Rapport de ZHPDiag v2013.4.20.122 par Nicolas Coolman, Update du 20/04/2013 Run by paulette at 21/04/2013 08:19:06 State : Version à jour. WhiteList : Disable High Elevated Privileges : OK UAC : Deactivate by program ---\\ Web Browser MSIE: Internet Explorer v10.0.9200.16540 MFIE: Mozilla Firefox 20.0.1 (Defaut) GCIE: Google Chrome v26.0.1410.64 ---\\ Windows Product Information ~ Langage: Français Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK ~ Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : 9YQTR Windows License : OK ~ Windows Remaining Initializations Number : 3 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ System Protection avast! Free Antivirus v8.0.1483.0 Malwarebytes Anti-Malware version 1.75.0.1300 Windows Defender W7 ---\\ System Optimizer ---\\ Software Update Adobe Flash Player 11 Plugin Adobe Reader XI Java 7 Update 21 ---\\ System Information ~ Processor: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 4095 MB (61% free) System Restore: Activé (Enable) System drive C: has 30 GB (25%) free of 116 GB ---\\ Logged in mode ~ Computer Name: PAULETTE- ~ User Name: paulette ~ All Users Names: UpdatusUser, paulette, Administrateur, ~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89 Logged in as Administrator ---\\ Environnement Variables ~ System Unit : C:\ ~ %AppData% : C:\Users\paulette\AppData\Roaming\ ~ %Desktop% : C:\Users\paulette\Desktop\ ~ %Favorites% : C:\Users\paulette\Favorites\ ~ %LocalAppData% : C:\Users\paulette\AppData\Local\ ~ %StartMenu% : C:\Users\paulette\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ DOS/Devices C:\ Hard drive, Flash drive, Thumb drive (Free 30 Go of 116 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 274 Go of 330 Go) E:\ CD-ROM drive (Not Inserted) F:\ CD-ROM drive (Not Inserted) ---\\ Security Center & Tools Informations [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024] [MD5.753C0848AE7872A3F59663078A517293] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.19/04/2013 - 21:48:41.) -- C:\Windows\System32\wininet.dll [2240512] [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/11/2010 - 14:25:30.) -- C:\Windows\System32\Winlogon.exe [390656] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 14:27:26.) -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 10:19:21.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 10:26:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 11:43:43.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224] [MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 10:23:20.) -- C:\Windows\system32\Drivers\netBT.sys [261632] [MD5.B8965FB53551B5455630A4B804D0791F] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/03/2013 - 07:04:53.) -- C:\Windows\system32\Drivers\ntfs.sys [1655656] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 11:52:35.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 10:21:56.) -- C:\Windows\system32\Drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 14:34:02.) -- C:\Windows\system32\Drivers\volsnap.sys [295808] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 1/10 ~ Mes musiques (My Musics) : 7/435 ~ Mes Favoris (My Favorites) : 1/16 ~ Mes Documents (My Documents) : 3/167 ~ Mon Bureau (My Desktop) : 1/618 ~ Menu demarrer (Programs) : 1/46 ~ Hidden Files: Scanned in 00mn 01s ---\\ Processus lancés [MD5.868E3486E7EC522330344152A5535783] - (.ASUS - SmartLogon Application.) -- C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [305720] [PID.2100] [MD5.37DEB76A2CF005841C4E45DE2B94D84F] - (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe [3058304] [PID.2376] [MD5.D1D5DAB39DCB4BE0359943738D87409B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- D:\Malwarebytes' Anti-Malware\mbamgui.exe [532040] [PID.2872] [MD5.57B4D34232852BFE4453BE571DF90D21] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [103720] [PID.2880] [MD5.749949494676218FFA99501F4AA22ECC] - (.OpenOffice.org - OpenOffice.org 3.4.1.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe [10376704] [PID.4056] [MD5.1DFDAAE21154299858F10DF216D6D865] - (.Pas de propriétaire - Wireless Console 3.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1597440] [PID.3708] [MD5.148C545849C1379A3D4448F5DE768E86] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [4767304] [PID.4016] [MD5.5AEBF6FA9805C9101220AA4FB4FA17E7] - (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016] [PID.1304] [MD5.C32B36D2168AEA9D4FA77C0A4F56379D] - (.ASUS - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [7350912] [PID.3668] [MD5.4EE367B8B1964160A1F1B80095183D3A] - (.OpenOffice.org - OpenOffice.org 3.4.1.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin [10368512] [PID.3700] [MD5.D98BC64645C2DAEDC1E79B4CCCCBBC8E] - (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624] [PID.3188] [MD5.D63797E8E7781EE1500A810CB6194FA6] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816] [PID.1020] [MD5.0FB07317860CB4D8E65430570778EE86] - (.ASUSTeK Computer Inc. - ASUS Live Update.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1558912] [PID.4128] [MD5.6F5386A655598F71BAAB2D6B63A69D6A] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [920472] [PID.5024] [MD5.B72CCBD725324252528E50D5CB391AC3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [6920192] [PID.4956] [MD5.81F177C1954453AF407604160BD149CB] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [383264] [PID.864] [MD5.18E5C2F937F9DEB8C282DF66A3761925] - (.ASUS - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [84536] [PID.1388] [MD5.41735B82DB57E4EBE9504EC400FD120E] - (.AVAST Software - avast! Service.) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [45248] [PID.1456] [MD5.8E4179A38CF72AC6D8D651A72AE88580] - (.ASUS - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [182912] [PID.1992] [MD5.149126216A694E6BA84E92ECA77AAE3B] - (.ASUS - ATKOSD.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe [2488888] [PID.1064] [MD5.AA11E1368EEB237DD100BAC6AFFE1C57] - (.ASUS - KBFiltr.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe [113208] [PID.1224] [MD5.3927397AC60D943DAF8808AFFED582B7] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65192] [PID.1476] [MD5.4A7C441D99D86704D194E7678873B95D] - (.ASUS - WDC.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe [174648] [PID.1540] [MD5.F401929EE0CC92BFE7F15161CA535383] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55184] [PID.1648] [MD5.65085456FD9A74D7F1A999520C299ECB] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- D:\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376] [PID.2260] [MD5.E0D7732F2D2E24B2DB3F67B6750295B8] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- D:\Malwarebytes' Anti-Malware\mbamservice.exe [701512] [PID.2308] [MD5.3A2E85F7D90D15460C337CE80C2E3B29] - (...) -- C:\Windows\SysWOW64\PnkBstrA.exe [76888] [PID.2888] [MD5.B7C53DA1C73FF39F4A6248643EFD979A] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1266464] [PID.3248] ~ Processes Running: Scanned in 00mn 01s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\paulette\AppData\Local\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [User Data\Default] None ~ Google Browser: Scanned in 00mn 00s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Users\paulette\AppData\Roaming\Mozilla\Firefox\Profiles\2qc5a5s2.default-1352987658597\prefs.js M3 - MFPP: Plugins - [paulette] -- C:\Users\paulette\AppData\Roaming\Mozilla\Firefox\Profiles\2qc5a5s2.default-1352987658597\searchplugins\howjsay.xml M3 - MFPP: Plugins - [paulette] -- C:\Users\paulette\AppData\Roaming\Mozilla\Firefox\Profiles\2qc5a5s2.default-1352987658597\searchplugins\urban-dictionary.xml M3 - MFPP: Plugins - [paulette] -- C:\Users\paulette\AppData\Roaming\Mozilla\Firefox\Profiles\2qc5a5s2.default-1352987658597\searchplugins\wr-french-english.xml M3 - MFPP: Plugins - [paulette] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\amazon-france.xml M3 - MFPP: Plugins - [paulette] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\bing.xml M3 - MFPP: Plugins - [paulette] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml M3 - MFPP: Plugins - [paulette] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\eBay-france.xml M3 - MFPP: Plugins - [paulette] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\google.xml M3 - MFPP: Plugins - [paulette] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\wikipedia-fr.xml M3 - MFPP: Plugins - [paulette] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\yahoo-france.xml M0 - MFSP: prefs.js [paulette - 2qc5a5s2.default-1352987658597] http://www.google.fr M2 - MFEP: prefs.js [paulette - 2qc5a5s2.default-1352987658597\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}] [dwhelper] DownloadHelper v4.9.14 (..) P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_169.dll P2 - FPN: [HKLM] [@ma-config.com/HardwareDetection] - (.Cybelsoft - Plugin NPAPI Ma-Config.com # win64 # 6.5.1.1.) -- C:\Program Files\ma-config.com\x64\nphardwaredetection.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20125.0.) -- C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll P2 - FPN: [HKCU] [@talk.google.com/GoogleTalkPlugin] - (.Google - Version 3.17.0.12440.) -- C:\Users\paulette\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll P2 - FPN: [HKCU] [@talk.google.com/O1DPlugin] - (.Google - Version 3.17.0.12440.) -- C:\Users\paulette\AppData\Roaming\Mozilla\plugins\npo1d.dll P2 - FPN: [HKCU] [@talk.google.com/O3DPlugin] - (.Pas de propriétaire - Google Talk Plugin Video Accelerator version:0.1.44.24.) -- C:\Users\paulette\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\paulette\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\paulette\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)) -- C:\Windows\SysWOW64\ieframe.dll R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0 ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Redirection du fichier Hosts (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: (no name) [64Bits] - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: avast! WebRep [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (...) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (.not file.) O2 - BHO: Google Toolbar Notifier BHO [64Bits] - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (...) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll (.not file.) O2 - BHO: Google Dictionary Compression sdch [64Bits] - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} . (...) -- C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll (.not file.) O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: Google Toolbar [64Bits] - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (...) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O3 - Toolbar: (no name) [64Bits] - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline ~ Toolbar: Scanned in 00mn 00s ---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [Windows Mobile Device Center] . (.Microsoft Corporation - Gestionnaire pour appareils Windows Mobile.) -- C:\Windows\WindowsMobile\wmdc.exe O4 - HKLM\..\Run: [EvtMgr6] . (.Logitech, Inc. - Logitech SetPoint Event Manager (UNICODE).) -- C:\Program Files\Logitech\SetPointP\SetPoint.exe O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe O4 - HKLM\..\Wow6432Node\Run: [Boingo Wi-Fi] C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk (.not file.) O4 - HKLM\..\Wow6432Node\Run: [Wireless Console 3] . (.Pas de propriétaire - Wireless Console 3.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O4 - HKLM\..\Wow6432Node\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe O4 - HKLM\..\Wow6432Node\Run: [HControlUser] . (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe O4 - HKLM\..\Wow6432Node\Run: [ATKOSD2] . (.ASUS - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe O4 - HKLM\..\Wow6432Node\Run: [ATKMEDIA] . (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-21-2223279653-2022333645-203014665-1001\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-21-2223279653-2022333645-203014665-1001\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ~ Application: Scanned in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - GS\QuickLaunch: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - GS\Accessories: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe O4 - GS\SendTo: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe O4 - GS\TaskBar: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - GS\TaskBar: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O4 - GS\TaskBar: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe O4 - GS\TaskBar: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O4 - GS\Programs: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\QuickLaunch: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\QuickLaunch: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O4 - GS\Accessories: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\SendTo: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe O4 - GS\Desktop: Adobe Photoshop 6.0.