Rapport de ZHPDiag v1.3.5.16 par Nicolas Coolman, Update du 04/02/2013 Run by Benjamin at 06/02/2013 20:04:15 State : Version à jour. UAC : Deactivate by program ---\\ Web Browser MSIE: Internet Explorer v9.0.8112.16421 OBIE: Safari v5.34.57.2 ---\\ Windows Product Information ~ Langage: Français Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK ~ Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : 3Q6C9 Windows License : OK ~ Windows Remaining Initializations Number : 2 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ System Information ~ Processor: AMD64 Family 16 Model 6 Stepping 2, AuthenticAMD ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 4092 MB (58% free) System Restore: Activé (Enable) System drive C: has 70 GB (15%) free of 452 GB ---\\ Logged in mode ~ Computer Name: BENJAMIN-PC ~ User Name: Benjamin ~ All Users Names: HomeGroupUser$, Benjamin, Administrateur, ~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89 Logged in as Administrator ---\\ Environnement Variables ~ System Unit : C:\ ~ %AppData% : C:\Users\Benjamin\AppData\Roaming\ ~ %Desktop% : C:\Users\Benjamin\Desktop\ ~ %Favorites% : C:\Users\Benjamin\Favorites\ ~ %LocalAppData% : C:\Users\Benjamin\AppData\Local\ ~ %StartMenu% : C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ DOS/Devices C:\ Hard drive, Flash drive, Thumb drive (Free 70 Go of 452 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 13 Go) E:\ CD-ROM drive (Not Inserted) ---\\ Security Center & Tools Informations [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Scan Security Center in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024] [MD5.5121DB613E10A46A3C5085B479026AA7] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.14/11/2012 - 07:04:11.) -- C:\Windows\System32\wininet.dll [1392128] [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/11/2010 - 05:25:32.) -- C:\Windows\System32\Winlogon.exe [390656] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 05:27:28.) -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 01:19:22.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 01:26:34.) -- C:\Windows\system32\Drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 02:43:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224] [MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 01:23:22.) -- C:\Windows\system32\Drivers\netBT.sys [261632] [MD5.E453ACF4E7D44E5530B5D5F2B9CA8563] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.31/08/2012 - 19:19:35.) -- C:\Windows\system32\Drivers\ntfs.sys [1659760] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 02:52:36.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 01:21:58.) -- C:\Windows\system32\Drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 05:34:04.) -- C:\Windows\system32\Drivers\volsnap.sys [295808] ~ Scan Generic Processes in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 2/5240 ~ Mes musiques (My Musics) : 12/14890 ~ Mes Videos (My Videos) : 2/403 ~ Mes Favoris (My Favorites) : 1/35 ~ Mes Documents (My Documents) : 1/2054 ~ Mon Bureau (My Desktop) : 2/1883 ~ Menu demarrer (Programs) : 1/30 ~ Scan Hidden Files in 00mn 19s ---\\ Processus lancés [MD5.7853D2AB445C10F97610B2B05FA4CF0A] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [512360] [PID.2416] [MD5.CCF2234A35077CA217A61C9CACC48198] - (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392] [PID.2460] [MD5.C7391769FCD6E04196EE8CA831E2C7E8] - (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59872] [PID.2944] [MD5.19384B2D2976C16971DA567653D5DF95] - (.Apple Inc. - ApplePhotoStreams.exe.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59872] [PID.2956] [MD5.5ED88C99410A8262112F7550402151DF] - (.Apple Inc. - BookmarkDAV_client.exe.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe [59872] [PID.2976] [MD5.25E53969B38A76C84D6E7C85FE57B9C8] - (.Sony Computer Entertainment Inc. - Content Manager Assistant.) -- C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe [2520504] [PID.3920] [MD5.682A19CEA431A29D0B5A931332ADBC2A] - (.CyberLink Corp. - HP MediaSmart TV Resident Program.) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe [427304] [PID.3936] [MD5.B508A4EE516D905730458BB50B79979B] - (.CyberLink - CyberLink MediaLibray Service.) -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe [206120] [PID.4072] [MD5.0771A5C3B78967F9F83C1C429334AD2A] - (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe [320056] [PID.3608] [MD5.C65B115A03DB0260895DE96681E88221] - (.CyberLink Corp. - HP DVDSmart Resident Program.) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe [128296] [PID.3668] [MD5.6A75E6BFCCC6BBE6F7CEEEF082214DE1] - (...) -- C:\Program Files (x86)\Remote Mouse Server\RemoteMouse.exe [7647203] [PID.3772] [MD5.5516C26A6AF8EB4E2CAB48EC98A74398] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe [54576] [PID.3616] [MD5.D067C3D1F6ACEDDEC2598C52E2CFDAA7] - (.Sony Computer Entertainment Inc. - Content Manager Assistant.) -- C:\Program Files (x86)\Sony\Content Manager Assistant\CMAWatcher.exe [525768] [PID.4008] [MD5.4C6898F15701AE7C41775C14E423FE25] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [3459712] [PID.4004] [MD5.C26B09276755E0698B31CF0BAE0BF182] - (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280] [PID.3988] [MD5.12916E0642E92561C98B18A2A2D01B14] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [252848] [PID.2384] [MD5.E4401CF27225C1D6E664E86195978562] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [152544] [PID.3584] [MD5.0DE3C7622EC33126579B1742260F08C2] - (.Pas de propriétaire - HpqToaster Module.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe [632888] [PID.4672] [MD5.0654E4C1F597FC07D6FC7443D4F94840] - (.Google Inc. - Google Chrome.) -- C:\Users\Benjamin\AppData\Local\Google\Chrome\Application\chrome.exe [1248208] [PID.5604] [MD5.927DC83A2FB5897DE3DDD54DF604EA00] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [5649408] [PID.4540] [MD5.7DE3EE7DBEE14C1F8375CB82466C9321] - (.AVAST Software - avast! Service.) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [42184] [PID.1412] [MD5.3927397AC60D943DAF8808AFFED582B7] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65192] [PID.1140] [MD5.A5299D04ED225D64CF07A568A3E1BF8C] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55184] [PID.1592] [MD5.83D8BE94E1CBCBE2EA8372DB1A95A159] - (.Hewlett-Packard Company - LightScribe Service.) -- C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728] [PID.2124] [MD5.1ACAA67676E9E7BDA5E0C41B6E0DECAF] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [398184] [PID.2188] [MD5.916B8954AC3E06DC9E898AFFB41F3FB6] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [682344] [PID.2264] [MD5.7CF1B716372B89568AE4C0FE769F5869] - (.Microsoft Corporation - Machine Debug Manager.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872] [PID.2304] [MD5.498EB62A160674E793FA40FD65390625] - (.Pas de propriétaire - RichVideo Module.) -- C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152] [PID.2436] [MD5.9B7EDD3FE7C211C36E921D34D18A3A0A] - (.Hewlett-Packard Company - HP Software Framework WMI Service.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [1001376] [PID.3976] [MD5.F9A79C5B27037821112C50A9C8FB367A] - (.Hewlett-Packard Development Company, L.P. - Com for QLB application.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [228408] [PID.4144] ~ Scan Processes Running in 00mn 00s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Default\Preferences G0 - GCSP: Preference [User Data\Default][HomePage] http://yahoo.fr G0 - GCSP: Preference [User Data\Default] http://yahoo.fr G1 - GCS: Preference [User Data\Default] http://search.babylon.com ~ Scan Google Browser in 00mn 00s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Users\Benjamin\AppData\Roaming\Mozilla\Firefox\Profiles\8xp8zwxd.default\prefs.js C:\Users\Benjamin\AppData\Roaming\Mozilla\Firefox\Profiles\8xp8zwxd.default\user.js M0 - MFSP: prefs.js [Benjamin - 8xp8zwxd.default] http://yahoo.fr M2 - MFEP: prefs.js [Benjamin - 8xp8zwxd.default\cacaoweb@cacaoweb.org] [] cacaoweb v1.0.30 (.http://www.cacaoweb.org/.) M2 - MFEP: prefs.js [Benjamin - 8xp8zwxd.default\ffxtlbr@babylon.com] [] Babylon v1.2.0 (.Babylon.) M2 - MFEP: prefs.js [Benjamin - 8xp8zwxd.default\vshare@toolbar] [] vShare v1.0.0 (.vShare.) P2 - FPN: [HKCU] [@Skype Limited.com/Facebook Video Calling Plugin] - (.Skype Limited - Facebook Video Calling Plugin.) -- C:\Users\Benjamin\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Benjamin\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Benjamin\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS - Unity Player 2.6.1f3.) -- C:\Users\Benjamin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll P2 - FPN: [HKCU] [electronicarts.com/GameFacePlugin] - (.Electronic Arts - EA SPORTS Game Face Plugin 1.0.0.18.) -- C:\Users\Benjamin\AppData\Roaming\Electronic Arts\Game Face\1.0.0.18\npGameFacePlugin.dll ~ Scan Firefox Browser in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://yahoo.fr R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\SysWOW64\ieframe.dll R3 - URLSearchHook: (no name) [64Bits] - {ba14329e-9550-4989-b3f2-9732e92d17cc} . (.Conduit Ltd. - Conduit Toolbar.) (5, 3, 7, 1) -- C:\Program Files (x86)\Vuze_Remote\tbVuze.dll R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ~ Scan IE Browser in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Scan Proxy management in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Scan Keys in 00mn 00s ---\\ Redirection du fichier Hosts (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Scan Hosts File in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: vShare Plugin [64Bits] - {043C5167-00BB-4324-AF7E-62013FAEDACF} . (...) -- C:\Program Files (x86)\vShare\vshare_toolbar.dll O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Babylon toolbar helper [64Bits] - {2EECD738-5844-4a99-B4B6-146BF802613B} . (.Babylon BHO - Pas de description.) -- C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\ O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O2 - BHO: Vuze Remote Toolbar [64Bits] - {ba14329e-9550-4989-b3f2-9732e92d17cc} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files (x86)\Vuze_Remote\tbVuze.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.Hewlett-Packard - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll ~ Scan BHO in 00mn 00s ---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.) O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe O4 - HKLM\..\Run: [SmartMenu] . (.Pas de propriétaire - SmartMenu.) -- C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jusched.exe O4 - HKCU\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Benjamin\AppData\Local\Google\Update\GoogleUpdate.exe O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\Benjamin\AppData\Local\Facebook\Update\FacebookUpdate.exe O4 - HKCU\..\Run: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe (.not file.) O4 - HKCU\..\Run: [iCloudServices] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe O4 - HKCU\..\Run: [ApplePhotoStreams] . (.Apple Inc. - ApplePhotoStreams.exe.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe O4 - HKCU\..\Run: [com.apple.dav.bookmarks.daemon] . (.Apple Inc. - BookmarkDAV_client.exe.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKLM\..\Wow6432Node\Run: [HPCam_Menu] . (.CyberLink Corp. - MUI StartMenu Application.) -- c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe O4 - HKLM\..\Wow6432Node\Run: [QlbCtrl.exe] . (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe O4 - HKLM\..\Wow6432Node\Run: [UpdatePRCShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe O4 - HKLM\..\Wow6432Node\Run: [Easybits Recovery] . (.EasyBits Software AS - Pas de description.) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Wow6432Node\Run: [avast5] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe O4 - HKLM\..\Wow6432Node\Run: [WirelessAssistant] . (.Hewlett-Packard Company - HP Wireless Assistant Main Program.) -- C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe O4 - HKLM\..\Wow6432Node\Run: [AppleSyncNotifier] . (.Apple Inc. - AppleSyncNotifier.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-21-2845536073-68010848-1290381325-1001\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe O4 - HKUS\S-1-5-21-2845536073-68010848-1290381325-1001\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Benjamin\AppData\Local\Google\Update\GoogleUpdate.exe O4 - HKUS\S-1-5-21-2845536073-68010848-1290381325-1001\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\Benjamin\AppData\Local\Facebook\Update\FacebookUpdate.exe O4 - HKUS\S-1-5-21-2845536073-68010848-1290381325-1001\..\Run: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe (.not file.) O4 - HKUS\S-1-5-21-2845536073-68010848-1290381325-1001\..\Run: [iCloudServices] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe O4 - HKUS\S-1-5-21-2845536073-68010848-1290381325-1001\..\Run: [ApplePhotoStreams] . (.Apple Inc. - ApplePhotoStreams.exe.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe O4 - HKUS\S-1-5-21-2845536073-68010848-1290381325-1001\..\Run: [com.apple.dav.bookmarks.daemon] . (.Apple Inc. - BookmarkDAV_client.exe.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ~ Scan Application in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - Global Startup: C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\Benjamin\Desktop\Audacity.lnk . (...) -- C:\Program Files (x86)\Audacity\audacity.exe O4 - Global Startup: C:\Users\Benjamin\Desktop\Free Mp3 Wma Converter.lnk . (.Koyote Soft.) -- C:\Program Files (x86)\Free Audio Pack\FreeConverter\FreeConverter.exe O4 - Global Startup: C:\Users\Benjamin\Desktop\Glary Utilities.lnk . (.Glarysoft Ltd.) -- C:\Program Files (x86)\Glary Utilities\Integrator.exe O4 - Global Startup: C:\Users\Benjamin\Desktop\Google Chrome.lnk . (.Google Inc..) -- C:\Users\Benjamin\AppData\Local\Google\Chrome\Application\chrome.exe O4 - Global Startup: C:\Users\Benjamin\Desktop\PhotoFiltre.lnk . (.Antonio Da Cruz.) -- C:\Program Files (x86)\PhotoFiltre\PhotoFiltre.exe O4 - Global Startup: C:\Users\Benjamin\Desktop\Windows Live Messenger .lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe O4 - Global Startup: C:\Users\Benjamin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk . (...) -- C:\Windows\Installer\{FA4C2D53-205F-4245-9717-F3761154824D}\SafariIco.exe O4 - Global Startup: C:\Users\Benjamin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Glary Utilities.lnk . (.Glarysoft Ltd.) -- C:\Program Files (x86)\Glary Utilities\Integrator.exe O4 - Global Startup: C:\Users\Benjamin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe ~ Scan Global Startup in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ Scan IE Control Panel in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll O10 - WLSP:\000000000010\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll ~ Scan Winsock in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{14841E48-7C6A-4F34-A642-536861CF266D}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CCS\Services\Tcpip\..\{9A420885-4C8C-4AA1-81E7-DA6C64553C7D}: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CS1\Services\Tcpip\..\{14841E48-7C6A-4F34-A642-536861CF266D}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CS1\Services\Tcpip\..\{9A420885-4C8C-4AA1-81E7-DA6C64553C7D}: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CS2\Services\Tcpip\..\{14841E48-7C6A-4F34-A642-536861CF266D}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CS2\Services\Tcpip\..\{9A420885-4C8C-4AA1-81E7-DA6C64553C7D}: DhcpNameServer = 192.168.1.254 ~ Scan Domain in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\system32\inetcomm.dll O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: ms-itss [64Bits] - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\msitss.dll O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: skype-ie-addon-data [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: vsharechrome [64Bits] - {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} . (...) -- C:\Program Files (x86)\vShare\vshare_toolbar.dll O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll ~ Scan Protocole Additionnel in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ Scan SSODL in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe O23 - Service: HP Service (hpsrv) . (.Hewlett-Packard - HpService.) - C:\Windows\System32\Hpservice.exe O23 - Service: LightScribeService Direct Disc Labeling (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: Audio Service (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe O23 - Service: (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) ~ Scan Services in 00mn 14s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Scan Desktop Component in 00mn 00s ---\\ BootExecute (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ Scan Keys in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2845536073-68010848-1290381325-1001Core.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2845536073-68010848-1290381325-1001UA.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GlaryInitialize.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2845536073-68010848-1290381325-1001Core.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2845536073-68010848-1290381325-1001UA.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForBenjamin.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Norton Security Scan for Benjamin.job [MD5.424877CB9D5517F980FF7BACA2EB379D] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [MD5.6E571CD299C38EF9DCC5DA779E3B8AFA] [APT] [Apple Diagnostics] (.Apple Inc..) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [MD5.4F7E06A56EFAFF14F0A59F6CF3F2D07D] [APT] [CapSchedInst] (.CL.) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSchedInst.exe [MD5.BD9236FC40A5075B1BA47F772735B9B9] [APT] [CapSvcInst] (.CL.) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapSvcInst.exe [MD5.3E18AA0C9BBDA53EC9639C4B53094FCC] [APT] [CapUninst] (.CL.) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CapUninst.exe [MD5.B508A4EE516D905730458BB50B79979B] [APT] [CLMLSvc] (.CyberLink.) -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe [MD5.C65B115A03DB0260895DE96681E88221] [APT] [DVDAgent] (.CyberLink Corp..) