salut florinator
je viens de faire une analyse avec ZHPDiag voici le rapport je le met en 2 message puisqu il y a trop de caracteres
Rapport de ZHPDiag v1.24.44 par Nicolas Coolman
Run by lohardcore at 18/02/2010 19:40:43
Web site :
http://www.premiumorange.com/zeb-help-p ... pdiag.htmlPlatform : Windows 7 Ultimate
MSIE: Internet Explorer v8.0.7600.16385
MFIE: Mozilla Firefox (3.6)
Boot mode: Normal (Normal boot)
Total RAM: 2046 MB (70% free)
System drive C: has 52 GB (53%) free of 98 GB
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 52 Go of 98 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 138 Go of 149 Go)
E:\ Hard drive, Flash drive, Thumb drive (Free 147 Go of 368 Go)
G:\ CD-ROM drive (Not Inserted)
H:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
I:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
J:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
K:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
L:\ Hard drive, Flash drive, Thumb drive (Free 194 Go of 466 Go)
M:\ CD-ROM drive (Not Inserted)
---\\ Processus lancés
[MD5.72A7A352072EB6EC4953F9F580463B0D] - C:\PROGRA~1\AVG\AVG9\avgtray.exe
[MD5.8FC43D74CEA55EEFFB501870EDE86E11] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
[MD5.54A47F6B5E09A77E61649109C6A08866] - C:\Windows\System32\svchost.exe
[MD5.C34AB3B34ACC0260EBFEAB2827D99C45] - C:\Program Files\AVG\AVG9\avgemc.exe
[MD5.7E7B5FA964F578ACD655E8BEEAE2A5CA] - C:\Program Files\AVG\AVG9\avgwdsvc.exe
[MD5.E99AB6681D6B0946E102E7FC89854CB2] - C:\Windows\system32\nvvsvc.exe
[MD5.F42309C4191C506B71DB5D1126D26318] - C:\Windows\system32\lsass.exe
[MD5.4C287F9069FEDBD791178876EE9DE536] - C:\Windows\system32\sppsvc.exe
[MD5.7F8C9C766B7EE6B56895B3C1608637B7] - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
---\\ Pages de démarrage d'Internet Explorer (R0)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com---\\ Pages de recherche d'Internet Explorer (R1)
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dl ... r=iesearchR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
---\\ Internet Explorer URLSearchHook (R3)
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
---\\ Applications démarrées automatiquement par le registre (O4)
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\policies\Explorer: [NoDrives] Data=0
O4 - HKCU\..\policies\Explorer: [NoDriveTypeAutoRun] Data=145
O4 - HKCU\..\policies\Explorer: [NoDrives] Data=0
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: E&xporter vers Microsoft Excel -
res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll,201
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFBARH.ICO
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File - C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File - C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000003\Winsock LSP File - C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000004\Winsock LSP File - C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000005\Winsock LSP File - C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000006\Winsock LSP File - C:\Windows\system32\pnrpnsp.dll
---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/s ... wflash.cab---\\ Protocole additionnel et piratage de protocole (O18)
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\system32\urlmon.dll
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\msvidctl.dll
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll
O18 - Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\system32\inetcomm.dll
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\msvidctl.dll
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - AppInit_DLLs: C:\Windows\System32\avgrsstx.dll,avgrsstx.dll
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - %Systemroot%\system32\webcheck.dll
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: AVG E-mail Scanner (avg9emc) - C:\Program Files\AVG\AVG9\avgemc.exe
O23 - Service: AVG WatchDog (avg9wd) - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - C:\Windows\system32\nvvsvc.exe
