolman (25/01/2014)
~ Lancé par Phaazer (29/01/2014 04:28:56)
~ Adresse du Site Web https://nicolascoolman.webs.com/
~ Forums gratuits d'Assistance à la désinfection : https://nicolascoolman.webs.com/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Deactivate by program


---\\ Navigateurs Internet
MSIE: Internet Explorer v10.0.9200.16750
GCIE: Google Chrome v23.0.1271.97 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Français
Windows 7 Starter, 32-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
Software Protection Service (Protection logicielle) : KO
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection du système
Malwarebytes Anti-Malware version 1.75.0.1300
Microsoft Security Client FR-FR Language Pack v2.1.1116.0
Windows Defender W7

---\\ Logiciels d'optimisation du système

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Flash Player 11 ActiveX
Adobe Reader X

---\\ Informations sur le système
~ Processor: x86 Family 6 Model 28 Stepping 10, GenuineIntel
~ Operating System: 32 Bits
Boot mode:
Total RAM: 1011 MB (7% free)
System Restore: Activé (Enable)
System drive C: has 184 GB (65%) free of 281 GB

---\\ Mode de connexion au système
~ Computer Name: PHAAZER-HP
~ User Name: Phaazer
~ All Users Names: Phaazer, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Phaazer\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Phaazer\AppData\Roaming\
~ %Desktop% : C:\Users\Phaazer\Desktop\
~ %Favorites% : C:\Users\Phaazer\Favorites\
~ %LocalAppData% : C:\Users\Phaazer\AppData\Local\
~ %StartMenu% : C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 184 Go of 281 Go)
D: Hard drive, Flash drive, Thumb drive (Free 1 Go of 13 Go)
E: Hard drive, Flash drive, Thumb drive (Free 4 Go of 4 Go)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowNetConn: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 41 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) (.16/07/2011 - 13:30:27.) -- C:\Windows\Explorer.exe [2616320]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]
[MD5.3AA6FD9B534F17CBD5D311DDC077973C] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.25/10/2013 - 05:45:11.) -- C:\Windows\System32\wininet.dll [1767936]
[MD5.6D13E1406F50C66E2A95D97F22C47560] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.20/11/2010 - 22:29:06.) -- C:\Windows\System32\Winlogon.exe [286720]
[MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 22:29:24.) -- C:\Windows\System32\sppcomapi.dll [193536]
[MD5.F81BB7E487EDCEAB630A7EE66CF23913] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.14/09/2013 - 01:48:58.) -- C:\Windows\system32\Drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:26:15.) -- C:\Windows\system32\Drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:11:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [70656]
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\Cdrom.sys [108544]
[MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 22:29:07.) -- C:\Windows\system32\Drivers\DfsC.sys [78336]
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:11:24.) -- C:\Windows\system32\Drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 00:54:29.) -- C:\Windows\system32\Drivers\IpNat.sys [101888]
[MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:17:22.) -- C:\Windows\system32\Drivers\MRxSmb.sys [123904]
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 22:29:08.) -- C:\Windows\system32\Drivers\netBT.sys [187904]
[MD5.5E43D2B0EE64123D4880DFA6626DEFDE] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 14:45:29.) -- C:\Windows\system32\Drivers\ntfs.sys [1211752]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 00:45:35.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.14/07/2009 - 00:54:34.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [78848]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 00:53:41.) -- C:\Windows\system32\Drivers\smb.sys [71168]
[MD5.B459575348C20E8121D6039DA063C704] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 22:29:07.) -- C:\Windows\system32\Drivers\tdx.sys [74752]
[MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\volsnap.sys [245632]
~ Generic Processes: Scanned in 00mn 02s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 4/459
Mes musiques (My Musics) : 23/23 (Modified)
~ Mes Videos (My Videos) : 1/68
~ Mes Favoris (My Favorites) : 1/11
~ Mes Documents (My Documents) : 2/767
~ Mon Bureau (My Desktop) : 2/410
~ Menu demarrer (Programs) : 1/65
~ Hidden Files: Scanned in 00mn 14s



---\\ Processus lancés
[MD5.ED6F1DE2B4DB8C87972AFAE50216EB9B] - (.Google Inc. - Google Chrome.) -- C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe [1239064] [PID.3808]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] - (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Phaazer\AppData\Local\Google\Update\GoogleUpdate.exe [116648] [PID.2800]
[MD5.AE5A69F44C1F97EDC83237FC0B29B6FB] - (.Google Inc. - Google Crash Handler.) -- C:\Users\Phaazer\AppData\Local\Google\Update\1.3.21.123\GoogleCrashHandler.exe [212432] [PID.5244]
[MD5.CA25CAEEBDBE25D85565877219F684F8] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8339968] [PID.5144]
~ Processes Running: Scanned in 00mn 01s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Phaazer\AppData\Local\Google\Chrome\User Data\Default\Preferences
G0 - GCSP: Preference [User Data\Default][HomePage] https://www.google.com/?gws_rd=ssl
G0 - GCSP: Preference [User Data\Default] https://www.google.com/?gws_rd=ssl
G1 - GCS: Preference [User Data\Default] None
G2 - GCE: Preference [User Data\Default] [bcfjehbfanfhgoehogmbiebedkidedjb] IMVU Inc v.2.3.17.1 (Désactivé)
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé)
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activé)
G2 - GCE: Preference [User Data\Default] [dhkplhfnhceodhffomolpfigojocbpcb] Babylon Toolbar v.1.14 (Désactivé) =>PUP.Babylon
G2 - GCE: Preference [User Data\Default] [eooncjejnppfjjklapaamhcdmjbilmde] Delta Toolbar v.1.3 (Désactivé) =>Toolbar.DeltaSearch
G2 - GCE: Preference [User Data\Default] [igdhbblpcellaljokkpfhcjlagemhgjl] Iminent v.5.14.1.0 (Désactivé) =>Adware.IMBooster
G2 - GCE: Preference [User Data\Default] [ipihgjdhjoldhpfpmiiimpnmohpfhkcm] Cosmopolise v.1 (Activé)
G2 - GCE: Preference [User Data\Default] [nkgfcicgjhneabbbfhddfcgifljdhhpl] Delta Toolbar v.1.4 (Désactivé) =>Toolbar.DeltaSearch
G2 - GCE: Preference [User Data\Default] [oiokahphinmbmakkehgelkmpolmnbkdh] Battlefield Play4Free v.1.0.96.0 (Activé)
G2 - GCE: Preference [User Data\Default] [pbpohikckhbcljgombipcdoinkaedlfa] Smart Display v.1.6 (Activé) =>Spyware.SmartDisplay
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé)
G2 - GCE: Preference [User Data\Default] [pxpohikckhbcljgombipcdoinkaedlfa] Smart Display v.1.6 (Activé) =>Spyware.SmartDisplay
~ Google Browser: 17 Scanned in 00mn 47s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.5.9.620.) -- C:\Windows\system32\Adobe\Director\np32dsw.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (...) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (...) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (.not file.)
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20913.0.) -- c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3502.0922] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3508.1109] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3538.0513] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3555.0308] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@ngm.nexoneu.com/NxGame] - (.Nexon - Nexon Game Controller.) -- C:\ProgramData\NexonEU\NGM\npNxGameEU.dll
P2 - FPN: [HKLM] [@pandonetworks.com/PandoWebPlugin] - (...) -- C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (.not file.)
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.7] - (.VideoLAN - VLC media player Web Plugin 2.0.6.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll =>.VideoLAN
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (...) -- C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\2\NP_wtapp.dll
P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.9.) -- C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
P2 - FPN: [HKCU] [@Skype Limited.com/Facebook Video Calling Plugin] - (.Skype Limited - Facebook Video Calling Plugin.) -- C:\Users\Phaazer\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Phaazer\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Phaazer\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [facebook.com/fbDesktopPlugin] - (.Facebook, Inc. - Facebook Desktop Plugin.) -- C:\Users\Phaazer\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll
~ Firefox Browser: 19 Scanned in 00mn 01s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Facebook, Inc. - Facebook Desktop Plugin.) (No version) -- (.not file.)
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ IE Browser: 6 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:56847 =>Hijacker.Proxy
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\Userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
O1 - Hosts: 54.225.95.126 nikdaiaidiiiogaidkkekcmokcgcdeac
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 23



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (...) -- C:\Program Files\Java\jre6\bin\ssv.dll (.not file.)
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} . (.Atheros Commnucations - Bluetooth IE PlugIn.) -- C:\Program Files\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (...) -- "C:\Program Files\Microsoft\BingBar\BingExt.dll" (.not file.) =>Toolbar.Bing
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (...) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll (.not file.)
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.Hewlett-Packard - HP Network Check IE Plug-in.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O2 - BHO: Discount Dragon BHO - {EA34C851-D481-49F5-A356-3A8B0A8F3B7E} . (.Pas de propriétaire - FrameworkBHO.) -- C:\Program Files\Discount Dragon\FrameworkBHO.dll =>PUP.DiscountDragon
~ BHO: 14 Scanned in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Bing Bar - [HKLM]{8dcb7100-df86-4384-8842-8fa844297b3f} . (.Microsoft Corporation. - Extensions du client Bing.) -- C:\Program Files\Microsoft\BingBar\BingExt.dll =>Toolbar.Bing
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Clé orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{90B49673-5506-483E-B92B-CA0265BD9CA8} Clé orpheline
~ Toolbar: Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: Adobe Reader X.lnk . (.Adobe Systems Incorporated - Adobe Reader.) -- C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe
O4 - GS\Desktop [Public]: Aeria Ignite.lnk . (.Aeria Games & Entertainment - Aeria Ignite.) -- C:\Program Files\Aeria Games\Ignite\aeriaignite.exe
O4 - GS\Desktop [Public]: HP Camera.lnk . (.ArcSoft Inc. - Camera.) -- C:\Program Files\Hewlett-Packard\Camera\HPCamera.exe
O4 - GS\Desktop [Public]: HP Support Assistant.lnk . (.Hewlett-Packard Company - HP Support Assistant.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe =>.Hewlett-Packard Co
O4 - GS\Desktop [Public]: iTunes.lnk . (.Apple Inc. - iTunes.) -- C:\Program Files\iTunes\iTunes.exe
O4 - GS\Desktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
O4 - GS\Desktop [Public]: QuickTime Player.lnk . (.Apple Inc. - QuickTime Player.) -- C:\Program Files\QuickTime\QuickTimePlayer.exe =>.Apple Inc
O4 - GS\Desktop [Public]: Snapfish.lnk . (...) -- C:\Program Files\Hewlett-Packard\Shared\WizLink.exe
O4 - GS\Desktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player 2.0.7.) -- C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN
O4 - GS\Desktop [Public]: WildTangent Games App - hp.lnk . (...) -- C:\Program Files\HP Games\onplay\onplay.exe
O4 - GS\Program [Public]: Adobe Reader X.lnk . (...) -- C:\Windows\Installer\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}\SC_Reader.ico
O4 - GS\Program [Public]: Apple Software Update.lnk . (...) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc
O4 - GS\Program [Public]: Microsoft Office 2010.lnk . (...) -- C:\Windows\Installer\{95140000-0070-0000-0000-0000000FF1CE}\oobeicon.exe
O4 - GS\Program [Public]: Microsoft Security Essentials.lnk . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe
O4 - GS\Program [Public]: MusicStation.lnk . (.Omnifone Ltd - MusicStation (TM).) -- C:\Program Files\MusicStation\MusicStation.exe
O4 - GS\Program [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) -- C:\Windows\system32\WindowsAnytimeUpgradeUI.exe
O4 - GS\Program [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Live Mail.lnk . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\wlmail.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Live Messenger.lnk . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - GS\Program [Public]: Windows Live Movie Maker.lnk . (.Microsoft Corporation - Windows Live Movie Maker.) -- C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Live Photo Gallery.lnk . (.Microsoft Corporation - Windows Live Photo Gallery.) -- C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) -- C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Mise en route.) -- C:\Windows\system32\OobeFldr.dll =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) -- C:\Windows\system32\perfmon.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) -- C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\system32\taskschd.msc
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) -- C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) -- C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\QuickLaunch [Phaazer]: DJ PRO X 2012.lnk . (...) -- C:\DJProX\Djprox.exe (.not file.)
O4 - GS\TaskBar [Phaazer]: AuraKingdom-FR.lnk . (.Aeria Games & Entertainment - Ignite Launcher.) -- C:\AeriaGames\AuraKingdom-FR\aeria_launcher.exe
O4 - GS\TaskBar [Phaazer]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\old_chrome.exe
O4 - GS\TaskBar [Phaazer]: Grand Fantasia.lnk . (.X-Legend Entertaimment - GrandFantasia UpgradeClient FR.) -- C:\AeriaGames\GrandFantasia-FR\Launcher.exe
O4 - GS\TaskBar [Phaazer]: hpDST.lnk . (.Hewlett-Packard Company - Setup Manager.) -- C:\Program Files\Hewlett-Packard\Setup Manager\hpDST.exe
O4 - GS\TaskBar [Phaazer]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Phaazer]: Windows Live Movie Maker.lnk . (.Microsoft Corporation - Windows Live Movie Maker.) -- C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Phaazer]: Windows Live Photo Gallery.lnk . (.Microsoft Corporation - Windows Live Photo Gallery.) -- C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation
O4 - GS\Accessories [Phaazer]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Phaazer]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Phaazer]: Run.lnk - Clé orpheline
O4 - GS\Accessories [Phaazer]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Phaazer]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\SendTo [Phaazer]: Evernote.lnk . (.Evernote Corp., 333 W Evelyn Ave. Mountain - Evernote.) -- C:\Program Files\Evernote\Evernote\Evernote.exe
O4 - GS\SendTo [Phaazer]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - GS\Desktop [Phaazer]: AuraKingdom-FR.lnk . (.Aeria Games & Entertainment - Ignite Launcher.) -- C:\AeriaGames\AuraKingdom-FR\aeria_launcher.exe
O4 - GS\Desktop [Phaazer]: Evernote.lnk . (...) -- C:\Windows\Installer\{F761359C-9CED-45AE-9A51-9D6605CD55C4}\Evernote.ico
O4 - GS\Desktop [Phaazer]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Users\Phaazer\AppData\Local\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Phaazer]: Grand Fantasia.lnk . (.X-Legend Entertaimment - GrandFantasia UpgradeClient FR.) -- C:\AeriaGames\GrandFantasia-FR\Launcher.exe
O4 - GS\Desktop [Phaazer]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\Desktop [Phaazer]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman
~ Global Startup: 63 Scanned in 00mn 04s