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe [MD5.9EB925EDC8CF1C3D06E50E9348B54A0A] [APT] [FacebookUpdateTaskUserS-1-5-21-2845536073-68010848-1290381325-1001Core] (.Facebook Inc..) -- C:\Users\Benjamin\AppData\Local\Facebook\Update\FacebookUpdate.exe [MD5.9EB925EDC8CF1C3D06E50E9348B54A0A] [APT] [FacebookUpdateTaskUserS-1-5-21-2845536073-68010848-1290381325-1001UA] (.Facebook Inc..) -- C:\Users\Benjamin\AppData\Local\Facebook\Update\FacebookUpdate.exe [MD5.923E02CA12F54B2F086DDB9C683E46E5] [APT] [GlaryInitialize] (.Glarysoft Ltd.) -- C:\Program Files (x86)\Glary Utilities\initialize.exe [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-2845536073-68010848-1290381325-1001Core] (.Google Inc..) -- C:\Users\Benjamin\AppData\Local\Google\Update\GoogleUpdate.exe [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-2845536073-68010848-1290381325-1001UA] (.Google Inc..) -- C:\Users\Benjamin\AppData\Local\Google\Update\GoogleUpdate.exe [MD5.455B6AF8235787AB6E36193FBD9BB0AA] [APT] [HPCeeScheduleForBenjamin] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [MD5.AA6DB1D357B0DB08B969D14889D9C9CA] [APT] [Norton Security Scan for Benjamin] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton Security Scan\Norton Security Scan\Engine\2.7.3.34\Nss.exe [MD5.682A19CEA431A29D0B5A931332ADBC2A] [APT] [TVAgent] (.CyberLink Corp..) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe [MD5.00000000000000000000000000000000] [APT] [{16DD0A08-3C76-4BD1-BB04-DB040A3CE38B}] (...) -- C:\Users\Benjamin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HHTGSAY0\sp45575[1].exe (.not file.) [MD5.DBD3AB52E6B0051D8ADEA868DC6CA236] [APT] [{28A7C949-9064-498E-9A25-18489E3C5986}] (.PortableAppZ.blogspot.com.) -- C:\Users\Benjamin\Documents\PhotoshopPortable\PhotoshopPortable.exe [MD5.23A215F7102DF67DC1CA510A9EE6903A] [APT] [{2990D9BD-949E-46B1-BD47-F92B42286E99}] (...) -- C:\Users\Benjamin\Downloads\SkypeSetup.exe [MD5.0654E4C1F597FC07D6FC7443D4F94840] [APT] [{4E01FEDC-1154-45ED-842B-5CF9DC428867}] (.Google Inc..) -- c:\users\Benjamin\appdata\local\google\chrome\application\chrome.exe [MD5.00000000000000000000000000000000] [APT] [{5C76B9A4-135D-47ED-9D8A-C61FBCD2C41C}] (...) -- C:\Users\Benjamin\Desktop\PhotoshopPortable.exe (.not file.) [MD5.00000000000000000000000000000000] [APT] [{820BD8AB-CD1E-4FEA-BC88-E0CD0423CA9F}] (...) -- C:\Users\Benjamin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HHTGSAY0\yahoo_firefox_3.6_setup_frk[1].exe (.not file.) [MD5.00000000000000000000000000000000] [APT] [{85672EC3-CADF-4A91-B46F-43942311AB31}] (...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (.not file.) [MD5.00000000000000000000000000000000] [APT] [{942AE5CE-52D1-492A-8C5A-3F344CB2E0F7}] (...) -- F:\INSTALL.exe (.not file.) [MD5.00000000000000000000000000000000] [APT] [{954A628B-0F05-4186-A876-EDE931AAC3F3}] (...) -- F:\INSTALL.exe (.not file.) [MD5.23A215F7102DF67DC1CA510A9EE6903A] [APT] [{980EFC26-95B6-4EBF-8635-557466A32169}] (...) -- C:\Users\Benjamin\Downloads\SkypeSetup.exe [MD5.DBD3AB52E6B0051D8ADEA868DC6CA236] [APT] [{9A04F62C-01DC-4C8E-945F-4E192A47413A}] (.PortableAppZ.blogspot.com.) -- C:\Users\Benjamin\Documents\PhotoshopPortable\PhotoshopPortable.exe [MD5.23A215F7102DF67DC1CA510A9EE6903A] [APT] [{9AC1F110-B119-425A-BE93-80C27ABB6483}] (...) -- C:\Users\Benjamin\Downloads\SkypeSetup.exe [MD5.DC8DFA6D71DAF85D3F23D49A4B4B0BD2] [APT] [{AC6B6B55-2D70-4DFF-9BCE-E6B9AE7EC314}] (.Apple Inc..) -- C:\Program Files (x86)\iTunes\iTunes.exe [MD5.00000000000000000000000000000000] [APT] [{D215BC10-CFE1-4D09-B25A-4162DFF08649}] (...) -- C:\Program Files (x86)\PS3 Media Server\PMS.exe (.not file.) [MD5.00000000000000000000000000000000] [APT] [{E3AA0BB0-7C09-41B8-9E5A-E853889B49C4}] (...) -- C:\Users\Benjamin\Downloads\New_PC_Studio_1.4.0.IL2.exe (.not file.) [MD5.2C6DFC761F1DAE61940C7EAE97EBDB19] [APT] [{FDDC25B1-EEB9-4854-8D57-78CDE8D1F41B}] (.Skype Technologies S.A..) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [HP Support Assistant Quick Start] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [MD5.6D8BE3BC525D15527F4F33583FA6CDA2] [APT] [Update Check] (.Hewlett-Packard Company.) -- C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe ~ Scan Scheduled Task in 00mn 03s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Internet Explorer [64Bits] - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: Browser Customizations [64Bits] - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\System32\iedkcs32.dll O40 - ASIC: Java (Sun) [64Bits] - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\regutils.dll O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll ~ Scan Active Setup in 00mn 00s ---\\ Pilotes lancés au démarrage (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\Windows\system32\DRIVERS\serial.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys ~ Scan Drivers in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: AMD USB Filter Driver - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {5271C0D4-24E4-4C3D-A782-C012033FD3CF} O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40} O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723} O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Reader X (10.1.5) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {CCE825DB-347A-4004-A186-5F4A6FDD8547} O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {D70884EA-E2CE-4539-91DB-4766CC1E5F5F} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} O42 - Logiciel: Assistant du gestionnaire de contenu pour PlayStation(R) - (.Sony Computer Entertainment Inc..) [HKLM][64Bits] -- {BE841724-78F0-44D6-B6C4-C3D53708293B} O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM][64Bits] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7} O42 - Logiciel: Audacity 1.2.6 - (.Pas de propriétaire.) [HKLM][64Bits] -- Audacity_is1 O42 - Logiciel: Babylon toolbar on IE - (.Pas de propriétaire.) [HKLM][64Bits] -- BabylonToolbar O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} O42 - Logiciel: CANAL+ pour Windows Media Center - (.Microsoft Corporation.) [HKLM][64Bits] -- {E2A6B1A0-C1E3-4311-BF86-EAF18841FD67} O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {266D0EEA-E5A6-4A08-A0EE-5391D4EA44A7} O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: EA SPORTS Game Face Browser Plugin 1.0.0.18 - (.Electronic Arts.) [HKCU][64Bits] -- EA SPORTS Game Face Browser Plugin O42 - Logiciel: ENE CIR Receiver Driver - (.ENE.) [HKLM][64Bits] -- FFE7D41DF3C645075BB149E21988B63996C34187 O42 - Logiciel: Facebook Video Calling 1.2.0.287 - (.Skype Limited.) [HKLM][64Bits] -- {B92C5909-1D37-4C51-8397-A28BB28E5DC3} O42 - Logiciel: Free Mp3 Wma Converter V 1.7.3 - (.Koyote Soft.) [HKLM][64Bits] -- Free Mp3 Wma Converter_is1 O42 - Logiciel: Glary Utilities 2.33.0.1158 - (.Glarysoft Ltd.) [HKLM][64Bits] -- Glary Utilities_is1 O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU][64Bits] -- Google Chrome O42 - Logiciel: HP 3D DriveGuard - (.Hewlett-Packard.) [HKLM][64Bits] -- {8FCDACA0-E090-4A9A-AC71-A96E7371DC6E} O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall O42 - Logiciel: HP MediaSmart DVD - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A} O42 - Logiciel: HP MediaSmart DVD - (.Hewlett-Packard.) [HKLM][64Bits] -- {DCCAD079-F92C-44DA-B258-624FC6517A5A} O42 - Logiciel: HP MediaSmart Internet TV - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{E553760D-D7F7-48BF-BD8B-C7E23BA04CB5} O42 - Logiciel: HP MediaSmart Internet TV - (.Hewlett-Packard.) [HKLM][64Bits] -- {E553760D-D7F7-48BF-BD8B-C7E23BA04CB5} O42 - Logiciel: HP MediaSmart Live TV - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{67626E09-5366-4480-8F1E-93FADF50CA15} O42 - Logiciel: HP MediaSmart Live TV - (.Hewlett-Packard.) [HKLM][64Bits] -- {67626E09-5366-4480-8F1E-93FADF50CA15} O42 - Logiciel: HP MediaSmart Movie Themes - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E} O42 - Logiciel: HP MediaSmart Movie Themes - (.Hewlett-Packard.) [HKLM][64Bits] -- {3023EBDA-BF1B-4831-B347-E5018555F26E} O42 - Logiciel: HP MediaSmart Music/Photo/Video - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{B2EE25B9-5B00-4ACF-94F0-92433C28C39E} O42 - Logiciel: HP MediaSmart Music/Photo/Video - (.Hewlett-Packard.) [HKLM][64Bits] -- {B2EE25B9-5B00-4ACF-94F0-92433C28C39E} O42 - Logiciel: HP MediaSmart SmartMenu - (.Hewlett-Packard.) [HKLM][64Bits] -- {88E60521-1E4E-4785-B9F1-1798A4BD0C30} O42 - Logiciel: HP MediaSmart Webcam - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: HP MediaSmart Webcam - (.Hewlett-Packard.) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: HP Quick Launch Buttons - (.Hewlett-Packard.) [HKLM][64Bits] -- {34D2AB40-150D-475D-AE32-BD23FB5EE355} O42 - Logiciel: HP Setup - (.Hewlett-Packard.) [HKLM][64Bits] -- {F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8} O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {EE202411-2C26-49E8-9784-1BC1DBF7DE96} O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {D46D081B-F60E-467E-A7C4-117B70D76731} O42 - Logiciel: HP User Guides 0154 - (.Hewlett-Packard.) [HKLM][64Bits] -- {B51605BF-6326-4553-AE96-6D7F1813D5F5} O42 - Logiciel: HP Wireless Assistant - (.Hewlett-Packard.) [HKLM][64Bits] -- {4E432692-A736-4F77-AF77-F9078CF88D31} O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.1.1 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} O42 - Logiciel: ITECIR Driver - (.ITE.) [HKLM][64Bits] -- {FCED9B62-34FF-4C15-8A23-F65221F7874D} O42 - Logiciel: Iadah Toolbar - (.DevNet.) [HKCU][64Bits] -- IadahToolbar O42 - Logiciel: JMicron Flash Media Controller Driver - (.JMicron Technology Corp..) [HKLM][64Bits] -- {26604C7E-A313-4D12-867F-7C6E7820BE4C} O42 - Logiciel: Java 7 Update 10 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217010FF} O42 - Logiciel: Java(TM) 6 Update 14 (64-bit) - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86416014FF} O42 - Logiciel: Java(TM) 6 Update 38 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216038FF} O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM][64Bits] -- {82EF29B1-9B60-4142-A155-0599216DD053} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: Magic Desktop - (.EasyBits Software AS.) [HKLM][64Bits] -- EasyBits Magic Desktop O42 - Logiciel: Malwarebytes Anti-Malware version 1.70.0.1100 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Messenger Plus! Live - (.Yuna Software.) [HKLM][64Bits] -- Messenger Plus! Live O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B160861-7250-451E-B5EE-8B92BF30A710} O42 - Logiciel: Norton Security Scan - (.Symantec Corporation.) [HKLM][64Bits] -- NSS O42 - Logiciel: Package de pilotes Windows - ITE Tech.Inc. (itecir) HIDClass (06/20/2007 5 - (.ITE Tech.Inc..) [HKLM][64Bits] -- 2EFF310ED3BF3BFB24E6CC25AEB5491813E56803 O42 - Logiciel: PhotoFiltre - (.Pas de propriétaire.) [HKLM][64Bits] -- PhotoFiltre O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1} O42 - Logiciel: PowerRecover - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5} O42 - Logiciel: QLBCASL - (.Hewlett-Packard.) [HKLM][64Bits] -- {F1D7AC58-554A-4A58-B784-B61558B1449A} O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM][64Bits] -- {AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A} O42 - Logiciel: Realtek 8136 8168 8169 Ethernet Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: Remote Mouse Server version 1.05 - (.Remote Mouse Server.) [HKLM][64Bits] -- {F34EE6D2-9356-4294-B3B3-AE04428C8C43}_is1 O42 - Logiciel: Safari - (.Apple Inc..) [HKLM][64Bits] -- {FA4C2D53-205F-4245-9717-F3761154824D} O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB931906 O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} O42 - Logiciel: Skype Click to Call - (.Skype Technologies S.A..) [HKLM][64Bits] -- {B6CF2967-C81E-40C0-9815-C05774FEF120} O42 - Logiciel: Skype™ 6.0 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {EA17F4FC-FDBF-4CF8-A529-2D983132D053} O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer O42 - Logiciel: VLC media player 1.0.5 - (.VideoLAN Team.) [HKLM][64Bits] -- VLC media player O42 - Logiciel: Veetle TV 0.9.18 - (.Veetle, Inc.) [HKLM][64Bits] -- Veetle TV O42 - Logiciel: Vuze_Remote Toolbar - (.Pas de propriétaire.) [HKLM][64Bits] -- Vuze_Remote Toolbar O42 - Logiciel: WinRAR archiver - (.Pas de propriétaire.) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM][64Bits] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} O42 - Logiciel: avast! Free Antivirus v6.0.1125.0 - (.AVAST Software.) [HKLM][64Bits] -- avast O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {0E5D76AD-A3FB-48D5-8400-8903B10317D3} O42 - Logiciel: vShare Plugin - (.Pas de propriétaire.) [HKLM][64Bits] -- vShare ---\\ HKCU & HKLM Software Keys [HKCU\Software\AC3Filter] [HKCU\Software\ALWIL Software] [HKCU\Software\AOL] [HKCU\Software\ATI] [HKCU\Software\AVAST Software] [HKCU\Software\Adobe] [HKCU\Software\AppDataLow\Software\Conduit] [HKCU\Software\AppDataLow\Software\JavaSoft] [HKCU\Software\AppDataLow\Software\Microsoft] [HKCU\Software\AppDataLow\Software\Monitored] [HKCU\Software\AppDataLow\Software\Unity] [HKCU\Software\AppDataLow\Software\Vuze_Remote] [HKCU\Software\AppDataLow\Software\settings] [HKCU\Software\AppDataLow\Software] [HKCU\Software\AppDataLow\Toolbar] [HKCU\Software\AppDataLow] [HKCU\Software\Apple Computer, Inc.] [HKCU\Software\Apple Inc.] [HKCU\Software\Audacity] [HKCU\Software\Aurigma] [HKCU\Software\BabylonToolbar] [HKCU\Software\ClassesB] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Conduit] [HKCU\Software\CyberLink] [HKCU\Software\DT Soft] [HKCU\Software\DevNet] [HKCU\Software\EasyBits] [HKCU\Software\Facebook] [HKCU\Software\GlarySoft] [HKCU\Software\Google] [HKCU\Software\Hewlett-Packard] [HKCU\Software\IDT] [HKCU\Software\IE] [HKCU\Software\IM Providers] [HKCU\Software\JavaSoft] [HKCU\Software\LightScribe] [HKCU\Software\Macromedia] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\MozillaPlugins] [HKCU\Software\Netscape] [HKCU\Software\ODBC] [HKCU\Software\Patchou] [HKCU\Software\Policies] [HKCU\Software\SSPrint] [HKCU\Software\SSScan] [HKCU\Software\SecuROM] [HKCU\Software\SkypeRS] [HKCU\Software\Skype] [HKCU\Software\Sony Corporation] [HKCU\Software\Synaptics] [HKCU\Software\Trolltech] [HKCU\Software\Unity] [HKCU\Software\Veetle] [HKCU\Software\Vuze_Remote] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\Wow6432Node] [HKCU\Software\Xobni] [HKCU\Software\YahooPartnerToolbar] [HKCU\Software\ZebHelpProcess Helper] [HKCU\Software\cacaoweb] [HKCU\Software\ej-technologies] [HKCU\Software\vShare] [HKLM\Software\AMD] [HKLM\Software\ATI Technologies] [HKLM\Software\ATI] [HKLM\Software\Agere] [HKLM\Software\Apple Computer, Inc.] [HKLM\Software\Apple Inc.] [HKLM\Software\BrowserChoice] [HKLM\Software\CXT] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\GEAR Software] [HKLM\Software\HPQ] [HKLM\Software\Hewlett-Packard] [HKLM\Software\IDT] [HKLM\Software\IM Providers] [HKLM\Software\InstalledOptions] [HKLM\Software\Intel] [HKLM\Software\JavaSoft] [HKLM\Software\LSI] [HKLM\Software\Macromedia] [HKLM\Software\MozillaPlugins] [HKLM\Software\ODBC] [HKLM\Software\Policies] [HKLM\Software\RTLSetup] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\Samsung] [HKLM\Software\Sonic] [HKLM\Software\Symantec] [HKLM\Software\Synaptics] [HKLM\Software\WildTangent] [HKLM\Software\Wow6432Node\ALWIL Software] [HKLM\Software\Wow6432Node\ATI Technologies] [HKLM\Software\Wow6432Node\ATI] [HKLM\Software\Wow6432Node\AVAST Software] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\America Online] [HKLM\Software\Wow6432Node\Apple Computer, Inc.] [HKLM\Software\Wow6432Node\Apple Inc.] [HKLM\Software\Wow6432Node\Atheros] [HKLM\Software\Wow6432Node\AviSynth] [HKLM\Software\Wow6432Node\Babylon] [HKLM\Software\Wow6432Node\Caphyon] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\Conduit] [HKLM\Software\Wow6432Node\Cyberlink] [HKLM\Software\Wow6432Node\DT Soft] [HKLM\Software\Wow6432Node\DevNet] [HKLM\Software\Wow6432Node\Digital River] [HKLM\Software\Wow6432Node\EasyBits] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\HPQLOG] [HKLM\Software\Wow6432Node\HPQ] [HKLM\Software\Wow6432Node\HP] [HKLM\Software\Wow6432Node\Hewlett-Packard] [HKLM\Software\Wow6432Node\IDT] [HKLM\Software\Wow6432Node\IM Providers] [HKLM\Software\Wow6432Node\InstallPedia] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\JavaSoft] [HKLM\Software\Wow6432Node\JreMetrics] [HKLM\Software\Wow6432Node\LabelPrint_Upgrade] [HKLM\Software\Wow6432Node\LightScribe] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\Norton] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\P2G_Upgrade] [HKLM\Software\Wow6432Node\PDR_Upgrade] [HKLM\Software\Wow6432Node\Patchou] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\Product_Upgrade] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\SSScan] [HKLM\Software\Wow6432Node\Skype] [HKLM\Software\Wow6432Node\Sony Corporation] [HKLM\Software\Wow6432Node\Symantec] [HKLM\Software\Wow6432Node\Veetle] [HKLM\Software\Wow6432Node\VideoLAN] [HKLM\Software\Wow6432Node\Vuze_Remote] [HKLM\Software\Wow6432Node\WildTangent] [HKLM\Software\Wow6432Node\WinRAR] [HKLM\Software\Wow6432Node\Windows] [HKLM\Software\Wow6432Node\Xerox] [HKLM\Software\Wow6432Node\mozilla.org] [HKLM\Software\Wow6432Node] ~ Scan Softwares in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 23/08/2011 - 16:24:03 - [115,215] ----D C:\Program Files (x86)\Adobe O43 - CFD: 18/11/2009 - 00:29:57 - [0,073] ----D C:\Program Files (x86)\AMD O43 - CFD: 25/07/2011 - 21:05:39 - [2,316] ----D C:\Program Files (x86)\Apple Software Update O43 - CFD: 18/11/2009 - 00:30:49 - [1,441] ----D C:\Program Files (x86)\Atheros O43 - CFD: 18/11/2009 - 00:28:29 - [80,724] ----D C:\Program Files (x86)\ATI Technologies O43 - CFD: 12/12/2010 - 18:02:45 - [8,444] ----D C:\Program Files (x86)\Audacity O43 - CFD: 20/04/2010 - 19:36:09 - [0,140] ----D C:\Program Files (x86)\AviSynth 2.5 O43 - CFD: 07/02/2012 - 20:59:51 - [1,725] ----D C:\Program Files (x86)\BabylonToolbar O43 - CFD: 25/10/2011 - 16:44:59 - [0,586] ----D C:\Program Files (x86)\Bonjour O43 - CFD: 14/12/2012 - 18:06:20 - [598,185] ----D C:\Program Files (x86)\Common Files O43 - CFD: 25/03/2010 - 15:55:34 - [0,497] ----D C:\Program Files (x86)\Conduit O43 - CFD: 26/08/2009 - 15:24:20 - [966,888] ----D C:\Program Files (x86)\CyberLink