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop.) -- D:\Adobe\Photoshop 6.0\Photoshp.exe O4 - GS\Desktop: Spider Solitaire (2).lnk - Clé orpheline ~ Global Startup: Scanned in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{4BA716AD-1FA1-4AC6-B932-2B4D4FD923A9}: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CCS\Services\Tcpip\..\{867D6F2B-3F2A-4DFE-AC39-ECA077C6CE79}: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS1\Services\Tcpip\..\{4BA716AD-1FA1-4AC6-B932-2B4D4FD923A9}: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS1\Services\Tcpip\..\{867D6F2B-3F2A-4DFE-AC39-ECA077C6CE79}: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS2\Services\Tcpip\..\{4BA716AD-1FA1-4AC6-B932-2B4D4FD923A9}: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS2\Services\Tcpip\..\{867D6F2B-3F2A-4DFE-AC39-ECA077C6CE79}: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 ~ Domain: Scanned in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (...) -- O18 - Filter: text/xml [64Bits] - {807553E5-5146-11D5-A672-00B0D022E945} . (...) -- ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: LBTWlgn . (.Logitech, Inc. - Logitech Bluetooth Service.) -- c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll ~ Winlogon: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: AFBAgent (AFBAgent) . (.ASUSTeK Computer Inc. - ASUS FastBoot.) - C:\Windows\system32\FBAgent.exe O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: ASLDR Service (ASLDRService) . (.ASUS - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - D:\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - D:\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 314.2.) - C:\Windows\system32\nvvsvc.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\SysWOW64\PnkBstrA.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ---\\ BootExecute (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1078] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1082] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2223279653-2022333645-203014665-1000Core.job [1038] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2223279653-2022333645-203014665-1000UA.job [1090] [MD5.A6C20CBD1B10FEF25DAA4F1CF9FBC4FF] [APT] [ACMON] (.ATK.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [684544] [MD5.479901C99FA62D1C3261B7ACB1228DAD] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [256904] [MD5.0FB07317860CB4D8E65430570778EE86] [APT] [ASUS Live Update] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1558912] [MD5.F24D232DD478C95BA3571A0E4EC8E461] [APT] [ASUS P4G] (.ATK.) -- C:\Program Files\P4G\BatteryLife.exe [327808] [MD5.868E3486E7EC522330344152A5535783] [APT] [ASUS SmartLogon Console Sensor] (.ASUS.) -- C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [305720] [MD5.AB3C4A3667AEAD147F175721D8719B78] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\Alwil Software\Avast5\AvastEmUpdate.exe [250248] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskUserS-1-5-21-2223279653-2022333645-203014665-1000Core] (.Google Inc..) -- C:\Users\paulette\AppData\Local\Google\Update\GoogleUpdate.exe [116648] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskUserS-1-5-21-2223279653-2022333645-203014665-1000UA] (.Google Inc..) -- C:\Users\paulette\AppData\Local\Google\Update\GoogleUpdate.exe [116648] [MD5.B4725170B546863C09583E40E6E7BCED] [APT] [HPCustParticipation HP Deskjet 3050 J610 series] (.Hewlett-Packard Co..) -- C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HPCustPartic.exe [3689320] [MD5.1321DC81E317EE48C4D004775FB29AC9] [APT] [{A8E0EA30-57DE-4D52-A556-39B4547F6432}] (.Nicolas Coolman.) -- C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe [1916928] [MD5.497F27E279C0F921E2130BB89C1CB5CA] [APT] [{B231C74C-A19E-4F31-AD41-6BB28E511DC0}] (.Skype Technologies S.A..) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [18705664] [MD5.00000000000000000000000000000000] [APT] [{BB64D294-97D4-4C21-9F14-C8B504CE12E0}] (...) -- C:\Program Files (x86)\Steam\steam.exe (.not file.) [0] ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll ---\\ Pilotes lancés au démarrage (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\Drivers\aswrdr2.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (dtsoftbus01) . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) - C:\Windows\System32\DRIVERS\dtsoftbus01.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys ---\\ Logiciels installés (O42) O42 - Logiciel: 7-Zip 9.20 - (...) [HKLM][64Bits] -- 7-Zip O42 - Logiciel: ASUS AI Recovery - (.ASUS.) [HKLM][64Bits] -- {06585B02-F20D-4AB2-9A64-86EF2AE0F8F0} O42 - Logiciel: ASUS AP Bank - (.ASUSTEK.) [HKLM][64Bits] -- ASUS AP Bank_is1 O42 - Logiciel: ASUS FancyStart - (.ASUSTeK Computer Inc..) [HKLM][64Bits] -- {2B81872B-A054-48DA-BE3B-FA5C164C303A} O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158} O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4} O42 - Logiciel: ASUS MultiFrame - (.ASUS.) [HKLM][64Bits] -- {9D48531D-2135-49FC-BC29-ACCDA5396A76} O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {91EFE3A1-585E-4F66-B5F6-F118F56C4C47} O42 - Logiciel: ASUS SmartLogon - (.ASUS.) [HKLM][64Bits] -- {64452561-169F-4A36-A2FF-B5E118EC65F5} O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D} O42 - Logiciel: ASUS Virtual Camera - (.asus.) [HKLM][64Bits] -- {EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1} O42 - Logiciel: ASUS WebStorage - (.eCareme Technologies, Inc..) [HKLM][64Bits] -- ASUS WebStorage O42 - Logiciel: ASUS_Screensaver - (...) [HKLM][64Bits] -- ASUS_Screensaver O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40} O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {A0087DDE-69D0-11E2-AD57-43CA6188709B} O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Photoshop 6.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Photoshop 6.0 O42 - Logiciel: Adobe Reader XI (11.0.02) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} O42 - Logiciel: Adobe SVG Viewer - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe SVG Viewer O42 - Logiciel: Age of Empires Online - (.Microsoft Studios.) [HKLM][64Bits] -- GFWL_{4D530FA3-9B89-4186-98B7-F51000008100} O42 - Logiciel: Age of Empires Online - (.Microsoft Studios.) [HKLM][64Bits] -- {4D530FA3-9B89-4186-98B7-F51000008100} O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- InstallShield_{A7B8A5E9-CA44-44A0-9393-9EA0FFE4C3FB} O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {122ADF8C-DDA1-480C-9936-C88F2825B265} O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {6A76BEAF-6D1F-4273-A79B-DA8410A2E56B} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} O42 - Logiciel: Atheros Communications Inc.(R) AR8121/AR8113/AR8114 Gigabit/Fast Ethernet D - (.Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} O42 - Logiciel: Boingo Wi-Fi - (.Boingo Wireless, Inc..) [HKLM][64Bits] -- {B653A2EC-D816-4498-A4FD-651047AB9DC9} O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} O42 - Logiciel: Cheat Engine 6.0 - (.Dark Byte.) [HKLM][64Bits] -- Cheat Engine 6.0_is1 O42 - Logiciel: Chicken Invaders 2 - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110209593} O42 - Logiciel: Choice Guard - (.Microsoft Corporation.) [HKLM][64Bits] -- {8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E} O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite O42 - Logiciel: ETDWare PS/2-x64 7.0.5.9_WHQL - (...) [HKLM][64Bits] -- Elantech O42 - Logiciel: Fast Boot - (.ASUS.) [HKLM][64Bits] -- {13F4A7F3-EABC-4261-AF6B-1317777F0755} O42 - Logiciel: Game Park Console - (.Oberon Media, Inc..) [HKLM][64Bits] -- {C9991C9B-0783-452E-8954-AB93E2AB3B80}_is1 O42 - Logiciel: GamersFirst LIVE! - (.GamersFirst.) [HKLM][64Bits] -- GamersFirst LIVE! O42 - Logiciel: Gestionnaire pour appareils Windows Mobile - (.Microsoft Corporation.) [HKLM][64Bits] -- {626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B} O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM][64Bits] -- {A9CE0266-6801-3B33-94AD-00520085CF4B} O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: HP Deskjet 3050 J610 series - Enquête sur l'amélioration du produit - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {33F1B0F6-F218-4556-8051-F16C6C464510} O42 - Logiciel: HP Deskjet 3050 J610 series Aide - (.Hewlett Packard.) [HKLM][64Bits] -- {F7632A9B-661E-4FD9-B1A4-3B86BC99847F} O42 - Logiciel: HP Photo Creations - (.HP Photo Creations Powered by RocketLife.) [HKLM][64Bits] -- HP Photo Creations O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {787D1A33-A97B-4245-87C0-7174609A540C} O42 - Logiciel: Java 7 Update 21 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217021FF} O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {4AB8B41B-3AF1-46BE-99B0-0ACD3B300C0A} O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- {92606477-9366-4D3B-8AE3-6BE4B29727AB} O42 - Logiciel: LinuxLive USB Creator - (.Thibaut Lauziere.) [HKLM][64Bits] -- LinuxLive USB Creator O42 - Logiciel: Logiciel de base du périphérique HP Deskjet 3050 J610 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {310DDAB6-41DA-4679-9CF6-C8E4EB16C2A6} O42 - Logiciel: Logitech SetPoint 6.32 - (.Logitech.) [HKLM][64Bits] -- sp6 O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691) - (.Microsoft Corporation.) [HKLM][64Bits] -- {355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM][64Bits] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44} O42 - Logiciel: Ma-Config.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {01D87A70-4D13-4CBE-8944-A5AD37BE8D8E} O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {F2508213-9989-4E85-A078-72BE483917EF} O42 - Logiciel: Microsoft Games for Windows Marketplace - (.Microsoft Corporation.) [HKLM][64Bits] -- {4CB0307C-565E-4441-86BE-0DF2E4FB828C} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {8A74E887-8F0F-4017-AF53-CBA42211AAA5} O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD64AF4A-8C80-4152-AD77-FCDDF05208AB} O42 - Logiciel: Mises à jour NVIDIA 1.12.12 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update O42 - Logiciel: Mozilla Firefox 20.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 20.0.1 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIA Drivers O42 - Logiciel: NVIDIA Logiciel système PhysX 9.12.1031 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {8B922CF8-8A6C-41CE-A858-F1755D7F5D29} O42 - Logiciel: NVIDIA Pilote 3D Vision 314.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.23.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver O42 - Logiciel: NVIDIA Pilote graphique 314.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo O42 - Logiciel: Notepad++ - (...) [HKLM][64Bits] -- Notepad++ O42 - Logiciel: OpenOffice.org 3.4.