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - C:\Windows\system32\sppsvc.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\system32\unregmp2.exe /HideWMP
O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\System32\ie4uinit.exe -UserIconConfig
O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - (not file)
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\System32\wmpdxm.dll
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - C:\Windows\system32\regsvr32.exe /s /n /i:/UserInstall C:\Windows\system32\themeui.dll
O40 - ASIC: Offline Browsing Pack - {3af36230-a269-11d1-b5bf-0000f8051515} - (not file)
O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
O40 - ASIC: DirectDrawEx - {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - (not file)
O40 - ASIC: Internet Explorer Help - {45ea75a0-a269-11d1-b5bf-0000f8051515} - (not file)
O40 - ASIC: Microsoft Windows Script 5.6 - {4f645220-306d-11d2-995d-00c04f98bbc9} - (not file)
O40 - ASIC: Internet Explorer Setup Tools - {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} - C:\Windows\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI
O40 - ASIC: MSN Site Access - {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - (not file)
O40 - ASIC: Address Book 7 - {7790769C-0471-11d2-AF11-00C04FA35D02} - (not file)
O40 - ASIC: .NET Framework - {7C028AF8-F614-47B3-82DA-BA94E41B1089} - (not file)
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -BaseSettings
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
O40 - ASIC: Dynamic HTML Data Binding - {9381D8F2-0288-11D0-9501-00AA00B911A5} - (not file)
O40 - ASIC: .NET Framework - {C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD} - (not file)
O40 - ASIC: Internet Explorer Core Fonts - {C9E9A340-D1F1-11D0-821E-444553540600} - (not file)
O40 - ASIC: Macromedia Shockwave Flash - {D27CDB6E-AE6D-11CF-96B8-444553540000} - C:\Windows\system32\Macromed\Flash\Flash10d.ocx
O40 - ASIC: HTML Help - {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Active Directory Service Interface - {E92B03AB-B707-11d2-9CBD-0000F87A369E} - (not file)
---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: @%systemroot%\system32\drivers\afd.sys,-1000 (AFD) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: archlp (archlp) - C:\WINDOWS\system32\drivers\archlp.sys
O41 - Driver: AVG AVI Loader Driver x86 (AvgLdx86) - C:\Windows\System32\Drivers\avgldx86.sys
O41 - Driver: AVG On-access Scanner Minifilter Driver x86 (AvgMfx86) - C:\Windows\System32\Drivers\avgmfx86.sys
O41 - Driver: AVG Network Redirector (AvgTdiX) - C:\Windows\System32\Drivers\avgtdix.sys
O41 - Driver: (no object) (blbdrive) - C:\WINDOWS\system32\DRIVERS\blbdrive.sys
O41 - Driver: Pilote de CD-ROM (cdrom) - C:\WINDOWS\system32\DRIVERS\cdrom.sys
O41 - Driver: @%systemroot%\system32\cscsvc.dll,-202 (CSC) - C:\WINDOWS\system32\drivers\csc.sys
O41 - Driver: @%systemroot%\system32\drivers\dfsc.sys,-101 (DfsC) - C:\WINDOWS\System32\Drivers\dfsc.sys
O41 - Driver: @%systemroot%\system32\drivers\discache.sys,-102 (discache) - C:\WINDOWS\System32\drivers\discache.sys
O41 - Driver: Pilote BIOS de gestion de systèmes Microsoft (mssmbios) - C:\WINDOWS\system32\DRIVERS\mssmbios.sys
O41 - Driver: NetBIOS Interface (NetBIOS) - C:\WINDOWS\system32\DRIVERS\netbios.sys
O41 - Driver: @%SystemRoot%\system32\drivers\netbt.sys,-2 (NetBT) - C:\WINDOWS\System32\DRIVERS\netbt.sys
O41 - Driver: @%SystemRoot%\system32\drivers\nsiproxy.sys,-2 (nsiproxy) - C:\WINDOWS\system32\drivers\nsiproxy.sys
O41 - Driver: @%SystemRoot%\System32\drivers\pacer.sys,-101 (Psched) - C:\WINDOWS\system32\DRIVERS\pacer.sys
O41 - Driver: @%systemroot%\system32\wkssvc.dll,-1000 (rdbss) - C:\WINDOWS\system32\DRIVERS\rdbss.sys
O41 - Driver: @%systemroot%\system32\DRIVERS\RDPCDD.sys,-100 (RDPCDD) - C:\WINDOWS\System32\DRIVERS\RDPCDD.sys
O41 - Driver: @%systemroot%\system32\drivers\RDPENCDD.sys,-101 (RDPENCDD) - C:\WINDOWS\system32\drivers\rdpencdd.sys
O41 - Driver: @%systemroot%\system32\drivers\RdpRefMp.sys,-101 (RDPREFMP) - C:\WINDOWS\system32\drivers\rdprefmp.sys