---\\ Applications lancées au démarrage du sytème (O4)
O4 - GS\Startup [Phaazer]: Facebook Messenger.lnk . (.Facebook - Facebook Messenger.) -- C:\Users\Phaazer\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [AtherosBtStack] . (.Atheros Communications - Serveur Stack Bluetooth.) -- C:\Program Files\Bluetooth Suite\BtvStack.exe
O4 - HKLM\..\Run: [AthBtTray] . (.Atheros Commnucations - Bluetooth Suite Common Rescource.) -- C:\Program Files\Bluetooth Suite\AthBtTray.exe
O4 - HKLM\..\Run: [HPQuickWebProxy] . (.Hewlett-Packard Company - HP QuickWeb Utilities.) -- C:\Program Files\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
O4 - HKLM\..\Run: [HPConnectionManager] . (.Hewlett-Packard Development Company L.P. - HPCMDelayStart Application.) -- C:\Program Files\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- c:\Program Files\Microsoft Security Client\msseces.exe
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [HP Quick Launch] . (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [HPOSD] . (.Hewlett-Packard Development Company, L.P. - HP On Screen Display.) -- C:\Program Files\Hewlett-Packard\HP On Screen Display\HPOSD.exe
O4 - HKLM\..\Run: [Aeria Ignite] . (.Aeria Games & Entertainment - Aeria Ignite.) -- C:\Program Files\Aeria Games\Ignite\aeriaignite.exe
O4 - HKLM\..\Run: [tuto4pc_fr_86] Clé orpheline =>PUP.Eorezo
O4 - HKLM\..\Run: [tuto4pc_fr_85] Clé orpheline =>PUP.Eorezo
O4 - HKLM\..\Run: [tuto4pc_fr_41] Clé orpheline =>PUP.Eorezo
O4 - HKLM\..\Run: [tuto4pc_fr_52] Clé orpheline =>PUP.Eorezo
O4 - HKLM\..\Run: [tuto4pc_fr_69] Clé orpheline =>PUP.Eorezo
O4 - HKLM\..\Run: [tuto4pc_fr_80] Clé orpheline =>PUP.Eorezo
O4 - HKLM\..\RunOnce: [NCPluginUpdater] . (.Hewlett-Packard - NCPluginUpdater.) -- C:\Program Files\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Phaazer\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\Phaazer\AppData\Local\Facebook\Update\FacebookUpdate.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKCU\..\Run: [KPeerNexonEU] . (.NEXON Inc. - Pas de description.) -- C:\Nexon\NEXON_EU_Downloader\nxEULauncher.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] C:\Users\Phaazer\AppData\Local\Akamai\netsession_win.exe (.not file.)
O4 - HKCU\..\RunOnce: [Report] . (...) -- C:\AdwCleaner\AdwCleaner[S3].txt
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Phaazer\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc
O4 - HKUS\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\Phaazer\AppData\Local\Facebook\Update\FacebookUpdate.exe
O4 - HKUS\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKUS\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run: [KPeerNexonEU] . (.NEXON Inc. - Pas de description.) -- C:\Nexon\NEXON_EU_Downloader\nxEULauncher.exe
O4 - HKUS\S-1-5-21-2550636160-3718483610-2762821818-1000\..\Run: [Akamai NetSession Interface] C:\Users\Phaazer\AppData\Local\Akamai\netsession_win.exe (.not file.)
O4 - HKUS\S-1-5-21-2550636160-3718483610-2762821818-1000\..\RunOnce: [Report] . (...) -- C:\AdwCleaner\AdwCleaner[S3].txt
~ Application: Scanned in 00mn 01s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} . (...) -- C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\Resources\Icons\HP.ico
O9 - Extra button: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} -- Clé orpheline
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- C:\Program Files\Skype\Toolbars\Internet Explorer\icon.ico
O9 - Extra button: @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} . (.Evernote Corp., 333 W Evelyn Ave. Mountain - Evernote Clipper for Microsoft Internet Explorer.) -- C:\Program Files\Evernote\Evernote\EvernoteIE.dll
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll
O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation
O10 - WLSP:\000000000010\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation
~ Winsock: 10 Scanned in 00mn 00s



---\\ Site dans la Zone de confiance d'Internet Explorer (O15)
O15 - Trusted Zone: [HKCU\...\Domains] http.aeriagames.com
~ IE Zone Confiance: Scanned in 00mn 00s



---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} ((no name)) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
~ Objets ActiveX: Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{147AC4D5-DAE0-43BA-97F5-6D15E6E6FD87}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{BE0E7610-94D1-450B-9FA1-87A1FF23567B}: DhcpNameServer = 40.23.1.201 40.23.1.202
O17 - HKLM\System\CCS\Services\Tcpip\..\{BE0E7610-94D1-450B-9FA1-87A1FF23567B}: DhcpDomain = D1-Line.COM
O17 - HKLM\System\CS1\Services\Tcpip\..\{147AC4D5-DAE0-43BA-97F5-6D15E6E6FD87}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{BE0E7610-94D1-450B-9FA1-87A1FF23567B}: DhcpNameServer = 40.23.1.201 40.23.1.202
O17 - HKLM\System\CS1\Services\Tcpip\..\{BE0E7610-94D1-450B-9FA1-87A1FF23567B}: DhcpDomain = D1-Line.COM
O17 - HKLM\System\CS2\Services\Tcpip\..\{147AC4D5-DAE0-43BA-97F5-6D15E6E6FD87}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{BE0E7610-94D1-450B-9FA1-87A1FF23567B}: DhcpNameServer = 40.23.1.201 40.23.1.202
O17 - HKLM\System\CS2\Services\Tcpip\..\{BE0E7610-94D1-450B-9FA1-87A1FF23567B}: DhcpDomain = D1-Line.COM
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) - C:\Program Files\IDT\WDM\aestsrv.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Atheros Bt&Wlan Coex Agent (Atheros Bt&Wlan Coex Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: AtherosSvc (AtherosSvc) . (.Atheros Commnucations - AdminService Application.) - C:\Program Files\Bluetooth Suite\adminservice.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios - HiPatchService.) - C:\AeriaGames\TribesAscendFR\HiPatchService.exe
O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files\Hewlett-Packard\HP Support Framework\hpsa_service.exe =>.Hewlett-Packard Co
O23 - Service: HP Client Services (HPClientSvc) . (.Hewlett-Packard Company - HP Client Services.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) . (.Hewlett-Packard Company - HP Quick Synchronization Service.) - C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P. - HP Quick Launch WMI Service.) - C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: C:\Windows\System32\stlang.dll (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\STacSV.exe
~ Services: 15 Scanned in 00mn 11s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000Core.job [1082]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000UA.job [1104]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1054]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1058]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000Core.job [1034]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000UA.job [1086]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForPHAAZER-HP$.job [336]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForPhaazer.job [328]
[MD5.9EB925EDC8CF1C3D06E50E9348B54A0A] [APT] [FacebookUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000Core] (.Facebook Inc..) -- C:\Users\Phaazer\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096]
[MD5.9EB925EDC8CF1C3D06E50E9348B54A0A] [APT] [FacebookUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000UA] (.Facebook Inc..) -- C:\Users\Phaazer\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000Core] (.Google Inc..) -- C:\Users\Phaazer\AppData\Local\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000UA] (.Google Inc..) -- C:\Users\Phaazer\AppData\Local\Google\Update\GoogleUpdate.exe [116648]
[MD5.AF51D4FE088A3EFA5303B36FFFD0581B] [APT] [HPCeeScheduleForPhaazer] (.Hewlett-Packard.) -- C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe [91704]
[MD5.AF51D4FE088A3EFA5303B36FFFD0581B] [APT] [HPCeeScheduleForPHAAZER-HP$] (.Hewlett-Packard.) -- C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe [91704]
[MD5.00000000000000000000000000000000] [APT] [{9D3ED051-C82A-4C85-B7C6-AE421BCEC0D8}] (...) -- C:\Users\Phaazer\Downloads\PSPP12_Corel_TBYB_EN_IE_FR_DE_ES_IT_NL_ESD.exe (.not file.) [0]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984]
[MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [HP Support Assistant Quick Start] (.Hewlett-Packard Company.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [525728]
[MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [525728]
[MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [PC Health Analysis Install] (.Hewlett-Packard Company.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [525728]
[MD5.F89A2101EFFAC2406AAE955502DFC4E6] [APT] [Update Check] (.Hewlett-Packard Company.) -- C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [631608]
[MD5.8B7BD1549EFFA31245CA0EEB38AA869E] [APT] [WarrantyChecker] (.Hewlett-Packard.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1586392]
[MD5.8B7BD1549EFFA31245CA0EEB38AA869E] [APT] [WarrantyChecker_DeviceScan] (.Hewlett-Packard.) -- C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1586392]
[MD5.00000000000000000000000000000000] [APT] [Norton Error Analyzer 18.7.2.3] (...) -- C:\Program Files\Norton Internet Security\Engine\18.7.2.3\SymErr.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [Norton Error Processor 18.7.2.3] (...) -- C:\Program Files\Norton Internet Security\Engine\18.7.2.3\SymErr.exe (.not file.) [0]
~ Scheduled Task: 27 Scanned in 00mn 13s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (...) -- C:\Program Files\Java\jre6\bin\regutils.dll
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Internet Explorer - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Active Setup: 11 Scanned in 00mn 00s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\drivers\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (lrpilerb) . (. - .) - C:\Windows\system32\drivers\lrpilerb.sys (.not file.)
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Drivers: 63 Scanned in 00mn 02s