O43 - CFD: 21/12/2010 - 19:17:50 - [1,467] ----D C:\Program Files (x86)\DevNet O43 - CFD: 10/02/2010 - 11:45:36 - [87,901] ----D C:\Program Files (x86)\EasyBits For Kids O43 - CFD: 27/02/2011 - 11:54:05 - [8,820] ----D C:\Program Files (x86)\Free Audio Pack O43 - CFD: 13/12/2011 - 19:29:59 - [30,932] ----D C:\Program Files (x86)\GIMP 2 O43 - CFD: 30/01/2013 - 22:37:00 - [19,585] ----D C:\Program Files (x86)\Glary Utilities O43 - CFD: 14/12/2012 - 19:24:10 - [1426,559] ----D C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 26/08/2009 - 16:25:20 - [2,972] ----D C:\Program Files (x86)\Hp O43 - CFD: 26/08/2009 - 14:18:14 - [261,205] ----D C:\Program Files (x86)\HP Games O43 - CFD: 14/12/2012 - 19:28:00 - [225,100] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 17/12/2012 - 12:26:02 - [7,016] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 30/01/2013 - 23:16:36 - [152,491] ----D C:\Program Files (x86)\iTunes O43 - CFD: 14/12/2012 - 17:54:55 - [207,438] ----D C:\Program Files (x86)\Java O43 - CFD: 18/11/2009 - 00:29:30 - [1,840] ----D C:\Program Files (x86)\JMicron O43 - CFD: 05/02/2013 - 19:31:50 - [12,170] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware O43 - CFD: 10/02/2010 - 20:09:45 - [12,648] ----D C:\Program Files (x86)\Messenger Plus! Live O43 - CFD: 10/02/2010 - 23:54:02 - [0,628] ----D C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2 O43 - CFD: 14/03/2012 - 19:57:45 - [577,755] ----D C:\Program Files (x86)\Microsoft Office O43 - CFD: 26/08/2009 - 14:44:31 - [7,431] ----D C:\Program Files (x86)\Microsoft Office Suite Activation Assistant O43 - CFD: 11/05/2012 - 19:00:13 - [36,641] ----D C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 10/02/2010 - 14:33:33 - [0,014] ----D C:\Program Files (x86)\Microsoft Visual Studio O43 - CFD: 10/02/2010 - 14:30:58 - [56,656] ----D C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 11/10/2012 - 22:50:30 - [138,685] ----D C:\Program Files (x86)\Microsoft Works O43 - CFD: 02/11/2010 - 09:45:23 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 21/04/2010 - 22:18:54 - [8,906] ----D C:\Program Files (x86)\Movie Maker 2.6 O43 - CFD: 07/01/2012 - 16:50:52 - [0,006] ----D C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 10/02/2010 - 14:33:39 - [0,025] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 10/02/2010 - 11:00:12 - [0] ----D C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 18/06/2010 - 17:00:10 - [11,320] ----D C:\Program Files (x86)\Norton Security Scan O43 - CFD: 25/03/2010 - 16:26:43 - [10,212] ----D C:\Program Files (x86)\NortonInstaller O43 - CFD: 10/02/2010 - 10:13:44 - [18,981] R---D C:\Program Files (x86)\Online Services O43 - CFD: 10/02/2010 - 21:35:17 - [3,389] ----D C:\Program Files (x86)\PhotoFiltre O43 - CFD: 30/01/2013 - 23:03:24 - [72,326] ----D C:\Program Files (x86)\QuickTime O43 - CFD: 18/11/2009 - 00:30:11 - [1,074] ----D C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - 06:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 26/02/2011 - 22:51:53 - [8,438] ----D C:\Program Files (x86)\Remote Mouse Server O43 - CFD: 12/10/2012 - 18:27:11 - [102,607] ----D C:\Program Files (x86)\Safari O43 - CFD: 28/11/2012 - 21:29:04 - [33,637] R---D C:\Program Files (x86)\Skype O43 - CFD: 13/03/2012 - 20:06:10 - [3,745] ----D C:\Program Files (x86)\Sony O43 - CFD: 14/07/2009 - 05:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information O43 - CFD: 28/11/2010 - 20:57:51 - [9,945] ----D C:\Program Files (x86)\Veetle O43 - CFD: 23/02/2010 - 22:17:38 - [74,952] ----D C:\Program Files (x86)\VideoLAN O43 - CFD: 14/11/2010 - 17:20:16 - [1,125] ----D C:\Program Files (x86)\vShare O43 - CFD: 25/03/2010 - 15:55:34 - [2,437] ----D C:\Program Files (x86)\Vuze_Remote O43 - CFD: 26/08/2009 - 23:16:44 - [0,500] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 12/11/2011 - 15:52:54 - [91,329] ----D C:\Program Files (x86)\Windows Live O43 - CFD: 14/03/2012 - 20:22:48 - [5,895] ----D C:\Program Files (x86)\Windows Mail O43 - CFD: 14/03/2012 - 20:22:48 - [5,090] ----D C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - 06:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 14/03/2012 - 20:22:48 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 14/03/2012 - 20:22:48 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 14/03/2012 - 20:22:49 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 07/12/2010 - 20:48:02 - [3,555] ----D C:\Program Files (x86)\WinRAR O43 - CFD: 06/02/2013 - 20:04:42 - [11,441] ----D C:\Program Files (x86)\ZHPDiag O43 - CFD: 23/08/2011 - 16:24:09 - [3,797] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 26/08/2009 - 15:07:29 - [30,315] ----D C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 30/01/2013 - 23:15:34 - [166,237] ----D C:\Program Files (x86)\Common Files\Apple O43 - CFD: 10/02/2010 - 14:33:32 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 26/08/2009 - 13:30:07 - [1,979] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 14/12/2012 - 18:06:20 - [1,184] ----D C:\Program Files (x86)\Common Files\Java O43 - CFD: 18/11/2009 - 00:50:55 - [31,218] ----D C:\Program Files (x86)\Common Files\LightScribe O43 - CFD: 07/02/2012 - 22:54:42 - [279,854] ----D C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 14/07/2009 - 04:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 28/11/2012 - 21:29:04 - [2,056] ----D C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/07/2009 - 04:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 14/03/2012 - 20:22:47 - [42,255] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 26/08/2009 - 13:31:40 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 30/01/2013 - 23:16:37 - [2,775] ----D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 14/06/2012 - 19:26:38 - [146,758] ----D C:\ProgramData\Adobe O43 - CFD: 10/02/2010 - 10:23:02 - [35,584] ----D C:\ProgramData\Alwil Software O43 - CFD: 18/02/2011 - 12:40:43 - [344,167] ----D C:\ProgramData\Apple O43 - CFD: 18/02/2011 - 13:04:46 - [190,781] ----D C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - 06:08:56 - [0] ----D C:\ProgramData\Application Data O43 - CFD: 18/11/2009 - 00:30:54 - [0,009] ----D C:\ProgramData\Atheros O43 - CFD: 18/11/2009 - 01:28:41 - [0,000] ----D C:\ProgramData\ATI O43 - CFD: 25/03/2010 - 15:56:25 - [0,000] ----D C:\ProgramData\Azureus O43 - CFD: 07/02/2012 - 20:59:40 - [0] ----D C:\ProgramData\Babylon O43 - CFD: 10/02/2010 - 10:10:53 - [0] ----D C:\ProgramData\Bureau O43 - CFD: 26/12/2011 - 20:53:23 - [0,131] ----D C:\ProgramData\CyberLink O43 - CFD: 06/11/2010 - 14:34:32 - [0,001] ----D C:\ProgramData\DAEMON Tools Lite O43 - CFD: 14/07/2009 - 06:08:56 - [0] ----D C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - 06:08:56 - [0] ----D C:\ProgramData\Documents O43 - CFD: 10/02/2010 - 10:10:53 - [0] ----D C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - 06:08:56 - [0] ----D C:\ProgramData\Favorites O43 - CFD: 16/12/2010 - 15:24:25 - [46,536] ----D C:\ProgramData\Hewlett-Packard O43 - CFD: 05/02/2013 - 19:31:46 - [6,684] ----D C:\ProgramData\Malwarebytes O43 - CFD: 10/02/2010 - 10:10:53 - [0] ----D C:\ProgramData\Menu Démarrer O43 - CFD: 04/07/2010 - 13:07:49 - [0,048] ----D C:\ProgramData\Messenger Plus! O43 - CFD: 15/05/2011 - 15:55:18 - [443,608] ----D C:\ProgramData\Microsoft O43 - CFD: 13/01/2013 - 14:52:50 - [0,067] ----D C:\ProgramData\Microsoft Help O43 - CFD: 10/02/2010 - 10:10:53 - [0] ----D C:\ProgramData\Modèles O43 - CFD: 18/06/2010 - 17:00:10 - [0,003] ----D C:\ProgramData\Norton O43 - CFD: 18/06/2010 - 17:00:06 - [6,100] ----D C:\ProgramData\NortonInstaller O43 - CFD: 17/03/2010 - 13:59:05 - [0,000] ----D C:\ProgramData\PC Drivers HeadQuarters O43 - CFD: 19/05/2010 - 17:32:26 - [0,005] ----D C:\ProgramData\Recovery O43 - CFD: 28/11/2012 - 21:29:12 - [72,248] ----D C:\ProgramData\Skype O43 - CFD: 22/04/2012 - 17:05:23 - [11,913] ----D C:\ProgramData\Skype Extras O43 - CFD: 14/07/2009 - 06:08:56 - [0] ----D C:\ProgramData\Start Menu O43 - CFD: 22/04/2010 - 18:20:46 - [0,000] ----D C:\ProgramData\Sun O43 - CFD: 25/03/2010 - 16:26:44 - [0,000] ----D C:\ProgramData\Symantec O43 - CFD: 18/11/2009 - 01:06:18 - [0,676] ----D C:\ProgramData\Temp O43 - CFD: 14/07/2009 - 06:08:56 - [0] ----D C:\ProgramData\Templates O43 - CFD: 12/04/2011 - 19:31:29 - [44,990] ----D C:\ProgramData\WildTangent O43 - CFD: 10/02/2010 - 21:39:13 - [0,004] ----D C:\ProgramData\{0DD0EEEE-2A7C-411C-9243-1AE62F445FC3} O43 - CFD: 18/02/2011 - 13:06:49 - [0,002] ----D C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001} O43 - CFD: 14/12/2012 - 19:21:13 - [39,643] ----D C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF} O43 - CFD: 14/06/2012 - 19:17:01 - [3,068] ----D C:\Users\Benjamin\AppData\Roaming\Adobe O43 - CFD: 08/11/2012 - 19:06:02 - [895,009] ----D C:\Users\Benjamin\AppData\Roaming\Apple Computer O43 - CFD: 10/02/2010 - 10:19:18 - [0] ----D C:\Users\Benjamin\AppData\Roaming\ATI O43 - CFD: 07/12/2010 - 22:02:21 - [16,364] ----D C:\Users\Benjamin\AppData\Roaming\Azureus O43 - CFD: 07/02/2012 - 20:59:40 - [0,008] ----D C:\Users\Benjamin\AppData\Roaming\Babylon O43 - CFD: 06/02/2013 - 19:36:58 - [182,012] ----D C:\Users\Benjamin\AppData\Roaming\cacaoweb O43 - CFD: 14/04/2010 - 19:33:58 - [2,552] ----D C:\Users\Benjamin\AppData\Roaming\CyberLink O43 - CFD: 06/11/2010 - 19:19:49 - [0,000] ----D C:\Users\Benjamin\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 24/12/2010 - 17:15:24 - [0,000] ----D C:\Users\Benjamin\AppData\Roaming\dvdcss O43 - CFD: 09/09/2010 - 13:59:53 - [44,094] ----D C:\Users\Benjamin\AppData\Roaming\EA O43 - CFD: 01/10/2010 - 15:45:01 - [35,372] ----D C:\Users\Benjamin\AppData\Roaming\Electronic Arts O43 - CFD: 10/02/2010 - 14:48:04 - [0,014] ----D C:\Users\Benjamin\AppData\Roaming\GlarySoft O43 - CFD: 27/03/2010 - 12:10:36 - [0,103] ----D C:\Users\Benjamin\AppData\Roaming\Hewlett-Packard O43 - CFD: 19/04/2010 - 19:27:12 - [0,000] ----D C:\Users\Benjamin\AppData\Roaming\HP Support Assistant O43 - CFD: 10/02/2010 - 10:13:49 - [0,034] ----D C:\Users\Benjamin\AppData\Roaming\HP TCS O43 - CFD: 14/12/2012 - 19:21:55 - [0,175] ----D C:\Users\Benjamin\AppData\Roaming\hpqlog O43 - CFD: 19/04/2010 - 19:27:12 - [0,002] ----D C:\Users\Benjamin\AppData\Roaming\HpUpdate O43 - CFD: 19/02/2010 - 21:46:33 - [0,000] ----D C:\Users\Benjamin\AppData\Roaming\HTML Executable O43 - CFD: 10/02/2010 - 10:18:48 - [0] ----D C:\Users\Benjamin\AppData\Roaming\Identities O43 - CFD: 09/06/2010 - 21:25:26 - [0] ----D C:\Users\Benjamin\AppData\Roaming\InstallShield O43 - CFD: 10/02/2010 - 10:27:05 - [0,000] ----D C:\Users\Benjamin\AppData\Roaming\Macromedia O43 - CFD: 05/02/2013 - 19:32:01 - [5,232] ----D C:\Users\Benjamin\AppData\Roaming\Malwarebytes O43 - CFD: 18/11/2009 - 10:16:55 - [0] ----D C:\Users\Benjamin\AppData\Roaming\Media Center Programs O43 - CFD: 23/08/2011 - 16:25:06 - [29,985] -S--D C:\Users\Benjamin\AppData\Roaming\Microsoft O43 - CFD: 20/03/2010 - 19:53:53 - [12,276] ----D C:\Users\Benjamin\AppData\Roaming\Mozilla O43 - CFD: 20/01/2011 - 16:16:04 - [0,008] ----D C:\Users\Benjamin\AppData\Roaming\Rovio O43 - CFD: 10/12/2012 - 21:52:15 - [6,985] ----D C:\Users\Benjamin\AppData\Roaming\Skype O43 - CFD: 24/04/2012 - 16:53:41 - [0,036] ----D C:\Users\Benjamin\AppData\Roaming\skypePM O43 - CFD: 13/03/2012 - 20:07:13 - [30,588] ----D C:\Users\Benjamin\AppData\Roaming\Sony Corporation O43 - CFD: 05/12/2011 - 22:38:46 - [0,457] ----D C:\Users\Benjamin\AppData\Roaming\vlc O43 - CFD: 10/02/2010 - 11:13:22 - [0,001] ----D C:\Users\Benjamin\AppData\Roaming\WildTangent O43 - CFD: 09/06/2010 - 21:24:19 - [0] ----D C:\Users\Benjamin\AppData\Roaming\WinBatch O43 - CFD: 07/12/2011 - 20:20:28 - [0] ----D C:\Users\Benjamin\AppData\Roaming\Windows Live Writer O43 - CFD: 05/03/2010 - 12:12:51 - [0,000] ----D C:\Users\Benjamin\AppData\Roaming\WinRAR O43 - CFD: 10/02/2010 - 11:45:30 - [0,008] ----D C:\Users\Benjamin\AppData\Roaming\_MDLogs O43 - CFD: 14/06/2012 - 19:17:01 - [15,379] ----D C:\Users\Benjamin\AppData\Local\Adobe O43 - CFD: 10/02/2010 - 21:37:17 - [0] ----D C:\Users\Benjamin\AppData\Local\Apple O43 - CFD: 08/11/2012 - 18:58:42 - [90,631] ----D C:\Users\Benjamin\AppData\Local\Apple Computer O43 - CFD: 10/02/2010 - 10:11:06 - [0] ----D C:\Users\Benjamin\AppData\Local\Application Data O43 - CFD: 03/05/2010 - 12:40:44 - [1,710] ----D C:\Users\Benjamin\AppData\Local\Apps O43 - CFD: 10/02/2010 - 10:19:18 - [0,085] ----D C:\Users\Benjamin\AppData\Local\ATI O43 - CFD: 07/02/2012 - 20:59:42 - [3,744] ----D C:\Users\Benjamin\AppData\Local\Babylon O43 - CFD: 10/02/2010 - 12:04:21 - [0] ----D C:\Users\Benjamin\AppData\Local\CyberLink O43 - CFD: 09/09/2010 - 13:59:44 - [0] ----D C:\Users\Benjamin\AppData\Local\Deployment O43 - CFD: 22/01/2013 - 21:15:28 - [0] ----D C:\Users\Benjamin\AppData\Local\Diagnostics O43 - CFD: 06/11/2010 - 12:26:50 - [0,010] ----D C:\Users\Benjamin\AppData\Local\DOSBox O43 - CFD: 17/03/2010 - 13:42:15 - [113,004] ----D C:\Users\Benjamin\AppData\Local\Downloaded Installations O43 - CFD: 05/03/2011 - 13:28:40 - [0] ----D C:\Users\Benjamin\AppData\Local\ElevatedDiagnostics O43 - CFD: 10/04/2012 - 20:10:31 - [7,393] ----D C:\Users\Benjamin\AppData\Local\Facebook O43 - CFD: 03/05/2010 - 12:42:01 - [1700,312] ----D C:\Users\Benjamin\AppData\Local\Google O43 - CFD: 01/12/2010 - 22:59:50 - [84,260] ----D C:\Users\Benjamin\AppData\Local\Hewlett-Packard O43 - CFD: 10/02/2010 - 10:11:06 - [0] ----D C:\Users\Benjamin\AppData\Local\Historique O43 - CFD: 23/08/2011 - 16:25:06 - [-465,633] ----D C:\Users\Benjamin\AppData\Local\Microsoft O43 - CFD: 14/02/2010 - 16:49:43 - [0,145] ----D C:\Users\Benjamin\AppData\Local\Microsoft Games O43 - CFD: 10/02/2010 - 14:30:23 - [0] ----D C:\Users\Benjamin\AppData\Local\Microsoft Help O43 - CFD: 20/03/2010 - 19:53:41 - [6,185] ----D C:\Users\Benjamin\AppData\Local\Mozilla O43 - CFD: 10/02/2010 - 12:04:19 - [0] ----D C:\Users\Benjamin\AppData\Local\PowerCinema O43 - CFD: 05/02/2013 - 19:31:32 - [0] ----D C:\Users\Benjamin\AppData\Local\Programs O43 - CFD: 06/02/2013 - 20:04:10 - [-20,665] ----D C:\Users\Benjamin\AppData\Local\Temp O43 - CFD: 10/02/2010 - 10:11:06 - [0] ----D C:\Users\Benjamin\AppData\Local\Temporary Internet Files O43 - CFD: 09/09/2010 - 13:12:23 - [0,075] ----D C:\Users\Benjamin\AppData\Local\Unity O43 - CFD: 10/02/2010 - 23:23:24 - [0,001] ----D C:\Users\Benjamin\AppData\Local\VirtualStore O43 - CFD: 15/06/2010 - 14:44:19 - [0] ----D C:\Users\Benjamin\AppData\Local\Vuze_Remote O43 - CFD: 19/01/2012 - 21:06:48 - [0,047] ----D C:\Users\Benjamin\AppData\Local\Windows Live O43 - CFD: 07/12/2011 - 20:20:38 - [0,618] ----D C:\Users\Benjamin\AppData\Local\Windows Live Writer O43 - CFD: 22/11/2010 - 02:21:06 - [0] ----D C:\Users\Benjamin\AppData\Local\WMTools Downloaded Files O43 - CFD: 10/06/2011 - 20:35:46 - [0] ----D C:\Users\Benjamin\AppData\Local\{0064ADDB-1374-4A5D-B21F-2D94CEFBACE9} O43 - CFD: 31/08/2011 - 14:32:27 - [0] ----D C:\Users\Benjamin\AppData\Local\{00D018E0-BB72-447D-879F-85796CE12749} O43 - CFD: 03/08/2011 - 17:02:04 - [0] ----D C:\Users\Benjamin\AppData\Local\{06DB9F97-3254-4AB8-9305-4DF0984B9056} O43 - CFD: 14/12/2011 - 18:41:12 - [0] ----D C:\Users\Benjamin\AppData\Local\{07BC16EA-16E4-4CCF-B778-798FB137ADB2} O43 - CFD: 27/12/2011 - 12:04:05 - [0] ----D C:\Users\Benjamin\AppData\Local\{08DFC027-3E3C-426C-90AE-6CD2281BDA99} O43 - CFD: 19/09/2011 - 17:49:45 - [0] ----D C:\Users\Benjamin\AppData\Local\{093F6B79-9052-4303-9F95-974D79AD3246} O43 - CFD: 11/12/2011 - 01:21:25 - [0] ----D C:\Users\Benjamin\AppData\Local\{0B706950-9F74-4DEA-8CC4-EA16753E82A8} O43 - CFD: 23/08/2011 - 16:10:16 - [0] ----D C:\Users\Benjamin\AppData\Local\{0BC55613-9E42-4145-A55D-FBDEEEDDCBE5} O43 - CFD: 30/06/2011 - 16:38:51 - [0] ----D C:\Users\Benjamin\AppData\Local\{0C47950A-13E3-4EB3-9AF5-2BD4CCA89BDA} O43 - CFD: 12/08/2011 - 23:42:32 - [0] ----D C:\Users\Benjamin\AppData\Local\{0CE99631-1EEC-4CF2-9D51-E276D6E12CC7} O43 - CFD: 24/06/2011 - 21:44:49 - [0] ----D C:\Users\Benjamin\AppData\Local\{0D08F142-6330-4EFC-9B90-C6C22B3EDD01} O43 - CFD: 11/09/2011 - 09:25:46 - [0] ----D C:\Users\Benjamin\AppData\Local\{0D092E6E-CCEC-4EA6-B737-EF206CC4F144} O43 - CFD: 09/09/2011 - 18:21:25 - [0] ----D C:\Users\Benjamin\AppData\Local\{0E0C3E1E-C2C8-4E97-83DF-4FF460233DC6} O43 - CFD: 18/05/2011 - 15:28:36 - [0] ----D C:\Users\Benjamin\AppData\Local\{0E6D5374-9283-4076-8070-FCE055D5EBFC} O43 - CFD: 08/09/2011 - 17:17:52 - [0] ----D C:\Users\Benjamin\AppData\Local\{0FA18C0B-579E-47B4-B981-26F58113CFBC} O43 - CFD: 29/07/2011 - 21:34:20 - [0] ----D C:\Users\Benjamin\AppData\Local\{0FD1B15E-E4CE-41E1-8154-6BB4909EC692} O43 - CFD: 16/10/2011 - 20:27:48 - [0] ----D C:\Users\Benjamin\AppData\Local\{120B289D-221C-4DBF-A4BE-5F810390087F} O43 - CFD: 02/11/2011 - 18:31:29 - [0] ----D C:\Users\Benjamin\AppData\Local\{144CE0EB-1BC0-47A6-896B-16D8CF0E0569} O43 - CFD: 25/10/2011 - 16:55:30 - [0] ----D C:\Users\Benjamin\AppData\Local\{14D61EC4-BC82-4B01-A197-940D72B26926} O43 - CFD: 09/09/2011 - 22:05:45 - [0] ----D C:\Users\Benjamin\AppData\Local\{15CD44CB-16C8-4DDC-95DD-BFCA6FA53051} O43 - CFD: 07/08/2011 - 16:09:17 - [0] ----D C:\Users\Benjamin\AppData\Local\{16D1763B-9EE0-484F-BE7C-C2DC1C03D226} O43 - CFD: 14/07/2011 - 12:11:17 - [0] ----D C:\Users\Benjamin\AppData\Local\{19D72716-3EEF-42BC-AE5F-96DF3433A1A7} O43 - CFD: 23/08/2011 - 16:10:00 - [0] ----D C:\Users\Benjamin\AppData\Local\{1A13DAF3-34B6-49B5-846A-05E805D77544} O43 - CFD: 15/12/2011 - 19:36:17 - [0] ----D C:\Users\Benjamin\AppData\Local\{1B0CB56B-28B9-452C-8F3E-78881F6EF494} O43 - CFD: 28/08/2011 - 15:17:18 - [0] ----D C:\Users\Benjamin\AppData\Local\{1BED81B1-502B-4CEE-BFCA-1097E60C3387} O43 - CFD: 13/12/2011 - 16:22:34 - [0] ----D C:\Users\Benjamin\AppData\Local\{1C129CDC-12D7-4B9E-9A36-DB8824E7FA83} O43 - CFD: 13/06/2011 - 10:34:36 - [0] ----D C:\Users\Benjamin\AppData\Local\{1C75DFB4-1150-4DD8-9A9B-BE4C2DE43031} O43 - CFD: 09/10/2011 - 16:48:40 - [0] ----D C:\Users\Benjamin\AppData\Local\{1CA19674-C099-4A36-9867-D10E84662D7D} O43 - CFD: 02/08/2011 - 16:08:47 - [0] ----D C:\Users\Benjamin\AppData\Local\{1CB9337B-03D6-40A1-BB00-4E81EA152ACC} O43 - CFD: 29/05/2011 - 09:12:14 - [0] ----D C:\Users\Benjamin\AppData\Local\{1D1A7316-F400-4F2F-A3CB-255129AEACAF} O43 - CFD: 19/10/2011 - 20:05:01 - [0] ----D