O41 - Driver: Pilote de port série (Serial) - C:\WINDOWS\system32\DRIVERS\serial.sys
O41 - Driver: @%SystemRoot%\system32\tcpipcfg.dll,-50004 (tdx) - C:\WINDOWS\system32\DRIVERS\tdx.sys
O41 - Driver: Pilote de périphérique terminal (TermDD) - C:\WINDOWS\system32\DRIVERS\termdd.sys
O41 - Driver: (no object) (TVicPort64) - C:\Windows\SysWOW64\drivers\TVicPort64.sys
O41 - Driver: (no object) (VgaSave) - C:\Windows\System32\drivers\vga.sys
O41 - Driver: Virtual PC Network Filter Driver (vpcnfltr) - C:\WINDOWS\system32\DRIVERS\vpcnfltr.sys
O41 - Driver: @%SystemRoot%\system32\drivers\vpcvmm.sys,-100 (vpcvmm) - C:\WINDOWS\system32\drivers\vpcvmm.sys
O41 - Driver: @%systemroot%\system32\rascfg.dll,-32012 (Wanarpv6) - C:\WINDOWS\system32\DRIVERS\wanarp.sys
O41 - Driver: WFP Lightweight Filter (WfpLwf) - C:\WINDOWS\system32\DRIVERS\wfplwf.sys
---\\ Logiciels installés (O42)
O42 - Logiciel: 3DMark Vantage
O42 - Logiciel: 3DMark06
O42 - Logiciel: @BIOS Ver.2.01
O42 - Logiciel: AVG 9.0
O42 - Logiciel: Adobe Flash Player 10 ActiveX
O42 - Logiciel: Adobe Flash Player 10 Plugin
O42 - Logiciel: Adobe Reader 9.3 - Français
O42 - Logiciel: ArcSoft TotalMedia Theatre 3
O42 - Logiciel: Assistant de connexion Windows Live
O42 - Logiciel: BioShock 2
O42 - Logiciel: CCleaner
O42 - Logiciel: CDex - Open Source Digital Audio CD Extractor
O42 - Logiciel: CPUID CPU-Z 1.53.1
O42 - Logiciel: Call of Duty Modern Warfare 2
O42 - Logiciel: Combined Community Codec Pack 2008-09-21 16:18
O42 - Logiciel: DScaler 5 Mpeg Decoders
O42 - Logiciel: Driver Sweeper 2.1.0
O42 - Logiciel: DriverMax 5
O42 - Logiciel: Futuremark SystemInfo
O42 - Logiciel: Galerie de photos Windows Live
O42 - Logiciel: Game Booster
O42 - Logiciel: HomePlayer 1.5.9
O42 - Logiciel: Installation Windows Live
O42 - Logiciel: Intel(R) Control Center
O42 - Logiciel: Intel(R) Rapid Storage Technology
O42 - Logiciel: Java(TM) 6 Update 18
O42 - Logiciel: Junk Mail filter update
O42 - Logiciel: LG PC Suite
O42 - Logiciel: LG USB Modem Driver
O42 - Logiciel: Logiciel d'archivage WinRAR
O42 - Logiciel: MSI Afterburner 1.5.0
O42 - Logiciel: MSI Kombustor(BETA) v0.8.0
O42 - Logiciel: MSVCRT
O42 - Logiciel: MSXML 4.0 SP2 (KB954430)
O42 - Logiciel: MSXML 4.0 SP2 (KB973688)
O42 - Logiciel: Ma-Config.com
O42 - Logiciel: Malwarebytes' Anti-Malware
O42 - Logiciel: Media Browser
O42 - Logiciel: Mega Manager
O42 - Logiciel: MemSet 3.6
O42 - Logiciel: Microsoft Choice Guard
O42 - Logiciel: Microsoft Games for Windows - LIVE
O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable
O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2)
O42 - Logiciel: Microsoft Office Access MUI (French) 2007
O42 - Logiciel: Microsoft Office Excel MUI (French) 2007
O42 - Logiciel: Microsoft Office InfoPath MUI (French) 2007
O42 - Logiciel: Microsoft Office Outlook Connector
O42 - Logiciel: Microsoft Office Outlook MUI (French) 2007
O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007
O42 - Logiciel: Microsoft Office Professional Plus 2007
O42 - Logiciel: Microsoft Office Proof (Arabic) 2007
O42 - Logiciel: Microsoft Office Proof (Dutch) 2007
O42 - Logiciel: Microsoft Office Proof (English) 2007
O42 - Logiciel: Microsoft Office Proof (French) 2007
O42 - Logiciel: Microsoft Office Proof (German) 2007
O42 - Logiciel: Microsoft Office Proof (Spanish) 2007
O42 - Logiciel: Microsoft Office Proofing (French) 2007
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
O42 - Logiciel: Microsoft Office Publisher MUI (French) 2007
O42 - Logiciel: Microsoft Office Shared MUI (French) 2007
O42 - Logiciel: Microsoft Office Word MUI (French) 2007
O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU]
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable
O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
O42 - Logiciel: Mozilla Firefox (3.6)
O42 - Logiciel: NVIDIA Display Control Panel
O42 - Logiciel: NVIDIA Drivers
O42 - Logiciel: NVIDIA PhysX
O42 - Logiciel: OCCT Perestroika 3.1.0
O42 - Logiciel: OpenAL