---\\ Logiciels installés (O42)
O42 - Logiciel: ASIO4ALL - (...) [HKLM] -- ASIO4ALL
O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Reader X (10.1.9) MUI - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001}
O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
O42 - Logiciel: Aeria Ignite - (.Aeria Games & Entertainment.) [HKLM] -- Aeria Ignite 1.13.3296
O42 - Logiciel: Aeria Ignite - (.Aeria Games & Entertainment.) [HKLM] -- {22A72F06-FA80-42CB-9A8C-46C6AE53425C}
O42 - Logiciel: Aion (North America) - (.NCsoft.) [HKCU] -- NCsoft-Aion
O42 - Logiciel: Aion - (.NCsoft.) [HKCU] -- NCsoft-AionEU
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {5D09C772-ECB3-442B-9CC6-B4341C78FDC2}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {E14ADE0E-75F3-4A46-87E5-26692DD626EC}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc
O42 - Logiciel: Application Profiles - (.Advanced Micro Devices, Inc..) [HKLM] -- {EBBE64F6-7E23-5857-891F-045560AECC7F}
O42 - Logiciel: ArtRage 2 Starter Edition - (.Ambient Design.) [HKLM] -- {0C75B278-2EE9-4C08-8DEE-1ABAD005F193}
O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7}
O42 - Logiciel: AuraKingdom-FR - (...) [HKLM] -- AuraKingdom-FR
O42 - Logiciel: Bandisoft MPEG-1 Decoder - (...) [HKLM] -- BandiMPEG1
O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM] -- WT089453
O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM] -- {1E03DB52-D5CB-4338-A338-E526DD4D4DB1} =>Toolbar.Bing
O42 - Logiciel: Blasterball 3 - (.WildTangent.) [HKLM] -- WT089308
O42 - Logiciel: Bluetooth Win7 Suite - (.Atheros Communications.) [HKLM] -- {101A497C-7EF6-4001-834D-E5FA1C70FEFA}
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B}
O42 - Logiciel: Bounce Symphony - (.WildTangent.) [HKLM] -- WT087330
O42 - Logiciel: Boxore Client - (.Boxore OU.) [HKLM] -- {903CFFD8-85BF-4A51-8A6D-4BBBCA346A6E} =>Adware.Boxore
O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM] -- WT089454
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9}
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {51C7AD07-C3F6-4635-8E8A-231306D810FE}
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {ED5776D5-59B4-46B7-AF81-5F2D94D7C640}
O42 - Logiciel: City of Heroes (US) - (.NCsoft.) [HKCU] -- NCsoft-CityOfHeroes
O42 - Logiciel: Collab - (.Image-Line bvba.) [HKLM] -- Collab
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Diner Dash 2 Restaurant Rescue - (.WildTangent.) [HKLM] -- WT087536
O42 - Logiciel: Discount Dragon - (.Smart Apps.) [HKLM] -- Discount Dragon =>PUP.DiscountDragon
O42 - Logiciel: Dj Mixer Studio - (.Aedge Performance BCN SL.) [HKLM] -- {9F8DDA54-E98B-4067-A0D8-FB37068964D8}
O42 - Logiciel: Dream Chronicles - (.WildTangent.) [HKLM] -- WT087467
O42 - Logiciel: ESU for Microsoft Windows 7 - (.Hewlett-Packard.) [HKLM] -- {3877C901-7B90-4727-A639-B6ED2DD59D43}
O42 - Logiciel: Energy Star Digital Logo - (.Hewlett-Packard.) [HKLM] -- {BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}
O42 - Logiciel: Evernote v. 4.2.2 - (.Evernote Corp..) [HKLM] -- {F761359C-9CED-45AE-9A51-9D6605CD55C4}
O42 - Logiciel: FATE - (.WildTangent.) [HKLM] -- WT087361
O42 - Logiciel: Facebook Messenger 2.1.4814.0 - (.Facebook.) [HKLM] -- {7204BDEE-1A48-4D95-A964-44A9250B439E}
O42 - Logiciel: Facebook Video Calling 2.0.0.447 - (.Skype Limited.) [HKLM] -- {8DF41A9F-FE13-43E8-A003-5F9B55A011EE}
O42 - Logiciel: Farm Frenzy - (.WildTangent.) [HKLM] -- WT089328
O42 - Logiciel: Fishdom - (.WildTangent.) [HKLM] -- WT089493
O42 - Logiciel: FlowStone FL 3.0 - (...) [HKLM] -- FlowStone
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome
O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM] -- {989FB5FD-9B00-4B32-8663-849CB1370DD1}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Grand Fantasia - (...) [HKLM] -- Grand Fantasia
O42 - Logiciel: HP Auto - (.Hewlett-Packard Company.) [HKLM] -- {CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}
O42 - Logiciel: HP Camera - (.ArcSoft.) [HKLM] -- {CD63F5EF-A0DC-4E5E-8200-E5703531D649}
O42 - Logiciel: HP Client Services - (.Hewlett-Packard.) [HKLM] -- {2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2}
O42 - Logiciel: HP Connection Manager - (.Hewlett-Packard Company.) [HKLM] -- {795AADBF-58C2-42D0-B779-E730702A247E}
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM] -- {07FA4960-B038-49EB-891B-9F95930AA544}
O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM] -- {D4736E41-9A74-4000-BF3E-401812E5B395}
O42 - Logiciel: HP Games - (.WildTangent.) [HKLM] -- WildTangent hp Master Uninstall
O42 - Logiciel: HP On Screen Display - (.Hewlett-Packard Company.) [HKLM] -- {ED1BD69A-07E3-418C-91F1-D856582581BF}
O42 - Logiciel: HP Power Manager - (.Hewlett-Packard Company.) [HKLM] -- {D8BCE5B9-67CF-4F3F-93AE-3ACC754C72EB}
O42 - Logiciel: HP Quick Launch - (.Hewlett-Packard Company.) [HKLM] -- {53B17A98-5BF0-40BC-AAFF-850A357975AC}
O42 - Logiciel: HP QuickWeb - (.Hewlett-Packard Company.) [HKLM] -- {ADE91712-EDDE-4262-9EC2-691BAADA55D1}
O42 - Logiciel: HP Setup - (.Hewlett-Packard Company.) [HKLM] -- {210A03F5-B2ED-4947-B27E-516F50CBB292}
O42 - Logiciel: HP Setup Manager - (.Hewlett-Packard Company.) [HKLM] -- {AE856388-AFAD-4753-81DF-D96B19D0A17C}
O42 - Logiciel: HP Software Framework - (.Hewlett-Packard Company.) [HKLM] -- {43C16A75-0C20-493E-B882-A63B35E2FED7}
O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM] -- {EE202411-2C26-49E8-9784-1BC1DBF7DE96} =>.Hewlett-Packard Co
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.1.1 - (.Hewlett-Packard Company.) [HKLM] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F}
O42 - Logiciel: IDT Audio - (.IDT.) [HKLM] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}
O42 - Logiciel: IL Download Manager - (.Image-Line.) [HKLM] -- IL Download Manager
O42 - Logiciel: IL Shared Libraries - (.Image-Line.) [HKLM] -- IL Shared Libraries
O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM] -- WT087480
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421}
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}
O42 - Logiciel: Java(TM) 6 Update 30 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216024FF}
O42 - Logiciel: Jewel Quest - Heritage - (.WildTangent.) [HKLM] -- WT087374
O42 - Logiciel: Jewel Quest Solitaire - (.WildTangent.) [HKLM] -- WT087490
O42 - Logiciel: JoJo's Fashion Show - (.WildTangent.) [HKLM] -- WT087385
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: Mah Jong Medley - (.WildTangent.) [HKLM] -- WT087393
O42 - Logiciel: Mahjongg Artifacts - (.WildTangent.) [HKLM] -- WT087495
O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Manga Studio Debut 4.0 - (...) [HKLM] -- Manga Studio Debut 4.0
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {32E9C1A5-0FDA-4483-987D-DBABF9CC1DD8}
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {0CD47142-BA4F-46B0-AA92-2675864928B8}
O42 - Logiciel: Microsoft Security Client FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {50779A29-834E-4E36-BBEB-B7CABC67A825}
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: MusicStation - (.Omnifone.) [HKLM] -- {E74E7F63-E70F-43f2-873F-35FB66F263B2}
O42 - Logiciel: Namco All-Stars PAC-MAN - (.WildTangent.) [HKLM] -- WT089484
O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM] -- WT087394
O42 - Logiciel: Plants vs. Zombies - Game of the Year - (.WildTangent.) [HKLM] -- WT089458
O42 - Logiciel: PoiZone - (.Image-Line bvba.) [HKLM] -- PoiZone
O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM] -- WT087396
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {B67BAFBA-4C9F-48FA-9496-933E3B255044}
O42 - Logiciel: ReCycle Demo 2.2.1 - (.Propellerhead Software AB.) [HKLM] -- ReCycleDemo2.2_32_is1
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}
O42 - Logiciel: Recovery Manager - (.Hewlett-Packard.) [HKLM] -- {
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
29 janv. 2014 à 21:33
Sa envoie partie par partie... je t'envoi le reste du rapport
[HKLM\Software\RTLSetup]
[HKLM\Software\RaiderZ]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Runes of Magic]
[HKLM\Software\Skype]
[HKLM\Software\SmithMicro]
[HKLM\Software\SoftVoice]
[HKLM\Software\Software]
[HKLM\Software\Symantec]
[HKLM\Software\Synaptics]
[HKLM\Software\VST]
[HKLM\Software\VideoLAN]
[HKLM\Software\VirtualDJ]
[HKLM\Software\Volatile]
[HKLM\Software\WOW6432Node]
[HKLM\Software\WildTangent]
[HKLM\Software\Windows]
~ Key Software: 329 Scanned in 00mn 01s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 16/07/2011 - 04:15:38 - [457,138] ----D C:\Program Files\Adobe
O43 - CFD: 24/07/2013 - 14:30:39 - [2,884] ----D C:\Program Files\Aeria Games
O43 - CFD: 23/01/2014 - 23:39:18 - [0] ----D C:\Program Files\alaplaya
O43 - CFD: 06/07/2013 - 22:18:44 - [10,789] ----D C:\Program Files\Ambient Design
O43 - CFD: 27/01/2012 - 17:49:50 - [2,316] ----D C:\Program Files\Apple Software Update =>.Apple Inc
O43 - CFD: 26/11/2012 - 19:58:39 - [0,332] ----D C:\Program Files\ASIO4ALL v2
O43 - CFD: 26/06/2011 - 00:39:08 - [2,118] ----D C:\Program Files\Atheros
O43 - CFD: 18/11/2012 - 15:06:42 - [0,778] ----D C:\Program Files\ATI Technologies
O43 - CFD: 09/05/2013 - 23:46:23 - [8,682] ----D C:\Program Files\BandiMPEG1
O43 - CFD: 26/06/2011 - 00:40:30 - [40,999] ----D C:\Program Files\Bluetooth Suite
O43 - CFD: 27/01/2012 - 17:48:24 - [0,602] ----D C:\Program Files\Bonjour
O43 - CFD: 26/06/2011 - 00:38:52 - [3,340] ----D C:\Program Files\Cisco
O43 - CFD: 24/01/2014 - 22:53:11 - [205,638] ----D C:\Program Files\Common Files
O43 - CFD: 24/01/2014 - 23:01:29 - [1,038] ----D C:\Program Files\Discount Dragon =>PUP.DiscountDragon
O43 - CFD: 13/09/2012 - 20:51:57 - [42,410] ----D C:\Program Files\DjMixerStudio
O43 - CFD: 13/05/2013 - 01:23:39 - [1,680] ----D C:\Program Files\DSPRobotics
O43 - CFD: 12/02/2012 - 14:22:54 - [3,997] ----D C:\Program Files\DVD Maker
O43 - CFD: 03/02/2012 - 01:29:50 - [0] ----D C:\Program Files\Electronic Arts
O43 - CFD: 16/07/2011 - 03:56:49 - [278,016] ----D C:\Program Files\Evernote
O43 - CFD: 27/01/2012 - 15:51:25 - [0] -SH-D C:\Program Files\Fichiers communs
O43 - CFD: 28/02/2012 - 14:30:56 - [2,597] ----D C:\Program Files\Gameforge
O43 - CFD: 23/01/2014 - 23:48:55 - [0] ----D C:\Program Files\GameforgeLive
O43 - CFD: 11/07/2013 - 23:28:37 - [92,896] ----D C:\Program Files\Google
O43 - CFD: 08/07/2013 - 12:17:33 - [824,030] ----D C:\Program Files\Hewlett-Packard
O43 - CFD: 16/07/2011 - 04:05:12 - [1010,245] ----D C:\Program Files\HP Games
O43 - CFD: 26/06/2011 - 00:36:03 - [64,246] ----D C:\Program Files\IDT
O43 - CFD: 23/01/2014 - 23:54:53 - [38,177] ----D C:\Program Files\Image-Line
O43 - CFD: 23/01/2014 - 23:41:52 - [112,554] --H-D C:\Program Files\InstallShield Installation Information
O43 - CFD: 26/06/2011 - 00:32:39 - [21,133] ----D C:\Program Files\Intel
O43 - CFD: 14/12/2013 - 01:00:13 - [4,498] ----D C:\Program Files\Internet Explorer
O43 - CFD: 25/06/2013 - 00:56:36 - [1,765] ----D C:\Program Files\iPod
O43 - CFD: 25/06/2013 - 01:02:46 - [157,998] ----D C:\Program Files\iTunes
O43 - CFD: 06/05/2013 - 20:32:45 - [0,892] ----D C:\Program Files\Java
O43 - CFD: 23/01/2014 - 23:44:26 - [4,085] ----D C:\Program Files\LMMS
O43 - CFD: 02/08/2013 - 17:51:38 - [0] ----D C:\Program Files\majtuto4pc_fr_a2 =>PUP.Eorezo
O43 - CFD: 23/01/2014 - 20:25:27 - [13,382] ----D C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 26/06/2011 - 00:58:08 - [18,986] ----D C:\Program Files\Microsoft
O43 - CFD: 14/07/2009 - 05:52:30 - [44,813] ----D C:\Program Files\Microsoft Games
O43 - CFD: 16/07/2011 - 04:07:20 - [6,096] ----D C:\Program Files\Microsoft Office
O43 - CFD: 19/11/2013 - 03:07:48 - [22,407] ----D C:\Program Files\Microsoft Security Client
O43 - CFD: 12/10/2013 - 15:34:08 - [40,851] ----D C:\Program Files\Microsoft Silverlight
O43 - CFD: 28/01/2012 - 20:50:25 - [3,999] ----D C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 28/01/2012 - 20:50:26 - [0,331] ----D C:\Program Files\Microsoft Synchronization Services
O43 - CFD: 28/01/2012 - 23:45:50 - [0,015] ----D C:\Program Files\Microsoft.NET
O43 - CFD: 12/08/2012 - 05:45:45 - [0] ----D C:\Program Files\Mozilla Firefox
O43 - CFD: 14/07/2009 - 05:52:30 - [0,025] ----D C:\Program Files\MSBuild
O43 - CFD: 28/01/2012 - 20:50:39 - [11,274] ----D C:\Program Files\MusicStation
O43 - CFD: 17/07/2013 - 15:48:46 - [2,025] ----D C:\Program Files\Namtuk
O43 - CFD: 19/10/2012 - 15:29:44 - [438,334] ----D C:\Program Files\NCSoft
O43 - CFD: 27/01/2012 - 15:55:46 - [2,707] R---D C:\Program Files\Online Services
O43 - CFD: 26/11/2012 - 19:53:29 - [8,344] ----D C:\Program Files\Outsim
O43 - CFD: 25/09/2012 - 01:12:06 - [0] ----D C:\Program Files\Pando Networks
O43 - CFD: 24/01/2014 - 22:59:56 - [0] ----D C:\Program Files\predm
O43 - CFD: 15/09/2012 - 03:32:30 - [19,063] ----D C:\Program Files\Propellerhead
O43 - CFD: 25/06/2013 - 00:07:27 - [73,545] ----D C:\Program Files\QuickTime
O43 - CFD: 26/06/2011 - 00:36:10 - [12,728] ----D C:\Program Files\Realtek
O43 - CFD: 14/07/2009 - 05:52:30 - [37,357] ----D C:\Program Files\Reference Assemblies
O43 - CFD: 04/12/2013 - 02:04:35 - [34,476] R---D C:\Program Files\Skype
O43 - CFD: 12/08/2012 - 05:53:13 - [219,342] ----D C:\Program Files\Smith Micro
O43 - CFD: 26/06/2011 - 00:31:40 - [68,720] ----D C:\Program Files\Synaptics
O43 - CFD: 14/07/2009 - 05:53:23 - [0] --H-D C:\Program Files\Uninstall Information
O43 - CFD: 01/07/2013 - 01:48:56 - [101,906] ----D C:\Program Files\VideoLAN
O43 - CFD: 11/02/2012 - 21:00:34 - [19,534] ----D C:\Program Files\VirtualDJ
O43 - CFD: 13/05/2013 - 01:26:26 - [2,700] ----D C:\Program Files\VstPlugins
O43 - CFD: 16/07/2011 - 03:57:11 - [9,609] ----D C:\Program Files\WildTangent Games
O43 - CFD: 12/07/2013 - 19:30:49 - [2,909] ----D C:\Program Files\Windows Defender
O43 - CFD: 30/06/2012 - 14:31:35 - [181,216] ----D C:\Program Files\Windows Live
O43 - CFD: 12/02/2012 - 14:22:54 - [5,895] ----D C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 14/12/2013 - 01:00:13 - [6,298] ----D C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 27/01/2012 - 15:51:25 - [11,632] ----D C:\Program Files\Windows NT
O43 - CFD: 12/02/2012 - 14:22:54 - [4,213] ----D C:\Program Files\Windows Photo Viewer
O43 - CFD: 20/11/2010 - 22:33:48 - [0,181] ----D C:\Program Files\Windows Portable Devices
O43 - CFD: 12/02/2012 - 14:22:55 - [5,717] ----D C:\Program Files\Windows Sidebar
O43 - CFD: 29/01/2014 - 04:28:42 - [23,809] ----D C:\Program Files\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 12/02/2012 - 11:55:19 - [18,416] ----D C:\Program Files\Common Files\Adobe
O43 - CFD: 25/06/2013 - 00:56:28 - [107,204] ----D C:\Program Files\Common Files\Apple
O43 - CFD: 26/06/2011 - 00:40:21 - [0,019] ----D C:\Program Files\Common Files\Atheros
O43 - CFD: 23/01/2014 - 23:38:12 - [0,295] ----D C:\Program Files\Common Files\BioWare
O43 - CFD: 02/09/2012 - 14:07:14 - [4,214] ----D C:\Program Files\Common Files\InstallShield
O43 - CFD: 27/01/2012 - 16:24:40 - [1,201] ----D C:\Program Files\Common Files\Java