C:\Users\Benjamin\AppData\Local\{1D583762-BF58-491E-BD86-C01133D50420} O43 - CFD: 30/11/2011 - 18:30:28 - [0] ----D C:\Users\Benjamin\AppData\Local\{1DA30EC6-6254-4A2C-A7B7-7AF85FF6AB5F} O43 - CFD: 22/06/2011 - 17:18:21 - [0] ----D C:\Users\Benjamin\AppData\Local\{1DB19EE9-FB6B-46E0-8F7E-FA4802D75EAD} O43 - CFD: 26/11/2012 - 18:55:36 - [0] ----D C:\Users\Benjamin\AppData\Local\{1E2B98C1-9D9B-45A8-8734-8B98CE6BF78E} O43 - CFD: 26/09/2011 - 17:53:46 - [0] ----D C:\Users\Benjamin\AppData\Local\{1EA33239-B696-459F-A1BE-23E7948A2329} O43 - CFD: 08/12/2011 - 15:36:27 - [0] ----D C:\Users\Benjamin\AppData\Local\{1FF9908F-4712-427F-9804-65F3ACA75BE4} O43 - CFD: 20/08/2011 - 11:00:20 - [0] ----D C:\Users\Benjamin\AppData\Local\{207DF68C-181F-45C4-8272-95D314DB6B83} O43 - CFD: 27/10/2011 - 16:41:20 - [0] ----D C:\Users\Benjamin\AppData\Local\{2115E172-B0D9-44F1-B3BD-B0678E96F9C0} O43 - CFD: 12/11/2011 - 15:45:45 - [0] ----D C:\Users\Benjamin\AppData\Local\{21256BA4-58CF-432A-B021-2197239B3BB8} O43 - CFD: 31/07/2011 - 00:37:17 - [0] ----D C:\Users\Benjamin\AppData\Local\{213ECACF-F1CD-46EC-9496-F03CFB6A1F70} O43 - CFD: 25/06/2011 - 09:45:31 - [0] ----D C:\Users\Benjamin\AppData\Local\{21AEB0B6-8157-4D18-AFAB-12F7FF17128A} O43 - CFD: 24/12/2011 - 22:13:02 - [0] ----D C:\Users\Benjamin\AppData\Local\{22FF053E-6A89-4C6D-A88A-5EBD2DDCF7DC} O43 - CFD: 04/11/2011 - 18:46:57 - [0] ----D C:\Users\Benjamin\AppData\Local\{23420E59-DFBD-4302-9AB0-EE2FEE09BCBA} O43 - CFD: 15/06/2011 - 16:18:13 - [0] ----D C:\Users\Benjamin\AppData\Local\{239AF2B2-E7B8-4D42-BAB0-FC9588AA0F18} O43 - CFD: 15/11/2011 - 18:44:21 - [0] ----D C:\Users\Benjamin\AppData\Local\{23BB6218-7A29-4D3F-BCAC-D1108ADACF6B} O43 - CFD: 07/07/2011 - 17:54:40 - [0] ----D C:\Users\Benjamin\AppData\Local\{2468C7A3-8FB0-4682-AF95-471AB05C51E7} O43 - CFD: 18/09/2011 - 17:48:11 - [0] ----D C:\Users\Benjamin\AppData\Local\{24780F08-2925-4E3C-A171-11FE4AEF726F} O43 - CFD: 06/08/2011 - 09:50:08 - [0] ----D C:\Users\Benjamin\AppData\Local\{24D1C339-6D8F-4D91-AAE2-EF142D5FE56F} O43 - CFD: 01/06/2011 - 18:46:05 - [0] ----D C:\Users\Benjamin\AppData\Local\{2579BA5C-E08E-4945-84F5-8F3041875F52} O43 - CFD: 17/08/2011 - 17:12:12 - [0] ----D C:\Users\Benjamin\AppData\Local\{259D1D8B-C94A-4857-B6A1-148BC4121C66} O43 - CFD: 11/08/2011 - 13:41:14 - [0] ----D C:\Users\Benjamin\AppData\Local\{26F40F80-A832-4FCD-8618-6468B4C04A6E} O43 - CFD: 12/10/2011 - 16:23:02 - [0] ----D C:\Users\Benjamin\AppData\Local\{272168A8-0A2A-49E4-A5E5-77E8991D1384} O43 - CFD: 25/05/2011 - 15:31:09 - [0] ----D C:\Users\Benjamin\AppData\Local\{276A1DF1-6E97-4C08-B494-0325E6D57D34} O43 - CFD: 28/08/2011 - 13:33:06 - [0] ----D C:\Users\Benjamin\AppData\Local\{280F1200-B85C-48CB-A34F-96861E29B32C} O43 - CFD: 16/10/2011 - 17:16:46 - [0] ----D C:\Users\Benjamin\AppData\Local\{29F90392-E588-46CF-B8F6-8BE2AB09ED62} O43 - CFD: 15/08/2011 - 19:07:38 - [0] ----D C:\Users\Benjamin\AppData\Local\{2A0F531A-727F-4504-9F1F-602F057ABC12} O43 - CFD: 28/06/2011 - 19:38:29 - [0] ----D C:\Users\Benjamin\AppData\Local\{2AE4C79A-EA19-45E3-8863-722805E007EF} O43 - CFD: 03/06/2011 - 22:03:51 - [0] ----D C:\Users\Benjamin\AppData\Local\{2BA2E78C-FC13-449B-83EF-4C9522657598} O43 - CFD: 17/08/2011 - 20:58:17 - [0] ----D C:\Users\Benjamin\AppData\Local\{2E38C95A-821E-4140-BE95-6DBE2DA8DAAC} O43 - CFD: 05/11/2011 - 13:54:01 - [0] ----D C:\Users\Benjamin\AppData\Local\{2FD002A7-6433-4E40-98D4-E5E2673A2EBB} O43 - CFD: 12/08/2011 - 17:45:40 - [0] ----D C:\Users\Benjamin\AppData\Local\{30828E04-C835-4F34-92A3-67D15185A691} O43 - CFD: 11/12/2011 - 13:21:55 - [0] ----D C:\Users\Benjamin\AppData\Local\{308D1890-4926-4F0C-9967-2758E6429B0B} O43 - CFD: 16/09/2011 - 20:34:05 - [0] ----D C:\Users\Benjamin\AppData\Local\{30E38EE1-14EE-4CEE-BD2A-842132B0F12C} O43 - CFD: 01/10/2011 - 09:58:55 - [0] ----D C:\Users\Benjamin\AppData\Local\{3153AE3E-98EC-402D-8F32-68F2344223C6} O43 - CFD: 21/05/2011 - 17:56:33 - [0] ----D C:\Users\Benjamin\AppData\Local\{316CC7AD-6C52-4CA1-8492-A8247EE30AC2} O43 - CFD: 19/11/2011 - 13:48:53 - [0] ----D C:\Users\Benjamin\AppData\Local\{317D6BD0-4C02-45D1-937B-59B8B4FF937C} O43 - CFD: 05/09/2011 - 16:44:15 - [0] ----D C:\Users\Benjamin\AppData\Local\{33AA4D4D-7955-488C-984B-0AB96B49A3C5} O43 - CFD: 18/09/2011 - 10:21:24 - [0] ----D C:\Users\Benjamin\AppData\Local\{34067195-CC13-4CDE-B023-BC5B4EAF9258} O43 - CFD: 16/11/2011 - 16:10:31 - [0] ----D C:\Users\Benjamin\AppData\Local\{341DEA70-75A9-4429-AFE0-FCADD2E434F2} O43 - CFD: 20/09/2011 - 21:23:45 - [0] ----D C:\Users\Benjamin\AppData\Local\{352132E1-E146-4677-A001-3AC03A58528D} O43 - CFD: 04/12/2011 - 11:27:29 - [0] ----D C:\Users\Benjamin\AppData\Local\{35287532-5E96-41C9-94E8-B0F180BA442A} O43 - CFD: 21/12/2011 - 18:34:33 - [0] ----D C:\Users\Benjamin\AppData\Local\{3550A2B5-3B70-4DB3-9B91-9D6C6F0C1137} O43 - CFD: 24/11/2011 - 17:18:56 - [0] ----D C:\Users\Benjamin\AppData\Local\{358CF402-1E4A-4152-91EE-E8CDD883F74B} O43 - CFD: 22/12/2011 - 17:14:28 - [0] ----D C:\Users\Benjamin\AppData\Local\{36263792-7C13-4EA7-A1AC-66F808F1BAF9} O43 - CFD: 19/10/2011 - 15:45:51 - [0] ----D C:\Users\Benjamin\AppData\Local\{3750025A-F4F0-4D08-8C86-2D7204072696} O43 - CFD: 24/08/2011 - 16:42:20 - [0] ----D C:\Users\Benjamin\AppData\Local\{387B75C8-F2C1-4192-BB7D-FF87C713F691} O43 - CFD: 05/12/2011 - 17:39:40 - [0] ----D C:\Users\Benjamin\AppData\Local\{387CAE13-A82B-4D1C-B848-7470BE779622} O43 - CFD: 27/09/2011 - 17:53:12 - [0] ----D C:\Users\Benjamin\AppData\Local\{39207EE0-F417-4AAD-945D-72B7475BF9FD} O43 - CFD: 25/09/2011 - 11:58:07 - [0] ----D C:\Users\Benjamin\AppData\Local\{398E8044-017A-41CB-AA21-C925641BBFAF} O43 - CFD: 18/08/2011 - 18:05:41 - [0] ----D C:\Users\Benjamin\AppData\Local\{39DBB22C-7665-4C10-ACB5-2EAC4F826E1C} O43 - CFD: 29/08/2011 - 17:17:10 - [0] ----D C:\Users\Benjamin\AppData\Local\{3A902656-1B48-4C3F-B7A1-18845BD6CC1C} O43 - CFD: 09/10/2011 - 16:48:27 - [0] ----D C:\Users\Benjamin\AppData\Local\{3B84C243-BB99-4034-A6BF-1ACB3798940A} O43 - CFD: 01/10/2011 - 19:17:15 - [0] ----D C:\Users\Benjamin\AppData\Local\{3CB1F380-0D65-4309-A079-C7F0E4C34242} O43 - CFD: 01/12/2011 - 16:01:41 - [0] ----D C:\Users\Benjamin\AppData\Local\{3CF3D48C-9E25-4549-B0FE-CBD9698FE015} O43 - CFD: 15/08/2011 - 14:41:09 - [0] ----D C:\Users\Benjamin\AppData\Local\{3D6932C9-CBEC-472C-A43A-8883C1F1DDD7} O43 - CFD: 11/12/2011 - 13:22:07 - [0] ----D C:\Users\Benjamin\AppData\Local\{3D6A037A-A2DF-4041-ACA2-69B74BA0CEB1} O43 - CFD: 10/07/2011 - 10:58:13 - [0] ----D C:\Users\Benjamin\AppData\Local\{40BDDDC3-A75B-4A80-A2C4-2FE441F65518} O43 - CFD: 11/10/2011 - 15:58:48 - [0] ----D C:\Users\Benjamin\AppData\Local\{41B7515A-D1B4-4FAA-A00A-1626964CDCA1} O43 - CFD: 12/08/2011 - 17:45:24 - [0] ----D C:\Users\Benjamin\AppData\Local\{43613247-904B-4AEE-9FEA-7D17DF3631C3} O43 - CFD: 18/09/2011 - 12:20:47 - [0] ----D C:\Users\Benjamin\AppData\Local\{43932024-D102-4FF5-8210-3B0451681E33} O43 - CFD: 30/08/2011 - 17:17:07 - [0] ----D C:\Users\Benjamin\AppData\Local\{44D01F34-111D-4DE9-9843-6E8D2FF1D703} O43 - CFD: 30/08/2011 - 17:16:49 - [0] ----D C:\Users\Benjamin\AppData\Local\{45A3664F-FCB0-435B-8E8D-08F504A7113D} O43 - CFD: 08/12/2011 - 15:35:51 - [0] ----D C:\Users\Benjamin\AppData\Local\{47360D0E-D227-485C-9901-635ABBA17594} O43 - CFD: 17/09/2011 - 09:35:14 - [0] ----D C:\Users\Benjamin\AppData\Local\{47F9723F-1FA2-439D-9F8E-19DB05D676F0} O43 - CFD: 06/08/2011 - 09:50:22 - [0] ----D C:\Users\Benjamin\AppData\Local\{489AC0D1-9CCC-488D-A415-B85CC7D5B457} O43 - CFD: 24/08/2011 - 06:56:52 - [0] ----D C:\Users\Benjamin\AppData\Local\{48B5C721-9DA0-4C5F-BD47-46740CEC25FC} O43 - CFD: 12/12/2011 - 18:20:40 - [0] ----D C:\Users\Benjamin\AppData\Local\{4917A6B7-EBDC-4513-B958-A6D9B76DB9A4} O43 - CFD: 25/08/2011 - 17:13:08 - [0] ----D C:\Users\Benjamin\AppData\Local\{49427C98-7F6C-405C-8C46-E9C6BAF5AAEE} O43 - CFD: 24/07/2011 - 12:23:17 - [0] ----D C:\Users\Benjamin\AppData\Local\{49AEACDD-AC9C-4685-9865-E26EDB5F4151} O43 - CFD: 18/09/2011 - 10:21:44 - [0] ----D C:\Users\Benjamin\AppData\Local\{4A0E4BE8-BF1B-4B13-B151-205881345EB2} O43 - CFD: 10/09/2011 - 10:15:04 - [0] ----D C:\Users\Benjamin\AppData\Local\{4A132380-967B-4713-AD8F-6DA104EA6C12} O43 - CFD: 15/09/2011 - 15:51:52 - [0] ----D C:\Users\Benjamin\AppData\Local\{4A31D9D8-870C-4F01-97CA-BBB08DB2E149} O43 - CFD: 14/09/2011 - 16:00:24 - [0] ----D C:\Users\Benjamin\AppData\Local\{4AD16680-341D-4EA6-A2BB-BAF8C1792241} O43 - CFD: 09/11/2011 - 18:06:20 - [0] ----D C:\Users\Benjamin\AppData\Local\{4C93D8CE-D8F4-49E7-97E4-CE8B3DD5AFD7} O43 - CFD: 20/08/2011 - 11:00:06 - [0] ----D C:\Users\Benjamin\AppData\Local\{4CB46193-28E3-46C1-9CFE-72ADDCA0C218} O43 - CFD: 17/06/2011 - 21:51:40 - [0] ----D C:\Users\Benjamin\AppData\Local\{4CED6599-49E2-4BCA-8E6A-EC1A4B1D22A0} O43 - CFD: 19/10/2011 - 20:04:46 - [0] ----D C:\Users\Benjamin\AppData\Local\{4D8BF082-3257-4ADB-B30B-491539B39335} O43 - CFD: 25/07/2011 - 17:00:50 - [0] ----D C:\Users\Benjamin\AppData\Local\{4DB76E0C-FDD0-47FD-8082-D5EF9853C0C5} O43 - CFD: 05/11/2011 - 13:53:42 - [0] ----D C:\Users\Benjamin\AppData\Local\{4F60CF2E-7D71-480E-86B7-E69B706032B9} O43 - CFD: 23/10/2011 - 09:54:54 - [0] ----D C:\Users\Benjamin\AppData\Local\{4F9AFA50-9BE4-4B40-B156-A5E81F257935} O43 - CFD: 27/09/2011 - 17:53:25 - [0] ----D C:\Users\Benjamin\AppData\Local\{4FBABC8B-127C-4E1D-8CC4-8B15DDF6FF00} O43 - CFD: 10/08/2011 - 16:58:05 - [0] ----D C:\Users\Benjamin\AppData\Local\{525A228D-5F45-44DE-B3DF-16272C9B59C9} O43 - CFD: 18/10/2011 - 20:39:41 - [0] ----D C:\Users\Benjamin\AppData\Local\{52A741AA-C35C-437B-997D-D577BA778154} O43 - CFD: 30/12/2011 - 22:01:02 - [0] ----D C:\Users\Benjamin\AppData\Local\{534602F7-9819-4F45-8453-03F8C975C8FE} O43 - CFD: 26/10/2011 - 16:08:35 - [0] ----D C:\Users\Benjamin\AppData\Local\{53611BDA-1985-4B1F-930A-7EE279C8B87D} O43 - CFD: 15/08/2011 - 11:17:23 - [0] ----D C:\Users\Benjamin\AppData\Local\{5384F1A9-97DF-40D6-ACEC-71A318D2B1E5} O43 - CFD: 17/10/2011 - 18:40:15 - [0] ----D C:\Users\Benjamin\AppData\Local\{54DE79F3-2ED7-4A9D-A362-2CE615A623BE} O43 - CFD: 30/07/2011 - 12:36:50 - [0] ----D C:\Users\Benjamin\AppData\Local\{54F5346D-8F3F-4DFD-85FB-B1F8FC83FAF4} O43 - CFD: 24/07/2011 - 00:22:39 - [0] ----D C:\Users\Benjamin\AppData\Local\{55BCE209-144D-461B-89BD-515F43B0CA11} O43 - CFD: 24/10/2011 - 16:58:04 - [0] ----D C:\Users\Benjamin\AppData\Local\{56442623-F8A3-48BE-ADCA-466D62F3D1C6} O43 - CFD: 23/11/2011 - 16:41:32 - [0] ----D C:\Users\Benjamin\AppData\Local\{56971260-3EE3-48B9-AFFD-F0C15916DB30} O43 - CFD: 11/09/2011 - 17:53:00 - [0] ----D C:\Users\Benjamin\AppData\Local\{586EE2BE-435E-478A-AB99-821960FA7275} O43 - CFD: 12/10/2011 - 16:23:19 - [0] ----D C:\Users\Benjamin\AppData\Local\{58C885F2-E20A-487C-B06A-7365A38E8496} O43 - CFD: 07/12/2011 - 19:41:59 - [0] ----D C:\Users\Benjamin\AppData\Local\{58F2D168-2F06-452B-9099-F6AAE9506073} O43 - CFD: 12/08/2011 - 23:42:48 - [0] ----D C:\Users\Benjamin\AppData\Local\{5B6F5BBD-35B8-4575-8F80-41731386F7DD} O43 - CFD: 21/08/2011 - 14:30:48 - [0] ----D C:\Users\Benjamin\AppData\Local\{5C900DB8-3337-4C29-B67C-45F825EB2722} O43 - CFD: 21/05/2011 - 09:24:55 - [0] ----D C:\Users\Benjamin\AppData\Local\{5CD92568-D2D8-4F4F-A4F3-354B6076C3EB} O43 - CFD: 08/06/2011 - 15:59:38 - [0] ----D C:\Users\Benjamin\AppData\Local\{5D8D8706-18BC-4538-872E-89475F4A60B2} O43 - CFD: 02/10/2011 - 10:38:14 - [0] ----D C:\Users\Benjamin\AppData\Local\{5E377373-819C-49C3-A78F-07C055D84403} O43 - CFD: 30/09/2011 - 22:41:06 - [0] ----D C:\Users\Benjamin\AppData\Local\{5E6E4093-44AD-42FF-84EA-F37809BE9BF0} O43 - CFD: 02/12/2011 - 19:13:19 - [0] ----D C:\Users\Benjamin\AppData\Local\{5F46AAE7-DDD0-42AB-9531-FD2D0B9A3A9C} O43 - CFD: 14/09/2011 - 16:00:03 - [0] ----D C:\Users\Benjamin\AppData\Local\{5FD4D243-765E-44CD-8E41-AAF528772474} O43 - CFD: 18/09/2011 - 17:47:59 - [0] ----D C:\Users\Benjamin\AppData\Local\{60DC4F7D-16A9-4F85-97A2-25D03B938CFE} O43 - CFD: 19/05/2011 - 16:17:45 - [0] ----D C:\Users\Benjamin\AppData\Local\{60FA8D17-CD73-464B-8096-CE67A95D4361} O43 - CFD: 12/09/2011 - 17:11:37 - [0] ----D C:\Users\Benjamin\AppData\Local\{618D0C6C-2CBC-46A0-86E4-88C8B9759FAD} O43 - CFD: 22/12/2011 - 17:14:41 - [0] ----D C:\Users\Benjamin\AppData\Local\{61A9EDFE-DD69-457F-BE29-66B9D8C566EF} O43 - CFD: 28/09/2011 - 16:23:49 - [0] ----D C:\Users\Benjamin\AppData\Local\{61D852D1-D88D-4824-81FE-CDEB16E13668} O43 - CFD: 25/06/2011 - 21:46:11 - [0] ----D C:\Users\Benjamin\AppData\Local\{62BF55B7-CC25-4D3C-A3D8-B3788856DDD6} O43 - CFD: 03/11/2011 - 17:20:27 - [0] ----D C:\Users\Benjamin\AppData\Local\{62E23714-95E4-43B4-B14E-5D88C42BC4EE} O43 - CFD: 19/01/2012 - 21:06:45 - [0] ----D C:\Users\Benjamin\AppData\Local\{62F5D9CD-1198-4EBF-B77D-26D560A4DEF6} O43 - CFD: 09/11/2011 - 18:06:05 - [0] ----D C:\Users\Benjamin\AppData\Local\{6384DC3C-3557-4DA2-AA3F-856E9B297E66} O43 - CFD: 31/08/2011 - 14:32:10 - [0] ----D C:\Users\Benjamin\AppData\Local\{63AE022A-16B9-4D92-97B8-5B9051482F18} O43 - CFD: 31/10/2011 - 19:17:42 - [0] ----D C:\Users\Benjamin\AppData\Local\{65C54989-CA7B-4974-9314-A2C32019FF4F} O43 - CFD: 01/09/2011 - 16:38:40 - [0] ----D C:\Users\Benjamin\AppData\Local\{676783EC-38A2-48DF-80D6-1ADBC8067201} O43 - CFD: 19/12/2011 - 18:11:42 - [0] ----D C:\Users\Benjamin\AppData\Local\{68793B78-B0FC-4F24-BED9-A46EE6CD47D7} O43 - CFD: 28/11/2011 - 17:36:52 - [0] ----D C:\Users\Benjamin\AppData\Local\{69F6A7B9-A51B-4D31-BB59-EAC328DCE996} O43 - CFD: 17/12/2011 - 15:26:32 - [0] ----D C:\Users\Benjamin\AppData\Local\{6A0CB587-0221-45EF-AB29-4A6B3273A271} O43 - CFD: 25/12/2011 - 10:55:24 - [0] ----D C:\Users\Benjamin\AppData\Local\{6A51F2EA-A8EF-45D6-A423-C0A5A689DDDC} O43 - CFD: 10/08/2011 - 16:58:21 - [0] ----D C:\Users\Benjamin\AppData\Local\{6B1471DB-C1D6-4862-86D2-5BB3370763F6} O43 - CFD: 15/08/2011 - 14:41:21 - [0] ----D C:\Users\Benjamin\AppData\Local\{6C7B7D9B-D734-4EA3-B4D1-CFDAB8F100CF} O43 - CFD: 16/11/2011 - 16:10:48 - [0] ----D C:\Users\Benjamin\AppData\Local\{6D751A25-15EB-4A12-A9E1-A5CEA616F682} O43 - CFD: 14/12/2011 - 18:42:22 - [0] ----D C:\Users\Benjamin\AppData\Local\{6DAFCD4D-E6B6-495F-8D7D-FF083E099F95} O43 - CFD: 10/10/2011 - 18:45:05 - [0] ----D C:\Users\Benjamin\AppData\Local\{6DFB104D-5AD9-49FD-BB7C-D4AD28C6FD14} O43 - CFD: 07/08/2011 - 10:33:41 - [0] ----D C:\Users\Benjamin\AppData\Local\{6E7A7105-AADB-472C-AFAF-FF15359C8511} O43 - CFD: 11/10/2011 - 15:58:34 - [0] ----D C:\Users\Benjamin\AppData\Local\{6F8BD039-AF28-46CD-9B1C-9C1B1FC3C8F3} O43 - CFD: 14/08/2011 - 12:00:49 - [0] ----D C:\Users\Benjamin\AppData\Local\{709DA6C8-6B2B-44AC-A39E-BC2314F1B1DF} O43 - CFD: 04/07/2011 - 17:42:33 - [0] ----D C:\Users\Benjamin\AppData\Local\{71081B53-7C51-4538-BA69-E46AFC4D1818} O43 - CFD: 23/09/2011 - 12:19:01 - [0] ----D C:\Users\Benjamin\AppData\Local\{7156E52F-9789-417A-A54C-3B539ACE8A7F} O43 - CFD: 24/11/2011 - 17:19:41 - [0] ----D C:\Users\Benjamin\AppData\Local\{7196DF07-ECFD-4AAA-BAC0-6245945D56F5} O43 - CFD: 14/08/2011 - 12:01:06 - [0] ----D C:\Users\Benjamin\AppData\Local\{729020A4-0E9F-4EA0-AFCE-C63393419D9C} O43 - CFD: 27/12/2011 - 12:03:43 - [0] ----D C:\Users\Benjamin\AppData\Local\{7372316B-6D14-4BE7-8F93-D50FE71D3604} O43 - CFD: 23/05/2011 - 16:18:37 - [0] ----D C:\Users\Benjamin\AppData\Local\{74255C62-6639-4DD9-A585-D4B9B8C5FAA6} O43 - CFD: 01/10/2011 - 13:05:55 - [0] ----D C:\Users\Benjamin\AppData\Local\{7432DCE3-843A-4E27-8BB3-1F3EF70F7CEA} O43 - CFD: 06/11/2011 - 14:25:37 - [0] ----D C:\Users\Benjamin\AppData\Local\{748DE556-1972-4E04-9E8F-1BB20DC3F917} O43 - CFD: 08/09/2011 - 17:17:39 - [0] ----D C:\Users\Benjamin\AppData\Local\{74CA1C9E-47CD-494C-8965-388CBE7B2F44} O43 - CFD: 15/08/2011 - 11:17:40 - [0] ----D C:\Users\Benjamin\AppData\Local\{74FEB5DD-E3CC-4DE5-B817-91FBD4368B74} O43 - CFD: 23/10/2011 - 09:55:07 - [0] ----D C:\Users\Benjamin\AppData\Local\{7500F122-3A8C-4987-8669-EBF54DE60723} O43 - CFD: 12/06/2011 - 00:54:10 - [0] ----D C:\Users\Benjamin\AppData\Local\{75847A06-17DA-4FD7-B859-DFBFD0762721} O43 - CFD: 07/08/2011 - 11:50:36 - [0] ----D C:\Users\Benjamin\AppData\Local\{75FAF657-D13B-4CA6-A5EE-DCAAAB2EF4E1} O43 - CFD: 30/10/2011 - 17:38:52 - [0] ----D C:\Users\Benjamin\AppData\Local\{7660E925-8C73-4ACB-83D6-49F265A2DFFD} O43 - CFD: 22/11/2011 - 17:42:23 - [0] ----D C:\Users\Benjamin\AppData\Local\{779B2F17-74E8-4F4B-983D-E37090D6CCC7} O43 - CFD: 15/08/2011 - 10:08:41 - [0] ----D C:\Users\Benjamin\AppData\Local\{77C63255-BDE1-4EA4-B4BE-1D81F4ADC736} O43 - CFD: 20/12/2011 - 17:36:01 - [0] ----D C:\Users\Benjamin\AppData\Local\{77FF5050-33F5-4D82-9B20-7CD836DEB0A1} O43 - CFD: 11/07/2011 - 17:16:38 - [0] ----D C:\Users\Benjamin\AppData\Local\{78912E03-5783-4B48-BE6C-416D478881A1} O43 - CFD: 17/11/2011 - 16:53:19 - [0] ----D C:\Users\Benjamin\AppData\Local\{78F22324-0D97-4900-8C80-40364D400C14} O43 - CFD: 14/06/2011 - 18:49:25 - [0] ----D C:\Users\Benjamin\AppData\Local\{79CDE03E-E11F-4A96-9F6A-5B8BC7DBE174} O43 - CFD: 15/08/2011 - 19:07:25 - [0] ----D C:\Users\Benjamin\AppData\Local\{79F6B28D-65AF-4846-9AB0-B3EF83EC2146} O43 - CFD: 21/06/2011 - 17:50:45 - [0] ----D C:\Users\Benjamin\AppData\Local\{7ADE7404-C1FC-40C9-B38E-421E60D55071} O43 - CFD: 01/10/2011 - 19:17:00 - [0] ----D C:\Users\Benjamin\AppData\Local\{7B16F952-8620-4BB3-BABE-D9F3C18B036A} O43 - CFD: 30/09/2011 - 23:29:43 - [0] ----D C:\Users\Benjamin\AppData\Local\{7B3FCC37-2FA0-4A9C-82B1-9A075D226996} O43 - CFD: 21/12/2011 - 18:34:20 - [0] ----D C:\Users\Benjamin\AppData\Local\{7BC2FEC2-32EB-47CB-984F-B04789870D68} O43 - CFD: 04/08/2011 - 16:42:25 - [0] ----D C:\Users\Benjamin\AppData\Local\{7BE4965B-9ECE-40E3-AB80-554AD994E1AC} O43 - CFD: 04/01/2012 - 22:30:28 - [0] ----D C:\Users\Benjamin\AppData\Local\{7D0ED78B-05D0-4922-B493-B71444AAF4F7} O43 - CFD: 07/09/2011 - 16:55:13 - [0] ----D C:\Users\Benjamin\AppData\Local\{7D2D0F26-B17F-41AC-9FCC-0CD48F647940} O43 - CFD: 04/01/2012 - 22:30:15 - [0] ----D C:\Users\Benjamin\AppData\Local\{7DBD95F1-23C3-4606-8389-7649046A0054} O43 - CFD: 08/07/2011 - 16:29:09 - [0] ----D C:\Users\Benjamin\AppData\Local\{7E3767E5-3972-4923-90B3-C6DC186CA071} O43 - CFD: 25/10/2011 - 16:55:15 - [0] ----D C:\Users\Benjamin\AppData\Local\{7F140ECC-272A-4CF8-8FDE-200BB4848E91} O43 - CFD: 12/07/2011 - 20:40:59 - [0] ----D C:\Users\Benjamin\AppData\Local\{7F251172-1AA1-4B92-88B8-9F5C30E03A40} O43 - CFD: 13/12/2011 - 