O42 - Logiciel: Outil de téléchargement Windows Live
O42 - Logiciel: PC Wizard 2010.1.93
O42 - Logiciel: PCMark Vantage
O42 - Logiciel: Razer Copperhead
O42 - Logiciel: Razer Reclusa Config
O42 - Logiciel: ReClock (remove only)
O42 - Logiciel: Realtek Ethernet Controller Driver For Windows 7
O42 - Logiciel: Realtek High Definition Audio Driver
O42 - Logiciel: Refresh Rate Changer v2
O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB969559)
O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB973704)
O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB973593)
O42 - Logiciel: Security Update for Microsoft Office Outlook 2007 (KB972363)
O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB957789)
O42 - Logiciel: Security Update for Microsoft Office Publisher 2007 (KB969693)
O42 - Logiciel: Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
O42 - Logiciel: Security Update for Microsoft Office system 2007 (972581)
O42 - Logiciel: Security Update for Microsoft Office system 2007 (KB969613)
O42 - Logiciel: Security Update for Microsoft Office system 2007 (KB974234)
O42 - Logiciel: SpeedFan (remove only)
O42 - Logiciel: Spelling Dictionaries Support For Adobe Reader 9
O42 - Logiciel: Spybot - Search & Destroy
O42 - Logiciel: The KMPlayer v2.9.4.1434 FR
O42 - Logiciel: TuneUp Utilities
O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642)
O42 - Logiciel: Update for Microsoft Office InfoPath 2007 (KB976416)
O42 - Logiciel: Update for Microsoft Office Word 2007 (KB974561)
O42 - Logiciel: Update for Outlook 2007 Junk Email Filter (kb977719)
O42 - Logiciel: Winamp
O42 - Logiciel: Windows Live Call
O42 - Logiciel: Windows Live Communications Platform
O42 - Logiciel: Windows Live FolderShare
O42 - Logiciel: Windows Live Mail
O42 - Logiciel: Windows Live Messenger
O42 - Logiciel: Windows Live Movie Maker
O42 - Logiciel: Windows Live Writer
---\\ Contenu des dossiers Fichiers Communs (O43)
O43 - CFD:Common File Directory ----D- C:\Program Files\2K Games
O43 - CFD:Common File Directory ----D- C:\Program Files\Adobe
O43 - CFD:Common File Directory ----D- C:\Program Files\AGEIA Technologies
O43 - CFD:Common File Directory ----D- C:\Program Files\ArcSoft
O43 - CFD:Common File Directory ----D- C:\Program Files\AVG
O43 - CFD:Common File Directory ----D- C:\Program Files\Call of Duty Modern Warfare 2
O43 - CFD:Common File Directory ----D- C:\Program Files\CCleaner
O43 - CFD:Common File Directory ----D- C:\Program Files\CDex
O43 - CFD:Common File Directory ----D- C:\Program Files\Combined Community Codec Pack
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files
O43 - CFD:Common File Directory ----D- C:\Program Files\CPUID
O43 - CFD:Common File Directory ----D- C:\Program Files\DAEMON Tools Lite
O43 - CFD:Common File Directory ----D- C:\Program Files\DAEMON Tools Toolbar
O43 - CFD:Common File Directory ----D- C:\Program Files\DFX
O43 - CFD:Common File Directory ----D- C:\Program Files\Driver Sweeper
O43 - CFD:Common File Directory ----D- C:\Program Files\DScaler5
O43 - CFD:Common File Directory ----D- C:\Program Files\DVD Maker
O43 - CFD:Common File Directory -SH-D- C:\Program Files\Fichiers communs
O43 - CFD:Common File Directory ----D- C:\Program Files\Futuremark
O43 - CFD:Common File Directory ----D- C:\Program Files\GIGABYTE
O43 - CFD:Common File Directory ----D- C:\Program Files\HomePlayer
O43 - CFD:Common File Directory ----D- C:\Program Files\Innovative Solutions
O43 - CFD:Common File Directory --H-D- C:\Program Files\InstallShield Installation Information
O43 - CFD:Common File Directory ----D- C:\Program Files\Intel
O43 - CFD:Common File Directory ----D- C:\Program Files\Internet Explorer
O43 - CFD:Common File Directory ----D- C:\Program Files\IObit
O43 - CFD:Common File Directory ----D- C:\Program Files\Java
O43 - CFD:Common File Directory ----D- C:\Program Files\LG Electronics
O43 - CFD:Common File Directory ----D- C:\Program Files\LG PC Suite 2
O43 - CFD:Common File Directory ----D- C:\Program Files\ma-config.com