O43 - CFD: 24/05/2013 - 21:46:17 - [23,190] ----D C:\Program Files\Common Files\microsoft shared
O43 - CFD: 14/07/2009 - 03:37:05 - [0,003] ----D C:\Program Files\Common Files\Services
O43 - CFD: 12/04/2013 - 18:55:45 - [1,904] ----D C:\Program Files\Common Files\Skype
O43 - CFD: 14/07/2009 - 03:37:05 - [39,200] ----D C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 24/01/2014 - 23:34:59 - [0] ----D C:\Program Files\Common Files\Symantec Shared
O43 - CFD: 12/02/2012 - 14:22:54 - [9,767] ----D C:\Program Files\Common Files\System
O43 - CFD: 26/06/2011 - 00:57:17 - [0,225] ----D C:\Program Files\Common Files\Telespree
O43 - CFD: 16/07/2011 - 04:08:45 - [0] ----D C:\Program Files\Common Files\Windows Live
O43 - CFD: 25/06/2013 - 01:02:59 - [2,446] ----D C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
O43 - CFD: 11/02/2012 - 18:16:54 - [43,708] ----D C:\ProgramData\Adobe
O43 - CFD: 04/08/2012 - 06:31:29 - [0,697] ----D C:\ProgramData\Aeria Games
O43 - CFD: 05/02/2012 - 18:59:46 - [0,002] ----D C:\ProgramData\AeriaGames
O43 - CFD: 27/01/2012 - 17:49:39 - [190,402] ----D C:\ProgramData\Apple
O43 - CFD: 27/01/2012 - 17:59:39 - [84,425] ----D C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Application Data
O43 - CFD: 26/06/2011 - 00:39:30 - [0,020] ----D C:\ProgramData\Atheros
O43 - CFD: 09/02/2012 - 21:09:09 - [0,002] ----D C:\ProgramData\Beatlock Technology
O43 - CFD: 27/01/2012 - 15:51:25 - [0] -SH-D C:\ProgramData\Bureau
O43 - CFD: 11/02/2012 - 18:13:15 - [0,166] --H-D C:\ProgramData\CanonBJ
O43 - CFD: 12/08/2012 - 05:58:22 - [0,576] ----D C:\ProgramData\CELSYS
O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Documents
O43 - CFD: 27/01/2012 - 15:51:25 - [0] -SH-D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Favorites
O43 - CFD: 11/08/2013 - 20:22:59 - [6,584] ----D C:\ProgramData\Hewlett-Packard
O43 - CFD: 25/10/2012 - 23:08:01 - [0,328] ----D C:\ProgramData\Hi-Rez Studios
O43 - CFD: 30/03/2012 - 18:28:15 - [16,470] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 27/01/2012 - 15:51:25 - [0] -SH-D C:\ProgramData\Menu Démarrer
O43 - CFD: 26/11/2012 - 20:27:22 - [-1218,797] -S--D C:\ProgramData\Microsoft
O43 - CFD: 27/01/2012 - 15:51:25 - [0] -SH-D C:\ProgramData\Modèles
O43 - CFD: 28/01/2012 - 20:50:38 - [1,490] ----D C:\ProgramData\MusicStation
O43 - CFD: 10/05/2013 - 00:24:51 - [1,929] ----D C:\ProgramData\NexonEU
O43 - CFD: 24/01/2014 - 23:30:07 - [0,016] ----D C:\ProgramData\Norton
O43 - CFD: 26/06/2011 - 00:50:38 - [9,408] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 04/12/2013 - 02:05:23 - [107,510] ----D C:\ProgramData\Skype
O43 - CFD: 16/07/2011 - 04:05:16 - [0] ----D C:\ProgramData\Stardock
O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 16/07/2011 - 04:20:28 - [0] ----D C:\ProgramData\Sun
O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Templates
O43 - CFD: 15/08/2012 - 07:47:31 - [1,993] ----D C:\ProgramData\TERA
O43 - CFD: 28/05/2012 - 15:59:19 - [1342,578] ----D C:\ProgramData\WildTangent
O43 - CFD: 27/01/2012 - 18:01:04 - [0,003] ----D C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
O43 - CFD: 26/11/2012 - 17:31:12 - [39,643] ----D C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF}
O43 - CFD: 11/02/2012 - 18:15:51 - [6,431] ----D C:\Users\Phaazer\AppData\Roaming\Adobe
O43 - CFD: 04/08/2012 - 06:26:18 - [0,104] ----D C:\Users\Phaazer\AppData\Roaming\Aeria Games & Entertainment
O43 - CFD: 06/07/2013 - 22:20:20 - [0,002] ----D C:\Users\Phaazer\AppData\Roaming\Ambient Design
O43 - CFD: 03/11/2012 - 14:29:03 - [226,646] ----D C:\Users\Phaazer\AppData\Roaming\Apple Computer
O43 - CFD: 20/04/2013 - 11:34:28 - [30,391] ----D C:\Users\Phaazer\AppData\Roaming\Downloaded Installations
O43 - CFD: 13/05/2013 - 01:23:40 - [4,253] ----D C:\Users\Phaazer\AppData\Roaming\FlowStone
O43 - CFD: 23/01/2014 - 23:52:50 - [0] ----D C:\Users\Phaazer\AppData\Roaming\GZero
O43 - CFD: 12/02/2012 - 12:07:47 - [0,083] ----D C:\Users\Phaazer\AppData\Roaming\Hewlett-Packard
O43 - CFD: 26/11/2012 - 17:36:26 - [1,346] ----D C:\Users\Phaazer\AppData\Roaming\hpqlog
O43 - CFD: 27/01/2012 - 16:07:25 - [0] ----D C:\Users\Phaazer\AppData\Roaming\Identities
O43 - CFD: 28/01/2012 - 20:58:05 - [0,003] ----D C:\Users\Phaazer\AppData\Roaming\IDT
O43 - CFD: 13/05/2013 - 01:25:18 - [2,188] ----D C:\Users\Phaazer\AppData\Roaming\Image-Line
O43 - CFD: 27/01/2012 - 16:08:34 - [0,001] ----D C:\Users\Phaazer\AppData\Roaming\Intel Corporation
O43 - CFD: 30/01/2013 - 21:24:50 - [0] ----D C:\Users\Phaazer\AppData\Roaming\Juce VST Host
O43 - CFD: 27/01/2012 - 16:23:47 - [0,002] ----D C:\Users\Phaazer\AppData\Roaming\Macromedia
O43 - CFD: 30/03/2012 - 18:28:21 - [123,962] ----D C:\Users\Phaazer\AppData\Roaming\Malwarebytes
O43 - CFD: 06/05/2012 - 15:59:50 - [1,384] -S--D C:\Users\Phaazer\AppData\Roaming\Microsoft
O43 - CFD: 28/01/2012 - 18:38:01 - [0,001] ----D C:\Users\Phaazer\AppData\Roaming\Namco
O43 - CFD: 28/01/2012 - 20:50:39 - [0,001] ----D C:\Users\Phaazer\AppData\Roaming\newfolder3
O43 - CFD: 12/07/2013 - 04:14:03 - [0,017] ----D C:\Users\Phaazer\AppData\Roaming\PhotoScape
O43 - CFD: 15/09/2012 - 03:34:02 - [0] ----D C:\Users\Phaazer\AppData\Roaming\Propellerhead Software
O43 - CFD: 23/01/2014 - 00:38:07 - [14,940] ----D C:\Users\Phaazer\AppData\Roaming\Skype
O43 - CFD: 12/08/2012 - 05:58:13 - [0,031] ----D C:\Users\Phaazer\AppData\Roaming\Smith Micro
O43 - CFD: 14/05/2012 - 23:30:37 - [4,099] ----D C:\Users\Phaazer\AppData\Roaming\SuperPump
O43 - CFD: 27/01/2012 - 16:08:23 - [0] ----D C:\Users\Phaazer\AppData\Roaming\Synaptics
O43 - CFD: 08/10/2013 - 19:53:18 - [0,023] ----D C:\Users\Phaazer\AppData\Roaming\Tific
O43 - CFD: 07/10/2012 - 19:40:08 - [3,719] ----D C:\Users\Phaazer\AppData\Roaming\TS3Client
O43 - CFD: 27/01/2014 - 21:02:04 - [0,077] ----D C:\Users\Phaazer\AppData\Roaming\vlc
O43 - CFD: 30/03/2012 - 01:01:58 - [0] ----D C:\Users\Phaazer\AppData\Roaming\Windows Live Writer
O43 - CFD: 29/01/2014 - 04:30:38 - [0,680] ----D C:\Users\Phaazer\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 11/02/2012 - 18:15:51 - [15,143] ----D C:\Users\Phaazer\AppData\Local\Adobe
O43 - CFD: 04/08/2012 - 06:32:25 - [3,378] ----D C:\Users\Phaazer\AppData\Local\Aeria Games
O43 - CFD: 27/01/2012 - 17:50:03 - [57,999] ----D C:\Users\Phaazer\AppData\Local\Apple
O43 - CFD: 27/01/2012 - 18:01:45 - [110,853] ----D C:\Users\Phaazer\AppData\Local\Apple Computer
O43 - CFD: 27/01/2012 - 15:51:42 - [0] -SH-D C:\Users\Phaazer\AppData\Local\Application Data
O43 - CFD: 31/03/2012 - 13:23:08 - [1,487] ----D C:\Users\Phaazer\AppData\Local\Apps
O43 - CFD: 15/02/2012 - 02:34:27 - [19,132] ----D C:\Users\Phaazer\AppData\Local\assembly
O43 - CFD: 13/09/2013 - 21:29:49 - [0,247] ----D C:\Users\Phaazer\AppData\Local\avgchrome
O43 - CFD: 27/01/2012 - 16:08:51 - [0] ----D C:\Users\Phaazer\AppData\Local\BMExplorer
O43 - CFD: 19/10/2012 - 14:42:23 - [0] ----D C:\Users\Phaazer\AppData\Local\Chromium
O43 - CFD: 23/01/2014 - 01:27:48 - [134,526] ----D C:\Users\Phaazer\AppData\Local\CrashDumps
O43 - CFD: 31/03/2012 - 13:23:39 - [0] ----D C:\Users\Phaazer\AppData\Local\Deployment
O43 - CFD: 03/12/2012 - 09:28:06 - [4,088] ----D C:\Users\Phaazer\AppData\Local\Diagnostics
O43 - CFD: 24/01/2014 - 23:01:32 - [1,053] ----D C:\Users\Phaazer\AppData\Local\Discount Dragon =>PUP.DiscountDragon
O43 - CFD: 28/01/2012 - 20:50:30 - [9,418] ----D C:\Users\Phaazer\AppData\Local\Downloaded Installations
O43 - CFD: 24/01/2014 - 16:12:36 - [0,262] ----D C:\Users\Phaazer\AppData\Local\ElevatedDiagnostics
O43 - CFD: 28/01/2012 - 23:32:35 - [0,001] ----D C:\Users\Phaazer\AppData\Local\Evernote
O43 - CFD: 26/06/2012 - 11:25:52 - [55,302] ----D C:\Users\Phaazer\AppData\Local\Facebook
O43 - CFD: 15/04/2013 - 18:37:34 - [0,004] ----D C:\Users\Phaazer\AppData\Local\Gameforge4d
O43 - CFD: 11/07/2013 - 23:29:27 - [1826,405] ----D C:\Users\Phaazer\AppData\Local\Google
O43 - CFD: 12/02/2012 - 14:33:28 - [0,001] ----D C:\Users\Phaazer\AppData\Local\GZero
O43 - CFD: 04/03/2012 - 18:31:19 - [0,010] ----D C:\Users\Phaazer\AppData\Local\Hewlett-Packard
O43 - CFD: 27/01/2012 - 16:08:16 - [0,003] ----D C:\Users\Phaazer\AppData\Local\Hewlett-Packard_Company
O43 - CFD: 28/02/2012 - 21:38:19 - [0] ----D C:\Users\Phaazer\AppData\Local\Hewlett-Packard_Developme
O43 - CFD: 27/01/2012 - 15:51:42 - [0] -SH-D C:\Users\Phaazer\AppData\Local\Historique
O43 - CFD: 06/05/2012 - 14:44:51 - [0,052] ----D C:\Users\Phaazer\AppData\Local\LiveGBoost
O43 - CFD: 06/06/2013 - 19:27:34 - [717,948] ----D C:\Users\Phaazer\AppData\Local\Microsoft
O43 - CFD: 22/07/2012 - 00:10:12 - [0,263] ----D C:\Users\Phaazer\AppData\Local\Microsoft Games
O43 - CFD: 28/01/2012 - 00:02:25 - [0,164] ----D C:\Users\Phaazer\AppData\Local\MigWiz
O43 - CFD: 13/05/2013 - 04:38:53 - [0,049] ----D C:\Users\Phaazer\AppData\Local\Mixxx
O43 - CFD: 15/02/2012 - 02:49:29 - [0,005] ----D C:\Users\Phaazer\AppData\Local\NCSoft
O43 - CFD: 15/04/2013 - 18:25:03 - [0] ----D C:\Users\Phaazer\AppData\Local\Programs
O43 - CFD: 27/01/2012 - 16:05:54 - [0] ----D C:\Users\Phaazer\AppData\Local\RemEngine
O43 - CFD: 07/04/2013 - 00:26:16 - [0] ----D C:\Users\Phaazer\AppData\Local\rencontreshard
O43 - CFD: 08/10/2013 - 19:52:51 - [0,004] ----D C:\Users\Phaazer\AppData\Local\Symantec
O43 - CFD: 12/08/2012 - 21:28:46 - [50,512] ----D C:\Users\Phaazer\AppData\Local\TeamSpeak 3 Client
O43 - CFD: 29/01/2014 - 04:34:20 - [0,055] ----D C:\Users\Phaazer\AppData\Local\Temp
O43 - CFD: 27/01/2012 - 15:51:42 - [0] -SH-D C:\Users\Phaazer\AppData\Local\Temporary Internet Files
O43 - CFD: 25/12/2013 - 20:50:13 - [0] ----D C:\Users\Phaazer\AppData\Local\tut_fr_86
O43 - CFD: 09/02/2012 - 21:10:00 - [23,159] ----D C:\Users\Phaazer\AppData\Local\VirtualStore
O43 - CFD: 17/08/2012 - 20:13:14 - [0,109] ----D C:\Users\Phaazer\AppData\Local\Windows Live
O43 - CFD: 28/01/2012 - 20:44:28 - [0,628] ----D C:\Users\Phaazer\AppData\Local\Windows Live Writer
O43 - CFD: 14/07/2009 - 05:42:04 - [0,013] R---D C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 12/09/2013 - 14:40:47 - [0] R---D C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 08/01/2014 - 03:05:21 - [0,027] ----D C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames
O43 - CFD: 09/03/2013 - 15:51:00 - [0,001] ----D C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook
O43 - CFD: 31/03/2012 - 13:27:12 - [0,005] ----D C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 23/01/2014 - 23:54:53 - [0,031] ----D C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
O43 - CFD: 14/07/2009 - 05:37:42 - [0,001] R---D C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 12/09/2013 - 14:40:47 - [0,001] R---D C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 19/07/2012 - 02:57:51 - [0,002] ----D C:\Users\Phaazer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
~ Program Folder: 204 Scanned in 03mn 53s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.74F805AB12EB0E3E49E469F19FF02640] - 15/01/2014 - 09:54:37 ---A- . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\Drivers\usbd.sys [6016]
O44 - LFC:[MD5.EDF2DF71C4F1E13A6AC75F5224DE655A] - 15/01/2014 - 09:54:38 ---A- . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\Drivers\usbhub.sys [258560]
O44 - LFC:[MD5.9828C8D14CC2676421778F0DE638CF97] - 15/01/2014 - 09:54:38 ---A- . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbohci.sys [20480]
O44 - LFC:[MD5.800AABFD625EEFF899F7E5496BDE37AB] - 15/01/2014 - 09:54:38 ---A- . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbuhci.sys [24064]
O44 - LFC:[MD5.0803FBA9FE829D61AE26EC0BCC910C46] - 15/01/2014 - 09:54:38 ---A- . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\Drivers\usbccgp.sys [76288]
O44 - LFC:[MD5.D40855F89B69305140BBD7E9A3BA2DA6] - 15/01/2014 - 09:54:39 ---A- . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\Drivers\usbehci.sys [43520]
O44 - LFC:[MD5.EC2C5AF37B76D7B58C642CB74423DB7A] - 15/01/2014 - 09:54:39 ---A- . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\Drivers\usbport.sys [284672]
O44 - LFC:[MD5.5DBD4F73E2A52FEED61DBAB3752E329C] - 15/01/2014 - 09:54:41 ---A- . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\Drivers\netio.sys [240576]
O44 - LFC:[MD5.1E882889A4314D6DF5DED4F6EC994E72] - 15/01/2014 - 09:54:42 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [2349056]
O44 - LFC:[MD5.D5AD6FE415664BFD94384A30AAC5488B] - 17/01/2014 - 05:53:04 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [83425928]
O44 - LFC:[MD5.312744554A50C541B0C688C3899CA5C1] - 17/01/2014 - 06:50:23 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [270568]
O44 - LFC:[MD5.D815DD4262E4FCC211091F7BA7A01155] - 19/01/2014 - 08:32:23 ----- . (.Microsoft Corporation - Microsoft Malware Protection Signature Upda.) -- C:\Windows\System32\MpSigStub.exe [231584]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 19/01/2014 - 18:16:43 ---A- . (...) -- C:\Windows\System32\HP_ActiveX_Patch_NOT_DETECTED.txt [0]
O44 - LFC:[MD5.26B0F12F9A4C267AF5B2DA35F87A6EFA] - 19/01/2014 - 18:17:26 ---A- . (...) -- C:\Windows\System32\DOErrors.log [52]
O44 - LFC:[MD5.2C6B71A49AF14FE748D9B00DAD875255] - 21/01/2014 - 13:52:25 ---A- . (...) -- C:\Windows\System32\UpgradeErrorReport.txt [564]
O44 - LFC:[MD5.960D0857BEB1BCCDFDA1EA917624DA75] - 24/01/2014 - 13:51:43 ----- . (...) -- C:\PhysicalDisk0_MBR.bin [512]
O44 - LFC:[MD5.5BC00BBC94888B1C2B4CB76854A8AD00] - 25/01/2014 - 01:09:55 ---A- . (...) -- C:\UsbFix [Clean 1] PHAAZER-HP.txt [22174]
O44 - LFC:[MD5.866D6360038E5450D59FE203CD2DC799] - 25/01/2014 - 16:26:22 --HA- . (...) -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [16480]
O44 - LFC:[MD5.866D6360038E5450D59FE203CD2DC799] - 25/01/2014 - 16:26:22 --HA- . (...) -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [16480]
O44 - LFC:[MD5.E337BB38BA49BECAFD0C615907C6F4CC] - 27/01/2014 - 18:08:43 ---A- . (...) -- C:\Windows\PFRO.log [409810]
O44 - LFC:[MD5.F3D87B018B5CA890C753120E3D4C5B3E] - 27/01/2014 - 19:59:34 ---A- . (...) -- C:\Windows\ntbtlog.txt [3848972]
O44 - LFC:[MD5.A332BF7951B042FC586CBD4CDDB04D9E] - 27/01/2014 - 23:24:52 ---A- . (...) -- C:\Windows\setupact.log [101545]
O44 - LFC:[MD5.F84DD59A68E21599E9E58C7CC1E348B9] - 27/01/2014 - 23:30:59 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [5194]
O44 - LFC:[MD5.F5CDD361D0B250B4968712721D86939B] - 27/01/2014 - 23:31:09 ---A- . (...) -- C:\Windows\System32\perfc009.dat [1477912]
O44 - LFC:[MD5.C9ED5723934F74AF6DADF8A42D27EEA0] - 27/01/2014 - 23:31:09 ---A- . (...) -- C:\Windows\System32\perfh009.dat [2050264]
O44 - LFC:[MD5.F99ECA359168E4530341004D9CFACC6F] - 27/01/2014 - 23:31:12 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [1699372]
O44 - LFC:[MD5.973DB09F13490D37FA336B3866A84062] - 27/01/2014 - 23:31:19 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [5364786]
O44 - LFC:[MD5.1E023BE00C18A2C332CAE311E525DCC5] - 28/01/2014 - 17:41:34 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.B038B75E6233FA9F08A7EEAA31B9676B] - 29/01/2014 - 03:11:13 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1542449]
~ Files: 29 Scanned in 00mn 25s