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {7DA1C06F-C913-46C7-8A0F-DA2CBA17EA1D} O42 - Logiciel: Paint.NET v3.5.10 - (.dotPDN LLC.) [HKLM][64Bits] -- {529125EF-E3AC-4B74-97E6-F688A7C0F1C0} O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM][64Bits] -- PunkBusterSvc O42 - Logiciel: Qualcomm Atheros Client Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: SRS Premium Sound Control Panel - (.SRS Labs, Inc..) [HKLM][64Bits] -- {E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049} O42 - Logiciel: Skype Click to Call - (.Skype Technologies S.A..) [HKLM][64Bits] -- {B6CF2967-C81E-40C0-9815-C05774FEF120} O42 - Logiciel: Skype™ 6.1 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D} O42 - Logiciel: StarCraft II - (.Blizzard Entertainment.) [HKLM][64Bits] -- StarCraft II O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3} O42 - Logiciel: Team Fortress 2 - (.Valve.) [HKLM][64Bits] -- Steam App 440 O42 - Logiciel: USB2.0 UVC VGA WebCam - (.Sonix.) [HKLM][64Bits] -- USB2.0 UVC VGA WebCam O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} O42 - Logiciel: WinRAR 4.11 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: WinZip 16.0 - (.WinZip Computing, S.L. .) [HKLM][64Bits] -- {CD95F661-A5C4-44F5-A6AA-ECDD91C240CD} O42 - Logiciel: Wireless Console 3 - (.ASUS.) [HKLM][64Bits] -- {20FDF948-C8ED-4543-A539-F7F4AEF5AFA2} O42 - Logiciel: avast! Free Antivirus v8.0.1483.0 - (.AVAST Software.) [HKLM][64Bits] -- avast O42 - Logiciel: eReg - (.Logitech, Inc..) [HKLM][64Bits] -- {3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C} O42 - Logiciel: erLT - (.Logitech, Inc..) [HKLM][64Bits] -- {A498D9EB-927B-459B-85D6-DD6EF8C2C564} O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {840A3BAA-4C68-4581-9C7A-6F8D6CF531B9} O42 - Logiciel: syncables desktop SE - (.syncables.) [HKLM][64Bits] -- {BBED4F90-7AE5-40BF-AFB7-1B495692F4AB} ---\\ HKCU & HKLM Software Keys [HKCU\Software\7-Zip] [HKCU\Software\ALWIL Software] [HKCU\Software\ASUS] [HKCU\Software\ATK0100] [HKCU\Software\AVAST Software] [HKCU\Software\Adobe] [HKCU\Software\AppDataLow\Software\Google] [HKCU\Software\AppDataLow\Software\JavaSoft] [HKCU\Software\AppDataLow\Software\Unity] [HKCU\Software\AppDataLow] [HKCU\Software\Apple Computer, Inc.] [HKCU\Software\Apple Inc.] [HKCU\Software\Blizzard Entertainment] [HKCU\Software\Bugsplat] [HKCU\Software\Carambis] [HKCU\Software\Cheat Engine] [HKCU\Software\ClassesB] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\CyberLink] [HKCU\Software\DT Soft] [HKCU\Software\ECAREME] [HKCU\Software\EasyBits] [HKCU\Software\Elantech] [HKCU\Software\FUEL Demo] [HKCU\Software\GameSpy] [HKCU\Software\GamersFirst] [HKCU\Software\GoBoingo] [HKCU\Software\Google] [HKCU\Software\HP] [HKCU\Software\IM Providers] [HKCU\Software\JavaSoft] [HKCU\Software\Leadertech] [HKCU\Software\LinuxLive] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\Logitech] [HKCU\Software\LowRegistry] [HKCU\Software\MCAFEE] [HKCU\Software\Macromedia] [HKCU\Software\Magnet] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mozilla] [HKCU\Software\NVIDIA Corporation] [HKCU\Software\Netscape] [HKCU\Software\Nico Mak Computing] [HKCU\Software\ODBC] [HKCU\Software\OpenOffice.org] [HKCU\Software\Opera Software] [HKCU\Software\Paint.NET] [HKCU\Software\Pando Networks] [HKCU\Software\Parsec Productions] [HKCU\Software\Policies] [HKCU\Software\RandyRants] [HKCU\Software\Razer] [HKCU\Software\Realtek] [HKCU\Software\Safer Networking Limited] [HKCU\Software\Skype] [HKCU\Software\TeleCharger] [HKCU\Software\Trolltech] [HKCU\Software\Unity] [HKCU\Software\VB and VBA Program Settings] [HKCU\Software\Valve] [HKCU\Software\Visan] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\WinZip Computing] [HKCU\Software\Wow6432Node] [HKCU\Software\YahooPartnerToolbar] [HKCU\Software\ZebHelpProcess Helper] [HKCU\Software\cybelsoft] [HKCU\Software\finisher] [HKLM\Software\AGEIA Technologies] [HKLM\Software\ASUS] [HKLM\Software\ATI Technologies] [HKLM\Software\ATK0100] [HKLM\Software\Alienware] [HKLM\Software\Apple Computer, Inc.] [HKLM\Software\Apple Inc.] [HKLM\Software\BrowserChoice] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\CoreSecurity] [HKLM\Software\ECAREME] [HKLM\Software\GEAR Software] [HKLM\Software\Google] [HKLM\Software\HP] [HKLM\Software\IM Providers] [HKLM\Software\Intel] [HKLM\Software\Khronos] [HKLM\Software\Logitech] [HKLM\Software\Macromedia] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\NVIDIA Corporation] [HKLM\Software\Nico Mak Computing] [HKLM\Software\ODBC] [HKLM\Software\Paint.NET] [HKLM\Software\Policies] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SONIX] [HKLM\Software\SRS Labs] [HKLM\Software\Sonic] [HKLM\Software\Wow6432Node\AGEIA Technologies] [HKLM\Software\Wow6432Node\ALWIL Software] [HKLM\Software\Wow6432Node\ASUS] [HKLM\Software\Wow6432Node\AVAST Software] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\AdwCleaner] [HKLM\Software\Wow6432Node\Apple Computer, Inc.] [HKLM\Software\Wow6432Node\Apple Inc.] [HKLM\Software\Wow6432Node\AsLdr] [HKLM\Software\Wow6432Node\Atheros Communications Inc.] [HKLM\Software\Wow6432Node\Atheros] [HKLM\Software\Wow6432Node\Blizzard Entertainment] [HKLM\Software\Wow6432Node\Bunndle] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\Codemasters] [HKLM\Software\Wow6432Node\CyberLink] [HKLM\Software\Wow6432Node\DT Soft] [HKLM\Software\Wow6432Node\Dofus 2] [HKLM\Software\Wow6432Node\Electronic Arts] [HKLM\Software\Wow6432Node\Even Balance] [HKLM\Software\Wow6432Node\GamersFirst] [HKLM\Software\Wow6432Node\GoBoingo] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\Hewlett-Packard] [HKLM\Software\Wow6432Node\IM Providers] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\JavaSoft] [HKLM\Software\Wow6432Node\JreMetrics] [HKLM\Software\Wow6432Node\Khronos] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware] [HKLM\Software\Wow6432Node\McAfee.com] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\NVIDIA Corporation] [HKLM\Software\Wow6432Node\Nico Mak Computing] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\Oberon Media] [HKLM\Software\Wow6432Node\OpenOffice.org] [HKLM\Software\Wow6432Node\Pando Networks] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\Qualcomm Atheros] [HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.] [HKLM\Software\Wow6432Node\Realtek] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\Riot Games] [HKLM\Software\Wow6432Node\RocketLife] [HKLM\Software\Wow6432Node\Safer Networking Limited] [HKLM\Software\Wow6432Node\Skype] [HKLM\Software\Wow6432Node\Software] [HKLM\Software\Wow6432Node\SuppHelpDir] [HKLM\Software\Wow6432Node\US Army] [HKLM\Software\Wow6432Node\Uber] [HKLM\Software\Wow6432Node\Valve] [HKLM\Software\Wow6432Node\Visan] [HKLM\Software\Wow6432Node\Volatile] [HKLM\Software\Wow6432Node\WinRAR] [HKLM\Software\Wow6432Node\Windows] [HKLM\Software\Wow6432Node\cybelsoft] [HKLM\Software\Wow6432Node\mozilla.org] [HKLM\Software\Wow6432Node\syncables] [HKLM\Software\Wow6432Node] [HKLM\Software\cybelsoft] ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 19/04/2013 - 19:43:27 - [119,737] ----D C:\Program Files (x86)\Adobe O43 - CFD: 23/02/2013 - 17:01:09 - [0] ----D C:\Program Files (x86)\AGEIA Technologies O43 - CFD: 28/09/2012 - 19:35:00 - [0,310] ----D C:\Program Files (x86)\AmIcoSingLun O43 - CFD: 23/02/2013 - 12:20:34 - [30,862] ----D C:\Program Files (x86)\ASUS O43 - CFD: 12/09/2010 - 07:48:22 - [1,289] ----D C:\Program Files (x86)\Boingo O43 - CFD: 28/09/2012 - 19:35:48 - [0,116] ----D C:\Program Files (x86)\Bonjour O43 - CFD: 19/04/2013 - 19:16:17 - [403,519] ----D C:\Program Files (x86)\Common Files O43 - CFD: 28/09/2012 - 19:36:06 - [1,525] ----D C:\Program Files (x86)\CyberLink O43 - CFD: 28/09/2012 - 19:36:35 - [12,570] ----D C:\Program Files (x86)\DAEMON Tools Lite O43 - CFD: 19/04/2013 - 22:33:44 - [273,670] ----D C:\Program Files (x86)\Google O43 - CFD: 28/09/2012 - 19:46:02 - [0,047] ----D C:\Program Files (x86)\HP O43 - CFD: 07/04/2013 - 15:09:49 - [82,966] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 19/04/2013 - 22:56:02 - [4,885] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 03/09/2012 - 13:11:06 - [145,570] ----D C:\Program Files (x86)\iTunes O43 - CFD: 19/04/2013 - 19:15:45 - [122,327] ----D C:\Program Files (x86)\Java O43 - CFD: 27/09/2012 - 19:20:44 - [8,699] ----D C:\Program Files (x86)\LinuxLive USB Creator O43 - CFD: 28/03/2012 - 18:43:04 - [0,195] ----D C:\Program Files (x86)\Microsoft O43 - CFD: 23/08/2011 - 16:36:44 - [1589,190] ----D C:\Program Files (x86)\Microsoft Games O43 - CFD: 23/08/2011 - 16:34:36 - [8,929] ----D C:\Program Files (x86)\Microsoft Games for Windows - LIVE O43 - CFD: 17/09/2012 - 16:39:26 - [169,681] ----D C:\Program Files (x86)\Microsoft Office O43 - CFD: 15/03/2013 - 08:50:37 - [40,835] ----D C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 29/01/2011 - 16:58:51 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 29/01/2011 - 17:00:29 - [2,087] ----D C:\Program Files (x86)\Microsoft Sync Framework O43 - CFD: 23/04/2011 - 08:28:12 - [0,140] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 11/04/2013 - 22:58:23 - [50,439] ----D C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 13/04/2013 - 09:26:18 - [0,212] ----D C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 14/07/2009 - 07:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 29/03/2012 - 22:15:11 - [63,752] ----D C:\Program Files (x86)\MSECache O43 - CFD: 12/09/2010 - 07:52:43 - [0,147] ----D C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 01/07/2012 - 18:14:00 - [11,772] ----D C:\Program Files (x86)\Notepad++ O43 - CFD: 19/04/2013 - 21:23:45 - [99,798] ----D C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 19/04/2013 - 19:48:08 - [288,772] ----D C:\Program Files (x86)\OpenOffice.org 3 O43 - CFD: 04/03/2011 - 19:16:31 - [0] ----D C:\Program Files (x86)\Pando Networks O43 - CFD: 23/02/2013 - 17:07:06 - [0,036] ----D C:\Program Files (x86)\Qualcomm Atheros O43 - CFD: 12/09/2010 - 08:01:55 - [16,281] ----D C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - 07:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 31/03/2013 - 20:05:42 - [34,436] R---D C:\Program Files (x86)\Skype O43 - CFD: 15/09/2012 - 21:16:37 - [2,584] ----D C:\Program Files (x86)\Spotify Code Generator V1.0 O43 - CFD: 19/04/2013 - 19:35:51 - [4,907] ----D C:\Program Files (x86)\Spybot - Search & Destroy O43 - CFD: 22/03/2013 - 20:43:32 - [1686,526] ----D C:\Program Files (x86)\StarCraft II O43 - CFD: 12/09/2010 - 07:50:35 - [161,462] ----D C:\Program Files (x86)\syncables O43 - CFD: 12/09/2010 - 08:03:01 - [0] --H-D C:\Program Files (x86)\Temp O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information O43 - CFD: 29/01/2011 - 20:28:51 - [0,500] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 23/08/2011 - 17:08:05 - [132,286] ----D C:\Program Files (x86)\Windows Live O43 - CFD: 29/01/2011 - 16:57:36 - [0,234] ----D C:\Program Files (x86)\Windows Live SkyDrive O43 - CFD: 17/09/2012 - 16:48:50 - [5,895] ----D C:\Program Files (x86)\Windows Mail O43 - CFD: 17/09/2012 - 16:48:50 - [4,791] ----D C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - 07:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 17/09/2012 - 16:48:50 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 17/09/2012 - 16:48:50 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 17/09/2012 - 16:48:50 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 21/09/2012 - 08:16:49 - [4,110] ----D C:\Program Files (x86)\WinRAR O43 - CFD: 21/04/2013 - 08:19:16 - [21,865] ----D C:\Program Files (x86)\ZHPDiag O43 - CFD: 02/11/2012 - 13:33:59 - [25,998] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 19/04/2013 - 19:43:22 - [45,606] ----D C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 03/09/2012 - 13:10:10 - [104,349] ----D C:\Program Files (x86)\Common Files\Apple O43 - CFD: 15/03/2013 - 19:44:33 - [4,783] ----D C:\Program Files (x86)\Common Files\Blizzard Entertainment O43 - CFD: 31/01/2011 - 13:39:48 - [0,095] ----D C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 12/09/2010 - 08:06:49 - [3,314] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 19/04/2013 - 19:16:17 - [1,189] ----D C:\Program Files (x86)\Common Files\Java O43 - CFD: 29/03/2012 - 04:59:41 - [0,494] ----D C:\Program Files (x86)\Common Files\LogiShrd O43 - CFD: 29/03/2012 - 22:15:45 - [152,429] ----D C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 12/09/2010 - 07:48:53 - [0,338] ----D C:\Program Files (x86)\Common Files\Oberon Media O43 - CFD: 14/07/2009 - 05:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 31/03/2013 - 20:05:42 - [2,056] ----D C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/07/2009 - 05:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 30/10/2012 - 19:16:56 - [0,505] ----D C:\Program Files (x86)\Common Files\Steam O43 - CFD: 17/09/2012 - 16:48:49 - [23,161] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 29/01/2011 - 16:55:31 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 19/04/2013 - 21:53:26 - [295,468] ----D C:\ProgramData\Adobe O43 - CFD: 04/02/2011 - 22:20:11 - [41,626] ----D C:\ProgramData\Alwil Software O43 - CFD: 12/09/2010 - 08:03:37 - [0,000] ----D C:\ProgramData\AmUStor O43 - CFD: 03/09/2012 - 12:42:18 - [34,801] ----D C:\ProgramData\Apple O43 - CFD: 03/09/2012 - 13:10:10 - [49,694] ----D C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Application Data O43 - CFD: 30/01/2011 - 10:28:01 - [0,004] ----D C:\ProgramData\ASUS O43 - CFD: 17/05/2012 - 12:54:47 - [132,198] ----D C:\ProgramData\Battle.net O43 - CFD: 14/07/2011 - 13:04:17 - [769,551] ----D C:\ProgramData\Blizzard Entertainment O43 - CFD: 25/08/2011 - 12:24:46 - [0,043] ----D C:\ProgramData\CyberLink O43 - CFD: 27/12/2011 - 19:32:03 - [0,002] ----D C:\ProgramData\DAEMON Tools Lite O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Documents O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Favorites O43 - CFD: 12/09/2010 - 07:48:21 - [21,414] ----D C:\ProgramData\GoBoingo O43 - CFD: 12/09/2010 - 07:47:58 - [0,012] ----D C:\ProgramData\Google O43 - CFD: 12/02/2011 - 18:46:01 - [14,244] ----D C:\ProgramData\HP O43 - CFD: 12/02/2011 - 18:46:29 - [2,086] ----D C:\ProgramData\HP Photo Creations O43 - CFD: 26/03/2013 - 13:08:47 - [25,198] ----D C:\ProgramData\LGMOBILEAX O43 - CFD: 29/03/2012 - 05:02:41 - [3,652] ----D C:\ProgramData\Logishrd O43 - CFD: 23/02/2013 - 16:11:22 - [1,304] ----D C:\ProgramData\ma-config.com O43 - CFD: 19/09/2012 - 15:14:51 - [16,091] ----D C:\ProgramData\Malwarebytes O43 - CFD: 02/11/2012 - 13:34:19 - [0,018] ----D C:\ProgramData\McAfee O43 - CFD: 28/03/2012 - 18:43:04 - [182,215] -S--D C:\ProgramData\Microsoft O43 - CFD: 20/01/2012 - 19:11:24 - [0,156] ----D C:\ProgramData\Microsoft Help O43 - CFD: 09/06/2012 - 18:41:30 - [0,034] ----D C:\ProgramData\Mozilla O43 - CFD: 21/04/2013 - 08:10:07 - [4,672] ----D C:\ProgramData\NVIDIA O43 - CFD: 23/02/2013 - 16:58:31 - [3,186] ----D C:\ProgramData\NVIDIA Corporation O43 - CFD: 12/09/2010 - 07:50:17 - [16,724] ----D C:\ProgramData\OberonGameConsole O43 - CFD: 12/09/2010 - 08:06:05 - [0,002] ----D C:\ProgramData\P4G O43 - CFD: 23/02/2013 - 17:06:51 - [0,023] ----D C:\ProgramData\Qualcomm Atheros O43 - CFD: 31/03/2013 - 20:05:46 - [130,394] ----D C:\ProgramData\Skype O43 - CFD: 30/11/2011 - 09:45:16 - [5,549] ----D C:\ProgramData\Skype Extras O43 - CFD: 19/04/2013 - 19:35:51 - [0,433] ----D C:\ProgramData\Spybot - Search & Destroy O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Start Menu O43 - CFD: 17/02/2011 - 13:43:29 - [0,000] ----D C:\ProgramData\Sun O43 - CFD: 12/09/2010 - 07:45:43 - [0,137] ----D C:\ProgramData\Temp O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Templates O43 - CFD: 01/02/2011 - 12:34:24 - [0] ----D C:\ProgramData\VirtualizedApplications O43 - CFD: 25/08/2011 - 18:58:20 - [0,002] ----D C:\ProgramData\Windows Genuine Advantage O43 - CFD: 30/03/2012 - 06:43:38 - [2,302] ----D C:\ProgramData\WinZip O43 - CFD: 03/09/2012 - 13:11:07 - [0,854] ----D C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001} O43 - CFD: 12/04/2013 - 21:33:32 - [112,844] ----D C:\Users\paulette\AppData\Roaming\.minecraft O43 - CFD: 02/11/2012 - 13:36:25 - [10,860] ----D C:\Users\paulette\AppData\Roaming\Adobe O43 - CFD: 15/06/2012 - 21:11:17 - [0,000] ----D C:\Users\paulette\AppData\Roaming\AnkamaCertificates O43 - CFD: 17/04/2011 - 15:07:52 - [0,004] ----D C:\Users\paulette\AppData\Roaming\app O43 - CFD: 03/09/2012 - 15:07:38 - [-879,699] ----D C:\Users\paulette\AppData\Roaming\Apple Computer O43 - CFD: 13/02/2012 - 20:43:21 - [29,136] ----D C:\Users\paulette\AppData\Roaming\Asus WebStorage O43 - CFD: 25/08/2011 - 12:24:46 - [0] ----D C:\Users\paulette\AppData\Roaming\CyberLink O43 - CFD: 25/08/2011 - 12:24:11 - [0,010] ----D C:\Users\paulette\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 15/06/2012 - 21:12:18 - [1,003] ----D C:\Users\paulette\AppData\Roaming\Dofus 2 O43 - CFD: 17/04/2011 - 15:07:51 - [0] ----D C:\Users\paulette\AppData\Roaming\Dofus-2.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1 O43 - CFD: 14/08/2011 - 21:35:07 - [0] ----D C:\Users\paulette\AppData\Roaming\Dofus-3.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1 O43 - CFD: 17/04/2011 - 23:31:17 - [0] ----D C:\Users\paulette\AppData\Roaming\Dofus.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1 O43 - CFD: 15/06/2011 - 17:12:37 - [0] ----D C:\Users\paulette\AppData\Roaming\EeeStorageUploader O43 - CFD: 04/03/2011 - 17:31:53 - [5,206] ----D C:\Users\paulette\AppData\Roaming\FUEL Demo O43 - CFD: 12/02/2011 - 18:40:12 - [0] ----D C:\Users\paulette\AppData\Roaming\HpUpdate O43 - CFD: 29/01/2011 - 17:02:49 - [0] ----D C:\Users\paulette\AppData\Roaming\Identities O43 - CFD: 25/08/2011 - 12:33:19 - [0,001] ----D C:\Users\paulette\AppData\Roaming\Leadertech O43 - CFD: 29/03/2012 - 04:56:39 - [0,194] ----D C:\Users\paulette\AppData\Roaming\Logishrd O43 - CFD: 29/03/2012 - 04:56:30 - [0,007] ----D C:\Users\paulette\AppData\Roaming\Logitech O43 - CFD: 21/09/2012 - 19:51:23 - [0] ----D C:\Users\paulette\AppData\Roaming\LolClient O43 - CFD: 16/06/2012 - 11:18:51 - [0,000] ----D C:\Users\paulette\AppData\Roaming\LolClient2 O43 - CFD: 29/01/2011 - 20:07:55 - [3,005] ----D C:\Users\paulette\AppData\Roaming\Macromedia O43 - CFD: 19/09/2012 - 15:15:04 - [0,028] ----D C:\Users\paulette\AppData\Roaming\Malwarebytes O43 - CFD: 14/07/2009 - 09:44:38 - [0] ----D C:\Users\paulette\AppData\Roaming\Media Center Programs O43 - CFD: 19/04/2013 - 20:38:28 - [10,576] -S--D C:\Users\paulette\AppData\Roaming\Microsoft O43 - CFD: 02/04/2013 - 13:02:40 - [34,906] ----D C:\Users\paulette\AppData\Roaming\Mozilla O43 - CFD: 01/07/2012 - 18:15:47 - [0,416] ----D C:\Users\paulette\AppData\Roaming\Notepad++ O43 - CFD: 30/03/2013 - 16:53:40 - [0,038] ----D C:\Users\paulette\AppData\Roaming\NVIDIA O43 - CFD: 08/02/2012 - 09:25:18 - [12,566] ----D C:\Users\paulette\AppData\Roaming\OpenOffice.org O43 - CFD: 17/04/2011 - 15:07:52 - [0] ----D C:\Users\paulette\AppData\Roaming\Reg.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1 O43 - CFD: 21/04/2013 - 08:16:36 - [13,379] ----D C:\Users\paulette\AppData\Roaming\Skype O43 - CFD: 02/12/2011 - 17:03:12 - [0,043] ----D C:\Users\paulette\AppData\Roaming\skypePM O43 - CFD: 08/02/2012 - 08:51:13 - [0,884] ----D C:\Users\paulette\AppData\Roaming\SoftGrid Client O43 - CFD: 31/01/2011 - 13:41:11 - [0] ----D C:\Users\paulette\AppData\Roaming\TP O43 - CFD: 26/08/2012 - 17:44:22 - [0,000] ----D C:\Users\paulette\AppData\Roaming\WinRAR O43 - CFD: 17/04/2011 - 14:35:50 - [17,706] ----D C:\Users\paulette\AppData\Local\Adobe O43 - CFD: 03/09/2012 - 12:42:39 - [0] ----D C:\Users\paulette\AppData\Local\Apple O43 - CFD: 03/09/2012 - 13:11:24 - [33,638] ----D C:\Users\paulette\AppData\Local\Apple Computer O43 - CFD: 29/01/2011 - 16:54:41 - [0] ----D C:\Users\paulette\AppData\Local\Application Data O43 - CFD: 30/01/2011 - 10:27:59 - [1,310] ----D C:\Users\paulette\AppData\Local\ASUS O43 - CFD: 24/02/2013 - 21:29:30 - [0] ----D C:\Users\paulette\AppData\Local\Diagnostics O43 - CFD: 12/04/2012 - 04:04:00 - [0] ----D C:\Users\paulette\AppData\Local\ElevatedDiagnostics O43 - CFD: 03/02/2012 - 14:36:37 - [0,007] ----D C:\Users\paulette\AppData\Local\GamersFirst LIVE! O43 - CFD: 30/10/2012 - 19:52:57 - [422,413] ----D C:\Users\paulette\AppData\Local\Google O43 - CFD: 29/01/2011 - 16:54:41 - [0] ----D C:\Users\paulette\AppData\Local\Historique O43 - CFD: 22/04/2011 - 20:55:58 - [0,047] ----D C:\Users\paulette\AppData\Local\HP O43 - CFD: 29/03/2012 - 05:02:33 - [0,322] ----D C:\Users\paulette\AppData\Local\Logishrd O43 - CFD: 14/04/2013 - 20:29:06 - [0,115] ----D C:\Users\paulette\AppData\Local\LogMeIn Hamachi O43 - CFD: 29/06/2012 - 09:18:12 - [0] ----D C:\Users\paulette\AppData\Local\Macromedia O43 - CFD: 29/06/2012 - 09:18:12 - [410,205] ----D C:\Users\paulette\AppData\Local\Microsoft O43 - CFD: 02/04/2011 - 18:56:24 - [0,249] ----D C:\Users\paulette\AppData\Local\Microsoft Games O43 - CFD: 05/02/2011 - 18:08:52 - [0] ----D C:\Users\paulette\AppData\Local\Microsoft Help O43 - CFD: 11/03/2011 - 21:39:56 - [62,869] ----D C:\Users\paulette\AppData\Local\Mozilla O43 - CFD: 25/01/2012 - 18:44:13 - [0] ----D C:\Users\paulette\AppData\Local\Paint.NET O43 - CFD: 29/01/2011 - 16:54:53 - [0,039] ----D C:\Users\paulette\AppData\Local\Power2Go O43 - CFD: 20/04/2013 - 18:23:04 - [0] ----D C:\Users\paulette\AppData\Local\Programs O43 - CFD: 03/02/2012 - 14:29:55 - [2,277] ----D C:\Users\paulette\AppData\Local\PunkBuster O43 - CFD: 31/01/2011 - 13:40:58 - [0,746] ----D C:\Users\paulette\AppData\Local\SoftGrid Client O43 - CFD: 29/01/2011 - 17:03:17 - [0,028] ----D C:\Users\paulette\AppData\Local\SRS Labs O43 - CFD: 21/04/2013 - 08:11:27 - [2,529] ----D C:\Users\paulette\AppData\Local\Temp O43 - CFD: 29/01/2011 - 16:54:41 - [0] ----D C:\Users\paulette\AppData\Local\Temporary Internet Files O43 - CFD: 09/09/2012 - 02:27:31 - [0,000] ----D C:\Users\paulette\AppData\Local\UberLauncher O43 - CFD: 09/09/2012 - 02:27:34 - [0,001] ----D C:\Users\paulette\AppData\Local\Uber_Entertainment O43 - CFD: 19/04/2013 - 19:02:25 - [0] ----D C:\Users\paulette\AppData\Local\Unity O43 - CFD: 21/11/2011 - 09:00:02 - [437,295] ----D C:\Users\paulette\AppData\Local\VirtualStore O43 - CFD: 14/07/2009 - 06:54:32 - [0,014] R---D C:\Users\paulette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 17/09/2012 - 16:58:03 - [0,000] R---D C:\Users\paulette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 12/09/2010 - 07:46:22 - [0,013] ----D C:\Users\paulette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite O43 - CFD: 27/09/2012 - 19:20:39 - [0,002] ----D C:\Users\paulette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LinuxLive USB Creator O43 - CFD: 14/07/2009 - 06:49:38 - [0,001] R---D C:\Users\paulette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 01/07/2012 - 18:13:56 - [0] ----D C:\Users\paulette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 15/09/2012 - 21:16:38 - [0,002] ----D C:\Users\paulette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify Code Generator V1.0 O43 - CFD: 12/10/2012 - 20:53:16 - [0,002] ----D C:\Users\paulette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StarCraft II O43 - CFD: 19/04/2013 - 19:48:54 - [0,001] R---D C:\Users\paulette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 01/09/2012 - 16:01:24 - [0,001] ----D C:\Users\paulette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 09/09/2012 - 02:26:41 - [0,001] ----D C:\Users\paulette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SuperMNC O43 - CFD: 20/09/2012 - 18:15:46 - [0,003] ----D C:\Users\paulette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.F606F085B4C4B9FCD521EF4DEEBC2B2D] - 21/04/2013 - 07:13:37 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1759272] O44 - LFC:[MD5.B819B92577F62B8C7E5EF2389641965B] - 21/04/2013 - 07:10:08 ---A- . (...) -- C:\Windows\setupact.log [94970] O44 - LFC:[MD5.F7377B2D3C790C148D06531841D8B257] - 21/04/2013 - 07:10:07 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.B01A173BAA53F906E5AA434EFA19619C] - 21/04/2013 - 06:53:05 ---A- . (...) -- C:\Windows\SysNative\ServiceFilter.ini [1391] O44 - LFC:[MD5.B01A173BAA53F906E5AA434EFA19619C] - 21/04/2013 - 06:53:05 RSHAD . (...) -- C:\Windows\System32\ServiceFilter.ini [1391] O44 - LFC:[MD5.ADB0AA9EC6250927EB9163CC393D5494] - 20/04/2013 - 19:19:45 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512] O44 - LFC:[MD5.0EBFB2B2313F489D77D62B63CB920323] - 20/04/2013 - 18:32:23 ---A- . (...) -- C:\Windows\PFRO.log [83138] O44 - LFC:[MD5.0BB97D43299910CBFBA59C461B99B910] - 20/04/2013 - 17:27:20 RSHAD . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25928] O44 - LFC:[MD5.D6CD5E2DD916CC7473E9803E6760E3B5] - 20/04/2013 - 17:18:45 ---A- . (...) -- C:\AdwCleaner[S4].txt [2425] O44 - LFC:[MD5.4F06DE41CB09C718B46619E32A3DBF12] - 19/04/2013 - 22:07:52 ---A- . (...) -- C:\AdwCleaner[R6].txt [2351] O44 - LFC:[MD5.21FB581DDB8252397FCAD758137A1EF1] - 19/04/2013 - 22:07:02 ---A- . (...) -- C:\AdwCleaner[R5].txt [2291] O44 - LFC:[MD5.5ED72BBA2E67C82FCC1D8E2E750A6DE2] - 19/04/2013 - 21:55:14 ---A- . (...) -- C:\Windows\IE10_main.log [10179] O44 - LFC:[MD5.F6FF7917A2E1270C0DDE19E096A7808F] - 19/04/2013 - 21:55:14 ---A- . (.Microsoft Corporation - IE Per User Active Setup Uninstall Utility.) -- C:\Windows\SysNative\IEUDINIT.EXE [28672] O44 - LFC:[MD5.F6FF7917A2E1270C0DDE19E096A7808F] - 19/04/2013 - 21:55:14 RSHAD . (.Microsoft Corporation - IE Per User Active Setup Uninstall Utility.) -- C:\Windows\System32\IEUDINIT.EXE [28672] O44 - LFC:[MD5.3531FA12A76A32ECECD972196775DF7C] - 19/04/2013 - 21:48:42 ---A- . (.Microsoft Corporation - ELS Hyphenation Service.) -- C:\Windows\SysNative\elshyph.dll [226304] O44 - LFC:[MD5.3531FA12A76A32ECECD972196775DF7C] - 19/04/2013 - 21:48:42 ---A- . (.Microsoft Corporation - ELS Hyphenation Service.) -- C:\Windows\System32\elshyph.dll [226304] O44 - LFC:[MD5.5051BB40FFB2BA4870C0A059CA03294F] - 19/04/2013 - 21:48:42 ---A- . (.Microsoft Corporation - Microsoft Spell Checking Facility.) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe [1054720] O44 - LFC:[MD5.5051BB40FFB2BA4870C0A059CA03294F] - 19/04/2013 - 21:48:42 RSHAD . (.Microsoft Corporation - Microsoft Spell Checking Facility.) -- C:\Windows\System32\MsSpellCheckingFacility.exe [1054720] O44 - LFC:[MD5.1FF56AC32B38A94C3C88497BD6E00C96] - 19/04/2013 - 21:48:41 ---A- . (...) -- C:\Windows\SysNative\ieuinit.inf [25185] O44 - LFC:[MD5.1FF56AC32B38A94C3C88497BD6E00C96] - 19/04/2013 - 21:48:41 ---A- . (...) -- C:\Windows\System32\ieuinit.inf [25185] O44 - LFC:[MD5.E965529C43D25F2BDA77D705098BF777] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - ADVPACK.) -- C:\Windows\SysNative\IEAdvpack.dll [135680] O44 - LFC:[MD5.E965529C43D25F2BDA77D705098BF777] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - ADVPACK.) -- C:\Windows\System32\IEAdvpack.dll [135680] O44 - LFC:[MD5.40738329209CBE2C9B48F7E30F7C1414] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Auto-extracteur de fichier CAB Win32.) -- C:\Windows\SysNative\wextract.exe [144896] O44 - LFC:[MD5.40738329209CBE2C9B48F7E30F7C1414] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Auto-extracteur de fichier CAB Win32.) -- C:\Windows\System32\wextract.exe [144896] O44 - LFC:[MD5.BC0D4AFBE94D8E1F81C8926D805C3366] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\SysNative\webcheck.dll [247296] O44 - LFC:[MD5.BC0D4AFBE94D8E1F81C8926D805C3366] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll [247296] O44 - LFC:[MD5.D8DD5CBB9668EEE98915EA49C72F78FA] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Convertisseur Microsoft HTML.) -- C:\Windows\SysNative\html.iec [441856] O44 - LFC:[MD5.D8DD5CBB9668EEE98915EA49C72F78FA] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Convertisseur Microsoft HTML.) -- C:\Windows\System32\html.iec [441856] O44 - LFC:[MD5.EC08E38751854C5B8899139B7DD29FF9] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - DLL de gestion d'utilisateur local et de co.) -- C:\Windows\SysNative\msrating.dll [197120] O44 - LFC:[MD5.EC08E38751854C5B8899139B7DD29FF9] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - DLL de gestion d'utilisateur local et de co.) -- C:\Windows\System32\msrating.dll [197120] O44 - LFC:[MD5.942E110384668EEFF44751A02EDDF5E4] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - DLL de ressource du composant d'édition HTM.) -- C:\Windows\SysNative\mshtmler.dll [48640] O44 - LFC:[MD5.942E110384668EEFF44751A02EDDF5E4] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - DLL de ressource du composant d'édition HTM.) -- C:\Windows\System32\mshtmler.dll [48640] O44 - LFC:[MD5.D8076F8A3C34064582035AE6696DC34A] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - DLL du Gestionnaire de licences Microsoft®.) -- C:\Windows\SysNative\licmgr10.dll [27648] O44 - LFC:[MD5.D8076F8A3C34064582035AE6696DC34A] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - DLL du Gestionnaire de licences Microsoft®.) -- C:\Windows\System32\licmgr10.dll [27648] O44 - LFC:[MD5.753C0848AE7872A3F59663078A517293] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\SysNative\wininet.dll [2240512] O44 - LFC:[MD5.753C0848AE7872A3F59663078A517293] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2240512] O44 - LFC:[MD5.29812E9971077BE3F8B9DC225CF9D454] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysNative\urlmon.dll [1365504] O44 - LFC:[MD5.29812E9971077BE3F8B9DC225CF9D454] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [1365504] O44 - LFC:[MD5.658E8FEC79A4AB5BFDE032627B5C9667] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) -- C:\Windows\SysNative\mshta.exe [13824] O44 - LFC:[MD5.658E8FEC79A4AB5BFDE032627B5C9667] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) -- C:\Windows\System32\mshta.exe [13824] O44 - LFC:[MD5.C2F21E3059AFF5E616F3E361D9FA10CD] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - IE PNG plugin image decoder.) -- C:\Windows\SysNative\pngfilt.dll [62976] O44 - LFC:[MD5.C2F21E3059AFF5E616F3E361D9FA10CD] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - IE PNG plugin image decoder.) -- C:\Windows\System32\pngfilt.dll [62976] O44 - LFC:[MD5.38BEBBC4CF9FE6566262F0037DF843BF] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - IE Sysprep Provider.) -- C:\Windows\SysNative\iesysprep.dll [136704] O44 - LFC:[MD5.38BEBBC4CF9FE6566262F0037DF843BF] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - IE Sysprep Provider.) -- C:\Windows\System32\iesysprep.dll [136704] O44 - LFC:[MD5.5B15164486C66B76699E1CD2CD2F3A2A] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - IE plugin image decoder support DLL.) -- C:\Windows\SysNative\imgutil.dll [51200] O44 - LFC:[MD5.5B15164486C66B76699E1CD2CD2F3A2A] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - IE plugin image decoder support DLL.) -- C:\Windows\System32\imgutil.dll [51200] O44 - LFC:[MD5.82F604599DE379AA539EE2DF48399DC5] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - IOD Version Map.) -- C:\Windows\SysNative\iesetup.dll [67072] O44 - LFC:[MD5.82F604599DE379AA539EE2DF48399DC5] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - IOD Version Map.) -- C:\Windows\System32\iesetup.dll [67072] O44 - LFC:[MD5.402D797A7905DC3C6FE11E75CD5252EB] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Internet Shortcut Shell Extension DLL.) -- C:\Windows\SysNative\url.dll [235008] O44 - LFC:[MD5.402D797A7905DC3C6FE11E75CD5252EB] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Internet Shortcut Shell Extension DLL.) -- C:\Windows\System32\url.dll [235008] O44 - LFC:[MD5.194125E7839D4902F2490A70049E8F78] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - JScript Proxy Auto-Configuration.) -- C:\Windows\SysNative\jsproxy.dll [53248] O44 - LFC:[MD5.194125E7839D4902F2490A70049E8F78] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - JScript Proxy Auto-Configuration.) -- C:\Windows\System32\jsproxy.dll [53248] O44 - LFC:[MD5.E1055A7FAD39F1F7C44F6152044056EA] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft (R) HTML Media DLL.) -- C:\Windows\SysNative\mshtmlmedia.dll [905728] O44 - LFC:[MD5.E1055A7FAD39F1F7C44F6152044056EA] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft (R) HTML Media DLL.) -- C:\Windows\System32\mshtmlmedia.dll [905728] O44 - LFC:[MD5.8C1EFE99D4C9462EF2E10E7140B44D4A] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\SysNative\jscript.dll [855552] O44 - LFC:[MD5.DE3C3B1B4FA5FBF1F17BCD3B3AE1ED15] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\SysNative\jscript9.dll [3958784] O44 - LFC:[MD5.8C1EFE99D4C9462EF2E10E7140B44D4A] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript.dll [855552] O44 - LFC:[MD5.DE3C3B1B4FA5FBF1F17BCD3B3AE1ED15] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript9.dll [3958784] O44 - LFC:[MD5.268E23EAEDF3FAF87A7A87F0257C9E87] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\SysNative\msfeeds.dll [603136] O44 - LFC:[MD5.268E23EAEDF3FAF87A7A87F0257C9E87] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\System32\msfeeds.dll [603136] O44 - LFC:[MD5.82D602EBBBA6D08E4691F32269FD3494] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft Feeds Synchronization.) -- C:\Windows\SysNative\msfeedssync.exe [12800] O44 - LFC:[MD5.82D602EBBBA6D08E4691F32269FD3494] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft Feeds Synchronization.) -- C:\Windows\System32\msfeedssync.exe [12800] O44 - LFC:[MD5.23556D116D5FB93395B2A648EEB24251] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft Information Card IE Helper.) -- C:\Windows\SysNative\icardie.dll [81408] O44 - LFC:[MD5.23556D116D5FB93395B2A648EEB24251] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft Information Card IE Helper.) -- C:\Windows\System32\icardie.dll [81408] O44 - LFC:[MD5.112183DF91C9BAECB498E4A86ECDE598] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft Line Services library file.) -- C:\Windows\SysNative\msls31.dll [216064] O44 - LFC:[MD5.112183DF91C9BAECB498E4A86ECDE598] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft Line Services library file.) -- C:\Windows\System32\msls31.dll [216064] O44 - LFC:[MD5.8C3D32A4A46326031309A43C52539D7F] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter Data File.) -- C:\Windows\SysNative\ieapfltr.dat [1400416] O44 - LFC:[MD5.8C3D32A4A46326031309A43C52539D7F] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter Data File.) -- C:\Windows\System32\ieapfltr.dat [1400416] O44 - LFC:[MD5.1456EECCB5CF6B91513200F95D61706E] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter.) -- C:\Windows\SysNative\ieapfltr.dll [762368] O44 - LFC:[MD5.1456EECCB5CF6B91513200F95D61706E] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter.) -- C:\Windows\System32\ieapfltr.dll [762368] O44 - LFC:[MD5.4CFBEC37E4FAD530E623E1541E1EA958] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft ® VBScript.) -- C:\Windows\SysNative\vbscript.dll [599552] O44 - LFC:[MD5.4CFBEC37E4FAD530E623E1541E1EA958] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft ® VBScript.) -- C:\Windows\System32\vbscript.dll [599552] O44 - LFC:[MD5.2AAE2B8FED8390879C2369FC63F7001F] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft® HTML Editing Component.) -- C:\Windows\SysNative\mshtmled.dll [97280] O44 - LFC:[MD5.2AAE2B8FED8390879C2369FC63F7001F] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft® HTML Editing Component.) -- C:\Windows\System32\mshtmled.dll [97280] O44 - LFC:[MD5.E198851141465033273480C5EEAD5DE5] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\SysNative\mshtml.tlb [2706432] O44 - LFC:[MD5.E198851141465033273480C5EEAD5DE5] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2706432] O44 - LFC:[MD5.4E426A67C46379B75A5E671B46FC07F6] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Moteur d'installation.) -- C:\Windows\SysNative\inseng.dll [102912] O44 - LFC:[MD5.4E426A67C46379B75A5E671B46FC07F6] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Moteur d'installation.) -- C:\Windows\System32\inseng.dll [102912] O44 - LFC:[MD5.1C3C4D34DCF354620B76B42620B4DFAD] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Moteur de l’interface utilisateur d’Interne.) -- C:\Windows\SysNative\ieui.dll [526336] O44 - LFC:[MD5.1C3C4D34DCF354620B76B42620B4DFAD] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Moteur de l’interface utilisateur d’Interne.) -- C:\Windows\System32\ieui.dll [526336] O44 - LFC:[MD5.D744D5B8145C2303B19A288AF695E9AD] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\SysNative\ieframe.dll [15404544] O44 - LFC:[MD5.D744D5B8145C2303B19A288AF695E9AD] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\System32\ieframe.dll [15404544] O44 - LFC:[MD5.D0D4CE6C6CE87269A34A184356475D17] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Object Control Viewer.) -- C:\Windows\SysNative\occache.dll [149504] O44 - LFC:[MD5.D0D4CE6C6CE87269A34A184356475D17] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Object Control Viewer.) -- C:\Windows\System32\occache.dll [149504] O44 - LFC:[MD5.18A94D6E9D27D169D38DAB91F6A97518] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Objets homologues Internet Explorer.) -- C:\Windows\SysNative\iepeers.dll [136192] O44 - LFC:[MD5.18A94D6E9D27D169D38DAB91F6A97518] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Objets homologues Internet Explorer.) -- C:\Windows\System32\iepeers.dll [136192] O44 - LFC:[MD5.F2F5667BBD2864938C82EB3B6773D9D2] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) -- C:\Windows\SysNative\ieUnatt.exe [173568] O44 - LFC:[MD5.F2F5667BBD2864938C82EB3B6773D9D2] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) -- C:\Windows\System32\ieUnatt.exe [173568] O44 - LFC:[MD5.ADE73A865A5F136E84F49BB6B1627C6E] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Panneau de configuration Internet.) -- C:\Windows\SysNative\inetcpl.cpl [1509376] O44 - LFC:[MD5.ADE73A865A5F136E84F49BB6B1627C6E] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Panneau de configuration Internet.) -- C:\Windows\System32\inetcpl.cpl [1509376] O44 - LFC:[MD5.D0F66CFAED5B85543216EF526D380B8B] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\SysNative\iedkcs32.dll [270848] O44 - LFC:[MD5.D0F66CFAED5B85543216EF526D380B8B] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\System32\iedkcs32.dll [270848] O44 - LFC:[MD5.F03E5925B7E99800B8BFE1332556E1E2] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Registers custom PKEYs for IE.) -- C:\Windows\SysNative\RegisterIEPKEYs.exe [89600] O44 - LFC:[MD5.F03E5925B7E99800B8BFE1332556E1E2] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Registers custom PKEYs for IE.) -- C:\Windows\System32\RegisterIEPKEYs.exe [89600] O44 - LFC:[MD5.85F1FE2D5EDBFD26066F5ABB9504A69C] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Run time utility for Internet Explorer.) -- C:\Windows\SysNative\iertutil.dll [2647040] O44 - LFC:[MD5.85F1FE2D5EDBFD26066F5ABB9504A69C] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Run time utility for Internet Explorer.) -- C:\Windows\System32\iertutil.dll [2647040] O44 - LFC:[MD5.F651D95B5043EFC20A6108A853553984] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Sets the date that IE was installed.) -- C:\Windows\SysNative\SetIEInstalledDate.exe [92160] O44 - LFC:[MD5.F651D95B5043EFC20A6108A853553984] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Sets