O43 - CFD:Common File Directory ----D- C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD:Common File Directory ----D- C:\Program Files\MediaBrowser
O43 - CFD:Common File Directory ----D- C:\Program Files\Megaupload
O43 - CFD:Common File Directory ----D- C:\Program Files\MemSet
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Games
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Games for Windows - LIVE
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Office
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Office Outlook Connector
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Visual Studio
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Visual Studio 8
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Works
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft.NET
O43 - CFD:Common File Directory ----D- C:\Program Files\Mozilla Firefox 3.6 Beta 3
O43 - CFD:Common File Directory ----D- C:\Program Files\MSBuild
O43 - CFD:Common File Directory ----D- C:\Program Files\MSI Afterburner
O43 - CFD:Common File Directory ----D- C:\Program Files\MSI Kombustor
O43 - CFD:Common File Directory ----D- C:\Program Files\MSXML 4.0
O43 - CFD:Common File Directory ----D- C:\Program Files\NeoSmart Technologies
O43 - CFD:Common File Directory ----D- C:\Program Files\NVIDIA Corporation
O43 - CFD:Common File Directory ----D- C:\Program Files\OCCT
O43 - CFD:Common File Directory ----D- C:\Program Files\OpenAL
O43 - CFD:Common File Directory ----D- C:\Program Files\Phyxion.net
O43 - CFD:Common File Directory ----D- C:\Program Files\Razer
O43 - CFD:Common File Directory ----D- C:\Program Files\Realtek
O43 - CFD:Common File Directory ----D- C:\Program Files\ReClock
O43 - CFD:Common File Directory ----D- C:\Program Files\Reference Assemblies
O43 - CFD:Common File Directory ----D- C:\Program Files\RRC
O43 - CFD:Common File Directory ----D- C:\Program Files\SpeedFan
O43 - CFD:Common File Directory ----D- C:\Program Files\Spybot - Search & Destroy
O43 - CFD:Common File Directory --H-D- C:\Program Files\Temp
O43 - CFD:Common File Directory ----D- C:\Program Files\The KMPlayer FR
O43 - CFD:Common File Directory ----D- C:\Program Files\TuneUp Utilities 2010
O43 - CFD:Common File Directory --H-D- C:\Program Files\Uninstall Information
O43 - CFD:Common File Directory ----D- C:\Program Files\Win7codecs
O43 - CFD:Common File Directory ----D- C:\Program Files\Winamp
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Defender
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live SkyDrive
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Mail
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Player
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows NT
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Photo Viewer
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Portable Devices
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Sidebar
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Virtual PC
O43 - CFD:Common File Directory ----D- C:\Program Files\WinRAR
O43 - CFD:Common File Directory ----D- C:\Program Files\ZHPDiag
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Adobe
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\DESIGNER
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\DFX
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Futuremark Shared
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\InstallShield
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Java
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\microsoft shared
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Nero
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\PX Storage Engine
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Services
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\SpeechEngines
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\System
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Windows Live
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Wise Installation Wizard