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.4A9C966B4873F699142760AF22294EA7] - 29/01/2014 - 04:31:21 ---A- - C:\Windows\Prefetch\AgRobust.db
O45 - LFCP:[MD5.7823CD2887F2B712A4C4BA56B47D97E6] - 29/01/2014 - 04:31:26 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db
O45 - LFCP:[MD5.A4874944FD556D6B31A65365D81988F3] - 29/01/2014 - 04:31:41 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db
O45 - LFCP:[MD5.B3AC1E38418D5E6C81D48DF7418A7FBE] - 29/01/2014 - 04:31:42 ---A- - C:\Windows\Prefetch\AgAppLaunch.db
O45 - LFCP:[MD5.85869A0732EE19EA02323CB0FD0F0C1E] - 29/01/2014 - 04:31:42 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db
~ Prefetcher: 5 Scanned in 00mn 00s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll
~ LSA: 9 Scanned in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d'extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d'extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ CSB: 13 Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll
O52 - TDSD: \Drivers32\"msacm.vorbis"="vorbis.acm" . (.HMS http://hp.vector.co.jp/authors/VA012897 - Ogg Vorbis CODEC for MSACM.) -- C:\Windows\System32\vorbis.acm
O52 - TDSD: \Drivers32\"vidc.mjpg"="bdmjpeg.dll" . (...) -- C:\Windows\System32\bdmjpeg.dll
O52 - TDSD: \Drivers32\"vidc.mpeg"="bdmpegv.dll" . (...) -- C:\Windows\System32\bdmpegv.dll
O52 - TDSD: \Drivers32\"msacm.bdmpeg"="bdmpega.acm" . (...) -- C:\Windows\System32\bdmpega.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"vorbis.acm"="Ogg Vorbis Audio CODEC" . (.HMS http://hp.vector.co.jp/authors/VA012897 - Ogg Vorbis CODEC for MSACM.) -- C:\Windows\System32\vorbis.acm
O52 - TDSD: \drivers.desc\"bdmjpeg.dll"="Bandi Motion Jpeg" . (...) -- C:\Windows\System32\bdmjpeg.dll
O52 - TDSD: \drivers.desc\"bdmpegv.dll"="Bandi MPEG-1 Video" . (...) -- C:\Windows\System32\bdmpegv.dll
O52 - TDSD: \drivers.desc\"bdmpega.acm"="Bandi MPEG-1 Audio" . (...) -- C:\Windows\System32\bdmpega.acm
~ TDSD: 11 Scanned in 00mn 00s