the date that IE was installed.) -- C:\Windows\System32\SetIEInstalledDate.exe [92160] O44 - LFC:[MD5.63CAE56FE4215F98FEB0188748A99378] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Synchronisation en arrière-plan des flux Mi.) -- C:\Windows\SysNative\msfeedsbs.dll [52224] O44 - LFC:[MD5.63CAE56FE4215F98FEB0188748A99378] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Synchronisation en arrière-plan des flux Mi.) -- C:\Windows\System32\msfeedsbs.dll [52224] O44 - LFC:[MD5.440104AEB9DAF8AC9842080AE59740FA] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - TDC ActiveX Control.) -- C:\Windows\SysNative\tdc.ocx [77312] O44 - LFC:[MD5.440104AEB9DAF8AC9842080AE59740FA] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - TDC ActiveX Control.) -- C:\Windows\System32\tdc.ocx [77312] O44 - LFC:[MD5.F021824E70447D98DB6CCED4456A0891] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Traitement de RunOnce complet avec interfac.) -- C:\Windows\SysNative\iernonce.dll [39936] O44 - LFC:[MD5.F021824E70447D98DB6CCED4456A0891] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Traitement de RunOnce complet avec interfac.) -- C:\Windows\System32\iernonce.dll [39936] O44 - LFC:[MD5.A89103864B67CE1ED3BB5D48569D3D94] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\SysNative\ie4uinit.exe [51712] O44 - LFC:[MD5.394ECD933CD66BADF97EA85A183B9E1E] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysNative\mshtml.dll [19230208] O44 - LFC:[MD5.394ECD933CD66BADF97EA85A183B9E1E] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [19230208] O44 - LFC:[MD5.D9C10A4A0B3411146E6FC8936B079934] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Wizard.) -- C:\Windows\SysNative\iexpress.exe [167424] O44 - LFC:[MD5.D9C10A4A0B3411146E6FC8936B079934] - 19/04/2013 - 21:48:41 ---A- . (.Microsoft Corporation - Wizard.) -- C:\Windows\System32\iexpress.exe [167424] O44 - LFC:[MD5.A89103864B67CE1ED3BB5D48569D3D94] - 19/04/2013 - 21:48:41 RSHAD . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [51712] O44 - LFC:[MD5.EFD5B79659E81214FE26AC155BDC53C7] - 19/04/2013 - 20:25:57 ---A- . (...) -- C:\AdwCleaner[S3].txt [2161] O44 - LFC:[MD5.D91F44E53D0567021E1365B17AAE0B6E] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - Display Driver Coinstaller.) -- C:\Windows\SysNative\nvdispco6431422.dll [1807136] O44 - LFC:[MD5.C13247D88FB46AB8D82DF0843123BACF] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - Generic Coinstaller.) -- C:\Windows\SysNative\nvdispgenco6431422.dll [1510176] O44 - LFC:[MD5.58E78E795815ED6A37E0A5B1A0A86584] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.22.) -- C:\Windows\SysNative\nvcuda.dll [9414456] O44 - LFC:[MD5.0AB9983A17F42D268EDFCA723F8BA7CF] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.22.) -- C:\Windows\SysNative\nvopencl.dll [7573816] O44 - LFC:[MD5.58E78E795815ED6A37E0A5B1A0A86584] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.22.) -- C:\Windows\System32\nvcuda.dll [9414456] O44 - LFC:[MD5.0AB9983A17F42D268EDFCA723F8BA7CF] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 314.22.) -- C:\Windows\System32\nvopencl.dll [7573816] O44 - LFC:[MD5.0A76782D0E6A417DB4580EAF95E8D1BA] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 314.2.) -- C:\Windows\SysNative\nvcuvid.dll [2913056] O44 - LFC:[MD5.0A76782D0E6A417DB4580EAF95E8D1BA] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 314.2.) -- C:\Windows\System32\nvcuvid.dll [2913056] O44 - LFC:[MD5.9B8BB0BC07CD7CEEB2708F2F9C419BF1] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Encoder, Version 314.22.) -- C:\Windows\SysNative\nvcuvenc.dll [2355488] O44 - LFC:[MD5.9B8BB0BC07CD7CEEB2708F2F9C419BF1] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Encoder, Version 314.22.) -- C:\Windows\System32\nvcuvenc.dll [2355488] O44 - LFC:[MD5.B9FC1696EA463A3A1BB9F3A5C15C8138] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - NVIDIA Compatible OpenGL ICD.) -- C:\Windows\SysNative\nvoglv64.dll [26956576] O44 - LFC:[MD5.B7537FDC51AA764B78565061D305C8C9] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - NVIDIA Compiler, Version 314.22.) -- C:\Windows\SysNative\nvcompiler.dll [25256736] O44 - LFC:[MD5.B7537FDC51AA764B78565061D305C8C9] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - NVIDIA Compiler, Version 314.22.) -- C:\Windows\System32\nvcompiler.dll [25256736] O44 - LFC:[MD5.EE87CC219215DB9FDBCB3B27120D89B7] - 19/04/2013 - 20:20:48 ---A- . (.NVIDIA Corporation - NVIDIA WDDM D3D Driver, Version 314.22.) -- C:\Windows\SysNative\nvd3dumx.dll [17990800] O44 - LFC:[MD5.D91F44E53D0567021E1365B17AAE0B6E] - 19/04/2013 - 20:20:48 RSHAD . (.NVIDIA Corporation - Display Driver Coinstaller.) -- C:\Windows\System32\nvdispco6431422.dll [1807136] O44 - LFC:[MD5.C13247D88FB46AB8D82DF0843123BACF] - 19/04/2013 - 20:20:48 RSHAD . (.NVIDIA Corporation - Generic Coinstaller.) -- C:\Windows\System32\nvdispgenco6431422.dll [1510176] O44 - LFC:[MD5.B9FC1696EA463A3A1BB9F3A5C15C8138] - 19/04/2013 - 20:20:48 RSHAD . (.NVIDIA Corporation - NVIDIA Compatible OpenGL ICD.) -- C:\Windows\System32\nvoglv64.dll [26956576] O44 - LFC:[MD5.EE87CC219215DB9FDBCB3B27120D89B7] - 19/04/2013 - 20:20:48 RSHAD . (.NVIDIA Corporation - NVIDIA WDDM D3D Driver, Version 314.22.) -- C:\Windows\System32\nvd3dumx.dll [17990800] O44 - LFC:[MD5.4EE399576F76D38C04745DB739BBC8C7] - 19/04/2013 - 20:20:46 RSHAD . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\Drivers\nvlddmkm.sys [11048736] O44 - LFC:[MD5.5CECC984DF63B2CD167E91560112B150] - 19/04/2013 - 19:15:59 ---A- . (...) -- C:\AdwCleaner[R4].txt [4788] O44 - LFC:[MD5.13CAEB30A05FC790FB2FDB87E7177913] - 19/04/2013 - 18:55:41 ---A- . (...) -- C:\Windows\SysNative\AutoRunFilter.ini [2636] O44 - LFC:[MD5.13CAEB30A05FC790FB2FDB87E7177913] - 19/04/2013 - 18:55:41 RSHAD . (...) -- C:\Windows\System32\AutoRunFilter.ini [2636] O44 - LFC:[MD5.EC9166D017CEDFA0AF1B99141CD88867] - 19/04/2013 - 18:55:25 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [318624] O44 - LFC:[MD5.EC9166D017CEDFA0AF1B99141CD88867] - 19/04/2013 - 18:55:25 RSHAD . (...) -- C:\Windows\System32\FNTCACHE.DAT [318624] O44 - LFC:[MD5.2DB027B30DC8A57D689EB1E6DB6A4C6D] - 19/04/2013 - 18:51:45 ---A- . (...) -- C:\AdwCleaner[R3].txt [4728] O44 - LFC:[MD5.57834EDA2F550F41D6D12417C79261D5] - 19/04/2013 - 18:37:05 ---A- . (...) -- C:\AdwCleaner[R2].txt [5512] O44 - LFC:[MD5.7E44C2684A6CA779B9D07CB4BD3F649D] - 19/04/2013 - 18:23:37 RSHAD . (...) -- C:\Windows\System32\Drivers\aswVmm.sys [178624] O44 - LFC:[MD5.DE6759B8D8E62BF0FFF2B05F05AFCEE6] - 19/04/2013 - 18:23:36 RSHAD . (...) -- C:\Windows\System32\Drivers\aswRvrt.sys [65336] O44 - LFC:[MD5.79D282F5C6AF626224A9D9AADE5ED3AA] - 17/04/2013 - 05:33:30 ---A- . (...) -- C:\Windows\MEMORY.DMP [576384582] O44 - LFC:[MD5.D5B800C7E730BDAFF36FE6FC64EB34A1] - 11/04/2013 - 02:03:31 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\SysNative\MRT.exe [72702784] O44 - LFC:[MD5.D5B800C7E730BDAFF36FE6FC64EB34A1] - 11/04/2013 - 02:03:31 RSHAD . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [72702784] O44 - LFC:[MD5.B1333C7A61106FCC28C60BE9CAC7EF39] - 11/04/2013 - 02:02:15 ---A- . (...) -- C:\Windows\win.ini [499] O44 - LFC:[MD5.F4C640E85DB6450CB221E5224AA2AB51] - 10/04/2013 - 21:30:41 ---A- . (.Microsoft Corporation - Client ActiveX des services Bureau à distan.) -- C:\Windows\SysNative\mstscax.dll [3717632] O44 - LFC:[MD5.F4C640E85DB6450CB221E5224AA2AB51] - 10/04/2013 - 21:30:41 ---A- . (.Microsoft Corporation - Client ActiveX des services Bureau à distan.) -- C:\Windows\System32\mstscax.dll [3717632] O44 - LFC:[MD5.9F5C2F0CFEF95B4653E21443CDC0D587] - 10/04/2013 - 21:30:35 ---A- . (.Microsoft Corporation - Client avec accès à distance.) -- C:\Windows\SysNative\aaclient.dll [158720] O44 - LFC:[MD5.9F5C2F0CFEF95B4653E21443CDC0D587] - 10/04/2013 - 21:30:35 ---A- . (.Microsoft Corporation - Client avec accès à distance.) -- C:\Windows\System32\aaclient.dll [158720] O44 - LFC:[MD5.CE4157E4B1E5041D252EF38EB61E9F0C] - 10/04/2013 - 21:30:34 ---A- . (.Microsoft Corporation - Client de contrainte de quarantaine de la p.) -- C:\Windows\SysNative\tsgqec.dll [44032] O44 - LFC:[MD5.CE4157E4B1E5041D252EF38EB61E9F0C] - 10/04/2013 - 21:30:34 ---A- . (.Microsoft Corporation - Client de contrainte de quarantaine de la p.) -- C:\Windows\System32\tsgqec.dll [44032] O44 - LFC:[MD5.86F96630D28523F1C402C783F046DEF1] - 10/04/2013 - 21:30:23 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\SysNative\win32k.sys [3153408] O44 - LFC:[MD5.86F96630D28523F1C402C783F046DEF1] - 10/04/2013 - 21:30:23 RSHAD . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [3153408] O44 - LFC:[MD5.B8965FB53551B5455630A4B804D0791F] - 10/04/2013 - 21:30:20 RSHAD . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\Drivers\ntfs.sys [1655656] O44 - LFC:[MD5.8F6322049018354F45F05A2FD2D4E5E0] - 10/04/2013 - 21:29:35 RSHAD . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\Drivers\fvevol.sys [223752] O44 - LFC:[MD5.AC3232ED772403D38D64C18CD5A66FBD] - 10/04/2013 - 21:29:28 ---A- . (.Microsoft Corporation - NT Kernel & System.) -- C:\Windows\SysNative\ntoskrnl.exe [5550424] O44 - LFC:[MD5.AC3232ED772403D38D64C18CD5A66FBD] - 10/04/2013 - 21:29:28 ---A- . (.Microsoft Corporation - NT Kernel & System.) -- C:\Windows\System32\ntoskrnl.exe [5550424] O44 - LFC:[MD5.F0371DE302FFFF8F086661611BE60848] - 10/04/2013 - 21:29:24 ---A- . (.Microsoft Corporation - Gestionnaire de sessions Windows.) -- C:\Windows\SysNative\smss.exe [112640] O44 - LFC:[MD5.CEC1EDF4022DC4DCA40384DCEC672B0E] - 10/04/2013 - 21:29:24 ---A- . (.Microsoft Corporation - Processus d'exécution client-serveur.) -- C:\Windows\SysNative\csrsrv.dll [43520] O44 - LFC:[MD5.F0371DE302FFFF8F086661611BE60848] - 10/04/2013 - 21:29:24 RSHAD . (.Microsoft Corporation - Gestionnaire de sessions Windows.) -- C:\Windows\System32\smss.exe [112640] O44 - LFC:[MD5.CEC1EDF4022DC4DCA40384DCEC672B0E] - 10/04/2013 - 21:29:24 RSHAD . (.Microsoft Corporation - Processus d'exécution client-serveur.) -- C:\Windows\System32\csrsrv.dll [43520] O44 - LFC:[MD5.FC58058B88C3E16FA977FEBB73A1922C] - 10/04/2013 - 06:25:15 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1549936] O44 - LFC:[MD5.22DF7130286EE871D1D3CA3F6F45BC43] - 10/04/2013 - 06:25:15 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [106622] O44 - LFC:[MD5.6112DEF2E5EDF22A6CB6F571826EE01B] - 10/04/2013 - 06:25:15 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [130988] O44 - LFC:[MD5.F38D44AE75A70DD141C7561735FEB742] - 10/04/2013 - 06:25:15 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [616242] O44 - LFC:[MD5.9CFC94A68EA9F0AA5B4F866B0C80FF9F] - 10/04/2013 - 06:25:15 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [704714] O44 - LFC:[MD5.FC58058B88C3E16FA977FEBB73A1922C] - 10/04/2013 - 06:25:15 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1549936] O44 - LFC:[MD5.22DF7130286EE871D1D3CA3F6F45BC43] - 10/04/2013 - 06:25:15 RSHAD . (...) -- C:\Windows\System32\perfc009.dat [106622] O44 - LFC:[MD5.6112DEF2E5EDF22A6CB6F571826EE01B] - 10/04/2013 - 06:25:15 RSHAD . (...) -- C:\Windows\System32\perfc00C.dat [130988] O44 - LFC:[MD5.F38D44AE75A70DD141C7561735FEB742] - 10/04/2013 - 06:25:15 RSHAD . (...) -- C:\Windows\System32\perfh009.dat [616242] O44 - LFC:[MD5.9CFC94A68EA9F0AA5B4F866B0C80FF9F] - 10/04/2013 - 06:25:15 RSHAD . (...) -- C:\Windows\System32\perfh00C.dat [704714] ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - LiveSSP.) -- C:\Windows\System32\livessp.dll ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ---\\ Trojan Driver Search Data (HKLM) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ---\\ ShareTools MSconfig StartupReg (O53) O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (...) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\AmIcoSinglun64 [Key] . (.Alcor Micro Corp. - Single LUN Icon Utility for VID 058F PID 63.) -- C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe O53 - SMSR:HKLM\...\startupreg\ASUS Screen Saver Protector [Key] . (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe O53 - SMSR:HKLM\...\startupreg\ASUS WebStorage [Key] . (...) -- C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe O53 - SMSR:HKLM\...\startupreg\CLMLServer [Key] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe O53 - SMSR:HKLM\...\startupreg\ETDWare [Key] . (.ELAN Microelectronic Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe O53 - SMSR:HKLM\...\startupreg\GameXN [Key] . (...) -- C:\ProgramData\GameXN\GameXNGO.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\GameXN (news) [Key] . (...) -- C:\ProgramData\GameXN\GameXNGO.