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.F2349155135D6A684440BAA3057DD26E] - 18/02/2010 - 17:30:13 --HA- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
O44 - LFC:[MD5.F2349155135D6A684440BAA3057DD26E] - 18/02/2010 - 17:30:13 --HA- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
O44 - LFC:[MD5.24D59D7712F0101415804F976D06495D] - 18/02/2010 - 17:29:18 ---A- C:\Windows\System32\PerfStringBackup.INI
O44 - LFC:[MD5.82FFAC3FFC063CCA1497F8A536D9AC8E] - 18/02/2010 - 17:29:18 ---A- C:\Windows\System32\perfc009.dat
O44 - LFC:[MD5.017B24126B7677946ADA5F4D6207B97F] - 18/02/2010 - 17:29:18 ---A- C:\Windows\System32\perfc00C.dat
O44 - LFC:[MD5.BECA0A018B631A812DAAD8B9FBB431CE] - 18/02/2010 - 17:29:18 ---A- C:\Windows\System32\perfh009.dat
O44 - LFC:[MD5.C61693D00A3E381C42329B9DCD0BAA0D] - 18/02/2010 - 17:29:18 ---A- C:\Windows\System32\perfh00C.dat
O44 - LFC:[MD5.00000000000000000000000000000000] - 18/02/2010 - 17:28:09 ---A- C:\Windows\WindowsUpdate.log
O44 - LFC:[MD5.FE558BC6D9ACCCAA651CC4FAA8EE42D9] - 18/02/2010 - 17:25:05 ---A- C:\Windows\setupact.log
O44 - LFC:[MD5.7D028921BA924B47F3744336B84E654A] - 18/02/2010 - 17:25:04 -S-A- C:\Windows\bootstat.dat
O44 - LFC:[MD5.0D06F7FD895EE1364F810B972DF6BD4B] - 17/02/2010 - 21:08:22 ---A- C:\Windows\PFRO.log
O44 - LFC:[MD5.2ED229730D45E277C6CFA85A146DA97C] - 17/02/2010 - 20:59:04 ---A- C:\Windows\ntbtlog.txt
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 11/02/2010 - 23:00:09 ---A- C:\Windows\setuperr.log
O44 - LFC:[MD5.9D8923234F2FD5A07C998C8048F65CAE] - 11/02/2010 - 22:05:28 ---A- C:\ComboFix.txt
O44 - LFC:[MD5.11794BB2350A9C83C699F27949CA9AA6] - 11/02/2010 - 21:08:15 ---A- C:\Windows\System32\avgrep.txt
O44 - LFC:[MD5.024D44C3329A011713EEDEA1704A6B39] - 08/02/2010 - 06:46:22 ---A- C:\Windows\System32\RTSndMgr.cpl
O44 - LFC:[MD5.D81476A803BB8D55F8D9D39D51A3252E] - 08/02/2010 - 06:46:16 ---A- C:\Windows\System32\RtkCoInst.dll
O44 - LFC:[MD5.7BC1102B18FDFF2BCDF04761D6947743] - 08/02/2010 - 06:46:16 ---A- C:\Windows\System32\RtkPgExt.dll
O44 - LFC:[MD5.7839089DBCFA96958AE9E35165B8DDDA] - 08/02/2010 - 06:46:10 ---A- C:\Windows\System32\RtkAPO.dll
O44 - LFC:[MD5.1C2B0E3CCE10CA185B8ECF7B74C3876A] - 08/02/2010 - 06:46:10 ---A- C:\Windows\System32\RtkApoApi.dll
O44 - LFC:[MD5.B68A9BAD1B7C1453EF063C09EBD95C2E] - 08/02/2010 - 06:17:58 ---A- C:\Windows\System32\drivers\RTKVHDA.sys
O44 - LFC:[MD5.5C230948DD6652228F88CA7AE6CB276C] - 06/02/2010 - 08:34:33 ---A- C:\Windows\gdrv.sys
O44 - LFC:[MD5.6EA1554F7B3C3916C69E64801C28DA82] - 05/02/2010 - 19:21:49 ---A- C:\Windows\d3dx.dat
O44 - LFC:[MD5.FF795B328DB418641D071586420D869A] - 05/02/2010 - 09:47:58 ---A- C:\Windows\System32\FNTCACHE.DAT
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 04/02/2010 - 21:24:40 RSHA- C:\IO.SYS
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 04/02/2010 - 21:24:40 RSHA- C:\MSDOS.SYS
O44 - LFC:[MD5.EAB287E3724CED398BEB059018012C5E] - 04/02/2010 - 21:19:02 ---A- C:\Windows\GSetup.ini
O44 - LFC:[MD5.C811E70C8804CFFF719038250A43B464] - 04/02/2010 - 10:01:14 ---A- C:\Windows\System32\X3DAudio1_7.dll
O44 - LFC:[MD5.E4CE2AF32F501A7F7DDDD908704A0EE6] - 04/02/2010 - 10:01:14 ---A- C:\Windows\System32\XAPOFX1_4.dll
O44 - LFC:[MD5.4976243BD70FAE3D1D24E49739AB2710] - 04/02/2010 - 10:01:14 ---A- C:\Windows\System32\XAudio2_6.dll
O44 - LFC:[MD5.F81C4678A55FFEE585AC75825FAF5582] - 04/02/2010 - 10:01:14 ---A- C:\Windows\System32\xactengine3_6.dll
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 02/02/2010 - 07:18:28 ---A- C:\Tech_Vista.log
O44 - LFC:[MD5.E474202772C45CF949C51AEE72241A48] - 01/02/2010 - 20:26:20 ---A- C:\Windows\System32\MRT.exe
O44 - LFC:[MD5.F0126DEE14446B26DCC5D8F35342981D] - 01/02/2010 - 04:14:54 ---A- C:\Windows\RtlExUpd.dll
O44 - LFC:[MD5.5D21398DF4D0F91EC804CB319C340AB1] - 30/01/2010 - 17:14:36 ---A- C:\Windows\CDPlayer.ini
O44 - LFC:[MD5.59F1080EF324BDD5A63975AB721247B3] - 27/01/2010 - 20:12:21 ---A- C:\Windows\MegaManager.INI
O44 - LFC:[MD5.31A2E7E943ADECBA50510D9A479F3437] - 25/01/2010 - 23:38:24 ---A- C:\Windows\System32\AERTACap.dll