16:22:53 - [0] ----D C:\Users\Benjamin\AppData\Local\{7F8AE7CA-37C7-4398-BCC2-F5EC81897153} O43 - CFD: 29/11/2011 - 15:18:24 - [0] ----D C:\Users\Benjamin\AppData\Local\{802D0CD0-2F6B-4917-A238-1A58316D65E4} O43 - CFD: 29/10/2011 - 13:05:36 - [0] ----D C:\Users\Benjamin\AppData\Local\{812710B6-6449-40D9-B442-175D3E36ABD1} O43 - CFD: 23/09/2011 - 21:05:53 - [0] ----D C:\Users\Benjamin\AppData\Local\{82058F0D-6E46-4157-8FFB-B28C807CC2D1} O43 - CFD: 13/09/2011 - 16:30:26 - [0] ----D C:\Users\Benjamin\AppData\Local\{829A294D-E6A1-49E0-B103-35596CD9331F} O43 - CFD: 24/08/2011 - 18:29:38 - [0] ----D C:\Users\Benjamin\AppData\Local\{82A97A3F-0A18-46AB-AA1C-848D961D1786} O43 - CFD: 23/09/2011 - 12:18:44 - [0] ----D C:\Users\Benjamin\AppData\Local\{82EFCCA6-4E0B-40FA-B94A-0BB9C830565B} O43 - CFD: 26/06/2011 - 09:51:38 - [0] ----D C:\Users\Benjamin\AppData\Local\{8407D45B-1777-4206-B14F-E2B933138B10} O43 - CFD: 26/07/2011 - 15:42:25 - [0] ----D C:\Users\Benjamin\AppData\Local\{84354FDA-2B1D-4386-B04E-8C726BAE6062} O43 - CFD: 07/08/2011 - 11:50:22 - [0] ----D C:\Users\Benjamin\AppData\Local\{84424616-685E-4D6D-A2B1-581AE40180C2} O43 - CFD: 23/09/2011 - 10:10:50 - [0] ----D C:\Users\Benjamin\AppData\Local\{84CDA4CD-4EBD-4BA6-9BB2-48C3ED28E99F} O43 - CFD: 15/11/2011 - 18:43:04 - [0] ----D C:\Users\Benjamin\AppData\Local\{84E8A720-3993-4712-9997-46C7F10ECB7F} O43 - CFD: 25/08/2011 - 17:13:45 - [0] ----D C:\Users\Benjamin\AppData\Local\{8584D1BC-64C8-4DB4-A892-D6C45BE0F3DB} O43 - CFD: 18/05/2011 - 15:25:06 - [0] ----D C:\Users\Benjamin\AppData\Local\{875CAE95-B5A2-44AB-ADBA-3D9D36D56C68} O43 - CFD: 16/10/2011 - 20:27:32 - [0] ----D C:\Users\Benjamin\AppData\Local\{88562023-8493-46DA-831D-3EA027BA148D} O43 - CFD: 30/09/2011 - 22:40:47 - [0] ----D C:\Users\Benjamin\AppData\Local\{8878520E-B7BE-45E7-870E-1DB983F08FAD} O43 - CFD: 25/08/2011 - 07:05:46 - [0] ----D C:\Users\Benjamin\AppData\Local\{89672D23-A35F-4A3F-8C34-7E837118C0EB} O43 - CFD: 17/07/2011 - 12:33:49 - [0] ----D C:\Users\Benjamin\AppData\Local\{89EE15F5-CE46-4D37-A61E-E2EAC899D36F} O43 - CFD: 19/11/2011 - 13:50:07 - [0] ----D C:\Users\Benjamin\AppData\Local\{8A56F3A2-FDD8-433F-847C-6FB26D7E51B8} O43 - CFD: 13/07/2011 - 18:42:08 - [0] ----D C:\Users\Benjamin\AppData\Local\{8A9A0B16-1FCA-43E4-86C1-CBE679FBEBB4} O43 - CFD: 20/09/2011 - 21:23:29 - [0] ----D C:\Users\Benjamin\AppData\Local\{8AF1E9D1-034A-4925-AC70-6F995AA0D8D2} O43 - CFD: 26/12/2011 - 16:25:26 - [0] ----D C:\Users\Benjamin\AppData\Local\{8C71186B-FD1F-46D0-B23B-92CA3B4CDBFE} O43 - CFD: 08/11/2011 - 18:19:48 - [0] ----D C:\Users\Benjamin\AppData\Local\{8E49F308-EAC2-4C51-8BE4-E6E72AE3E508} O43 - CFD: 11/09/2011 - 17:53:13 - [0] ----D C:\Users\Benjamin\AppData\Local\{8EE43D84-F8DC-414B-BE89-6DE57252BEB9} O43 - CFD: 09/09/2011 - 18:21:38 - [0] ----D C:\Users\Benjamin\AppData\Local\{8EE99583-D5F3-467E-90E0-CD2C562C04B6} O43 - CFD: 04/11/2011 - 21:24:16 - [0] ----D C:\Users\Benjamin\AppData\Local\{8F406975-9680-4725-833B-97888CA02E92} O43 - CFD: 17/08/2011 - 17:12:29 - [0] ----D C:\Users\Benjamin\AppData\Local\{8F47CC13-AC2C-42C1-82DD-D92893A34298} O43 - CFD: 21/08/2011 - 11:55:45 - [0] ----D C:\Users\Benjamin\AppData\Local\{9154FE13-64C2-4DF2-B498-5A55418B5B5B} O43 - CFD: 08/11/2011 - 18:19:32 - [0] ----D C:\Users\Benjamin\AppData\Local\{938B59A5-C419-42DA-820B-AF8701A9170F} O43 - CFD: 05/10/2011 - 15:14:45 - [0] ----D C:\Users\Benjamin\AppData\Local\{942C0C37-2A92-4AF5-AD7E-B3D7E8FD6B50} O43 - CFD: 18/06/2011 - 11:00:10 - [0] ----D C:\Users\Benjamin\AppData\Local\{9436E1A5-8222-444E-AE26-82CB599471FE} O43 - CFD: 09/07/2011 - 11:20:11 - [0] ----D C:\Users\Benjamin\AppData\Local\{94F61B09-4759-491F-BCE2-19AB489E92BD} O43 - CFD: 13/08/2011 - 09:48:29 - [0] ----D C:\Users\Benjamin\AppData\Local\{95346F3D-3042-4DFB-986F-AB8E61434A73} O43 - CFD: 12/06/2011 - 10:05:03 - [0] ----D C:\Users\Benjamin\AppData\Local\{96AA3CBC-7119-43A6-B381-F7D88DB3805E} O43 - CFD: 25/12/2011 - 10:55:10 - [0] ----D C:\Users\Benjamin\AppData\Local\{975788C6-7BE9-429A-9CB1-982DFB85B16A} O43 - CFD: 02/12/2011 - 19:13:05 - [0] ----D C:\Users\Benjamin\AppData\Local\{980182C2-1840-4DE5-A23B-B617810BF37A} O43 - CFD: 24/09/2011 - 22:41:28 - [0] ----D C:\Users\Benjamin\AppData\Local\{9877D375-10CD-47EF-8018-C9336E826B06} O43 - CFD: 22/08/2011 - 17:16:23 - [0] ----D C:\Users\Benjamin\AppData\Local\{99A48FE8-187C-467E-B30B-BA21A18FCDAF} O43 - CFD: 13/09/2011 - 21:19:21 - [0] ----D C:\Users\Benjamin\AppData\Local\{9A316DA2-0625-4DCA-892F-FF892CD04B3F} O43 - CFD: 21/07/2011 - 18:31:08 - [0] ----D C:\Users\Benjamin\AppData\Local\{9AE9D458-90A9-40DD-9261-A4C08B5D9A7B} O43 - CFD: 28/08/2011 - 10:44:05 - [0] ----D C:\Users\Benjamin\AppData\Local\{9C308CA3-12A6-4C06-85DC-1931E603DED4} O43 - CFD: 02/10/2011 - 13:38:50 - [0] ----D C:\Users\Benjamin\AppData\Local\{9D2ABC5D-175D-4C26-8B69-687CF29D1F51} O43 - CFD: 23/09/2011 - 11:14:50 - [0] ----D C:\Users\Benjamin\AppData\Local\{9E6E2424-6F3A-420D-A67B-BCAD157E0115} O43 - CFD: 07/08/2011 - 10:33:57 - [0] ----D C:\Users\Benjamin\AppData\Local\{A01061A6-4FBC-4A51-8DD1-7DE6308A401D} O43 - CFD: 09/06/2011 - 14:11:54 - [0] ----D C:\Users\Benjamin\AppData\Local\{A252939D-636F-4FCE-B9C9-8CC8C3F99DA4} O43 - CFD: 28/09/2011 - 16:24:10 - [0] ----D C:\Users\Benjamin\AppData\Local\{A26428C1-BFC8-49EF-ADEB-6EA88C1A985E} O43 - CFD: 20/10/2011 - 15:11:19 - [0] ----D C:\Users\Benjamin\AppData\Local\{A37A31C4-E15D-4DE8-8CD7-35749D8BFE02} O43 - CFD: 12/09/2011 - 18:43:34 - [0] ----D C:\Users\Benjamin\AppData\Local\{A4913610-AD7A-42D1-8196-CE92F54A07B6} O43 - CFD: 22/09/2011 - 11:22:06 - [0] ----D C:\Users\Benjamin\AppData\Local\{A49A8426-0B71-4D45-B859-993CEB87807C} O43 - CFD: 28/08/2011 - 15:17:32 - [0] ----D C:\Users\Benjamin\AppData\Local\{A5773D64-FAC6-48C9-B761-67B79CBFE294} O43 - CFD: 20/05/2011 - 21:17:25 - [0] ----D C:\Users\Benjamin\AppData\Local\{A5EA3A96-59B8-4CCF-8D07-E5CB2FA2B341} O43 - CFD: 18/09/2011 - 12:21:00 - [0] ----D C:\Users\Benjamin\AppData\Local\{A5FAC4D7-6D84-4862-A09A-9811D7D4D2DB} O43 - CFD: 21/11/2011 - 18:32:01 - [0] ----D C:\Users\Benjamin\AppData\Local\{A62FA667-EE00-4E3D-B2D5-8E85A8287C64} O43 - CFD: 11/09/2011 - 14:43:38 - [0] ----D C:\Users\Benjamin\AppData\Local\{A7284136-879B-481E-9168-6F88FB4364FF} O43 - CFD: 02/07/2011 - 09:08:39 - [0] ----D C:\Users\Benjamin\AppData\Local\{A74471D9-3120-48A6-BE2E-AE7F4E1C2510} O43 - CFD: 20/11/2011 - 11:04:11 - [0] ----D C:\Users\Benjamin\AppData\Local\{A78BA366-4856-4FE3-A462-C22E3ABBDA6D} O43 - CFD: 24/12/2011 - 22:13:16 - [0] ----D C:\Users\Benjamin\AppData\Local\{AA0B1360-A429-4971-B1AF-277C15BC40EC} O43 - CFD: 05/10/2011 - 15:14:29 - [0] ----D C:\Users\Benjamin\AppData\Local\{AA129032-16F9-4C3A-A33B-0DAEBD8FF171} O43 - CFD: 19/09/2011 - 17:50:03 - [0] ----D C:\Users\Benjamin\AppData\Local\{AAA6FFF5-E827-4890-AC18-D0A7DF6C1983} O43 - CFD: 22/11/2011 - 17:41:57 - [0] ----D C:\Users\Benjamin\AppData\Local\{AC59E25F-AE5B-4D83-823A-52FAF51FA24D} O43 - CFD: 16/08/2011 - 18:14:48 - [0] ----D C:\Users\Benjamin\AppData\Local\{ACB3F1BD-8C0F-4DFE-98AC-FBA938A04204} O43 - CFD: 18/07/2011 - 17:44:00 - [0] ----D C:\Users\Benjamin\AppData\Local\{ADC2F11E-8050-47A3-BE2E-F02DD1FE5C35} O43 - CFD: 21/08/2011 - 11:55:32 - [0] ----D C:\Users\Benjamin\AppData\Local\{AE5AB43D-B162-4713-B882-273D5857B063} O43 - CFD: 29/11/2011 - 15:18:38 - [0] ----D C:\Users\Benjamin\AppData\Local\{AE8E22E2-0A00-46C1-A2C5-CB2D62C16E0E} O43 - CFD: 16/09/2011 - 20:39:26 - [0] ----D C:\Users\Benjamin\AppData\Local\{AECC4274-3849-42AE-97C1-EDDDD51D47B2} O43 - CFD: 25/10/2011 - 16:27:56 - [0] ----D C:\Users\Benjamin\AppData\Local\{AFDB227D-DFEA-49D2-A5BB-E8D7878CE135} O43 - CFD: 05/07/2011 - 17:21:58 - [0] ----D C:\Users\Benjamin\AppData\Local\{B0F2EE69-C913-4524-9F35-24F66F75E891} O43 - CFD: 01/12/2011 - 16:01:54 - [0] ----D C:\Users\Benjamin\AppData\Local\{B1A306DB-B84E-4F27-9026-7FCA72BE5269} O43 - CFD: 23/09/2011 - 21:06:06 - [0] ----D C:\Users\Benjamin\AppData\Local\{B1B2185E-9D5A-42E2-8DC7-7E22AF5090A8} O43 - CFD: 28/08/2011 - 13:32:53 - [0] ----D C:\Users\Benjamin\AppData\Local\{B2A119F5-2F6D-41BE-908B-8B7FD0E88D58} O43 - CFD: 27/07/2011 - 14:46:14 - [0] ----D C:\Users\Benjamin\AppData\Local\{B36112F8-759B-416F-A8F8-A597D0680B02} O43 - CFD: 11/09/2011 - 17:06:50 - [0] ----D C:\Users\Benjamin\AppData\Local\{B37D4ABD-924A-4DB1-9447-27C8F058E3F5} O43 - CFD: 17/09/2011 - 09:35:36 - [0] ----D C:\Users\Benjamin\AppData\Local\{B3940A49-D5EA-470D-AC02-D2BEBC6BD84B} O43 - CFD: 30/10/2011 - 17:38:36 - [0] ----D C:\Users\Benjamin\AppData\Local\{B3E07632-7BA7-44FD-8372-6D00D2D663E0} O43 - CFD: 27/11/2011 - 14:44:21 - [0] ----D C:\Users\Benjamin\AppData\Local\{B419E665-8441-4624-A48C-1DB8151B0EEE} O43 - CFD: 10/09/2011 - 10:14:51 - [0] ----D C:\Users\Benjamin\AppData\Local\{B4C550E3-624E-430E-9B63-A1B4A6C7ECDC} O43 - CFD: 04/11/2011 - 21:24:29 - [0] ----D C:\Users\Benjamin\AppData\Local\{B5FD0F25-49F3-4F32-9CBC-8870CF2A2053} O43 - CFD: 05/08/2011 - 20:39:26 - [0] ----D C:\Users\Benjamin\AppData\Local\{B603A4A7-90A4-48EB-8B7B-3518EBAAB3A7} O43 - CFD: 16/06/2011 - 17:18:56 - [0] ----D C:\Users\Benjamin\AppData\Local\{B71EAE3B-ECE5-492C-B445-96557518D2F2} O43 - CFD: 23/08/2011 - 18:41:55 - [0] ----D C:\Users\Benjamin\AppData\Local\{B7363010-EA6E-4006-8431-B0999D2188E3} O43 - CFD: 30/11/2011 - 18:30:12 - [0] ----D C:\Users\Benjamin\AppData\Local\{B7423833-E787-4BBE-97AE-83D1FDEB7D1D} O43 - CFD: 05/12/2011 - 17:38:48 - [0] ----D C:\Users\Benjamin\AppData\Local\{B8007EF2-72E9-4E9B-A020-27D0468CDBFB} O43 - CFD: 27/06/2011 - 16:07:44 - [0] ----D C:\Users\Benjamin\AppData\Local\{B826FFBE-7114-4939-B79E-17975D3F7540} O43 - CFD: 12/08/2011 - 18:08:30 - [0] ----D C:\Users\Benjamin\AppData\Local\{B86D33C2-15E7-4B03-8C0A-FC907253165C} O43 - CFD: 07/11/2011 - 17:21:50 - [0] ----D C:\Users\Benjamin\AppData\Local\{B967148F-0BF2-42AC-B960-A99C5B3B0977} O43 - CFD: 25/08/2011 - 07:06:03 - [0] ----D C:\Users\Benjamin\AppData\Local\{B9ACC372-55B8-40BB-B929-4D40829021FD} O43 - CFD: 07/12/2011 - 19:41:44 - [0] ----D C:\Users\Benjamin\AppData\Local\{B9BC1682-C91D-472F-9947-8D8325BA4713} O43 - CFD: 27/11/2011 - 14:44:35 - [0] ----D C:\Users\Benjamin\AppData\Local\{BA325A7F-409C-448A-861F-9FAD5F5AD2A4} O43 - CFD: 11/12/2011 - 01:21:11 - [0] ----D C:\Users\Benjamin\AppData\Local\{BB99A5A3-DEDE-496E-AB03-8B5A90E75AC0} O43 - CFD: 04/11/2011 - 18:47:12 - [0] ----D C:\Users\Benjamin\AppData\Local\{BC226BE9-A379-4554-A658-9CA0ECB5866E} O43 - CFD: 22/09/2011 - 20:21:38 - [0] ----D C:\Users\Benjamin\AppData\Local\{BDFD18F7-40BA-45A9-A63B-15608B8D1DEB} O43 - CFD: 26/10/2011 - 16:08:21 - [0] ----D C:\Users\Benjamin\AppData\Local\{BE3F00D9-BC39-4B95-A519-89602EC4C1D7} O43 - CFD: 01/11/2011 - 12:18:19 - [0] ----D C:\Users\Benjamin\AppData\Local\{BEC18CE5-6150-48F0-AB5F-4841461C6004} O43 - CFD: 01/11/2011 - 12:18:32 - [0] ----D C:\Users\Benjamin\AppData\Local\{BEDDDE0C-295F-4C78-AD10-366F0C714940} O43 - CFD: 22/09/2011 - 20:21:56 - [0] ----D C:\Users\Benjamin\AppData\Local\{BFEBF5AB-5D4E-49EB-944D-14B9232037C6} O43 - CFD: 25/09/2011 - 17:35:18 - [0] ----D C:\Users\Benjamin\AppData\Local\{C0FA502A-1A63-4B38-A263-6EF38BEE923F} O43 - CFD: 12/08/2011 - 18:08:17 - [0] ----D C:\Users\Benjamin\AppData\Local\{C0FFFE5C-8273-4AB3-BDEC-900A8CA1298F} O43 - CFD: 19/06/2011 - 14:30:29 - [0] ----D C:\Users\Benjamin\AppData\Local\{C16955B9-7BCA-42E9-A6AF-F1F3CF1C3DE8} O43 - CFD: 24/08/2011 - 06:56:36 - [0] ----D C:\Users\Benjamin\AppData\Local\{C1DEDA8B-42FF-4B4F-897A-D9CC68B8C411} O43 - CFD: 13/11/2011 - 10:41:26 - [0] ----D C:\Users\Benjamin\AppData\Local\{C21C7AB8-0173-4E4A-848F-A4D39265FFF9} O43 - CFD: 06/11/2011 - 14:25:20 - [0] ----D C:\Users\Benjamin\AppData\Local\{C22839B6-3D2A-46A1-BFDC-9062C9E3F8B2} O43 - CFD: 13/11/2011 - 10:41:42 - [0] ----D C:\Users\Benjamin\AppData\Local\{C263C1F6-99DF-4CFE-BF17-78407953DC0E} O43 - CFD: 11/09/2011 - 09:29:13 - [0] ----D C:\Users\Benjamin\AppData\Local\{C3F147A6-F5D3-45A1-8E09-88C6B92D8E03} O43 - CFD: 25/09/2011 - 11:57:53 - [0] ----D C:\Users\Benjamin\AppData\Local\{C4616870-017A-4DCC-85B8-F7711F28C716} O43 - CFD: 23/09/2011 - 10:10:33 - [0] ----D C:\Users\Benjamin\AppData\Local\{C47484D2-BFD6-4755-9E4C-54CFB81510FC} O43 - CFD: 12/06/2011 - 22:05:59 - [0] ----D C:\Users\Benjamin\AppData\Local\{C55B0C64-61D7-4F59-81F6-9088EF0A1719} O43 - CFD: 01/10/2011 - 13:06:10 - [0] ----D C:\Users\Benjamin\AppData\Local\{C6495C4A-BD44-4148-82E6-CC20F435AE37} O43 - CFD: 02/10/2011 - 13:39:04 - [0] ----D C:\Users\Benjamin\AppData\Local\{C6833F60-D828-46EB-859D-D5D244A4CE56} O43 - CFD: 18/10/2011 - 20:39:55 - [0] ----D C:\Users\Benjamin\AppData\Local\{C7E648B2-1441-4552-81DB-13312624286E} O43 - CFD: 16/07/2011 - 12:18:10 - [0] ----D C:\Users\Benjamin\AppData\Local\{C7F907FB-FAC7-4F6A-AB8C-D0BDC9F20AA7} O43 - CFD: 15/09/2011 - 15:51:37 - [0] ----D C:\Users\Benjamin\AppData\Local\{C8153D56-8568-496F-8175-07CC06B13F7E} O43 - CFD: 28/05/2011 - 08:45:39 - [0] ----D C:\Users\Benjamin\AppData\Local\{C863C20A-6C29-48B0-97F2-49993A9344EC} O43 - CFD: 29/10/2011 - 13:05:22 - [0] ----D C:\Users\Benjamin\AppData\Local\{C8FB759F-4B7E-4CE4-AEC7-D7AC10C5F52C} O43 - CFD: 19/10/2011 - 15:45:28 - [0] ----D C:\Users\Benjamin\AppData\Local\{CA0F252C-D0DE-42FD-A567-F12D214D202E} O43 - CFD: 13/08/2011 - 09:48:44 - [0] ----D C:\Users\Benjamin\AppData\Local\{CA113FB9-788E-4993-96FF-A5A3BE117A66} O43 - CFD: 04/12/2011 - 11:27:42 - [0] ----D C:\Users\Benjamin\AppData\Local\{CAD12D4F-1AB8-495E-B62C-ADFCBB797399} O43 - CFD: 16/09/2011 - 20:39:42 - [0] ----D C:\Users\Benjamin\AppData\Local\{CBD3E9F1-A600-43B3-8B2C-10D8EF2932F5} O43 - CFD: 30/05/2011 - 15:33:34 - [0] ----D C:\Users\Benjamin\AppData\Local\{CC6B12FA-4849-4BFD-9695-5E099707EDAE} O43 - CFD: 11/09/2011 - 09:29:00 - [0] ----D C:\Users\Benjamin\AppData\Local\{CC939C14-CE21-4DE3-AEAD-A86461E0A6DE} O43 - CFD: 09/08/2011 - 17:50:19 - [0] ----D C:\Users\Benjamin\AppData\Local\{CCB4B675-5508-4FED-97CF-E4C61C7B8233} O43 - CFD: 27/10/2011 - 13:47:37 - [0] ----D C:\Users\Benjamin\AppData\Local\{CDB7120E-3B54-4D08-B550-0EBA2A996462} O43 - CFD: 25/10/2011 - 16:28:10 - [0] ----D C:\Users\Benjamin\AppData\Local\{CEECE104-2335-49C7-AD61-12AE5F86EA62} O43 - CFD: 21/08/2011 - 14:30:30 - [0] ----D C:\Users\Benjamin\AppData\Local\{CF228C81-3BD0-4DAC-BECE-E0192252655B} O43 - CFD: 16/09/2011 - 20:34:18 - [0] ----D C:\Users\Benjamin\AppData\Local\{CF257A8F-9263-47DB-932F-ECFF1FDDAF78} O43 - CFD: 26/05/2011 - 17:02:10 - [0] ----D C:\Users\Benjamin\AppData\Local\{CF56727B-B204-4D67-8F3E-54AA9002AFFC} O43 - CFD: 28/08/2011 - 10:43:49 - [0] ----D C:\Users\Benjamin\AppData\Local\{D05C35E4-B2F1-4E14-9423-9F0781CC3984} O43 - CFD: 03/07/2011 - 10:46:02 - [0] ----D C:\Users\Benjamin\AppData\Local\{D09A8C12-DBB7-4D67-A1BD-B21D1D910940} O43 - CFD: 26/12/2011 - 16:25:14 - [0] ----D C:\Users\Benjamin\AppData\Local\{D0E12089-9D2F-4937-8C77-B388C83490F5} O43 - CFD: 15/07/2011 - 10:46:47 - [0] ----D C:\Users\Benjamin\AppData\Local\{D1039F77-16B6-4D64-8087-FF717D565904} O43 - CFD: 02/10/2011 - 10:38:30 - [0] ----D C:\Users\Benjamin\AppData\Local\{D2DEF570-ABEB-4FFA-9507-B484557CAC3E} O43 - CFD: 05/09/2011 - 16:44:28 - [0] ----D C:\Users\Benjamin\AppData\Local\{D3768104-2D01-462D-8CC5-F899C52F85F1} O43 - CFD: 23/11/2011 - 16:42:11 - [0] ----D C:\Users\Benjamin\AppData\Local\{D3B0B467-D069-40E4-BCC1-7B39BF371745} O43 - CFD: 28/12/2011 - 12:31:55 - [0] ----D C:\Users\Benjamin\AppData\Local\{D42524E0-5AFF-4726-8098-3DEC27A2BD86} O43 - CFD: 03/10/2011 - 15:53:37 - [0] ----D C:\Users\Benjamin\AppData\Local\{D4635CDB-AFB9-450B-81AE-F4054055928F} O43 - CFD: 28/12/2011 - 12:45:19 - [0] ----D C:\Users\Benjamin\AppData\Local\{D47FE6BC-9BDF-413A-BBBA-8A7571165048} O43 - CFD: 31/07/2011 - 12:37:42 - [0] ----D C:\Users\Benjamin\AppData\Local\{D4C56FA6-DDFA-413F-9BE9-C2AF1A0D9C2F} O43 - CFD: 18/12/2011 - 14:31:19 - [0] ----D C:\Users\Benjamin\AppData\Local\{D50DE20B-0C00-48BF-82C4-A3D3FBB8C9CF} O43 - CFD: 02/06/2011 - 09:58:25 - [0] ----D C:\Users\Benjamin\AppData\Local\{D53856E2-BC5E-4B6B-9E66-B001F1104CE8} O43 - CFD: 15/08/2011 - 10:09:05 - [0] ----D C:\Users\Benjamin\AppData\Local\{D640AF5D-2CA5-48EB-828B-EA4B2263A260} O43 - CFD: 17/11/2011 - 16:51:56 - [0] ----D C:\Users\Benjamin\AppData\Local\{D64840F7-F1B8-4CD1-8D72-92AADD632497} O43 - CFD: 07/09/2011 - 16:55:30 - [0] ----D C:\Users\Benjamin\AppData\Local\{D6E6FCA9-4423-4818-8FF2-5B9F8DACC491} O43 - CFD: 23/06/2011 - 18:25:30 - [0] ----D C:\Users\Benjamin\AppData\Local\{D787BB40-3256-400A-A403-54D5AFD34A57} O43 - CFD: 19/01/2012 - 21:06:33 - [0] ----D C:\Users\Benjamin\AppData\Local\{D8FAD1E1-2B41-4F40-AF02-BD5473758EF1} O43 - CFD: 13/10/2011 - 16:41:22 - [0] ----D C:\Users\Benjamin\AppData\Local\{D9756682-EC64-45AB-A0F0-9F4D5FF793F0} O43 - CFD: 17/12/2011 - 15:26:17 - [0] ----D C:\Users\Benjamin\AppData\Local\{DA1910D9-D7D4-413D-91FE-234636B15455} O43 - CFD: 17/08/2011 - 20:58:02 - [0] ----D C:\Users\Benjamin\AppData\Local\{DC476499-4068-4C36-8285-F1C231D9AD34} O43 - CFD: 06/06/2011 - 17:34:47 - [0] ----D C:\Users\Benjamin\AppData\Local\{DC5A7F0B-F27D-4498-853A-E8EE595E29E7} O43 - CFD: 06/10/2011 - 17:40:03 - [0] ----D C:\Users\Benjamin\AppData\Local\{DE5F257E-9878-4D42-9551-B4DDD882346B} O43 - CFD: 07/08/2011 - 16:09:01 - [0] ----D C:\Users\Benjamin\AppData\Local\{DE88CD40-83BD-4F5C-BB44-595295965CE7} O43 - CFD: 13/09/2011 - 16:30:43 - [0] ----D C:\Users\Benjamin\AppData\Local\{DFD53961-484C-4ACC-9D87-31BFAB5838C3} O43 - CFD: 27/05/2011 - 20:45:00 - [0] ----D C:\Users\Benjamin\AppData\Local\{E04CE42E-38C5-4919-89FF-E23795E8C60C} O43 - CFD: 20/12/2011 - 17:35:46 - [0] ----D C:\Users\Benjamin\AppData\Local\{E09A47BC-52FB-4E8F-AAE4-3CDFCCA1F897} O43 - CFD: 25/09/2011 - 17:34:59 - [0] ----D C:\Users\Benjamin\AppData\Local\{E110075D-8CD7-427A-BB4D-F47F2BB91204} O43 - CFD: 20/07/2011 - 19:14:42 - [0] ----D C:\Users\Benjamin\AppData\Local\{E200A3E8-BBBE-4B37-B280-CA8885A03F0E} O43 - CFD: 12/09/2011 - 18:43:22 - [0] ----D C:\Users\Benjamin\AppData\Local\{E202D7A3-C0AC-4E43-B6C7-DBDC2D371879} O43 - CFD: 31/10/2011 - 19:17:28 - [0] ----D C:\Users\Benjamin\AppData\Local\{E220C023-AD80-49F8-AFCB-EF96FD1954CB} O43 - CFD: 23/09/2011 - 11:14:37 - [0] ----D C:\Users\Benjamin\AppData\Local\{E30FB072-CE21-4BFE-9C23-0E6B523A6EBE} O43 - CFD: 24/08/2011 - 18:29:24 - [0] ----D C:\Users\Benjamin\AppData\Local\{E3BA1C35-C81C-4145-AFC0-4366B0E21CE8} O43 - CFD: 