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\GameXN (update) [Key] . (...) -- C:\ProgramData\GameXN\GameXNGO.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\paulette\AppData\Local\Google\Update\GoogleUpdate.exe O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe O53 - SMSR:HKLM\...\startupreg\Setwallpaper [Key] . (...) -- c:\programdata\SetWallpaper.cmd (.not file.) O53 - SMSR:HKLM\...\startupreg\Spotify [Key] . (...) -- C:\Users\paulette\AppData\Roaming\Spotify\Spotify.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Spotify Web Helper [Key] . (...) -- C:\Users\paulette\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (...) -- C:\Program Files (x86)\Steam\steam.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\UpdateLBPShortCut [Key] . (...) -- C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\UpdateP2GoShortCut [Key] . (...) -- C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (.not file.) ---\\ Microsoft Control Security Providers (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ---\\ Microsoft Windows Policies System (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ---\\ Microsoft Windows Policies Explorer (O56) O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveAutoRun"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 ---\\ Liste des Drivers Système (O58) O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088] O58 - SDL:[MD5.6C572A50FB2BF1F70281FEB67188A486] - 22/11/2012 - 20:51:26 ----- . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN device driver.) -- C:\Windows\System32\athrx.sys [3831808] ~ Drivers: Scanned in 00mn 00s ---\\ Liste des outils de nettoyage (O63) O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 ~ ADS: Scanned in 00mn 00s ---\\ Liste des services Legacy (O64) O64 - Services: CurCS - 28/12/2011 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD O64 - Services: CurCS - ??\??\???? - Pas de propriétaire (ASMMAP64) .(...) - LEGACY_ASMMAP64 O64 - Services: CurCS - 06/03/2013 - C:\Windows\System32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK O64 - Services: CurCS - 06/03/2013 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT O64 - Services: CurCS - 06/03/2013 - C:\Windows\system32\Drivers\aswrdr2.sys (aswRdr) .(.AVAST Software - avast! WFP Redirect Driver.) - LEGACY_ASWRDR O64 - Services: CurCS - 06/03/2013 - Pas de propriétaire (aswRvrt) .(...) - LEGACY_ASWRVRT O64 - Services: CurCS - 06/03/2013 - C:\Windows\System32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX O64 - Services: CurCS - 06/03/2013 - C:\Windows\System32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP O64 - Services: CurCS - 06/03/2013 - C:\Windows\System32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI O64 - Services: CurCS - 06/03/2013 - Pas de propriétaire (aswVmm) .(...) - LEGACY_ASWVMM O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\atapi.sys (atapi) .(.Microsoft Corporation - ATAPI IDE Miniport Driver.) - LEGACY_ATAPI O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\Beep.sys (Beep) .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP O64 - Services: CurCS - 04/07/2012 - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\cdfs.sys (cdfs) .(.Microsoft Corporation - CD-ROM File System Driver.) - LEGACY_CDFS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS O64 - Services: CurCS - 02/06/2012 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE O64 - Services: CurCS - 21/07/2011 - C:\Program Files\ma-config.com\Drivers\driverhardwarev2x64.sys (driverhardwarev2x64) .(.CybelSoft - Driver NT Ma-Config.com.) - LEGACY_DRIVERHARDWAREV2X64 O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\fastfat.sys (fastfat) .(.Microsoft Corporation - Fast FAT File System Driver.) - LEGACY_FASTFAT O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR O64 - Services: CurCS - 24/01/2013 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY O64 - Services: CurCS - 02/06/2012 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD O64 - Services: CurCS - 02/06/2012 - C:\Windows\System32\Drivers\ksecpkg.sys (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV O64 - Services: CurCS - 04/04/2013 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10 O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20 O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\msahci.sys (msahci) .(.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) - LEGACY_MSAHCI O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\msisadrv.sys (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\nwifi.sys (NativeWifiP) .(.Microsoft Corporation - Pilote de miniport WiFi natif.) - LEGACY_NATIVEWIFIP O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\DRIVERS\ndisuio.sys (Ndisuio) .(.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) - LEGACY_NDISUIO O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pciide.sys (pciide) .(.Microsoft Corporation - Generic PCI IDE Bus Driver.) - LEGACY_PCIIDE O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pcw.sys (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\peauth.sys (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR O64 - Services: CurCS - 10/06/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\spldr.sys (spldr) .(.Microsoft Corporation - loader for security processor.) - LEGACY_SPLDR O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2 O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP O64 - Services: CurCS - 03/10/2012 - C:\Windows\System32\drivers\tcpipreg.sys (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\DRIVERS\udfs.sys (udfs) .(.Microsoft Corporation - UDF File System Driver.) - LEGACY_UDFS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\vwififlt.sys (vwififlt) .(.Microsoft Corporation - Virtual WiFi Filter Driver.) - LEGACY_VWIFIFLT O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6 O64 - Services: CurCS - 26/07/2012 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\wfplwf.sys (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF O64 - Services: CurCS - 24/05/2008 - C:\Windows\System32\DRIVERS\wimfltr.sys (WimFltr) .(.Microsoft Corporation - Windows Image File Mini-Filter Driver.) - LEGACY_WIMFLTR O64 - Services: CurCS - 26/07/2012 - C:\Windows\System32\drivers\WudfPf.sys (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF ---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ---\\ Start Menu Internet (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche des services démarrés par Svchost (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ---\\ Recherche particuliere à la racine de certains dossiers (O84) [MD5.E0E5514FDC87CF1C4C0D5A8584E8FE2A] [SPRF][29/01/2011] (...) -- C:\ProgramData\ezsidmv.dat [56] [MD5.1FE339E72FE03A27DD9D5A9A357CFE7D] [SPRF][24/12/2009] (...) -- C:\ProgramData\FullRemove.exe [131368] ~ Files: Scanned in 00mn 00s ---\\ Firewall Active Exception List (FirewallRules) (O87) O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "WMP-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-P2PHost-In-TCP" | In - None - P6 - TRUE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Private - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{BC2CF3E4-0122-433A-B897-8B4598E7615E}" | In - None - P6 - TRUE | .(.Microsoft Corporation - Windows Live Call.) -- C:\Program Files (x86)\Windows Live\Messenger\wlcsdk.exe O87 - FAEL: "{6A191280-CBD9-44B5-8723-D95589DE0FD2}" | In - None - P6 - TRUE | .(.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe O87 - FAEL: "{92440718-7B44-4986-8EE1-1BD0C27AA74B}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\System32\svchost.exe O87 - FAEL: "{435FA4D5-886C-4754-A92D-B082879EE064}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Sync.) -- C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe O87 - FAEL: "TCP Query User{85A2E5A0-7B6B-408C-978C-BF394C901D74}C:\program files (x86)\internet explorer\iexplore.exe" | In - Public - P6 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\internet explorer\iexplore.exe O87 - FAEL: "UDP Query User{43A025AE-E948-4466-B6A6-61F36CF51AF5}C:\program files (x86)\internet explorer\iexplore.exe" | In - Public - P17 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\internet explorer\iexplore.exe O87 - FAEL: "{9DFCD666-E77F-4BA0-8BB4-7738F1335716}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe O87 - FAEL: "TCP Query User{7354ADDC-B18A-4E1C-8647-ED78E69BDACF}C:\users\paulette\downloads\starcraft_2_eu_en-gb.exe" | In - Public - P6 - TRUE | .(.Blizzard Entertainment.) -- C:\users\paulette\downloads\starcraft_2_eu_en-gb.exe O87 - FAEL: "UDP Query User{8C74E808-18C1-48C0-BCE3-EE4F8B2A9D99}C:\users\paulette\downloads\starcraft_2_eu_en-gb.exe" | In - Public - P17 - TRUE | .(.Blizzard Entertainment.) -- C:\users\paulette\downloads\starcraft_2_eu_en-gb.exe O87 - FAEL: "{4E25AE3E-017E-45EE-B292-3A4904BE3FF9}" | In - Public - P6 - TRUE | .(.Hewlett-Packard Co. - DeviceSetup.exe.) -- C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\DeviceSetup.exe O87 - FAEL: "{E379A905-64ED-445B-9232-C9ECB5E870CB}" | In - Public - P17 - TRUE | .(.Hewlett-Packard Co. - DeviceSetup.exe.) -- C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\DeviceSetup.exe O87 - FAEL: "{BEAF1269-EDE2-49DD-A84B-9A90EA7DF539}" | In - Public - P6 - TRUE | .(.Hewlett-Packard Co. - HPNetworkCommunicator.) -- C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HPNetworkCommunicator.exe O87 - FAEL: "{9CA14742-CF5F-434D-88BF-A91A9C6000AB}" | In - Public - P17 - TRUE | .(.Hewlett-Packard Co. - HPNetworkCommunicator.) -- C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HPNetworkCommunicator.exe O87 - FAEL: "{B82D0861-BAF9-4D16-BABE-79A6DC65021B}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{C33DE692-1B67-42D5-8531-534565E74C09}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{8C6FFE82-79AE-4D33-875A-7CBC874574CD}" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "{ED2EC5B7-4635-4531-BA67-F000DA2669B5}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{0F1F1B3C-6915-4317-B029-8B9BC9800315}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{979CA457-35C5-4FA0-8923-DB808132D16F}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{990ABBFB-6F2D-4449-8D34-7F2FA996F9DC}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{D2AF00F9-BF44-457C-982C-6B06D1D5F255}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{9A20B372-FE2D-45AA-B595-E6412C73DA80}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{604B2605-17C8-4A40-BD12-8D6C325A6D0E}" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{F3F30D99-A25E-49F9-891B-C1E3D3E81E15}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{F3C05163-7C5B-4B84-B98B-0C60E3FB6338}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "TCP Query User{4B897A3C-F509-4074-B722-E480BE0879E5}C:\users\paulette\downloads\starcraft_2_eu_en-gb(1).exe" | In - Public - P6 - TRUE | .(.Blizzard Entertainment.) -- C:\users\paulette\downloads\starcraft_2_eu_en-gb(1).exe O87 - FAEL: "UDP Query User{B675D241-A0B3-490B-8E5C-9F93F4C00740}C:\users\paulette\downloads\starcraft_2_eu_en-gb(1).exe" | In - Public - P17 - TRUE | .(.Blizzard Entertainment.) -- C:\users\paulette\downloads\starcraft_2_eu_en-gb(1).exe O87 - FAEL: "{799B9D96-AC32-4324-945A-2DC281897605}" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{44F392B8-1AAF-4305-9358-C183679B2BEC}" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{A7B77833-6AF9-4B26-936E-BB86029D732B}" | In - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{4414FBC2-ACAE-4C81-BA34-9E2B82F26900}" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{90C35438-23F8-4588-9602-BFE11B0A61B9}" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "TCP Query User{3CA0C837-610F-4D28-9448-F2FDCFF8BDBA}C:\users\paulette\downloads\starcraft_2_eu_en-gb(2).exe" | In - Public - P6 - TRUE | .(.Blizzard Entertainment.) -- C:\users\paulette\downloads\starcraft_2_eu_en-gb(2).exe O87 - FAEL: "UDP Query User{FBED8AAB-2554-477A-80F0-CCF8D27A79E3}C:\users\paulette\downloads\starcraft_2_eu_en-gb(2).exe" | In - Public - P17 - TRUE | .(.Blizzard Entertainment.) -- C:\users\paulette\downloads\starcraft_2_eu_en-gb(2).exe O87 - FAEL: "{FA99535B-5159-4693-83BE-4DFDE5622B63}" | In - Public - P6 - TRUE | .(.Microsoft Studios - Age of Empires Online.) -- C:\Program Files (x86)\Microsoft Games\Age of Empires Online\Spartan.exe O87 - FAEL: "{2C079075-B7AB-4616-A9D6-37EBC795C790}" | In - Public - P17 - TRUE | .