O44 - LFC:[MD5.938A7847F080737CF55B994A46E0E828] - 25/01/2010 - 07:12:06 ---A- C:\Windows\System32\FMAPO.dll
O44 - LFC:[MD5.E0BBCEC12A1DE6E25C612AD205B719B4] - 23/01/2010 - 13:10:47 ---A- C:\Windows\System32\deploytk.dll
O44 - LFC:[MD5.AD3A2226B72F6E161425254276670117] - 23/01/2010 - 13:10:47 ---A- C:\Windows\System32\java.exe
O44 - LFC:[MD5.B427962BDB196D132AF50F6C7B78380D] - 23/01/2010 - 13:10:47 ---A- C:\Windows\System32\javaw.exe
O44 - LFC:[MD5.C8824405C4E358A2FE4D97C83101079A] - 23/01/2010 - 13:10:47 ---A- C:\Windows\System32\javaws.exe
O44 - LFC:[MD5.E93A7ACBA75A023E5B283075FE999DD5] - 23/01/2010 - 10:37:58 ---A- C:\Windows\NAVIGMA.INI
O44 - LFC:[MD5.E492B721EF2A10048582E160869183D9] - 23/01/2010 - 08:24:11 ---A- C:\Windows\System32\lgAxconfig.ini
O44 - LFC:[MD5.62EC42D65868E0E5084CD74CF556EBB8] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\OpenCL.dll
O44 - LFC:[MD5.BE744D34EF0534E14DA2033B7154F46B] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\drivers\nvBridge.kmd
O44 - LFC:[MD5.D0EE2715D78246267AC0ED483A475682] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\drivers\nvlddmkm.sys
O44 - LFC:[MD5.DB78E77FD86E8855208D3CF3C8E6F38D] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\nvapi.dll
O44 - LFC:[MD5.79EBB51539BF26B20FEC38478D81CF0A] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\nvcod.dll
O44 - LFC:[MD5.79EBB51539BF26B20FEC38478D81CF0A] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\nvcod190.dll
O44 - LFC:[MD5.981AB8032A92BA51E419EBD95368B6AD] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\nvcompiler.dll
O44 - LFC:[MD5.ADFF500C069F4A4837CB86E3E2868B46] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\nvcuda.dll
O44 - LFC:[MD5.567AFED2FB45292D33AF26440BDF2328] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\nvcuvenc.dll
O44 - LFC:[MD5.6D131C96BB5769ADFE7AD41E7185BD43] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\nvcuvid.dll
O44 - LFC:[MD5.81EEBFB24F595CE1644A611DD33DD690] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\nvd3dum.dll
O44 - LFC:[MD5.436107D6D2BC52C4037F1B764A5F69F0] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\nvdecodemft.dll
O44 - LFC:[MD5.7343A6743875C83B86DA56145146C99D] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\nvencodemft.dll
O44 - LFC:[MD5.FA97B8007B19217E28B4D709FD7CBF40] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\nvinfo.pb
O44 - LFC:[MD5.45CC58D1639A34A01D37C348912CBAA3] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\nvoglv32.dll
O44 - LFC:[MD5.F2B76759AC8C78F8B9374BF95029DDAA] - 22/01/2010 - 10:50:59 ---A- C:\Windows\System32\nvwgf2um.dll
O44 - LFC:[MD5.DFFB02749499DF945EBCC3387F913524] - 22/01/2010 - 04:10:30 ---A- C:\Windows\System32\NvApps.xml
O44 - LFC:[MD5.53EE875015436E3A1860F37089F6A018] - 22/01/2010 - 04:10:30 ---A- C:\Windows\System32\NvwsApps.xml
O44 - LFC:[MD5.4F5556438E5F6BD578A59FEADC8C8DFE] - 22/01/2010 - 04:10:00 ---A- C:\Windows\System32\nvcpl.dll
O44 - LFC:[MD5.BC2253A7E33E149E00E57AFDE0F701A9] - 22/01/2010 - 04:10:00 ---A- C:\Windows\System32\nvmctray.dll
O44 - LFC:[MD5.536576697AF57D102EF2E0D03E69DD2B] - 22/01/2010 - 04:10:00 ---A- C:\Windows\System32\nvshext.dll
O44 - LFC:[MD5.AEBD5ABC4EBCD6111193FD38DC693C4E] - 22/01/2010 - 04:10:00 ---A- C:\Windows\System32\nvsvc.dll
O44 - LFC:[MD5.72F5BDE21344A5231D9E09693DC81268] - 22/01/2010 - 04:10:00 ---A- C:\Windows\System32\nvsvcr.dll
O44 - LFC:[MD5.E99AB6681D6B0946E102E7FC89854CB2] - 22/01/2010 - 04:10:00 ---A- C:\Windows\System32\nvvsvc.exe
O44 - LFC:[MD5.720D938888367CC6E01CCAFA94FF8D85] - 19/01/2010 - 00:29:31 ---A- C:\Windows\System32\secproc_isv.dll
O44 - LFC:[MD5.05FDFDEECA9033162E8B70C1FADD9DEB] - 19/01/2010 - 00:29:31 ---A- C:\Windows\System32\secproc_ssp.dll
O44 - LFC:[MD5.2DA7629FFCC16F65D6CCF968362CD80B] - 19/01/2010 - 00:29:31 ---A- C:\Windows\System32\secproc_ssp_isv.dll
O44 - LFC:[MD5.29F52745B29555B8ED7BC7FBD8032086] - 19/01/2010 - 00:29:30 ---A- C:\Windows\System32\secproc.dll
O44 - LFC:[MD5.77EE5FD84A8A2548A2670D5845BC97DF] - 19/01/2010 - 00:28:33 ---A- C:\Windows\System32\RMActivate_isv.exe