01/07/2011 - 20:40:11 - [0] ----D C:\Users\Benjamin\AppData\Local\{E50F22D0-0B8A-4F2D-95D0-AE9748F93056} O43 - CFD: 01/09/2011 - 16:38:26 - [0] ----D C:\Users\Benjamin\AppData\Local\{E5148BDC-A343-4B76-A8D3-D43F48DEAD2F} O43 - CFD: 06/07/2011 - 15:54:03 - [0] ----D C:\Users\Benjamin\AppData\Local\{E5277EDD-4FB0-49ED-8F53-244419F6867E} O43 - CFD: 12/11/2011 - 15:45:32 - [0] ----D C:\Users\Benjamin\AppData\Local\{E6242C47-919A-4429-BF92-1166FB0F7CDA} O43 - CFD: 06/08/2011 - 11:54:33 - [0] ----D C:\Users\Benjamin\AppData\Local\{E68FBACC-CF7F-4374-ACA5-58A78E40970B} O43 - CFD: 24/05/2011 - 15:57:44 - [0] ----D C:\Users\Benjamin\AppData\Local\{E6B7282E-C101-4C41-8D87-F63BA78C57E0} O43 - CFD: 27/10/2011 - 13:47:20 - [0] ----D C:\Users\Benjamin\AppData\Local\{E6E4A748-1CDC-4158-A270-4E8519A45285} O43 - CFD: 06/08/2011 - 11:54:13 - [0] ----D C:\Users\Benjamin\AppData\Local\{E7DEFAB7-22EB-4DF7-A3C2-50E8B5743A36} O43 - CFD: 19/06/2011 - 02:29:49 - [0] ----D C:\Users\Benjamin\AppData\Local\{E7E3AA26-AE3A-4A8F-BD0B-41DC3307DF01} O43 - CFD: 11/08/2011 - 13:41:31 - [0] ----D C:\Users\Benjamin\AppData\Local\{E8DBE64C-879A-4ED8-A5DE-D561CD7704A5} O43 - CFD: 09/08/2011 - 17:50:31 - [0] ----D C:\Users\Benjamin\AppData\Local\{E964425F-316E-46D4-9930-6020F27441CE} O43 - CFD: 27/10/2011 - 16:41:32 - [0] ----D C:\Users\Benjamin\AppData\Local\{E9B4E2DE-C5C1-4E61-8221-D364F424883B} O43 - CFD: 22/09/2011 - 11:21:53 - [0] ----D C:\Users\Benjamin\AppData\Local\{E9F1E022-45DC-4B4B-88AD-61ED496D680A} O43 - CFD: 23/07/2011 - 12:21:48 - [0] ----D C:\Users\Benjamin\AppData\Local\{EC2801AF-FBE3-4617-B602-3E79DC6FB172} O43 - CFD: 22/05/2011 - 09:18:28 - [0] ----D C:\Users\Benjamin\AppData\Local\{ECB77276-AD32-4974-934A-5DE6FE3A9AF0} O43 - CFD: 13/10/2011 - 16:41:37 - [0] ----D C:\Users\Benjamin\AppData\Local\{ECF896C3-9046-4E43-8B6C-2AE2007B132C} O43 - CFD: 07/06/2011 - 20:05:36 - [0] ----D C:\Users\Benjamin\AppData\Local\{ED4E9FC0-0415-445F-A1B7-05833599433A} O43 - CFD: 18/08/2011 - 18:05:55 - [0] ----D C:\Users\Benjamin\AppData\Local\{EE0B4B3A-040E-4951-A9DC-3A3CEA65100B} O43 - CFD: 19/12/2011 - 19:08:02 - [0] ----D C:\Users\Benjamin\AppData\Local\{EE815591-33A8-4D07-8BED-58D6687DEFA0} O43 - CFD: 15/12/2011 - 19:35:18 - [0] ----D C:\Users\Benjamin\AppData\Local\{EF230F20-DF3B-4144-865B-4B9F36247984} O43 - CFD: 01/10/2011 - 09:58:41 - [0] ----D C:\Users\Benjamin\AppData\Local\{F155CAFB-4B53-457D-93D3-101A79880A44} O43 - CFD: 18/12/2011 - 14:32:24 - [0] ----D C:\Users\Benjamin\AppData\Local\{F1B41650-9A57-4749-A896-D06101B57173} O43 - CFD: 24/10/2011 - 17:12:00 - [0] ----D C:\Users\Benjamin\AppData\Local\{F256E204-F02B-4742-B1F3-174009EE0507} O43 - CFD: 20/10/2011 - 15:11:36 - [0] ----D C:\Users\Benjamin\AppData\Local\{F2B29D93-31AE-4BC8-A5BF-D3723F0EB1C9} O43 - CFD: 13/09/2011 - 21:19:02 - [0] ----D C:\Users\Benjamin\AppData\Local\{F338E0A0-9389-4AE2-B61D-834A929879B0} O43 - CFD: 11/06/2011 - 10:48:59 - [0] ----D C:\Users\Benjamin\AppData\Local\{F44DB9FA-F39B-4072-A5CB-8168EC0B4EDD} O43 - CFD: 28/07/2011 - 17:07:01 - [0] ----D C:\Users\Benjamin\AppData\Local\{F599870C-DB15-4F28-ADB0-F1541806E6C0} O43 - CFD: 09/09/2011 - 22:05:58 - [0] ----D C:\Users\Benjamin\AppData\Local\{F6196A6A-DDF6-45CA-947F-85562CDD7B0D} O43 - CFD: 05/06/2011 - 13:58:19 - [0] ----D C:\Users\Benjamin\AppData\Local\{F66C9278-F913-48AA-B849-D53E88E6BD7D} O43 - CFD: 23/08/2011 - 18:42:12 - [0] ----D C:\Users\Benjamin\AppData\Local\{F6CEF520-D902-40F1-BF4B-2FA037EEFAAC} O43 - CFD: 16/10/2011 - 17:17:06 - [0] ----D C:\Users\Benjamin\AppData\Local\{F7213874-762F-4F92-9840-E1747A194D4D} O43 - CFD: 04/10/2011 - 17:12:55 - [0] ----D C:\Users\Benjamin\AppData\Local\{F7450E5A-B808-4407-AE02-8F99FEE32701} O43 - CFD: 29/06/2011 - 17:49:57 - [0] ----D C:\Users\Benjamin\AppData\Local\{F7FE3F2A-6EED-44E2-A448-44AF1F53D133} O43 - CFD: 02/11/2011 - 18:31:12 - [0] ----D C:\Users\Benjamin\AppData\Local\{FB1F4C4C-A320-461A-9D19-BAF71537F003} O43 - CFD: 06/10/2011 - 17:40:17 - [0] ----D C:\Users\Benjamin\AppData\Local\{FB8DA1BC-83BB-4250-9C5E-0A87F213C07E} O43 - CFD: 12/11/2011 - 15:15:20 - [0] ----D C:\Users\Benjamin\AppData\Local\{FBCA1E48-C974-49E6-9F52-1665CABC83DA} O43 - CFD: 30/12/2011 - 22:00:48 - [0] ----D C:\Users\Benjamin\AppData\Local\{FD423386-049B-427B-8918-28C517DF3836} O43 - CFD: 12/11/2011 - 15:15:35 - [0] ----D C:\Users\Benjamin\AppData\Local\{FD8BF1A9-71C7-434E-B826-F8E0A49774FD} O43 - CFD: 04/10/2011 - 17:13:09 - [0] ----D C:\Users\Benjamin\AppData\Local\{FDCB04F7-D5C6-4D95-9CD4-7E0C634CCE6B} O43 - CFD: 03/11/2011 - 17:20:09 - [0] ----D C:\Users\Benjamin\AppData\Local\{FE2097B6-3868-461A-B80D-97DD87CBAC86} O43 - CFD: 11/09/2011 - 17:07:05 - [0] ----D C:\Users\Benjamin\AppData\Local\{FE49D7D7-BD5E-4C9A-A00D-8AFB6FD2D81F} O43 - CFD: 24/08/2011 - 16:42:38 - [0] ----D C:\Users\Benjamin\AppData\Local\{FEC86DB0-517D-442A-82F5-C3A6E9269370} O43 - CFD: 11/09/2011 - 14:43:53 - [0] ----D C:\Users\Benjamin\AppData\Local\{FEFC3833-BEBF-4EA6-BBCA-5AB55848556F} O43 - CFD: 20/11/2011 - 11:04:25 - [0] ----D C:\Users\Benjamin\AppData\Local\{FFBA965F-A8EB-459C-97AE-C4DD75FF945A} O43 - CFD: 14/07/2009 - 05:54:32 - [0,014] R---D C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 13/07/2012 - 18:59:43 - [0,000] R---D C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 30/01/2013 - 23:00:31 - [0,002] ----D C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 18/11/2009 - 01:03:26 - [0,002] ----D C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 14/07/2009 - 05:49:38 - [0,001] R---D C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 26/08/2009 - 14:55:28 - [0,004] ----D C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery Manager O43 - CFD: 13/07/2012 - 18:59:43 - [0,000] R---D C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 07/12/2010 - 20:48:10 - [0,003] ----D C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ~ Scan Program Folder in 00mn 42s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.82BD2CDA974AC15FD4DA6ED0DF27E34B] - 06/02/2013 - 20:04:00 ---A- . (...) -- C:\Windows\setupact.log [1079393] O44 - LFC:[MD5.6896BC7EBF64E2D63EEF8C9070442DA6] - 06/02/2013 - 19:41:14 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1591457] O44 - LFC:[MD5.64A7ED55742580E4DDB6712DB685CB60] - 06/02/2013 - 19:40:52 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.267BE85E62E3721A59EA2CB8FC350D76] - 05/02/2013 - 21:25:41 ---A- . (...) -- C:\Windows\PFRO.log [236600] O44 - LFC:[MD5.1E39EE2CE3176019DC723A4571EA5BA4] - 04/02/2013 - 20:17:14 . (.Microsoft - Système de classement PEGI/BBFC.) -- C:\Windows\System32\PerfStringBackup.INI [44544] O44 - LFC:[MD5.20771AA81A5D239DE0EDEF8431623F47] - 04/02/2013 - 20:17:14 . (.Microsoft - Système de classement PEGI/BBFC.) -- C:\Windows\System32\perfc009.dat [44544] O44 - LFC:[MD5.875327E4E3564192B812E6C5623CBBAF] - 04/02/2013 - 20:17:14 . (.Microsoft - Système de classement PEGI/BBFC.) -- C:\Windows\System32\perfc00C.dat [44544] O44 - LFC:[MD5.90CFCA8AC28E80D62E7C2295EA7233D2] - 04/02/2013 - 20:17:14 . (.Microsoft - Système de classement PEGI/BBFC.) -- C:\Windows\System32\perfh009.dat [44544] O44 - LFC:[MD5.06CC0905470121FEA194B8E4B4FE597B] - 04/02/2013 - 20:17:14 . (.Microsoft - Système de classement PEGI/BBFC.) -- C:\Windows\System32\perfh00C.dat [44544] O44 - LFC:[MD5.1E39EE2CE3176019DC723A4571EA5BA4] - 04/02/2013 - 20:17:14 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1562690] O44 - LFC:[MD5.20771AA81A5D239DE0EDEF8431623F47] - 04/02/2013 - 20:17:14 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [108566] O44 - LFC:[MD5.875327E4E3564192B812E6C5623CBBAF] - 04/02/2013 - 20:17:14 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [133068] O44 - LFC:[MD5.90CFCA8AC28E80D62E7C2295EA7233D2] - 04/02/2013 - 20:17:14 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [620384] O44 - LFC:[MD5.06CC0905470121FEA194B8E4B4FE597B] - 04/02/2013 - 20:17:14 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [709086] O44 - LFC:[MD5.6D64BB196E9494765656F6882008A6BC] - 01/02/2013 - 18:47:36 ---A- . (...) -- C:\Windows\ntbtlog.txt [540514] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 01/02/2013 - 15:59:00 . (.Microsoft - Système de classement GRB.) -- C:\Windows\System32\HP_ActiveX_Patch_NOT_DETECTED.txt [21504] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 01/02/2013 - 15:59:00 ---A- . (...) -- C:\Windows\SysNative\HP_ActiveX_Patch_NOT_DETECTED.txt [0] O44 - LFC:[MD5.9C43795EBFBAE8384622E891CF4B7498] - 18/01/2013 - 15:41:45 . (.Microsoft - Système de classement ESRB.) -- C:\Windows\System32\FNTCACHE.DAT [51712] O44 - LFC:[MD5.9C43795EBFBAE8384622E891CF4B7498] - 18/01/2013 - 15:41:45 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [436784] O44 - LFC:[MD5.94BCE5A03EF5F9340AD9095E0D409C82] - 17/01/2013 - 01:28:58 . (...) -- C:\Windows\System32\MpSigStub.exe [420064] O44 - LFC:[MD5.8ACC1EFC15C4EA1243FF0A48B397BCC1] - 13/01/2013 - 14:43:14 . (...) -- C:\Windows\System32\MRT.exe [420064] O44 - LFC:[MD5.54B11BB2AFBC3D5EBA9C96F0C1820B9B] - 13/01/2013 - 14:04:05 ---A- . (.Microsoft - Système de classification FPB.) -- C:\Windows\SysNative\fpb.rs [46592] O44 - LFC:[MD5.54B11BB2AFBC3D5EBA9C96F0C1820B9B] - 13/01/2013 - 14:04:05 ---A- . (.Microsoft - Système de classification FPB.) -- C:\Windows\System32\fpb.rs [46592] O44 - LFC:[MD5.997938D423CE830161CB6059434E3C9F] - 13/01/2013 - 14:04:05 ---A- . (.Microsoft - Système de classification OFLC-NZ.) -- C:\Windows\SysNative\oflc-nz.rs [45568] O44 - LFC:[MD5.997938D423CE830161CB6059434E3C9F] - 13/01/2013 - 14:04:05 ---A- . (.Microsoft - Système de classification OFLC-NZ.) -- C:\Windows\System32\oflc-nz.rs [45568] O44 - LFC:[MD5.EBB73E4E8CA01089CF74ECE506EB7607] - 13/01/2013 - 14:04:05 ---A- . (.Microsoft - Système de notation CSRR.) -- C:\Windows\SysNative\csrr.rs [43520] O44 - LFC:[MD5.EBB73E4E8CA01089CF74ECE506EB7607] - 13/01/2013 - 14:04:05 ---A- . (.Microsoft - Système de notation CSRR.) -- C:\Windows\System32\csrr.rs [43520] O44 - LFC:[MD5.C4B0793E4B97AA36A2A8C81A7AA1979A] - 13/01/2013 - 14:04:04 ---A- . (.Microsoft - Système de classement PEGI/BBFC.) -- C:\Windows\SysNative\pegibbfc.rs [44544] O44 - LFC:[MD5.C4B0793E4B97AA36A2A8C81A7AA1979A] - 13/01/2013 - 14:04:04 ---A- . (.Microsoft - Système de classement PEGI/BBFC.) -- C:\Windows\System32\pegibbfc.rs [44544] O44 - LFC:[MD5.A2E0F1E01A0983E9C94565BBEC862BF7] - 13/01/2013 - 14:04:04 ---A- . (.Microsoft - Système de classification COB-AU.) -- C:\Windows\SysNative\cob-au.rs [40960] O44 - LFC:[MD5.A2E0F1E01A0983E9C94565BBEC862BF7] - 13/01/2013 - 14:04:04 ---A- . (.Microsoft - Système de classification COB-AU.) -- C:\Windows\System32\cob-au.rs [40960] O44 - LFC:[MD5.4489D5D2CB4BA0799F3FB4625DE181CF] - 13/01/2013 - 14:04:03 ---A- . (.Microsoft - Système de classement GRB.) -- C:\Windows\SysNative\grb.rs [21504] O44 - LFC:[MD5.4489D5D2CB4BA0799F3FB4625DE181CF] - 13/01/2013 - 14:04:03 ---A- . (.Microsoft - Système de classement GRB.) -- C:\Windows\System32\grb.rs [21504] O44 - LFC:[MD5.5C48A43FC30FC61ECB1335DC646686BC] - 13/01/2013 - 14:04:03 ---A- . (.Microsoft - Système de classement USK.) -- C:\Windows\SysNative\usk.rs [30720] O44 - LFC:[MD5.5C48A43FC30FC61ECB1335DC646686BC] - 13/01/2013 - 14:04:03 ---A- . (.Microsoft - Système de classement USK.) -- C:\Windows\System32\usk.rs [30720] O44 - LFC:[MD5.65A8302C7551CFE45FAA2BC085C9E7E2] - 13/01/2013 - 14:04:03 ---A- . (.Microsoft - Système de classification DJCTQ.) -- C:\Windows\SysNative\djctq.rs [15360] O44 - LFC:[MD5.65A8302C7551CFE45FAA2BC085C9E7E2] - 13/01/2013 - 14:04:03 ---A- . (.Microsoft - Système de classification DJCTQ.) -- C:\Windows\System32\djctq.rs [15360] O44 - LFC:[MD5.6D540AF9B183FC97DC4CC54369561548] - 13/01/2013 - 14:04:02 ---A- . (.Microsoft - Système de classement PEGI au Portugal.) -- C:\Windows\SysNative\pegi-pt.rs [20480] O44 - LFC:[MD5.6D540AF9B183FC97DC4CC54369561548] - 13/01/2013 - 14:04:02 ---A- . (.Microsoft - Système de classement PEGI au Portugal.) -- C:\Windows\System32\pegi-pt.rs [20480] O44 - LFC:[MD5.661AE5EAC62C4598DD01795CEB915BAE] - 13/01/2013 - 14:04:02 ---A- . (.Microsoft - Système de classement PEGI.) -- C:\Windows\SysNative\pegi.rs [20480] O44 - LFC:[MD5.661AE5EAC62C4598DD01795CEB915BAE] - 13/01/2013 - 14:04:02 ---A- . (.Microsoft - Système de classement PEGI.) -- C:\Windows\System32\pegi.rs [20480] O44 - LFC:[MD5.D0C01412FBF59C1C25630C49F0C1B803] - 13/01/2013 - 14:03:55 ---A- . (.Microsoft - Système de classement CERO.) -- C:\Windows\SysNative\cero.rs [55296] O44 - LFC:[MD5.D0C01412FBF59C1C25630C49F0C1B803] - 13/01/2013 - 14:03:55 ---A- . (.Microsoft - Système de classement CERO.) -- C:\Windows\System32\cero.rs [55296] O44 - LFC:[MD5.51D25C805A01A2C4F930F9720CF51FFE] - 13/01/2013 - 14:03:55 ---A- . (.Microsoft - Système de classement ESRB.) -- C:\Windows\SysNative\esrb.rs [51712] O44 - LFC:[MD5.51D25C805A01A2C4F930F9720CF51FFE] - 13/01/2013 - 14:03:55 ---A- . (.Microsoft - Système de classement ESRB.) -- C:\Windows\System32\esrb.rs [51712] O44 - LFC:[MD5.4773EB5962548068547214A620E9ACC3] - 13/01/2013 - 14:03:55 ---A- . (.Microsoft - Système de classement OFLC.) -- C:\Windows\SysNative\oflc.rs [23552] O44 - LFC:[MD5.4773EB5962548068547214A620E9ACC3] - 13/01/2013 - 14:03:55 ---A- . (.Microsoft - Système de classement OFLC.) -- C:\Windows\System32\oflc.rs [23552] O44 - LFC:[MD5.9BB05674E013C35F4DAED51F5015355D] - 13/01/2013 - 14:03:55 ---A- . (.Microsoft - Système de classement PEGI en Finlande.) -- C:\Windows\SysNative\pegi-fi.rs [20480] O44 - LFC:[MD5.9BB05674E013C35F4DAED51F5015355D] - 13/01/2013 - 14:03:55 ---A- . (.Microsoft - Système de classement PEGI en Finlande.) -- C:\Windows\System32\pegi-fi.rs [20480] O44 - LFC:[MD5.1BCDB508143B517F21BBDAC10F5777BF] - 13/01/2013 - 14:02:04 . (.Microsoft - Système de classification COB-AU.) -- C:\Windows\System32\conhost.exe [40960] O44 - LFC:[MD5.639774C9ACD063F028F6084ABF5593AD] - 13/01/2013 - 14:01:06 . (.Microsoft - Système de classement PEGI/BBFC.) -- C:\Windows\System32\taskhost.exe [44544] O44 - LFC:[MD5.1153AC6E133AA849853DFD407B086B80] - 30/11/2012 - 00:15:43 ---A- . (...) -- C:\Windows\SysNative\locale.nls [420064] O44 - LFC:[MD5.1153AC6E133AA849853DFD407B086B80] - 30/11/2012 - 00:15:43 ---A- . (...) -- C:\Windows\System32\locale.nls [420064] ~ Scan Files in 00mn 34s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll ~ Scan Keys in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\Wdf01000.sys . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en mode noyau.) -- C:\Windows\System32\Drivers\Wdf01000.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\Wdf01000.sys . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en mode noyau.) -- C:\Windows\System32\Drivers\Wdf01000.sys ~ Scan CSB in 00mn 00s ---\\ MountPoints2 Shell Key (O51) (None) ---\\ Trojan Driver Search Data (HKLM) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ Scan Keys in 00mn 00s ---\\ ShareTools MSconfig StartupReg (O53) O53 - SMSR:HKLM\...\startupreg\IP Network [Key] . (...) -- C:\Program Files (x86)\InstallPedia\lnetworker.exe (.not file.) ~ Scan SMSR Keys in 00mn 00s ---\\ Microsoft Control Security Providers (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ Scan Keys in 00mn 00s ---\\ Microsoft Windows Policies System (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 O55 - MWPS:[HKLM\...\Policies\System] - "HideFastUserSwitching"=0 O55 - MWPS:[HKCU\...\Policies\System] - "DisableLockWorkstation"=0 O55 - MWPS:[HKCU\...\Policies\System] - "DisableChangePassword"=0 ~ Scan Keys in 00mn 00s ---\\ Microsoft Windows Policies Explorer (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 ~ Scan Keys in 00mn 00s ---\\ Liste des Drivers Système (O58) O58 - SDL:[MD5.1CFFE9C06E66A57DAE1452E449A58240] - 08/07/2009 - 13:48:50 ---A- . (.Hewlett-Packard - HP Accelerometer.) -- C:\Windows\System32\Drivers\Accelerometer.sys [41272] ~ Scan Drivers in 00mn 00s ---\\ Liste des outils de nettoyage (O63) O63 - Logiciel: ZHPDiag 1.3.5 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 ~ Scan ADS in 00mn 00s ---\\ Liste des services Legacy (O64) O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\adp94xx.sys (adp94xx) .(.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) - LEGACY_ADP94XX O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\adpahci.sys (adpahci) .(.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) - LEGACY_ADPAHCI O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\adpu320.sys (adpu320) .(.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) - LEGACY_ADPU320 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\aliide.sys (aliide) .(.Acer Laboratories Inc. - ALi mini IDE Driver.) - LEGACY_ALIIDE O64 - Services: CurCS - 11/03/2011 - C:\Windows\System32\drivers\amdsata.sys (amdsata) .(.Advanced Micro Devices - AHCI 1.2 Device Driver.) - LEGACY_AMDSATA O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\amdsbs.sys (amdsbs) .(.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) - LEGACY_AMDSBS O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\arc.sys (arc) .(.Adaptec, Inc. - Adaptec RAID Storport Driver.) - LEGACY_ARC O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\arcsas.sys (arcsas) .(.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) - LEGACY_ARCSAS O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK O64 - Services: CurCS - 10/05/2011 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\aswRdr.sys (aswRdr) .(.AVAST Software - avast! TDI RDR Driver.) - LEGACY_ASWRDR O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\cmdide.sys (cmdide) .(.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) - LEGACY_CMDIDE O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\elxstor.sys (elxstor) .(.Emulex - Storport Miniport Driver for LightPulse HBA.) - LEGACY_ELXSTOR O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\HpSAMD.sys (HpSAMD) .(.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) - LEGACY_HPSAMD O64 - Services: CurCS - 11/03/2011 - C:\Windows\System32\drivers\iaStorV.sys (iaStorV) .(.Intel Corporation - Intel Matrix Storage Manager driver - x64.) - LEGACY_IASTORV O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\iirsp.sys (iirsp) .(.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) - LEGACY_IIRSP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lsi_fc.sys (LSI_FC) .(.