---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ MSCP: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableRegistryTools"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableTaskMgr"=0
~ MWPS: 18 Scanned in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:[MD5.FBCE2F43185104AE8BF4D32571B19203] - 14/07/2009 - 00:51:21 ---A- . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\Drivers\1394bus.sys [54784]
O58 - SDL:[MD5.1B133875B8AA8AC48969BD3458AFE9F5] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\Windows\System32\Drivers\1394ohci.sys [164864]
O58 - SDL:[MD5.CEA80C80BED809AA0DA6FEBC04733349] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\Drivers\acpi.sys [274304]
O58 - SDL:[MD5.1EFBC664ABFF416D1D07DB115DCB264F] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\Drivers\acpipmi.sys [10240]
O58 - SDL:[MD5.21E785EBD7DC90A06391141AAC7892FB] - 14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [422976]
O58 - SDL:[MD5.0C676BC278D5B59FF5ABD57BBE9123F2] - 14/07/2009 - 02:26:17 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [297552]
O58 - SDL:[MD5.7C7B5EE4B7B822EC85321FE23A27DB33] - 14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\Drivers\adpu320.sys [146512]
O58 - SDL:[MD5.F81BB7E487EDCEAB630A7EE66CF23913] - 14/09/2013 - 01:48:58 ---A- . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\Drivers\afd.sys [338944]
O58 - SDL:[MD5.57EC4AEF73660166074D8F7F31C0D4FD] - 14/07/2009 - 00:55:00 ---A- . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\Drivers\agilevpn.sys [49152]
O58 - SDL:[MD5.507812C3054C21CEF746B6EE3D04DD6E] - 14/07/2009 - 02:26:15 ---A- . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\Drivers\AGP440.sys [53312]
O58 - SDL:[MD5.0D40BCF52EA90FC7DF2AEAB6503DEA44] - 14/07/2009 - 02:26:15 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\Drivers\aliide.sys [14400]
O58 - SDL:[MD5.3C6600A0696E90A463771C7422E23AB5] - 14/07/2009 - 02:26:15 ---A- . (.Microsoft Corporation - Filtre AGP AMD NT.) -- C:\Windows\System32\Drivers\AMDAGP.SYS [53312]
O58 - SDL:[MD5.CD5914170297126B6266860198D1D4F0] - 14/07/2009 - 02:26:15 ---A- . (.Microsoft Corporation - Pilote IDE AMD.) -- C:\Windows\System32\Drivers\amdide.sys [14912]
O58 - SDL:[MD5.00DDA200D71BAC534BF56A9DB5DFD666] - 14/07/2009 - 00:11:04 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdk8.sys [55296]
O58 - SDL:[MD5.3CBF30F5370FDA40DD3E87DF38EA53B6] - 14/07/2009 - 00:11:04 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdppm.sys [52736]
O58 - SDL:[MD5.D320BF87125326F996D4904FE24300FC] - 16/07/2011 - 13:32:05 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [80256]
O58 - SDL:[MD5.EA43AF0C423FF267355F74E7A53BDABA] - 14/07/2009 - 02:26:15 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows fa.) -- C:\Windows\System32\Drivers\amdsbs.sys [159312]
O58 - SDL:[MD5.46387FB17B086D16DEA267D5BE23A2F2] - 16/07/2011 - 13:32:05 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [22400]
O58 - SDL:[MD5.AEA177F783E20150ACE5383EE368DA19] - 20/11/2010 - 22:29:04 ---A- . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\Drivers\appid.sys [50176]
O58 - SDL:[MD5.2932004F49677BD84DBC72EDB754FFB3] - 14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [76368]
O58 - SDL:[MD5.5D6F36C46FD283AE1B57BD2E9FEB0BC7] - 14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [86608]
O58 - SDL:[MD5.ADD2ADE1C2B285AB8378D2DAAF991481] - 14/07/2009 - 00:54:46 ---A- . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\Drivers\asyncmac.sys [17920]
O58 - SDL:[MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - 02:26:15 ---A- . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\Drivers\atapi.sys [21584]
O58 - SDL:[MD5.DDCE686D76C2B4DB435A3AF5BD0E691D] - 05/08/2013 - 02:56:47 ---A- . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\Drivers\ataport.sys [133056]
O58 - SDL:[MD5.03AADC899B3A56FF42B3169818F5D50C] - 22/02/2011 - 11:15:16 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\System32\Drivers\athr.sys [2184704]
O58 - SDL:[MD5.2DB142E78B249CA73F394D8E823F4F7F] - 25/02/2011 - 19:09:26 ---A- . (.Atheros Communications, Inc. - Driver for Atheros Wireless Network Adapter.) -- C:\Windows\System32\Drivers\athw.sys [1992864]
O58 - SDL:[MD5.BD8869EB9CDE6BBE4508D869929869EE] - 13/07/2009 - 23:02:49 ---A- . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gigabit Ethernet..) -- C:\Windows\System32\Drivers\b57nd60x.sys [229888]
O58 - SDL:[MD5.2B8EE031FD700AB942EBE60665440E83] - 14/07/2009 - 02:26:15 ---A- . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\Drivers\battc.sys [25168]
O58 - SDL:[MD5.EB7C2DADF52F50F69F198C14C3556DC1] - 13/07/2009 - 23:02:48 ---A- . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless driver.) -- C:\Windows\System32\Drivers\BCMWL6.SYS [1131008]
O58 - SDL:[MD5.505506526A9D467307B3C393DEDAF858] - 14/07/2009 - 00:45:01 ---A- . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\Drivers\beep.sys [6144]
O58 - SDL:[MD5.2287078ED48FCFC477B05B20CF38F36F] - 14/07/2009 - 00:23:04 ---A- . (.Microsoft Corporation - BLB Drive Driver.) -- C:\Windows\System32\Drivers\blbdrive.sys [35328]
O58 - SDL:[MD5.8F2DA3028D5FCBD1A060A3DE64CD6506] - 16/07/2011 - 13:30:02 ---A- . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\Drivers\bowser.sys [69632]
O58 - SDL:[MD5.9F9ACC7F7CCDE8A15C282D3F88B43309] - 13/07/2009 - 23:53:28 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltLo.sys [13568]
O58 - SDL:[MD5.56801AD62213A41F6497F96DEE83755A] - 13/07/2009 - 23:53:28 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [5248]
O58 - SDL:[MD5.77361D72A04F18809D0EFB6CCEB74D4B] - 14/07/2009 - 01:41:26 ---A- . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\Drivers\bridge.sys [78336]
O58 - SDL:[MD5.845B8CE732E67F3B4133164868C666EA] - 14/07/2009 - 01:57:25 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\BrSerId.sys [272128]
O58 - SDL:[MD5.203F0B1E73ADADBBB7B7B1FABD901F6B] - 13/07/2009 - 23:53:32 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\Drivers\BrSerWdm.sys [62336]
O58 - SDL:[MD5.BD456606156BA17E60A04E18016AE54B] - 13/07/2009 - 23:53:33 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\Drivers\BrUsbMdm.sys [12160]
O58 - SDL:[MD5.AF72ED54503F717A43268B3CC5FAEC2E] - 13/07/2009 - 23:53:33 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\Drivers\BrUsbSer.sys [11904]
O58 - SDL:[MD5.E5B321F18A1D8B6B8DD397D92BA5946A] - 01/03/2011 - 14:43:04 ---A- . (.Atheros - Atheros A2DP driver.) -- C:\Windows\System32\Drivers\btath_a2dp.sys [259232]
O58 - SDL:[MD5.F60E0C722442EA91F0C253B7814D8192] - 01/03/2011 - 14:43:06 ---A- . (.Atheros - Atheros BUS driver.) -- C:\Windows\System32\Drivers\btath_bus.sys [24736]
O58 - SDL:[MD5.882EDBAFCC227852C9DCA23EA48D2E78] - 01/03/2011 - 14:43:06 ---A- . (.Atheros - Atheros FILTER driver.) -- C:\Windows\System32\Drivers\btath_flt.sys [34976]
O58 - SDL:[MD5.F31E369DB8258B28E3DCF66705AEA9E9] - 01/03/2011 - 14:43:06 ---A- . (.Atheros - Atheros HCRP driver.) -- C:\Windows\System32\Drivers\btath_hcrp.sys [175776]
O58 - SDL:[MD5.6651798266FDE23159D961463A63A77D] - 01/03/2011 - 14:43:06 ---A- . (.Atheros - Atheros FILTER driver.) -- C:\Windows\System32\Drivers\btath_lwflt.sys [49312]
O58 - SDL:[MD5.08EF5298DF80BC136523BCD2ED8B9C37] - 01/03/2011 - 14:43:06 ---A- . (.Atheros - Atheros AVRCP driver.) -- C:\Windows\System32\Drivers\btath_rcp.sys [141088]
O58 - SDL:[MD5.8F2223374E9FA01A016EAC0E05888D1D] - 01/03/2011 - 14:43:08 ---A- . (.Atheros - BtFilter Driver.) -- C:\Windows\System32\Drivers\btfilter.sys [242336]
O58 - SDL:[MD5.2865A5C8E98C70C605F417908CEBB3A4] - 14/07/2009 - 00:51:36 ---A- . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\Windows\System32\Drivers\bthenum.sys [34816]
O58 - SDL:[MD5.ED3DF7C56CE0084EB2034432FC56565A] - 14/07/2009 - 00:51:34 ---A- . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\Drivers\bthmodem.sys [56320]
O58 - SDL:[MD5.AD1872E5829E8A2C3B5B4B641C3EAB0E] - 14/07/2009 - 00:51:43 ---A- . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\Windows\System32\Drivers\bthpan.sys [93696]
O58 - SDL:[MD5.1153DE2E4F5941E10C399CB5592F78A1] - 06/07/2012 - 20:23:23 ---A- . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\Windows\System32\Drivers\bthport.sys [393728]
O58 - SDL:[MD5.C81E9413A25A439F436B1D4B6A0CF9E9] - 28/04/2011 - 04:15:03 ---A- . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\Windows\System32\Drivers\BTHUSB.SYS [60416]
O58 - SDL:[MD5.1A231ABEC60FD316EC54C66715543CEC] - 13/07/2009 - 23:02:48 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbdx.sys [430080]
O58 - SDL:[MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - 00:11:15 ---A- . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\Drivers\cdfs.sys [70656]
O58 - SDL:[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\Drivers\cdrom.sys [108544]
O58 - SDL:[MD5.3FE3FE94A34DF6FB06E6418D0F6A0060] - 14/07/2009 - 00:51:17 ---A- . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\Drivers\circlass.sys [37888]
O58 - SDL:[MD5.A6388A5ABF92C7927C085DB0A958125F] - 14/07/2009 - 02:26:15 ---A- . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\Drivers\Classpnp.sys [140864]
O58 - SDL:[MD5.DEA805815E587DAD1DD2C502220B5616] - 14/07/2009 - 00:19:18 ---A- . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\Drivers\CmBatt.sys [14080]
O58 - SDL:[MD5.C537B1DB64D495B9B4717B4D6D9EDBF2] - 14/07/2009 - 02:26:21 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\cmdide.sys [15952]
O58 - SDL:[MD5.85449EEBE8F8EBD6481EFBF0F352B4EB] - 04/07/2013 - 13:16:47 ---A- . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\Drivers\cng.sys [369848]
O58 - SDL:[MD5.A6023D3823C37043986713F118A89BEE] - 14/07/2009 - 02:26:21 ---A- . (.Microsoft Corporation - Composite Battery Driver.) -- C:\Windows\System32\Drivers\compbatt.sys [19024]
O58 - SDL:[MD5.CBE8C58A8579CFE5FCCF809E6F114E89] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\Drivers\CompositeBus.sys [31232]
O58 - SDL:[MD5.B7EFEF22FF426EC4158A177CB3B558D3] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\Drivers\crashdmp.sys [35408]
O58 - SDL:[MD5.2C4EBCFC84A9B44F209DFF6C6E6C61D1] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - Disk Block Verification Filter Driver.) -- C:\Windows\System32\Drivers\crcdisk.sys [22096]
O58 - SDL:[MD5.F024449C97EC1E464AAFFDA18593DB88] - 20/11/2010 - 22:29:07 ---A- . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\Drivers\dfsc.sys [78336]
O58 - SDL:[MD5.1A050B0274BFB3890703D490F330C0DA] - 14/07/2009 - 00:24:05 ---A- . (.Microsoft Corporation - System Indexer/Cache Driver.) -- C:\Windows\System32\Drivers\discache.sys [32256]
O58 - SDL:[MD5.565003F326F99802E68CA78F2A68E9FF] - 14/07/2009 - 02:20:27 ---A- . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\Drivers\disk.sys [57424]
O58 - SDL:[MD5.D0F0D7A97C90FE72A79732812E65F822] - 22/04/2011 - 20:14:16 ---A- . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\Drivers\Diskdump.sys [27008]
O58 - SDL:[MD5.8B30250D573A8F6B4BD23195160D8707] - 14/07/2009 - 02:20:28 ---A- . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\Drivers\djsvs.sys [70720]
O58 - SDL:[MD5.9842041E2F5ACE1E2F5FB4EF02053DC8] - 04/10/2013 - 02:49:41 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmk.sys [81408]
O58 - SDL:[MD5.B918E7C5F9BF77202F89E1A9539F2EB4] - 14/07/2009 - 00:50:57 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmkaud.sys [5120]
O58 - SDL:[MD5.5428227D4730EBDFC842E9FB593F8C8A] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\Drivers\Dumpata.sys [26704]
O58 - SDL:[MD5.62A63EF2F3053B461CB327E4D69AAA74] - 14/07/2009 - 02:17:54 ---A- . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\Drivers\dumpfve.sys [55584]
O58 - SDL:[MD5.5FCD3320AAE71506B43F9E12E4E72172] - 14/07/2009 - 00:25:26 ---A- . (.Microsoft Corporation - DirectX API Driver.) -- C:\Windows\System32\Drivers\dxapi.sys [13312]
O58 - SDL:[MD5.1B6242B20CB56F85A158E67F09EE84FE] - 14/07/2009 - 00:25:25 ---A- . (.Microsoft Corporation - DirectX Graphics Driver.) -- C:\Windows\System32\Drivers\dxg.sys [76288]
O58 - SDL:[MD5.71BC35067CABC02C9453AEAA42B2E43E] - 01/08/2013 - 12:03:36 ---A- . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys [729024]
O58 - SDL:[MD5.E405328A0E38BF823E2361C413283F6D] - 10/04/2013 - 06:18:40 ---A- . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\Drivers\dxgmms1.sys [218984]
O58 - SDL:[MD5.0ED67910C8C326796FAA00B2BF6D9D3C] - 14/07/2009 - 02:20:28 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [453712]
O58 - SDL:[MD5.8FC3208352DD3912C94367A206AB3F11] - 14/07/2009 - 00:19:19 ---A- . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\Drivers\errdev.sys [7168]
O58 - SDL:[MD5.024E1B5CAC09731E4D868E64DBFB4AB0] - 13/07/2009 - 23:02:48 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbdx.sys [3100160]
O58 - SDL:[MD5.2DC9108D74081149CC8B651D3A26207F] - 14/07/2009 - 00:14:03 ---A- . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\Drivers\exfat.sys [142336]
O58 - SDL:[MD5.7E0AB74553476622FB6AE36F73D97D35] - 14/07/2009 - 00:14:02 ---A- . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\Drivers\fastfat.sys [148480]
O58 - SDL:[MD5.E817A017F82DF2A1F8CFDBDA29388B29] - 14/07/2009 - 00:45:45 ---A- . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\Drivers\fdc.sys [25088]
O58 - SDL:[MD5.6CF00369C97F3CF563BE99BE983D13D8] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\Drivers\fileinfo.sys [58448]
O58 - SDL:[MD5.42C51DC94C91DA21CB9196EB64C45DB9] - 14/07/2009 - 00:15:29 ---A- . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\Drivers\filetrace.sys [28160]
O58 - SDL:[MD5.87907AA70CB3C56600F1C2FB8841579B] - 14/07/2009 - 00:45:45 ---A- . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\Drivers\flpydisk.sys [19968]
O58 - SDL:[MD5.7520EC808E0C35E0EE6F841294316653] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - Gestionnaire de filtres de système de fichiers Microsoft.) -- C:\Windows\System32\Drivers\fltMgr.sys [198208]
O58 - SDL:[MD5.1A16B57943853E598CFF37FE2B8CBF1D] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\fsdepends.sys [46160]
O58 - SDL:[MD5.7DAE5EBCC80E45D3253F4923DC424D05] - 01/03/2012 - 06:46:57 ---A- . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\Drivers\fs_rec.sys [19824]
O58 - SDL:[MD5.E306A24D9694C724FA2491278BF50FDB] - 24/01/2013 - 05:47:07 ---A- . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\Drivers\fvevol.sys [196328]
O58 - SDL:[MD5.AAB149EE616952BB84308C28E75ED20D] - 03/01/2013 - 06:04:43 ---A- . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\Drivers\FWPKCLNT.SYS [187752]
O58 - SDL:[MD5.65EE0C7A58B65E74AE05637418153938] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour plateformes de processe.) -- C:\Windows\System32\Drivers\GAGP30KX.SYS [57936]
O58 - SDL:[MD5.185ADA973B5020655CEE342059A86CBB] - 21/08/2012 - 12:01:22 ---A- . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\Drivers\GEARAspiWDM.sys [26840]
O58 - SDL:[MD5.C44E3C2BAB6837DB337DDEE7544736DB] - 13/07/2009 - 23:54:14 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [26624]
O58 - SDL:[MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\Drivers\hdaudbus.sys [108544]
O58 - SDL:[MD5.A5EF29D5315111C80A5C1ABAD14C8972] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\HdAudio.sys [304128]
O58 - SDL:[MD5.1D58A7F3E11A9731D0EAAAA8405ACC36] - 14/07/2009 - 00:19:21 ---A- . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\Drivers\hidbatt.sys [21504]
O58 - SDL:[MD5.89448F40E6DF260C206A193A4683BA78] - 14/07/2009 - 00:51:33 ---A- . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périphériques HID.) -- C:\Windows\System32\Drivers\hidbth.sys [91136]
O58 - SDL:[MD5.50ABE682EBE752EAF62B18790D6D491C] - 03/07/2013 - 04:36:24 ---A- . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\Drivers\hidclass.sys [55808]
O58 - SDL:[MD5.CF50B4CF4A4F229B9F3C08351F99CA5E] - 14/07/2009 - 00:51:05 ---A- . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidir.sys [37888]
O58 - SDL:[MD5.F1B27299F547D452EDAEF01FC187CB91] - 03/07/2013 - 04:36:22 ---A- . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\Drivers\hidparse.sys [25728]
O58 - SDL:[MD5.10C19F8290891AF023EAEC0832E1EB4D] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidusb.sys [24064]
O58 - SDL:[MD5.295FDC419039090EB8B49FFDBB374549] - 14/07/2009 - 02:20:28 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [67152]
O58 - SDL:[MD5.871917B07A141BFF43D76D8844D48106] - 20/11/2010 - 22:29:12 ---A- . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\Drivers\http.sys [513536]
O58 - SDL:[MD5.0C4E035C7F105F1299258C90886C64C5] - 20/11/2010 - 22:29:04 ---A- . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\Drivers\hwpolicy.sys [14208]
O58 - SDL:[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - 00:11:24 ---A- . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\Drivers\i8042prt.sys [80896]
O58 - SDL:[MD5.F4037A3FEDB92DD97C95F320766EA5C9] - 05/11/2010 - 22:39:18 ---A- . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\Drivers\iaStor.sys [354840]
O58 - SDL:[MD5.5CD5F9A5444E6CDCB0AC89BD62D8B76E] - 16/07/2011 - 13:32:05 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\Drivers\iaStorV.sys [332160]
O58 - SDL:[MD5.BA41E1BBA410212CE6D30E0DAC47972B] - 25/10/2010 - 06:10:04 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdkmd32.sys [4807168]
O58 - SDL:[MD5.4173FF5708F3236CF25195FECD742915] - 14/07/2009 - 02:20:36 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [41040]
O58 - SDL:[MD5.A0F12F2C9BA6C72F3987CE780E77C130] - 14/07/2009 - 02:20:36 ---A- . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\Drivers\intelide.sys [15424]
O58 - SDL:[MD5.3B514D27BFC4ACCB4037BC6685F766E0] - 14/07/2009 - 00:11:04 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\intelppm.sys [53760]
O58 - SDL:[MD5.709D1761D3B19A932FF0238EA6D50200] - 14/07/2009 - 00:54:29 ---A- . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\Drivers\ipfltdrv.sys [58880]
O58 - SDL:[MD5.4BD7134618C1D2A27466A099062547BF] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\Drivers\IPMIDrv.sys [65536]
O58 - SDL:[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - 00:54:29 ---A- . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys [101888]
O58 - SDL:[MD5.9F7E491FB0BA0F9E370163834FC1FE31] - 14/07/2009 - 00:53:32 ---A- . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\Drivers\irda.sys [96768]
O58 - SDL:[MD5.42996CFF20A3084A56017B7902307E9F] - 14/07/2009 - 00:53:27 ---A- . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\Drivers\irenum.sys [13824]
O58 - SDL:[MD5.1F32BB6B38F62F7DF1A7AB7292638A35] - 14/07/2009 - 02:20:36 ---A- . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\Drivers\isapnp.sys [46656]
O58 - SDL:[MD5.ADEF52CA1AEAE82B50DF86B56413107E] - 14/07/2009 - 02:20:36 ---A- . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\Drivers\kbdclass.sys [42576]
O58 - SDL:[MD5.9E3CED91863E6EE98C24794D05E27A71] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\Drivers\kbdhid.sys [28160]
O58 - SDL:[MD5.5DCEF0C32BE0F33277326586FA503689] - 20/11/2010 - 22:29:21 ---A- . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\Drivers\ks.sys [190976]
O58 - SDL:[MD5.F286830298323272260332D6ABC905C1] - 25/09/2013 - 03:01:06 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecdd.sys [67520]
O58 - SDL:[MD5.D7C760D57B1656DD748B9E4AB6CB5A51] - 25/09/2013 - 03:01:08 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface Packages.) -- C:\Windows\System32\Drivers\ksecpkg.sys [136640]
O58 - SDL:[MD5.F7611EC07349979DA9B0AE1F18CCC7A6] - 14/07/2009 - 00:53:19 ---A- . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\Drivers\lltdio.sys [48128]
O58 - SDL:[MD5.EB119A53CCF2ACC000AC71B065B78FEF] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_fc.sys [95824]
O58 - SDL:[MD5.8ADE1C877256A22E49B75D1CC9161F9C] - 14/07/2009 - 02:20:37 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [89168]
O58 - SDL:[MD5.DC9DC3D3DAA0E276FD2EC262E38B11E9] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [54864]
O58 - SDL:[MD5.0A036C7D7CAB643A7F07135AC47E0524] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [96848]
O58 - SDL:[MD5.6703E366CC18D3B6E534F5CF7DF39CEE] - 14/07/2009 - 00:15:45 ---A- . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichier LUA.) -- C:\Windows\System32\Drivers\luafv.sys [86528]
O58 - SDL:[MD5.4470E3C1E0C3378E4CAB137893C12C3A] - 04/04/2013 - 14:50:32 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [22856]
O58 - SDL:[MD5.EF08D2EBE3EABBA43CC57EEE001027B6] - 14/07/2009 - 00:45:57 ---A- . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\Drivers\mcd.sys [18432]
O58 - SDL:[MD5.0FFF5B045293002AB38EB1FD1FC2FB74] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7 for x86.) -- C:\Windows\System32\Drivers\megasas.sys [30800]
O58 - SDL:[MD5.DCBAB2920C75F390CAF1D29F675D03D6] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [235584]
O58 - SDL:[MD5.F001861E5700EE84E2D4E52C712F4964] - 14/07/2009 - 00:55:24 ---A- . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\Drivers\modem.sys [31744]
O58 - SDL:[MD5.79D10964DE86B292320E9DFE02282A23] - 14/07/2009 - 00:25:59 ---A- . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\Drivers\monitor.sys [23552]
O58 - SDL:[MD5.FB18CC1D4C2E716B6B903B0AC0CC0609] - 14/07/2009 - 02:20:44 ---A- . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\Drivers\mouclass.sys [41552]
O58 - SDL:[MD5.2C388D2CD01C9042596CF3C8F3C7B24D] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\Drivers\mouhid.sys [26112]
O58 - SDL:[MD5.FC8771F45ECCCFD89684E38842539B9B] - 20/11/2010 - 22:29:11 ---A- . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\Drivers\mountmgr.sys [78208]
O58 - SDL:[MD5.E77DC03DD3C8E5A388BF9EED2A28F3D1] - 27/09/2013 - 09:53:06 ---A- . (.Microsoft Corporation - Microsoft antimalware file system filter driver.) -- C:\Windows\System32\Drivers\MpFilter.sys [214696]
O58 - SDL:[MD5.2D699FB6E89CE0D8DA14ECC03B3EDFE0] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - Pilote du bus de prise en charge des chemins d'accès multiples.) -- C:\Windows\System32\Drivers\mpio.sys [130432]
O58 - SDL:[MD5.AD2723A7B53DD1AACAE6AD8C0BFBF4D0] - 14/07/2009 - 00:52:53 ---A- . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\Drivers\mpsdrv.sys [60416]
O58 - SDL:[MD5.21F4B24ACFC79A483515BD986DD9043F] - 04/07/2013 - 10:48:52 ---A- . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\Drivers\mrxdav.sys [115712]
O58 - SDL:[MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - 27/04/2011 - 03:17:22 ---A- . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\Drivers\mrxsmb.sys [123904]
O58 - SDL:[MD5.6D17A4791ACA19328C685D256349FEFC] - 09/07/2011 - 03:30:00 ---A- . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\Drivers\mrxsmb10.sys [223744]
O58 - SDL:[MD5.B81F204D146000BE76651A50670A5E9E] - 27/04/2011 - 03:17:28 ---A- . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\Drivers\mrxsmb20.sys [96768]
O58 - SDL:[MD5.012C5F4E9349E711E11E0F19A8589F0A] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) -- C:\Windows\System32\Drivers\msahci.sys [28032]
O58 - SDL:[MD5.55055F8AD8BE27A64C831322A780A228] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - Module spécifique de périphériques Microsoft.) -- C:\Windows\System32\Drivers\msdsm.sys [116096]
O58 - SDL:[MD5.DAEFB28E3AF5A76ABCC2C3078C07327F] - 14/07/2009 - 00:11:26 ---A- . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\Drivers\msfs.sys [22528]
O58 - SDL:[MD5.3E1E5767043C5AF9367F0056295E9F84] - 14/07/2009 - 00:51:08 ---A- . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\Drivers\mshidkmdf.sys [4096]
O58 - SDL:[MD5.0A4E5757AE09FA9622E3158CC1AEF114] - 14/07/2009 - 02:20:43 ---A- . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\Drivers\msisadrv.sys [13888]
O58 - SDL:[MD5.CB7A9ABB12B8415BCE5D74994C7BA3AE] - 20/11/2010 - 22:29:03 ---A- . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\Drivers\msiscsi.sys [233344]
O58 - SDL:[MD5.8C0860D6366AAFFB6C5BB9DF9448E631] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\Drivers\mskssrv.sys [8320]
O58 - SDL:[MD5.3EA8B949F963562CEDBB549EAC0C11CE] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\Drivers\mspclock.sys [5888]
O58 - SDL:[MD5.F456E973590D663B1073E9C463B40932] - 14/07/2009 - 00:45:07 ---A- . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\Drivers\mspqm.sys [5504]
O58 - SDL:[MD5.0E008FC4819D238C51D7C93E7B41E560] - 14/07/2009 - 02:20:44 ---A- . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\Drivers\msrpc.sys [162896]
O58 - SDL:[MD5.FC6B9FF600CC585EA38B12589BD4E246] - 14/07/2009 - 02:20:44 ---A- . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\Drivers\mssmbios.sys [28240]
O58 - SDL:[MD5.B42C6B921F61A6E55159B8BE6CD54A36] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\Drivers\mstee.sys [6144]
O58 - SDL:[MD5.33599130F44E1F34631CEA241DE8AC84] - 14/07/2009 - 00:46:55 ---A- . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\Windows\System32\Drivers\MTConfig.sys [12288]
O58 - SDL:[MD5.159FAD02F64E6381758C990F753BCC80] - 14/07/2009 - 02:20:44 ---A- . (.Microsoft Corporation - Multiple UNC Provider Driver.) -- C:\Windows\System32\Drivers\mup.sys [49728]
O58 - SDL:[MD5.8C9C922D71F1CD4DEF73F186416B7896] - 22/08/2012 - 18:16:46 ---A- . (.Microsoft Corporation - Pilote NDIS 6.20.) -- C:\Windows\System32\Drivers\ndis.sys [712048]
O58 - SDL:[MD5.0E1787AA6C9191D3D319E8BAFE86F80C] - 14/07/2009 - 00:52:44 ---A- . (.Microsoft Corporation - NDIS Packet Capture Filter Driver.) -- C:\Windows\
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
Modifié par Marou81 le 30/01/2014 à 20:23
Hello,