(.Microsoft Studios - Age of Empires Online.) -- C:\Program Files (x86)\Microsoft Games\Age of Empires Online\Spartan.exe O87 - FAEL: "{7F0F089E-DAA4-4408-B17D-04065E4D408A}" | In - Public - P6 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{400F8037-186C-41B3-BF77-1CFB58EE56C6}" | In - Public - P17 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{403DAB2A-A9CB-4373-853D-FFE76B7CC784}" | In - Public - P6 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{D03858CB-BF8B-415F-B50D-4F4BDC96D0F2}" | In - Public - P17 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{AD8A4F05-E080-41D5-A41E-3409C80F0DA1}" | In - None - P17 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe O87 - FAEL: "{52AA39A2-4420-4DB1-9F33-41408BA6E5D4}" | In - Public - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{917CD94A-E0E1-40AE-8A37-F9229EBFAECA}" | In - Public - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{BAE5F12B-34B8-4603-B444-248E1157C8AE}" | In - None - P17 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files (x86)\iTunes\iTunes.exe O87 - FAEL: "{1CA1994E-39B3-418F-B868-7E8407FDCDE6}" | In - Public - P6 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\x64\maconfservice.exe O87 - FAEL: "{FEEA39B2-3DD6-4B65-97E6-7CC108AE418E}" | In - Public - P17 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\x64\maconfservice.exe O87 - FAEL: "{2E99B884-46C9-42E7-8701-06ACEB4E7510}" | In - Public - P6 - TRUE | .(.Blizzard Entertainment - Battle.net Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.1675\Agent.exe O87 - FAEL: "{E1556707-3410-4849-87D3-FEEEDAC63D83}" | In - Public - P17 - TRUE | .(.Blizzard Entertainment - Battle.net Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.1675\Agent.exe O87 - FAEL: "TCP Query User{6116F1CC-06EB-4811-A260-40C8F707DA05}D:\starcraft ii\versions\base24944\sc2.exe" | In - Public - P6 - TRUE | .(.Blizzard Entertainment, Inc. - StarCraft II.) -- D:\starcraft ii\versions\base24944\sc2.exe O87 - FAEL: "UDP Query User{3AC59DF9-4859-4626-9982-A4C186BC15C3}D:\starcraft ii\versions\base24944\sc2.exe" | In - Public - P17 - TRUE | .(.Blizzard Entertainment, Inc. - StarCraft II.) -- D:\starcraft ii\versions\base24944\sc2.exe O87 - FAEL: "{C4448294-DCB0-4789-9978-907571FFC13A}" | In - Public - P6 - TRUE | .(.Blizzard Entertainment - Battle.net Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe O87 - FAEL: "{B3D0C5D6-706C-491D-B2DB-16871E1FD277}" | In - Public - P17 - TRUE | .(.Blizzard Entertainment - Battle.net Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe O87 - FAEL: "{A1EE22BB-3E6E-4632-82BB-8566E1462777}" | In - Public - P6 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O87 - FAEL: "{1CD0FADD-30CC-4FB0-864A-658E6833E4B8}" | In - Public - P17 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe ---\\ Scan Additionnel (O88) Database Version : v2.11632 - (20/04/2013) Clés trouvées (Keys found) : 0 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 0 Fichiers trouvés (Files found) : 0 ~ Additionnel Scan: 247116 Items scanned in 00mn 24s ---\\ Product Upgrade Codes (O90) O90 - PUC: "000021090200C0400000000000F01FEC" . (.Module de compatibilité pour Microsoft Office System 2007.) -- C:\Windows\Installer\{90120000-0020-040C-0000-0000000FF1CE}\O12ConvIcon.exe O90 - PUC: "07A78D1031D4EBC498445ADA73EBD8E8" . (.Ma-Config.com (64 bits).) -- C:\Windows\Installer\{01D87A70-4D13-4CBE-8944-A5AD37BE8D8E}\maconfico O90 - PUC: "09F4DEBB5EA7FB04FA7BB19465294FBA" . (.syncables desktop SE.) -- C:\Windows\Installer\{BBED4F90-7AE5-40BF-AFB7-1B495692F4AB}\ARPPRODUCTICON.exe O90 - PUC: "0AD2CD36C6A283C429947B3559546875" . (.Windows Live Mail.) -- C:\Windows\Installer\{63DC2DA0-2A6C-4C38-9249-B75395458657}\wlmail.exe O90 - PUC: "16525446F96163A42AFF5B1E81CE565F" . (.ASUS SmartLogon.) -- C:\Windows\Installer\{64452561-169F-4A36-A2FF-B5E118EC65F5}\_4ae13d6c.exe O90 - PUC: "1A3EFE19E58566F45B6F1F815FC6C474" . (.ASUS Power4Gear Hybrid.) -- C:\Windows\Installer\{91EFE3A1-585E-4F66-B5F6-F118F56C4C47}\_6FEFF9B68218417F98F549.exe O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon O90 - PUC: "20B58560D02F2BA4A94668FEA20E8F0F" . (.ASUS AI Recovery.) -- C:\Windows\Installer\{06585B02-F20D-4AB2-9A64-86EF2AE0F8F0}\_6FEFF9B68218417F98F549.exe O90 - PUC: "21F1DBD139DE0C947ACC65BCED841885" . (.ASUS LifeFrame3.) -- C:\Windows\Installer\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}\_6FEFF9B68218417F98F549.exe O90 - PUC: "2B0163E6D0340BE4183EB2758E9BEDD8" . (.Bonjour.) -- C:\Windows\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico O90 - PUC: "2E1C05ECFA01F0045AA3A4E3A04D682B" . (.Windows Live Contrôle parental.) -- C:\Windows\Installer\{CE50C1E2-10AF-400F-A53A-4A3E0AD486B2}\fssicon.ico O90 - PUC: "3128052F989958E40A8727EB849371FE" . (.Microsoft Games for Windows - LIVE Redistributable.) -- C:\Windows\Installer\{F2508213-9989-4E85-A078-72BE483917EF}\GameForWindowsLiveRedist.exe O90 - PUC: "38E1FB04BE028D11795C00905C206085" . (.Power2Go.) -- C:\Windows\Installer\{40BF1E83-20EB-11D8-97C5-0009C5020658}\ARPPRODUCTICON.exe O90 - PUC: "3F7A4F31CBAE1624FAB6317177F77055" . (.Fast Boot.) -- C:\Windows\Installer\{13F4A7F3-EABC-4261-AF6B-1317777F0755}\_6FEFF9B68218417F98F549.exe O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.02) - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico O90 - PUC: "6BADD013AD149764C96F8C4EBE612C6A" . (.Logiciel de base du périphérique HP Deskjet 3050 J610 series.) -- C:\Windows\Installer\{310DDAB6-41DA-4679-9CF6-C8E4EB16C2A6}\ARP_Icon O90 - PUC: "6F0B1F33812F655408151FC6C6645401" . (.HP Deskjet 3050 J610 series - Enquête sur l'amélioration du produit.) -- C:\Windows\Installer\{33F1B0F6-F218-4556-8051-F16C6C464510}\ARP_Icon O90 - PUC: "7692FC6BE18C0C0489510C7547EF1F02" . (.Skype Click to Call.) -- C:\Windows\Installer\{B6CF2967-C81E-40C0-9815-C05774FEF120}\IconUninstallIco O90 - PUC: "76E045AFC590B1A479ABD445D7CEA94F" . (.ASUS Live Update.) -- C:\Windows\Installer\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}\MyIcon O90 - PUC: "849FDF02DE8C34545A937F4FEA5FFA2A" . (.Wireless Console 3.) -- C:\Windows\Installer\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}\_294823.exe O90 - PUC: "8FC229B8C6A8EC148A851F57D5F7D592" . (.NVIDIA PhysX.) -- C:\Windows\Installer\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}\icon.ico O90 - PUC: "93EC1322369BD9B428A34F21CE6A731B" . (.Windows Live Writer.) -- C:\Windows\Installer\{2231CE39-B963-4B9D-823A-F412ECA637B1}\ApplicationIcon.ico O90 - PUC: "9E5A8B7A44AC0A443939E90AFF4E3CBF" . (.Alcor Micro USB Card Reader.) -- C:\Windows\Installer\{A7B8A5E9-CA44-44A0-9393-9EA0FFE4C3FB}\ARPPRODUCTICON.exe O90 - PUC: "AAB3A04886C41854C9A7F6D8C65F139B" . (.iTunes.) -- C:\Windows\Installer\{840A3BAA-4C68-4581-9C7A-6F8D6CF531B9}\Installer.ico O90 - PUC: "B27818B2450AAD84EBB3AFC561C403A3" . (.ASUS FancyStart.) -- C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_6FEFF9B68218417F98F549.exe O90 - PUC: "B9A2367FE1669DF41B4AB368CB9948F7" . (.HP Deskjet 3050 J610 series Aide.) -- C:\Windows\Installer\{F7632A9B-661E-4FD9-B1A4-3B86BC99847F}\ARP_Icon O90 - PUC: "BCA36534B17385C498971B293B0924C4" . (.Galerie de photos Windows Live.) -- C:\Windows\Installer\{43563ACB-371B-4C58-8979-B192B390424C}\WLXPhotoGalleryIcon.exe O90 - PUC: "BE9D894AB729B954586DDDE68F2C5C46" . (.erLT.) -- C:\Windows\Installer\{A498D9EB-927B-459B-85D6-DD6EF8C2C564}\ARPPRODUCTICON.exe O90 - PUC: "C040210900063D11C8EF10054038389C" . (.Microsoft Office Standard Edition 2003.) -- C:\Windows\Installer\{9012040C-6000-11D3-8CFE-0150048383C9}\misc.exe,6 O90 - PUC: "C040580900063D11C8EF10054038389C" . (.Microsoft Office Word Viewer 2003.) -- C:\Windows\Installer\{9085040C-6000-11D3-8CFE-0150048383C9}\wrdvicon.exe,1 O90 - PUC: "C3130D7651F4D734A9D21C6504882AA6" . (.Windows Live Sync.) -- C:\Windows\Installer\{67D0313C-4F15-437D-9A2D-C1564088A26A}\FolderShare48x48.ico O90 - PUC: "C7030BC4E565144468EBD02F4EBF28C8" . (.Microsoft Games for Windows Marketplace.) -- C:\Windows\Installer\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}\GameForWindowsLiveDash.exe O90 - PUC: "C8FDA2211ADDC08499638CF882522B56" . (.Apple Application Support.) -- C:\Windows\Installer\{122ADF8C-DDA1-480C-9936-C88F2825B265}\WinInstall.ico O90 - PUC: "C971C95CD8669A946BAE1012CCCF2134" . (.LabelPrint.) -- C:\Windows\Installer\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\ARPPRODUCTICON.exe O90 - PUC: "C9B6FC5EEBA39C344931DAF5CF890F94" . (.SRS Premium Sound Control Panel.) -- C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\ARPPRODUCTICON.exe O90 - PUC: "CA0B84B9318C4714092474A68857297C" . (.Windows Live ID Sign-in Assistant.) -- C:\Windows\Installer\{9B48B0AC-C813-4174-9042-476A887592C7}\prodicon.ico O90 - PUC: "CE2A356B618D89444ADF560174BAD99C" . (.Boingo Wi-Fi.) -- C:\Windows\Installer\{B653A2EC-D816-4498-A4FD-651047AB9DC9}\BoingoIco.exe O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- C:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon O90 - PUC: "DC276626FCFB9A94EAEFBAF0DEB3CFB5" . (.Gestionnaire pour appareils Windows Mobile.) -- C:\Windows\Installer\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}\wmdc.exe O90 - PUC: "DDB6C50237B7ED245850A990F3532A83" . (.Outil de téléchargement Windows Live.) -- C:\Windows\Installer\{205C6BDD-7B73-42DE-8505-9A093F35A238}\RichUpload.ico O90 - PUC: "E19212F84440D1B49B9F34077AE343D6" . (.WinFlash.) -- C:\Windows\Installer\{8F21291E-0444-4B1D-B9F9-4370A73E346D}\MyIcon O90 - PUC: "E240C950A697CCA48AA1CE2C10B07BC8" . (.Windows Live Messenger.) -- C:\Windows\Installer\{059C042E-796A-4ACC-A81A-ECC2010BB78C}\MsblIco.Exe O90 - PUC: "E339C5BAD7C503D43B41C9384AB949EB" . (.ATK Package.) -- C:\Windows\Installer\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}\_294823.exe O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype™ 6.1.) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe O90 - PUC: "F60C1AD7319C7C64A8F0ADC2AB71AED1" . (.OpenOffice.org 3.4.1.) -- C:\Windows\Installer\{7DA1C06F-C913-46C7-8A0F-DA2CBA17EA1D}\soffice.ico O90 - PUC: "FAEB67A6F1D637247AB9AD48012A5EB6" . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{6A76BEAF-6D1F-4273-A79B-DA8410A2E56B}\Installer.ico O90 - PUC: "FE521925CA3E47B4796E6F887A0C1F0C" . (.Paint.NET v3.5.10.) -- C:\Windows\Installer\{529125EF-E3AC-4B74-97E6-F688A7C0F1C0}\_853F67D554F05449430E7E.exe ---\\ MyComputer Name Space (O92) O92 - MNS: ASUS WebStorage - {d6044399-0b9e-4084-a9ac-c4b7c7800fcf} ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 18/12/2012 65192 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SS - | Demand 19/04/2013 256904 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SR - | Auto 08/12/2009 379520 | (AFBAgent) . (.ASUSTeK Computer Inc..) - C:\Windows\system32\FBAgent.exe SR - | Auto 24/05/2012 55184 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe SR - | Auto 16/06/2009 84536 | (ASLDRService) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe SS - | Auto 15/12/2009 96896 | (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe SR - | Auto 06/03/2013 45248 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe SS - | Auto 19/04/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 19/04/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 0 | (gusvc) . (...) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe SS - | Demand 07/06/2012 936848 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe SS - | Demand 27/09/2011 359192 | (LBTServ) . (.Logitech, Inc..) - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe SS - | Demand 05/02/2013 428928 | (maconfservice) . (.CybelSoft.) - C:\Program Files\ma-config.com\x64\maconfservice.exe SR - | Auto 04/04/2013 418376 | (MBAMScheduler) . (.Malwarebytes Corporation.) - D:\Malwarebytes' Anti-Malware\mbamscheduler.exe SR - | Auto 04/04/2013 701512 | (MBAMService) . (.Malwarebytes Corporation.) - D:\Malwarebytes' Anti-Malware\mbamservice.exe SS - | Demand 11/04/2013 115608 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe SR - | Auto 15/03/2013 877856 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe SR - | Auto 15/03/2013 1266464 | (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe SR - | Auto 0 | (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe SS - | Auto 08/01/2013 161536 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe SS - | Demand 27/10/2012 529744 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe SR - | Auto 14/03/2013 383264 | (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe SS - | Demand 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SS - | Demand 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 00s ---\\ Liste des émulateurs de CD/DVD (Hook du MBR) O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite ~ Emulateurs: Scanned in 00mn 00s End of the scan (1659 lines in 01mn 41s)(0)