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) - LEGACY_LSI_FC O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lsi_sas.sys (LSI_SAS) .(.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) - LEGACY_LSI_SAS O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lsi_sas2.sys (LSI_SAS2) .(.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) - LEGACY_LSI_SAS2 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lsi_scsi.sys (LSI_SCSI) .(.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) - LEGACY_LSI_SCSI O64 - Services: CurCS - 14/12/2012 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\megasas.sys (megasas) .(.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) - LEGACY_MEGASAS O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\MegaSR.sys (MegaSR) .(.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) - LEGACY_MEGASR O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\nfrd960.sys (nfrd960) .(.IBM Corporation - IBM ServeRAID Controller Driver.) - LEGACY_NFRD960 O64 - Services: CurCS - 11/03/2011 - C:\Windows\System32\drivers\nvraid.sys (nvraid) .(.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) - LEGACY_NVRAID O64 - Services: CurCS - 11/03/2011 - C:\Windows\System32\drivers\nvstor.sys (nvstor) .(.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) - LEGACY_NVSTOR O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\ql2300.sys (ql2300) .(.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) - LEGACY_QL2300 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\ql40xx.sys (ql40xx) .(.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) - LEGACY_QL40XX O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\SiSRaid2.sys (SiSRaid2) .(.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) - LEGACY_SISRAID2 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\sisraid4.sys (SiSRaid4) .(.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) - LEGACY_SISRAID4 O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\sptd.sys - sptd (sptd) .(...) - LEGACY_SPTD O64 - Services: CurCS - 28/10/2008 - C:\Windows\system32\Drivers\SSPORT.sys (SSPORT) .(.Samsung Electronics - Port Contention Driver.) - LEGACY_SSPORT O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\stexstor.sys (stexstor) .(.Promise Technology - Promise SuperTrak EX Series Driver for Win.) - LEGACY_STEXSTOR O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\viaide.sys (viaide) .(.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) - LEGACY_VIAIDE O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\vsmraid.sys (vsmraid) .(.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) - LEGACY_VSMRAID ~ Scan Services in 00mn 09s ---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Benjamin\AppData\Local\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Benjamin\AppData\Local\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ~ Scan Keys in 00mn 00s ---\\ Start Menu Internet (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Benjamin\AppData\Local\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Users\Benjamin\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Safari\Safari.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Users\Benjamin\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Safari\Safari.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Users\Benjamin\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Safari\Safari.exe (.not file.) ~ Scan Keys in 00mn 00s ---\\ Search Browser Infection (O69) O69 - SBI: SearchScopes [HKCU] {043C5167-00BB-4324-AF7E-62013FAEDACF} - (Web Search...) - http://vshare.toolbarhome.com O69 - SBI: SearchScopes [HKCU] {08412486-EA6E-4862-A541-37499E2D3BC5} - (AOL Recherche) - http://slirsredirect.search.aol.com O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} [DefaultScope] - (Search the web (Babylon)) - http://search.babylon.com O69 - SBI: SearchScopes [HKCU] {73D3DCB3-9C46-4525-8771-771C01DA490C} - (Yahoo!) - http://fr.search.yahoo.com O69 - SBI: SearchScopes [HKCU] {AB45D6FF-EC9A-4E39-A7A6-BA7A39BA769C} - (Kelkoo) - http://fr.kelkoopartners.net O69 - SBI: SearchScopes [HKCU] {b1574830-c7a6-48c7-9add-9174ce3917ea} - (iadah) - http://www.iadah.com ~ Scan Keys in 00mn 00s ---\\ Recherche des services démarrés par Svchost (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ~ Scan Services in 00mn 00s ---\\ Recherche particuliere à la racine de certains dossiers (O84) [MD5.42BADC1D2F03A8B1E4875740D3D49336] [SPRF][29/06/2011] (.Igor Pavlov - 7-Zip Standalone Console.) -- C:\Users\Benjamin\AppData\Local\Temp\7za.exe [587776] [MD5.7A93E7D6377640A2338438D1C51E2D3E] [SPRF][13/01/2013] (...) -- C:\Users\Benjamin\AppData\Local\Temp\cacaonew889b5e.exe [436224] [MD5.D3F17C334236692485D341A10F17E368] [SPRF][06/02/2013] (...) -- C:\Users\Benjamin\AppData\Local\Temp\dump.dat [1867776] [MD5.9495FF73014B8A17BD4798911AD097FA] [SPRF][20/09/2011] (...) -- C:\Users\Benjamin\AppData\Local\Temp\Extract.bat [87] [MD5.8B86D1981637F08EF6E0AF1177005401] [SPRF][27/11/2011] (.EasyBits Media - Game Organizer Utilites.) -- C:\Users\Benjamin\AppData\Local\Temp\ezGameXN.dll [3864960] [MD5.7AFB7C14057050AE57F225587A1CA8A8] [SPRF][27/11/2011] (.EasyBits Software AS - Game Organizer.) -- C:\Users\Benjamin\AppData\Local\Temp\GameXNGO.exe [347008] [MD5.4541335F712FBB52BA6A9FB593F77E76] [SPRF][21/05/2010] (.Hewlett-Packard - HP Help Updater.) -- C:\Users\Benjamin\AppData\Local\Temp\HPHelpUpdater.exe [74808] [MD5.0E2281AEC56203CA6A9E1848F7DBDF5A] [SPRF][19/10/2011] (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Users\Benjamin\AppData\Local\Temp\jre-6u29-windows-i586-iftw-rv.exe [909088] [MD5.EE622B2CD2D3C5CD950D49BD1708A9D4] [SPRF][20/02/2012] (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Users\Benjamin\AppData\Local\Temp\jre-6u31-windows-i586-iftw-rv.exe [909600] [MD5.B08FE80E6E35F4AF3324F98B81302CC4] [SPRF][06/07/2012] (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Users\Benjamin\AppData\Local\Temp\jre-6u33-windows-i586-iftw.exe [910128] [MD5.8E51D3D38A26EEAC819974C9295AF35F] [SPRF][29/08/2012] (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Users\Benjamin\AppData\Local\Temp\jre-6u35-windows-i586-iftw.exe [908272] [MD5.139270DA4E0640BC6D7905F42D80D32E] [SPRF][18/12/2012] (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Users\Benjamin\AppData\Local\Temp\jre-6u38-windows-i586-iftw.exe [912960] [MD5.16A6E01F63E43DE83FF9F33D87101F17] [SPRF][30/11/2012] (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Users\Benjamin\AppData\Local\Temp\jre-7u10-windows-i586-iftw.exe [896488] [MD5.7C90F77D368CABEA7B726A3758D6D761] [SPRF][07/12/2011] (.Babylon Ltd. - Babylon Client Setup.) -- C:\Users\Benjamin\AppData\Local\Temp\MyBabylonTB.exe [919664] [MD5.72CF064E0B2F7EB666FBB25BE2D5DFD6] [SPRF][01/12/2011] (.Macromedia, Inc. - Macromedia Flash Player 8.0 r22.) -- C:\Users\Benjamin\AppData\Local\Temp\push.exe [2561093] [MD5.609A7C5C81A6E626FA3FE7BECDA1FC88] [SPRF][27/11/2011] (.EasyBits Software AS - GoXN.) -- C:\Users\Benjamin\AppData\Local\Temp\Refresh.exe [2756480] [MD5.3DE7C6D01B163FBBEDE001C3FEA49787] [SPRF][04/02/2011] (.Hewlett-Packard Company - Resource.) -- C:\Users\Benjamin\AppData\Local\Temp\Resource.exe [88120] [MD5.952173D6643AE88C542629119793BF3A] [SPRF][07/02/2012] (...) -- C:\Users\Benjamin\AppData\Local\Temp\Setup.exe [773139] [MD5.1BFD2D72861FF7DA31F33212DF2EA40B] [SPRF][25/07/2012] (.Skype Technologies S.A. - Skype.) -- C:\Users\Benjamin\AppData\Local\Temp\SkypeSetup.exe [25653936] [MD5.4E8EDBFB9F2F50C3F38067AC70C7094D] [SPRF][17/02/2012] (.Hewlett-Packard - Pas de description.) -- C:\Users\Benjamin\AppData\Local\Temp\sp54620.exe [48868760] [MD5.53490613D7362803ADAA9B9CD7D293F9] [SPRF][14/12/2012] (.Hewlett-Packard - Pas de description.) -- C:\Users\Benjamin\AppData\Local\Temp\sp58915.exe [41580520] [MD5.4087CA1A7519CBF863344B767244E45A] [SPRF][14/12/2012] (...) -- C:\Users\Benjamin\AppData\Local\Temp\temp.bat [453] [MD5.239CB72E0605A43BF856BCD49712D1FA] [SPRF][27/09/2012] (.Hewlett-Packard Company - HP Support Assistant Uninstaller.) -- C:\Users\Benjamin\AppData\Local\Temp\UninstallHPSA.exe [114080] [MD5.CF590249F2D308DA12B0BFE7E6E16680] [SPRF][06/02/2013] (...) -- C:\Users\Benjamin\Desktop\RogueKillerX64.exe [765440] ~ Scan Files in 00mn 09s ---\\ Firewall Active Exception List (FirewallRules) (O87) O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{197470C0-B75B-4967-B0D6-17595C94C356}" |In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe (.not file.) O87 - FAEL: "{26AD3C94-FADA-4530-A671-1F8F098777DB}" |In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe (.not file.) O87 - FAEL: "{89FDF31F-7C6A-4494-B66F-A52993440933}" | In - None - P17 - TRUE | .(.CyberLink Corp. - PowerDirector.) -- C:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "{7DFBB619-715B-4249-A4D3-15B8D670F0B5}" |In - None - P6 - TRUE | .(...) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPTouchSmartMusic.exe (.not file.) O87 - FAEL: "{51B34A04-D9E0-4282-94A1-BD353FCFDDA6}" |In - None - P6 - TRUE | .(...) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPTouchSmartPhoto.exe (.not file.) O87 - FAEL: "{7AA801AD-1EB1-44B7-8DFD-97FD25F423AF}" |In - None - P6 - TRUE | .(...) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPTouchSmartVideo.exe (.not file.) O87 - FAEL: "{CC0AA0FD-229C-4043-B2F7-7ACBCD05320D}" |In - None - P6 - TRUE | .(...) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\TSMAgent.exe (.not file.) O87 - FAEL: "{5683AC2A-19A9-44E2-A4A4-25A1F02D4F8D}" |In - None - P6 - TRUE | .(...) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\Kernel\CLML\CLMLSvc.exe (.not file.) O87 - FAEL: "{96DE198E-21A9-44F5-A369-59877461A3B9}" | In - None - P6 - TRUE | .(.CyberLink Corp. - HP DVDSmart Main Program.) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPDVDSmart.exe O87 - FAEL: "{04CBA714-8D67-4D71-8086-79E205C13D6C}" | In - None - P6 - TRUE | .(.CyberLink Corp. - HP MediaSmart Music Main Program.) -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartMusic.exe O87 - FAEL: "{A82789ED-4B0E-4C64-A898-E358B8FC75F2}" | In - None - P6 - TRUE | .(.CyberLink Corp. - HP MediaSmart Photo Main Program.) -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartPhoto.exe O87 - FAEL: "{8ECF3E90-BD71-4B2C-A3FF-CF9F8705C57C}" | In - None - P6 - TRUE | .(.CyberLink Corp. - HP MediaSmart Video Main Program.) -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartVideo.exe O87 - FAEL: "{B1662C23-FC54-423B-96E6-373D74FAA1A6}" | In - None - P6 - TRUE | .(.CyberLink Corp. - CyberLink PowerCinema Resident Program.) -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe O87 - FAEL: "{D16AF6A2-237D-4D90-B48E-ED8AA7D6D3A1}" | In - None - P6 - TRUE | .(.CyberLink - CyberLink MediaLibray Service.) -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe O87 - FAEL: "{4E3A4BF8-50E9-4DC8-8DD2-67998195BA2F}" |In - None - P6 - TRUE | .(...) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\QP.exe (.not file.) O87 - FAEL: "{5DFDD0DC-564D-406F-8954-F8C3A10148EC}" |In - None - P6 - TRUE | .(...) -- c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\QPService.exe (.not file.) O87 - FAEL: "{2D9C50C7-BCAA-40B4-9FB0-A008AC59FA6F}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{BAAF3F91-3CC1-4951-B6F9-AB1FAB35D0BA}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{C5922176-9051-4401-9C5F-BE983629A773}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{A2279961-90C9-44B9-A6BB-A57DEC3BE006}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{FBD20074-78DB-499F-A884-4AA6E1DFFCE6}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Vuze\Azureus.exe (.not file.) O87 - FAEL: "{C284DD6C-FD57-40CA-9760-67F3278AE371}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Vuze\Azureus.exe (.not file.) O87 - FAEL: "TCP Query User{6512F0B3-6B67-493C-968C-69B844796844}C:\program files (x86)\vuze\azureus.exe" |In - Public - P6 - TRUE | .(...) -- C:\program files (x86)\vuze\azureus.exe (.not file.) O87 - FAEL: "UDP Query User{D97002C8-BECB-47A3-ADBE-E10125287B34}C:\program files (x86)\vuze\azureus.exe" |In - Public - P17 - TRUE | .(...) -- C:\program files (x86)\vuze\azureus.exe (.not file.) O87 - FAEL: "TCP Query User{8771441C-DE4B-47DA-B6DC-A331D3D9B8E6}C:\program files (x86)\java\jre6\bin\javaw.exe" | In - Private - P6 - TRUE | .(.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\program files (x86)\java\jre6\bin\javaw.exe O87 - FAEL: "UDP Query User{D7A50CA3-A045-44A9-9285-30F1BF3ACEA4}C:\program files (x86)\java\jre6\bin\javaw.exe" | In - Private - P17 - TRUE | .(.Sun Microsystems, Inc..) -- C:\program files (x86)\java\jre6\bin\javaw.exe O87 - FAEL: "{BBE3E12A-F1D9-4580-820E-55D596B7FC6C}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Remote Mouse Server\RemoteMouse.exe O87 - FAEL: "{FC38DEA2-7EDC-4A51-814E-3AAF415EFB7A}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Remote Mouse Server\RemoteMouse.exe O87 - FAEL: "TCP Query User{D37B3AB9-098F-4357-84AE-1B9CB4575A50}C:\program files (x86)\remote mouse server\remotemouse.exe" | In - Public - P6 - TRUE | .(...) -- C:\program files (x86)\remote mouse server\remotemouse.exe O87 - FAEL: "UDP Query User{4D94DF22-9D0F-4D87-8CE2-7C8A75A3325C}C:\program files (x86)\remote mouse server\remotemouse.exe" | In - Public - P17 - TRUE | .(...) -- C:\program files (x86)\remote mouse server\remotemouse.exe O87 - FAEL: "{513CE4B5-0E72-4D04-A105-C41D5FE24D4E}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe O87 - FAEL: "TCP Query User{919E35C4-041D-4766-8544-FE733E664831}C:\users\benjamin\appdata\local\google\chrome\application\chrome.exe" | In - Private - P6 - TRUE | .(.Google Inc..) -- C:\users\benjamin\appdata\local\google\chrome\application\chrome.exe O87 - FAEL: "UDP Query User{96ABD44A-8FBF-4409-A324-F101BF74F434}C:\users\benjamin\appdata\local\google\chrome\application\chrome.exe" | In - Private - P17 - TRUE | .(.Google Inc..) -- C:\users\benjamin\appdata\local\google\chrome\application\chrome.exe O87 - FAEL: "TCP Query User{7579A54B-6829-47FC-B831-2422A873D0C0}C:\users\benjamin\appdata\roaming\spotify\spotify.exe" |In - Private - P6 - TRUE | .(...) -- C:\users\benjamin\appdata\roaming\spotify\spotify.exe (.not file.) O87 - FAEL: "UDP Query User{248B28C3-484A-4E8F-A215-5F9381D8EA79}C:\users\benjamin\appdata\roaming\spotify\spotify.exe" |In - Private - P17 - TRUE | .(...) -- C:\users\benjamin\appdata\roaming\spotify\spotify.exe (.not file.) O87 - FAEL: "{83E4E7EE-D565-454E-B00E-C2459F912B0E}" | In - None - P17 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe O87 - FAEL: "{4F3ACD67-7F9F-4001-8EF8-3BB3B9BF44B8}" | In - Private - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{CA3CE1FA-EA8C-4FFA-9A0A-0154F35B4923}" | In - Private - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{CF8F2462-AEF3-4AEE-BF08-96EAD0FA6190}" | In - Private - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe O87 - FAEL: "{2AB8538F-D92A-479F-ACAB-78243C9D748A}" | In - Private - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe O87 - FAEL: "{C926642D-C762-4B45-88A6-393BB88CFD3B}" | In - None - P17 - TRUE | .(.Skype Limited - Facebook Video Calling.) -- C:\Users\Benjamin\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe O87 - FAEL: "TCP Query User{0A71A597-B7D7-4770-9983-999CE23E40FE}C:\users\benjamin\appdata\roaming\cacaoweb\cacaoweb.exe" | In - Private - P6 - TRUE | .(...) -- C:\users\benjamin\appdata\roaming\cacaoweb\cacaoweb.exe O87 - FAEL: "UDP Query User{838EBDB3-DF4B-4015-BF4A-90B3C4FAB145}C:\users\benjamin\appdata\roaming\cacaoweb\cacaoweb.exe" | In - Private - P17 - TRUE | .