O44 - LFC:[MD5.F463E3C7925A8C16DFC502C9C59AF6EA] - 19/01/2010 - 00:28:33 ---A- C:\Windows\System32\RMActivate_ssp_isv.exe
O44 - LFC:[MD5.596F545E1E65E7647E3F306F32B16499] - 19/01/2010 - 00:28:30 ---A- C:\Windows\System32\RMActivate.exe
O44 - LFC:[MD5.F50814F3FE0B75A786DEE08FD27D8AC1] - 19/01/2010 - 00:28:30 ---A- C:\Windows\System32\RMActivate_ssp.exe
---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\vgasave.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Minimal\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\vgasave.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CS1\Network\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CS2\Minimal\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CS2\Minimal\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CS2\Minimal\vgasave.sys
O49 - CSB:Control Safe Boot HKLM\...\CS2\Minimal\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CS2\Minimal\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CS2\Network\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CS2\Network\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CS2\Network\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CS2\Network\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CS2\Network\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CS2\Network\vgasave.sys
O49 - CSB:Control Safe Boot HKLM\...\CS2\Network\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CS2\Network\volmgrx.sys
---\\ Trojan Driver Search Data (TDSD) (O52)
O52 - TDSD:HKLM\...\Drivers\"timer"="timer.drv"
O52 - TDSD:HKLM\...\Drivers32\"vidc.mrle"="msrle32.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.msvc"="msvidc32.dll"
O52 - TDSD:HKLM\...\Drivers32\"msacm.imaadpcm"="imaadp32.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.msg711"="msg711.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.msgsm610"="msgsm32.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.msadpcm"="msadp32.acm"
O52 - TDSD:HKLM\...\Drivers32\"midimapper"="midimap.dll"
O52 - TDSD:HKLM\...\Drivers32\"wavemapper"="msacm32.drv"
O52 - TDSD:HKLM\...\Drivers32\"vidc.uyvy"="msyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.yuy2"="msyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.yvyu"="msyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.iyuv"="iyuv_32.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.i420"="iyuv_32.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.yvu9"="tsbyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm"
O52 - TDSD:HKLM\...\Drivers32\"vidc.cvid"="iccvid.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.XVID"="xvidvfw.dll"
O52 - TDSD:HKLM\...\Drivers32\"VIDC.FFDS"="C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll"
O52 - TDSD:HKLM\...\Drivers32\"msacm.ac3filter"="ac3filter.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.avis"="ff_acm.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.siren"="sirenacm.dll"
O52 - TDSD:HKLM\...\Drivers32\"wave"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"midi"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"mixer"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"aux"="wdmaud.drv"
O52 - TDSD:HKLM\...\drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec"
O52 - TDSD:HKLM\...\drivers.desc\"wdmaud.drv"="Realtek High Definition Audio"
O52 - TDSD:HKLM\...\drivers.desc\"ff_vfw.dll"="ffdshow video encoder"
O52 - TDSD:HKLM\...\drivers.desc\"xvidvfw.dll"="Xvid MPEG-4 Video Codec"
O52 - TDSD:HKLM\...\drivers.desc\"ac3filter.acm"="AC3Filter ACM codec"
O52 - TDSD:HKLM\...\drivers.desc\"ff_acm.acm"="ffdshow ACM codec"
O52 - TDSD:HKLM\...\drivers.desc\"C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll"="ffdshow Video Codec"
O52 - TDSD:HKLM\...\drivers.desc\"sirenacm.dll"="Messenger Audio Codec"
---\\ Microsoft Control Security Providers (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - "SecurityProviders"=credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - "SecurityProviders"=credssp.dll