Héberge le sur https://www.cjoint.com/ ou http://pjjoint.malekal.com

A+
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
30 janv. 2014 à 22:28
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
Modifié par Marou81 le 31/01/2014 à 00:34
Bonsoir,

Cette démarche te permet de réinitialiser proxy, pare-feu. Si tu ne les as pas configurer tu peux continuer :)

A l'attention de ceux qui parcourent le sujet:

/!\ Ce script est exclusivement réservé à l'utilisateur actuel du sujet, vous ne devez en aucun cas l'utiliser de votre propre chef sur un autre pc, sous risque d'endommager le système /!\

? Ferme toutes tes applications en cours
? Ouvre http://cjoint.com/data3/3AFaF11NnVT.htm, sélectionne le script en entier et copie le (Edition --> Copier)
? Lance ZHPFix à partir du raccourci sur ton Bureau
? Clique sur importer
? Les lignes se collent automatiquement dans ZHPFix, sinon colle les lignes
? Clique sur le bouton « GO » pour lancer le nettoyage
? A la demande, confirme le nettoyage des données en cliquant sur [OK]
? Un rapport nommé ZHPFixReport.txt sera créé et sauvegardé sur le bureau
? Copie/colle la totalité du rapport dans ta prochaine réponse

Pour supprimer les outils de désinfections utilisés :

Télécharges DelFix par Xplode sur ton Bureau.

Lance DelFix, exécuter en tant qu'administrateur sous Windows : 7/8 et Vista
Coche les cases suivantes en gras:

Réactiver l'UAC
Supprimer les outils de désinfection

Effectuer une sauvegarde du registre
Purger la restauration système
Réinitialisation des paramètres système


Puis exécuter

Comment se comporte le pc ?

@+

Mon savoir repose sur un livre, mon ignorance couvre une bibliothèque.
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
31 janv. 2014 à 00:34
P.S : désactive ton antivirus avant de faire la démarche :)
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
31 janv. 2014 à 17:36
Voila le rapport :

Fichier d'export Registre : C:\Users\Phaazer\AppData\Roaming\ZHP\ZHPExportRegistry-31-01-2014-17-31-08.txt
Run by Phaazer at 31/01/2014 17:30:46
High Elevated Privileges : OK
Windows 7 Starter Edition, 32-bit Service Pack 1 (Build 7601)

Corbeille vidée (00mn 21s)
Réparation des raccourcis navigateur

========== Logiciels ==========
SUPPRIMÉ: Boxore Client
ABSENT Uninstall Process: c:\users\phaazer\appdata\local\discount dragon\uninstall.exe
SUPPRIMÉ: Java 6 Update 30
SUPPRIMÉ: Bing Bar
SUPPRIMÉ: UsbFix

========== Processus mémoire ==========
SUPPRIMÉ: Memory Process: C:\Users\Phaazer\AppData\Local\Facebook\Update\FacebookUpdate.exe