(...) -- C:\users\benjamin\appdata\roaming\cacaoweb\cacaoweb.exe O87 - FAEL: "{6DAE2F98-C401-4D5A-A1D4-E024A4B8B1F7}" | In - None - P17 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files (x86)\iTunes\iTunes.exe ~ Scan Firewall in 00mn 02s ---\\ Scan Additionnel (O88) Database Version : v2.10515 - (04/02/2013) Clés trouvées (Keys found) : 131 Valeurs trouvées (Values found) : 1 Dossiers trouvés (Folders found) : 16 Fichiers trouvés (Files found) : 5 [HKLM\Software\Classes\Interface\{3f607e46-0d3c-4442-b1de-de7fa4768f5c}] =>Adware.RecordNRip [HKLM\Software\Wow6432Node\Classes\Interface\{3f607e46-0d3c-4442-b1de-de7fa4768f5c}] =>Adware.RecordNRip [HKLM\Software\Classes\TypeLib\{93e3d79c-0786-48ff-9329-93bc9f6dc2b3}] =>Adware.RecordNRip [HKLM\Software\Classes\Interface\{fe0273d1-99df-4ac0-87d5-1371c6271785}] =>Adware.RecordNRip [HKLM\Software\Wow6432Node\Classes\Interface\{fe0273d1-99df-4ac0-87d5-1371c6271785}] =>Adware.RecordNRip [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{043C5167-00BB-4324-AF7E-62013FAEDACF}] =>Parasite.Pugi [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{043C5167-00BB-4324-AF7E-62013FAEDACF}] =>Parasite.Pugi [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{043C5167-00BB-4324-AF7E-62013FAEDACF}] =>Parasite.Pugi [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{043C5167-00BB-4324-AF7E-62013FAEDACF}] =>Parasite.Pugi [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{043C5167-00BB-4324-AF7E-62013FAEDACF}] =>Parasite.Pugi [HKLM\Software\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}] =>Toolbar.Babylon [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9}] =>Toolbar.Babylon [HKLM\Software\Classes\Interface\{20ED5AF7-D9C4-409E-9EB3-D2A44A77FB6D}] =>Adware.BHO [HKLM\Software\Wow6432Node\Classes\Interface\{20ED5AF7-D9C4-409E-9EB3-D2A44A77FB6D}] =>Adware.BHO [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}] =>Toolbar.Agent [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B}] =>Toolbar.Agent [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4A99-B4B6-146BF802613B}] =>Toolbar.Agent [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4a99-B4B6-146BF802613B}] =>Toolbar.Babylon [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4a99-B4B6-146BF802613B}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B}] =>Toolbar.Babylon [HKLM\Software\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1}] =>Toolbar.Babylon [HKLM\Software\Classes\TypeLib\{35C1605E-438B-4D64-AAB1-8885F097A9B1}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1}] =>Toolbar.Babylon [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3B7599DF-3D5D-4EF5-BF51-9C2EDA788E83}] =>Toolbar.Agent [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3B7599DF-3D5D-4EF5-BF51-9C2EDA788E83}] =>Toolbar.Agent [HKLM\Software\Classes\TypeLib\{3E315C81-442B-431C-AEC8-ED189699EC24}] =>PUP.OfferBox [HKLM\Software\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}] =>Toolbar.Babylon [HKLM\Software\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}] =>Toolbar.Babylon [HKLM\Software\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}] =>Toolbar.Babylon [HKLM\Software\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}] =>Toolbar.Babylon [HKLM\Software\Classes\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70}] =>Toolbar.Babylon [HKLM\Software\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8375D9C8-634F-4ECB-8CF5-C7416BA5D542}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}] =>Toolbar.Agent [HKLM\Software\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}] =>Toolbar.Babylon [HKLM\Software\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}] =>Toolbar.Babylon [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}] =>Toolbar.Agent [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4ccf-834A-2DDA4E29E39E}] =>Toolbar.Babylon [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49dd-99D7-DC866BE87DBC}] =>Toolbar.Babylon [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49dd-99D7-DC866BE87DBC}] =>Toolbar.Babylon [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] =>Toolbar.Agent [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] =>Toolbar.Agent [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] =>Toolbar.Agent [HKLM\Software\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}] =>Toolbar.Babylon [HKLM\Software\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}] =>Toolbar.Babylon [HKLM\Software\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}] =>Toolbar.Babylon [HKLM\Software\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}] =>Toolbar.Babylon [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ba14329e-9550-4989-b3f2-9732e92d17cc}] =>Toolbar.Conduit [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{ba14329e-9550-4989-b3f2-9732e92d17cc}] =>Toolbar.Conduit [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ba14329e-9550-4989-b3f2-9732e92d17cc}] =>Toolbar.Conduit [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA14329E-9550-4989-B3F2-9732E92D17CC}] =>Toolbar.Conduit [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA14329E-9550-4989-B3F2-9732E92D17CC}] =>Toolbar.Conduit [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA14329E-9550-4989-B3F2-9732E92D17CC}] =>Toolbar.Conduit [HKLM\Software\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}] =>Adware.CDNHelper [HKLM\Software\Wow6432Node\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}] =>Adware.CDNHelper [HKLM\Software\Classes\AppID\{BDB69379-802F-4eaf-B541-F8DE92DD98DB}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\AppID\{BDB69379-802F-4eaf-B541-F8DE92DD98DB}] =>Toolbar.Babylon [HKLM\Software\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}] =>Toolbar.Babylon [HKLM\Software\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}] =>Toolbar.Babylon [HKLM\Software\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}] =>Toolbar.Babylon [HKLM\Software\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}] =>Toolbar.Babylon [HKLM\Software\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}] =>Toolbar.Babylon [HKLM\Software\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}] =>Toolbar.Babylon [HKLM\Software\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}] =>Toolbar.Babylon [HKLM\Software\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}] =>Toolbar.Babylon [HKLM\Software\Classes\AppID\escort.dll] =>Toolbar.Babylon [HKLM\Software\Classes\AppID\escortapp.dll] =>Toolbar.Babylon [HKLM\Software\Classes\AppID\escorteng.dll] =>Toolbar.Babylon [HKLM\Software\Classes\AppID\esrv.EXE] =>Toolbar.Babylon [HKLM\Software\Classes\b] =>Toolbar.Babylon [HKLM\Software\Classes\Babylon.dskBnd] =>Toolbar.Babylon [HKLM\Software\Classes\Babylon.dskBnd.1] =>Toolbar.Babylon [HKLM\Software\Classes\bbylnApp.appCore] =>Toolbar.Babylon [HKLM\Software\Classes\bbylnApp.appCore.1] =>Toolbar.Babylon [HKLM\Software\Classes\escort.escortIEPane] =>PUP.Funmoods [HKLM\Software\Classes\escort.escortIEPane.1] =>PUP.Funmoods [HKLM\Software\Classes\escort.escrtBtn.1] =>Toolbar.Babylon [HKLM\Software\Classes\esrv.BabylonESrvc] =>Toolbar.Babylon [HKLM\Software\Classes\esrv.BabylonESrvc.1] =>Toolbar.Babylon [HKCU\Software\BabylonToolbar] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\BabylonToolbar] =>Toolbar.Babylon [HKCU\Software\cacaoweb] =>PUP.CacaoWeb [HKLM\Software\Wow6432Node\InstallPedia] =>Adware.InstallPedia [HKCU\Software\AppDataLow\Toolbar] =>Toolbar.Conduit [HKLM\Software\Wow6432Node\Microsoft\Tracing\MyBabylontb_RASAPI32] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Microsoft\Tracing\MyBabylontb_RASMANCS] =>Toolbar.Babylon [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\BabylonToolbar] =>Toolbar.Babylon [HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IadahToolbar] =>Toolbar.Agent [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Vuze_Remote Toolbar] =>Toolbar.Agent [HKLM\Software\Classes\PROTOCOLS\Handler\vsharechrome] =>PUP.VShareRedir [HKLM\Software\Classes\Prod.cap] =>Adware.Bandoo [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\vShare] =>PUP.VShareRedir [HKLM\Software\Classes\Toolbar.CT2504091] =>Toolbar.Conduit [HKLM\Software\Classes\vShare.IMedixProtocol] =>PUP.VShareRedir [HKLM\Software\Classes\vShare.IMedixProtocol.1] =>PUP.VShareRedir [HKLM\Software\Classes\vShare.PugiObj] =>PUP.VShareRedir [HKLM\Software\Classes\vShare.PugiObj.1] =>PUP.VShareRedir [HKLM\Software\Classes\vShare.ScriptHelpers] =>PUP.VShareRedir [HKLM\Software\Classes\vShare.ScriptHelpers.1] =>PUP.VShareRedir [HKLM\Software\Wow6432Node\Classes\escort.escortIEPane] =>PUP.Funmoods [HKLM\Software\Wow6432Node\Classes\escort.escortIEPane.1] =>PUP.Funmoods [HKLM\Software\Wow6432Node\Classes\escort.escrtBtn.1] =>PUP.Funmoods [HKLM\Software\Wow6432Node\Classes\Toolbar.CT2504091] =>Toolbar.Conduit [HKLM\Software\Wow6432Node\Classes\vShare.IMedixProtocol] =>PUP.VShareRedir [HKLM\Software\Wow6432Node\Classes\vShare.IMedixProtocol.1] =>PUP.VShareRedir [HKLM\Software\Wow6432Node\Classes\vShare.PugiObj] =>PUP.VShareRedir [HKLM\Software\Wow6432Node\Classes\vShare.PugiObj.1] =>PUP.VShareRedir [HKLM\Software\Wow6432Node\Classes\vShare.ScriptHelpers] =>PUP.VShareRedir [HKLM\Software\Wow6432Node\Classes\vShare.ScriptHelpers.1] =>PUP.VShareRedir [HKLM\Software\Classes\AppID\\escort.DLL] =>PUP.Funmoods [HKLM\Software\Classes\AppID\\escortApp.DLL] =>PUP.Funmoods [HKLM\Software\Classes\AppID\\escortEng.DLL] =>PUP.Funmoods [HKLM\Software\Classes\AppID\\escorTlbr.DLL] =>PUP.Funmoods [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar]:{98889811-442D-49DD-99D7-DC866BE87DBC} =>Toolbar.Babylon C:\Program Files (x86)\BabylonToolbar =>Toolbar.Babylon C:\Program Files (x86)\Conduit =>Toolbar.Conduit C:\Program Files (x86)\vShare =>PUP.VShareRedir C:\Program Files (x86)\Vuze_Remote =>Toolbar.Conduit C:\ProgramData\Babylon =>Toolbar.Babylon C:\Users\Benjamin\AppData\Roaming\Babylon =>Toolbar.Babylon C:\Users\Benjamin\AppData\Roaming\cacaoweb =>PUP.CacaoWeb C:\Users\Benjamin\AppData\Local\Babylon =>Toolbar.Babylon C:\Users\Benjamin\AppData\Local\Vuze_Remote =>Toolbar.Conduit C:\Users\Benjamin\AppData\LocalLow\BabylonToolbar =>Toolbar.Babylon C:\Users\Benjamin\AppData\LocalLow\Conduit =>Toolbar.Conduit C:\Users\Benjamin\AppData\LocalLow\vShare =>PUP.VShareRedir C:\Users\Benjamin\AppData\LocalLow\Vuze_Remote =>Toolbar.Conduit C:\Users\Benjamin\AppData\Local\Temp\BabylonToolbar =>Toolbar.Babylon C:\Users\Benjamin\AppData\Roaming\Mozilla\Firefox\Profiles\8xp8zwxd.default\Extensions\cacaoweb@cacaoweb.org =>PUP.CacaoWeb C:\Users\Benjamin\AppData\Roaming\Mozilla\Firefox\Profiles\8xp8zwxd.default\Extensions\ffxtlbr@babylon.com =>Toolbar.Babylon C:\Users\Benjamin\Downloads\cacaoweb.exe =>PUP.CacaoWeb C:\Users\Benjamin\AppData\Local\Temp\MyBabylonTB.exe =>PUP.SweetIM C:\Users\Benjamin\AppData\Local\Temp\cacaonew889b5e.exe =>Adware.PriceGong C:\Users\Benjamin\AppData\Local\Temp\MyBabylonTB.exe => Infection PUP (Toolbar.Babylon) ~ Scan Additionnel in 01mn 11s ---\\ Product Upgrade Codes (O90) O90 - PUC: "000021090200C0400000000000F01FEC" . (.Module de compatibilité pour Microsoft Office System 2007.) -- C:\Windows\Installer\{90120000-0020-040C-0000-0000000FF1CE}\O12ConvIcon.exe O90 - PUC: "00002159FA00C0400000000000F01FEC" . (.Microsoft Office PowerPoint Viewer 2007 (French).) -- C:\Windows\Installer\{95120000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe,0 O90 - PUC: "0694AF70830BBE9498B1F95939A05A44" . (.HP Customer Experience Enhancements.) -- C:\Windows\Installer\{07FA4960-B038-49EB-891B-9F95930AA544}\ARPPRODUCTICON.exe O90 - PUC: "076CFAAAB965F2A4284B2449E5D03EFE" . (.Windows Live Writer.) -- C:\Windows\Installer\{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}\ApplicationIcon.ico O90 - PUC: "098990BCF5D15D11E99A0005AB3E711E" . (.PowerDirector.) -- C:\Windows\Installer\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\ARPPRODUCTICON.exe O90 - PUC: "0AA74CC84775CF16A695E7C139D67B35" . (.ccc-core-static.) -- C:\Windows\Installer\{8CC47AA0-5774-61FC-6A59-7E1C936DB753}\ARPPRODUCTICON.exe O90 - PUC: "0ACADCF8090EA9A4CA179AE63717CDE6" . (.HP 3D DriveGuard.) -- C:\Windows\Installer\{8FCDACA0-E090-4A9A-AC71-A96E7371DC6E}\controlPanelIcon.exe O90 - PUC: "0C7EC0FA4E3A37D489B82B1978CEE6A9" . (.QuickTime.) -- C:\Windows\Installer\{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}\Installer.ico O90 - PUC: "114202EE62C28E947948B11CBD7FED69" . (.HP Support Assistant.) -- C:\Windows\Installer\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}\ARPPRODUCTICON.exe O90 - PUC: "11F12B5E3396B0E42AC597363E0CD711" . (.Windows Live Messenger.) -- C:\Windows\Installer\{E5B21F11-6933-4E0B-A25C-7963E3C07D11}\MsblIco.Exe O90 - PUC: "12506E88E4E158749B1F71894ADBC003" . (.HP MediaSmart SmartMenu.) -- C:\Windows\Installer\{88E60521-1E4E-4785-B9F1-1798A4BD0C30}\SmartMenuIcon O90 - PUC: "13E9CB1493D0E264E8C467B7123A1B3C" . (.MobileMe Control Panel.) -- C:\Windows\Installer\{41BC9E31-0D39-462E-8E4C-767B21A3B1C3}\Installer.ico O90 - PUC: "168061B30527E1545BEEB829FB037A01" . (.Microsoft Works.) -- C:\Windows\Installer\{3B160861-7250-451E-B5EE-8B92BF30A710}\MSWorks.exe O90 - PUC: "1B92FE2806B924141A55509912D60D35" . (.LightScribe System Software.) -- C:\Windows\Installer\{82EF29B1-9B60-4142-A155-0599216DD053}\ARPPRODUCTICON.exe O90 - PUC: "2043BEDADBFC2E00E06E6F3A1FFACA0F" . (.ccc-utility64.) -- C:\Windows\Installer\{ADEB3402-CFBD-00E2-0EE6-F6A3F1AFACF0}\ARPPRODUCTICON.exe O90 - PUC: "26B07C551FE5725DC7BA5ED0B8B39409" . (.Catalyst Control Center Graphics Full New.) -- C:\Windows\Installer\{55C70B62-5EF1-D527-7CAB-E50D8B3B4990}\ARPPRODUCTICON.exe O90 - PUC: "296234E4637A77F4FA779F70C88FD813" . (.HP Wireless Assistant.) -- C:\Windows\Installer\{4E432692-A736-4F77-AF77-F9078CF88D31}\controlPanelIcon.exe O90 - PUC: "2B0163E6D0340BE4183EB2758E9BEDD8" . (.Bonjour.) -- C:\Windows\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico O90 - PUC: "35D2C4AFF502542479713F67114528D4" . (.Safari.) -- C:\Windows\Installer\{FA4C2D53-205F-4245-9717-F3761154824D}\Installer.ico O90 - PUC: "38E1FB04BE028D11795C00905C206085" . (.Power2Go.) -- C:\Windows\Installer\{40BF1E83-20EB-11D8-97C5-0009C5020658}\ARPPRODUCTICON.exe O90 - PUC: "427148EB0F876D446B4C3C5D738092B3" . (.Assistant du gestionnaire de contenu pour PlayStation(R).) -- C:\Windows\Installer\{BE841724-78F0-44D6-B6C4-C3D53708293B}\ARPPRODUCTICON.exe O90 - PUC: "42C6FBF1DF1C10144AB2C065F4E9E897" . (.PowerStarter.) -- C:\Windows\Installer\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\ARPPRODUCTICON.exe O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico O90 - PUC: "487EA05EEBAFAD641A8FB7B665CD2BE2" . (.Microsoft Office Suite Activation Assistant.) -- C:\Windows\Installer\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}\ARPPRODUCTICON.exe O90 - PUC: "4F42BC0DF480ED046B9B0A63626E280F" . (.iCloud.) -- C:\Windows\Installer\{D0CB24F4-084F-40DE-B6B9-A03626E682F0}\ARP.ico O90 - PUC: "5AAC5F5EDE4814ED040D9862EFE7F5D4" . (.Catalyst Control Center Graphics Light.) -- C:\Windows\Installer\{E5F5CAA5-84ED-DE41-40D0-8926FE7E5F4D}\ARPPRODUCTICON.exe O90 - PUC: "5E4A9F3FF9DC7564FC99C53E7F279990" . (.Catalyst Control Center Core Implementation.) -- C:\Windows\Installer\{F3F9A4E5-CD9F-4657-CF99-5CE3F7729909}\ARPPRODUCTICON.exe O90 - PUC: "5EEE7F4C99D3255847382B4F2138B8A2" . (.Catalyst Control Center Graphics Previews Common.) -- C:\Windows\Installer\{C4F7EEE5-3D99-8552-7483-B2F412838B2A}\ARPPRODUCTICON.exe O90 - PUC: "6523D9770D48F639819F1A45CD584B4B" . (.Catalyst Control Center Localization All.) -- C:\Windows\Installer\{779D3256-84D0-936F-18F9-A154DC85B4B4}\ARPPRODUCTICON.exe O90 - PUC: "68AB67CA7DA76301B744AA0100000010" . (.Adobe Reader X (10.1.5) - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\SC_Reader.ico O90 - PUC: "701043F6AA9F6C745BC43C1AF91155F3" . (.Hewlett-Packard ACLM.NET v1.2.1.1.) -- C:\Windows\Installer\{6F340107-F9AA-47C6-B54C-C3A19F11553F}\ARPPRODUCTICON.exe O90 - PUC: "7692FC6BE18C0C0489510C7547EF1F02" . (.Skype Click to Call.) -- C:\Windows\Installer\{B6CF2967-C81E-40C0-9815-C05774FEF120}\IconUninstallIco O90 - PUC: "86AE4BD5905A804D85C59C0D54AFFD27" . (.Catalyst Control Center Graphics Previews Vista.) -- C:\Windows\Installer\{5DB4EA68-A509-D408-585C-C9D045FADF72}\ARPPRODUCTICON.exe O90 - PUC: "8994BF104C33134458DE70E9E3FE7ED5" . (.HP.) -- c:\Windows\Installer\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\ARPPRODUCTICON.exe O90 - PUC: "90E6267666350844F8E139AFFD05AC51" . (.MediaSmart Live TV.) -- c:\Windows\Installer\{67626E09-5366-4480-8F1E-93FADF50CA15}\ARPPRODUCTICON.exe O90 - PUC: "970DACCDC29FAD442B8526F46C15A7A5" . (.MediaSmart DVD.) -- c:\Windows\Installer\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\ARPPRODUCTICON.exe O90 - PUC: "9B52EE2B00B5FCA4490F2934C3823CE9" . (.HP.) -- c:\Windows\Installer\{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}\ARPPRODUCTICON.exe O90 - PUC: "9F2FDFE0D6387BE43AD230B83D1FBFA2" . (.Security Update for CAPICOM (KB931906).) -- C:\Windows\Installer\{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}\folder.ico O90 - PUC: "ADBE3203B1FB13843B745E1058552FE6" . (.HP.) -- c:\Windows\Installer\{3023EBDA-BF1B-4831-B347-E5018555F26E}\ARPPRODUCTICON.exe O90 - PUC: "AE48807DEC2E935419BD7466CCE1F5F5" . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{D70884EA-E2CE-4539-91DB-4766CC1E5F5F}\Installer.ico O90 - PUC: "AEE0D6626A5E80A40AEE35194DAE447A" . (.Catalyst Control Center - Branding.) -- C:\Windows\Installer\{266D0EEA-E5A6-4A08-A0EE-5391D4EA44A7}\ARPPRODUCTICON.exe O90 - PUC: "BA0A2B44E214C8F40B851D8EEACCFD5F" . (.PowerRecover.) -- C:\Windows\Installer\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}\ARPPRODUCTICON.exe O90 - PUC: "BD528ECCA74340041A68F5A4F6DD5874" . (.Apple Application Support.) -- C:\Windows\Installer\{CCE825DB-347A-4004-A186-5F4A6FDD8547}\WinInstall.ico O90 - PUC: "C04274C6E6105B301DE3EAACDE902F3E" . (.ATI Catalyst Install Manager.) -- C:\Windows\Installer\{6C47240C-016E-03B5-D13E-AECAED09F2E3}\ARPPRODUCTICON.exe O90 - PUC: "C971C95CD8669A946BAE1012CCCF2134" . (.LabelPrint.) -- C:\Windows\Installer\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\ARPPRODUCTICON.exe O90 - PUC: "CF4F71AEFBDF8FC45A92D28913230D35" . (.Skype™ 6.0.) -- C:\Windows\Installer\{EA17F4FC-FDBF-4CF8-A529-2D983132D053}\SkypeIcon.exe O90 - PUC: "D067355E7F7DFB84DBB87C2EB30AC45B" . (.MediaSmart Internet TV.) -- c:\Windows\Installer\{E553760D-D7F7-48BF-BD8B-C7E23BA04CB5}\ARPPRODUCTICON.exe O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- c:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon O90 - PUC: "DA67D5E0BF3A5D84480098301B30713D" . (.iTunes.) -- C:\Windows\Installer\{0E5D76AD-A3FB-48D5-8400-8903B10317D3}\Installer.ico O90 - PUC: "F2C19DCD68A3823B950AE5DE16099D38" . (.Catalyst Control Center Graphics Full Existing.) -- C:\Windows\Installer\{DCD91C2F-3A86-B328-59A0-5EED6190D983}\ARPPRODUCTICON.exe ~ Scan Files in 00mn 00s ---\\ MyComputer Name Space (O92) O92 - MNS: Flux de photos - {F0D63F85-37EC-4097-B30D-61B4A8917118} ~ Scan MNS in 00mn 00s ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 18/12/2012 65192 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SS - | Demand 13/01/2013 251400 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SR - | Auto 02/03/2009 89600 | (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe SR - | Auto 02/07/2009 203264 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe SR - | Auto 11/08/2012 55184 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe SR - | Auto 10/05/2011 42184 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe SR - | Demand 05/05/2009 228408 | (Com4QLBEx) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe SR - | Auto 14/07/2009 27136 | C:\Windows\System32\ezsvc7.dll (ezSharedSvc) . (.EasyBits Sofware AS.) - C:\Windows\System32\svchost.exe SS - | Demand 22/05/2009 250616 | (GameConsoleService) . (.WildTangent, Inc..) - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe SR - | Auto 27/09/2012 86528 | (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe SR - | Demand 10/08/2012 1001376 | (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe SR - | Auto 08/07/2009 30520 | (hpsrv) . (.Hewlett-Packard.) - C:\Windows\System32\Hpservice.exe SR - | Demand 12/12/2012 641504 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe SR - | Auto 17/06/2009 73728 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe SR - | Auto 14/12/2012 398184 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe SR - | Auto 14/12/2012 682344 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe SR - | Auto 247152 | (RichVideo) . (...) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe SS - | Auto 09/11/2012 160944 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe SR - | Auto 22/07/2009 240128 | (STacSV) . (.IDT, Inc..) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe SR - | Auto 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Scan Services in 00mn 02s End of the scan (1958 lines in 03mn 47s)(0)