========== Clés du Registre ==========
SUPPRIMÉ: [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{903CFFD8-85BF-4A51-8A6D-4BBBCA346A6E}]
SUPPRIMÉ Logiciel Key: [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Discount Dragon]
SUPPRIMÉ: [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F83216024FF}]
SUPPRIMÉ: [HKLM\Software\Classes\Installer\Products\\82E17E6ABC34E3244B517B0CD07709E2]
SUPPRIMÉ: [HKLM\Software\Classes\Installer\Features\82E17E6ABC34E3244B517B0CD07709E2]
SUPPRIMÉ: [HKLM\Software\Classes\Installer\Products\\8DFFC309FB5815A4A8D6B4BBAC43A6E6]
SUPPRIMÉ: [HKLM\Software\Classes\Installer\Features\8DFFC309FB5815A4A8D6B4BBAC43A6E6]
SUPPRIMÉ: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\82E17E6ABC34E3244B517B0CD07709E2
SUPPRIMÉ: HKLM\SOFTWARE\SOFTWARE\UPDATE\CLIENTS\{5B54E9B6-D6C4-11E0-8E9D-92FB4824019B}
SUPPRIMÉ: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E5C8B5FB7CB5DD447A0BAAAF637FBD77
SUPPRIMÉ: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF96568971BEAC14B8815883832BD484
SUPPRIMÉ Driver Key: lrpilerb
SUPPRIMÉ: HKCU\Software\IncrediMail
SUPPRIMÉ: HKCU\Software\Usbfix
SUPPRIMÉ: SearchScopes :{D944BB61-2E34-4DBF-A683-47E505C587DC}
SUPPRIMÉ: [HKLM\Software\Classes\Installer\Products\\7E685771E24E83F4381D1DB5A45F7B41]
SUPPRIMÉ: [HKLM\Software\Classes\Installer\Features\7E685771E24E83F4381D1DB5A45F7B41]
SUPPRIMÉ: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7E685771E24E83F4381D1DB5A45F7B41
SUPPRIMÉ: HKLM\Software\Microsoft\Tracing\BingBar_RASAPI32

========== Valeurs du Registre ==========
SUPPRIMÉ RunValue: tuto4pc_fr_86
SUPPRIMÉ RunValue: tuto4pc_fr_85
SUPPRIMÉ RunValue: tuto4pc_fr_41
SUPPRIMÉ RunValue: tuto4pc_fr_52
SUPPRIMÉ RunValue: tuto4pc_fr_69
SUPPRIMÉ RunValue: tuto4pc_fr_80
SUPPRIMÉ: {83B24791-28BC-4BA6-908A-A158D9CBBA65}
SUPPRIMÉ: {2C8A0037-A4FE-4DE8-A508-3913025F179B}
SUPPRIMÉ RunValue: Akamai NetSession Interface
SUPPRIMÉ: {2EC84CD5-39AF-43AD-837A-47A11A9A6B24}
SUPPRIMÉ: {F05F3A4F-B6A8-4559-8295-DB4B27AC46A0}
SUPPRIMÉ: TCP Query User{3B53C6B2-AE12-40AC-BC5D-61F83FBF950F}C:\users\phaazer\appdata\local\akamai\netsession_win.exe
SUPPRIMÉ: UDP Query User{231B4603-2F14-466B-A7EF-1A947EA2EA9C}C:\users\phaazer\appdata\local\akamai\netsession_win.exe
SUPPRIMÉ: Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}
SUPPRIMÉ: Toolbar: {90B49673-5506-483E-B92B-CA0265BD9CA8}
Aucune Valeur Standard Profile: FirewallRaz :
Aucune Valeur Domain Profile: FirewallRaz :
SUPPRIMÉ: FirewallRaz (Public) : {B101FDBA-00EF-4DEC-B174-09154BFA33A1}
SUPPRIMÉ: FirewallRaz (Public) : {BB2154E3-8CCA-4EA1-98B4-DE9C4657893A}
SUPPRIMÉ: FirewallRaz (Public) : TCP Query User{37747597-1893-4CCD-A414-0FBD7223AC55}C:\program files\tera\tera-launcher.exe
SUPPRIMÉ: FirewallRaz (Public) : UDP Query User{8A6A5EEC-3A9D-4731-AAA9-D29168E9C342}C:\program files\tera\tera-launcher.exe
SUPPRIMÉ: FirewallRaz (Domain) : {9EE745BB-E500-4F33-AC79-901CA0C427D0}
SUPPRIMÉ: FirewallRaz (Public) : {CCA8C8A6-7172-4A72-A339-34C911CE418A}
SUPPRIMÉ: FirewallRaz (Public) : {95E42E3B-6FC7-441B-A67D-B70A3079CFE5}
SUPPRIMÉ: FirewallRaz (Public) : {E0033DF1-FA8E-464B-9FB9-1643B45465E9}
SUPPRIMÉ: FirewallRaz (Public) : {28E82D53-FA03-4917-B4DB-40AD90CCC8C1}
SUPPRIMÉ: FirewallRaz (Private) : {B0A93540-5708-4695-A576-D593A0EB5D19}
SUPPRIMÉ: FirewallRaz (Private) : {6B96F452-97C9-49A9-A1B0-27D8AF53FD31}
SUPPRIMÉ: FirewallRaz (Private) : {2C9CD6AD-AB13-4949-8E87-8E6A961C43CD}
SUPPRIMÉ: FirewallRaz (Private) : {FE7DB328-0F98-4A2A-9F49-B8CBD94F2D72}
ProxyFix : Configuration proxy supprimée avec succès
SUPPRIMÉ ProxyServer Value
SUPPRIMÉ ProxyEnable Value
SUPPRIMÉ EnableHttp1_1 Value
SUPPRIMÉ ProxyHttp1.1 Value
SUPPRIMÉ ProxyOverride Value

========== Eléments de donnée du Registre ==========
SUPPRIMÉ: R1 Search Page =

========== Dossiers ==========
Aucun dossiers CLSID Local utilisateur vide

========== Fichiers ==========
SUPPRIMÉ: c:\users\phaazer\appdata\local\google\chrome\user data\default\preferences
SUPPRIMÉ: C:\Windows\Installer\1966f84e.msi
SUPPRIMÉ: C:\Windows\Installer\da6718.msi
SUPPRIMÉ: C:\Windows\Installer\da671f.msi
SUPPRIMÉ Redémarrage: c:\users\phaazer\appdata\local\akamai\netsession_win.exe
SUPPRIMÉ: c:\windows\tasks\facebookupdatetaskusers-1-5-21-2550636160-3718483610-2762821818-1000core.job
SUPPRIMÉ: c:\windows\tasks\facebookupdatetaskusers-1-5-21-2550636160-3718483610-2762821818-1000ua.job
SUPPRIMÉ: c:\windows\system32\doerrors.log
SUPPRIMÉ: C:\Windows\Installer\1640b81.msi
SUPPRIMÉS Temporaires Windows (9) (376 827 octets)

========== Fichier HOSTS ==========
Le fichier Hosts n'est pas réparé, veuillez désactiver votre antivirus.

========== Tache planifiée ==========
SUPPRIMÉ: FacebookUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000Core
SUPPRIMÉ: FacebookUpdateTaskUserS-1-5-21-2550636160-3718483610-2762821818-1000UA
SUPPRIMÉ: {9D3ED051-C82A-4C85-B7C6-AE421BCEC0D8}
SUPPRIMÉ: Norton Error Analyzer 18.7.2.3
SUPPRIMÉ: Norton Error Processor 18.7.2.3

========== Restauration Système ==========
Aucun Point de restauration du système crée

========== Autre ==========
NON TRAITÉ Adobe Reader X


========== Récapitulatif ==========
1 : Processus mémoire
19 : Clés du Registre
36 : Valeurs du Registre
1 : Eléments de donnée du Registre
1 : Dossiers
10 : Fichiers
5 : Logiciels
1 : Fichier HOSTS
5 : Tache planifiée
1 : Restauration Système
1 : Autre


End of clean in 04mn 35s

========== Chemin de fichier rapport ==========
C:\Users\Phaazer\AppData\Roaming\ZHP\ZHPFix[R1].txt - 24/01/2014 13:23:58 [485]
C:\Users\Phaazer\AppData\Roaming\ZHP\ZHPFix[R2].txt - 31/01/2014 17:31:08 [6451]
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
31 janv. 2014 à 17:52
Bonjours , alors après avoir exécuté le logiciel DelFix ça m'a envoyer un rapport que je t'enverrais a la fin de ce comm' d'ici la je vais redémarrer mon PC en mode normal et te dire comment se comporte cette machine infernale x)

# DelFix v10.6 - Rapport créé le 31/01/2014 à 17:48:32
# Mis à jour le 11/11/2013 par Xplode
# Nom d'utilisateur : Phaazer - PHAAZER-HP
# Système d'exploitation : Windows 7 Starter Service Pack 1 (32 bits)

~ Activation de l'UAC ... OK

~ Suppression des outils de désinfection ...

Supprimé : C:\AdwCleaner
Supprimé : C:\Users\Phaazer\AppData\Roaming\ZHP
Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
Supprimé : C:\Program Files\ZHPDiag
Supprimé : C:\PhysicalDisk0_MBR.bin
Supprimé : C:\Users\Phaazer\Desktop\ZHPDiag.lnk
Supprimé : C:\Users\Phaazer\Desktop\ZHPFix.lnk
Supprimé : C:\Users\Phaazer\Desktop\ZHPFixReport.txt
Supprimée : HKLM\SOFTWARE\AdwCleaner
Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZHPDiag_is1

~ Purge de la restauration système ...

Supprimé : RP #461 [Windows Update | 01/25/2014 15:32:15]

Nouveau point de restauration créé !

~ Réinitialisation des paramètres système ... OK

########## - EOF - ##########
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
31 janv. 2014 à 19:55
Bonsoir,

Des améliorations ?

Réinstalle java ici : https://www.java.com/fr/download/

A+

Pense à mettre à jour tout tes logiciels, je te donnerais les infos plus tard.
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
1 févr. 2014 à 18:42
Il y a une amélioration je l'ag plus du tout sur le bureau je te remercie deja pour ça ! :)) mais lorsque je veux ouvrir quelque chose (une page internet ou un dossier) rien ne passe :/
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
1 févr. 2014 à 21:30
Bonsoir,

? Cliquer sur le bouton Démarrer
? Dans la zone de recherche taper : cmd
? En haut, sur cmd (ou cmd.exe) faire un clic-droit -> Exécuter en tant qu'administrateur.
? Dans l'invite de commande, taper sfc /scannow (en respectant l'espace après sfc) -> Entrée

? Analyse de tous les fichiers système protégés et remplacement des versions incorrectes par des versions Microsoft appropriées.
? Si tout va bien : "Le programme de protection des ressources Windows n'a trouvé aucune violation d'intégrité"
? Sinon : Windows dit s'il a pu réparer (ou pas) et demande de redémarrer le PC pour achever la réparation.
? Redémarrer l'ordinateur !

A+
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
1 févr. 2014 à 22:58
D'accord Je m'y met :) mais est-ce que sa pose problème si ça redémarre en mode sans échec ? :/
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
1 févr. 2014 à 23:01
non pourquoi tu me pose la question ?
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
1 févr. 2014 à 23:03
Si je le fait redémarrer en Mode sans échec*
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
1 févr. 2014 à 23:11
peu importe, tu peux le faire :)
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
2 févr. 2014 à 03:38
Ok dac :)
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
2 févr. 2014 à 14:57
j'attend de tes nouvelles
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
2 févr. 2014 à 18:12
Bonsoir, il est écrit a partir de 32 % que " La protection des ressource Windows n'a pas réussit à effectuer l'opération demandée" :/
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
2 févr. 2014 à 18:15
Re,

Clique sur le menu Démarrer
Clique sur Poste de travail (Ordinateur pour Windows VISTA/7)
Fais un clic droit sur le disque où Windows est installé (souvent c'est le disque C)
Clique sur Propriétés
Clique sur Outil
Clique sur Vérifier maintenant
Coche les deux cases "réparer automatiquement les erreurs de fichiers systéme" et "rechercher et tenter une récupération des secteurs défectueux"
Clique sur planifier la vérification du disque
Redémarre ton ordinateur, une vérification va s'effectuer au redémarrage.

a+
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
3 févr. 2014 à 14:23
C'est fait :)

Je te répond actuellement en mode normal sur mon PC ! Je te remercie d'avoir eu la patience pour m'aidé, mon PC est récurer est ne lag quasi plus ! :D

Si mon PC n'en fait a nouveau qu'a sa tête je n'aurai qu'a refaire tout le procédé je pense x) en tout cas merci beaucoup !!! :D
0
Marou81 Messages postés 4175 Date d'inscription mercredi 13 janvier 2010 Statut Membre Dernière intervention 18 mars 2014 197
3 févr. 2014 à 14:56
Bonjour,

De rien ça fait plaisir.

Pense à mettre résolu :)

Un antivirus est utile, mais qu'il soit gratuit ou payant, aucun antivirus ne te protègera à 100%, loin de là ! Le choix de l'antivirus n'est pas l'élément le plus important pour la sécurité d'un ordinateur, il faut prendre d'autres précautions :

▶ N'oublie pas de garder Windows à jour via Windows Update (accessible via le menu démarrer, dans la liste des programmes). L'idéal est de laisser activées les mises à jour automatiques.

▶ Garde aussi tes logiciels à jour, c'est très important d'avoir les dernières versions pour combler les failles de sécurité. Si tu souhaites être prévenu des mises à jour importantes à effectuer à l'avenir, je me permets de te signaler l'existence d'une lettre d'information proposée en bas à gauche de ce site. En t'inscrivant, tu recevras un e-mail dès que des mises à jour importantes pour la sécurité de ton ordinateur sont disponibles. Ces messages contiendront des explications pour savoir comment procéder, au cas où tu ne te sentes pas à l'aise pour le faire seul.

▶ Pour naviguer sur internet plus en sécurité et à l'abri des publicités, je te conseille vivement d'installer et d'utiliser exclusivement le navigateur Mozilla Firefox. Une fois que c'est fait, lance le et installe les deux extensions de sécurité suivantes :
AdBlockPlus pour bloquer les publicités ;
WOT, pour t'avertir des sites web dangereux.

▶ WOT est également disponibles pour d'autres navigateurs si tu le souhaites : ici.

▶ Si ton antivirus est Avira AntiVir, ignore cette étape : Vaccine tes disques amovibles à l'aide de MKV (de El Desaparecido et C_XX) : il suffit de brancher tous tes disques amovibles (clé USB, disque dur externe, lecteur mp3, cartes mémoire...) sans les ouvrir, puis de lancer MKV et cliquer sur "Vacciner".

▶ Ne pas avoir un comportement à risque (installer tout et n'importe quoi sans réfléchir, télécharger des cracks...) Consulte ceci pour comprendre comment les infections actuelles se propagent et savoir les éviter : Prévention et sécurité sur internet.
0
Jetroo Messages postés 37 Date d'inscription vendredi 24 janvier 2014 Statut Membre Dernière intervention 3 février 2014
3 févr. 2014 à 15:38
C'est vrais que j'ais oublier de mettre que c'est résolu mdrr
0