Rapport de ZHPDiag v2013.6.1.2 par Nicolas Coolman, Update du 01/06/2013 Run by Fabienne at 02/06/2013 09:40:02 WebSite: http://nicolascoolman.webs.com State : Version à jour. WhiteList : Disable High Elevated Privileges : OK UAC : Activate by user ---\\ Web Browser MSIE: Internet Explorer v GCIE: Google Chrome v27.0.1453.94 (Defaut) ---\\ Windows Product Information ~ Langage: Français Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK ~ Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : 3Q6C9 Windows License : OK ~ Windows Remaining Initializations Number : 3 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ System Protection avast! Internet Security v8.0.1489.0 Windows Defender W7 ---\\ System Optimizer CCleaner v3.09 =>Piriform Ltd ---\\ Peer To Peer (P2P) µTorrent v2.2.1 =>P2P.µTorrent ---\\ Software Update Adobe Flash Player 11 Plugin Adobe Reader XI ---\\ System Information ~ Processor: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 4095 MB (70% free) System Restore: Activé (Enable) System drive C: has 248 GB (42%) free of 584 GB ---\\ Logged in mode ~ Computer Name: FABIENNE-PC ~ User Name: Fabienne ~ All Users Names: HomeGroupUser$, Fabienne, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Environnement Variables ~ System Unit : C:\ ~ %AppData% : C:\Users\Fabienne\AppData\Roaming\ ~ %Desktop% : C:\Users\Fabienne\Desktop\ ~ %Favorites% : C:\Users\Fabienne\Favorites\ ~ %LocalAppData% : C:\Users\Fabienne\AppData\Local\ ~ %StartMenu% : C:\Users\Fabienne\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ DOS/Devices C:\ Hard drive, Flash drive, Thumb drive (Free 248 Go of 584 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 12 Go) E:\ CD-ROM drive (Not Inserted) F:\ CD-ROM drive (Free 0 Go of 0 Go) G:\ Floppy drive, Flash card reader, USB Key (Not Inserted) H:\ Floppy drive, Flash card reader, USB Key (Not Inserted) I:\ Floppy drive, Flash card reader, USB Key (Not Inserted) J:\ Floppy drive, Flash card reader, USB Key (Not Inserted) K:\ CD-ROM drive (Not Inserted) L:\ CD-ROM drive (Not Inserted) M:\ CD-ROM drive (Not Inserted) ---\\ Security Center & Tools Informations [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 37 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024] [MD5.27A9000C534AA9BADC9EE74940F50C6D] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.05/04/2013 - 07:52:14.) -- C:\Windows\System32\wininet.dll [2242048] [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/11/2010 - 14:25:30.) -- C:\Windows\System32\Winlogon.exe [390656] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 14:27:26.) -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 10:19:21.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 10:26:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 11:43:43.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224] [MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 10:23:20.) -- C:\Windows\system32\Drivers\netBT.sys [261632] [MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 15:45:08.) -- C:\Windows\system32\Drivers\ntfs.sys [1656680] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 11:52:35.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 10:21:56.) -- C:\Windows\system32\Drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 14:34:02.) -- C:\Windows\system32\Drivers\volsnap.sys [295808] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 1/194 ~ Mes musiques (My Musics) : 1/77 ~ Mes Videos (My Videos) : 2/175 ~ Mes Favoris (My Favorites) : 1/21 ~ Mes Documents (My Documents) : 2/434 ~ Mon Bureau (My Desktop) : 3/22410 ~ Menu demarrer (Programs) : 1/41 ~ Hidden Files: Scanned in 00mn 16s ---\\ Processus lancés [MD5.ECB53DA6BEEA74ADE97710E1E4E61A77] - (...) -- C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe [562192] [PID.2504] [MD5.6FDE63991B9154968C89FAEAC72C56FB] - (.Orange - Assistance Livebox.) -- C:\Program Files (x86)\Orange\Assistance Livebox\AssistanceLivebox.exe [149560] [PID.2532] [MD5.095184B28B8414A6D2D09C1CE7C7B86F] - (.Orange - Executable Orange Inside.) -- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe [1530520] [PID.2540] [MD5.6528D7D23AB7EE8374791E9666976429] - (.Orange - MailNotifier.) -- C:\Program Files (x86)\Orange\MailNotifier\MailNotifier.exe [884248] [PID.3140] [MD5.7DFCCC67990B6DE7F30F553A4E4612A4] - (...) -- C:\Program Files (x86)\RocketDock\RocketDock.exe [495616] [PID.3692] [MD5.D9EDC964E0478B08BCF3A04F67526D36] - (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe [19662744] [PID.3700] [MD5.554A50B5310E702029D3A675459108FF] - (.Hewlett-Packard - hpsysdrv.) -- C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe [62768] [PID.3316] [MD5.882539219B40107D5BC0557E0088DD79] - (.ScanSoft, Inc. - OCR Aware (32-bit).) -- C:\Program Files (x86)\ScanSoft\OmniPageSE2.0\opwareSE2.exe [49152] [PID.1328] [MD5.72DE9723E5203A5C5D284C6D001A1D14] - (.France Telecom SA - Orange Connection Kit.) -- C:\Program Files (x86)\Orange\Connexion Internet Orange\Launcher\Launcher.exe [717552] [PID.3800] [MD5.A7810B302294793DE88542AAE177D1B1] - (.ArcSoft Inc. - ArcSoft Connect Daemon.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424] [PID.2496] [MD5.BED38B0ADFF5F5CC6E988A6491017E83] - (.Research In Motion Limited - Launch Agent Service.) -- C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe [267792] [PID.4332] [MD5.3F11B20D12D89365D7721BDC860CE5F0] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [4858968] [PID.4420] [MD5.7F2691FD961C9A704DA221745CCE6295] - (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [295512] [PID.4500] [MD5.527F995C40417C0F4EBB74ACA98F915A] - (.France Telecom SA - Orange Connection Kit.) -- C:\Program Files (x86)\Common Files\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe [90112] [PID.4992] [MD5.ABC9091B6D438381DBACFD1A82E0C0EA] - (.France Telecom SA - Orange Connection Kit.) -- C:\Program Files (x86)\Orange\Connexion Internet Orange\systray\systrayapp.exe [282624] [PID.3232] [MD5.682DB04704A74F228A080B31003B6FC6] - (.France Telecom SA - Orange Connection Kit.) -- C:\Program Files (x86)\Orange\Connexion Internet Orange\connectivity\connectivitymanager.exe [974848] [PID.3220] [MD5.CAF2CCB6E9F5FDBE99EE8904EB9DC506] - (.France Telecom SA - Orange Connection Kit.) -- C:\Program Files (x86)\Orange\Connexion Internet Orange\connectivity\CoreCom\CoreCom.exe [495616] [PID.2100] [MD5.8E884B0A19679340BFFF5C157075D6B5] - (.France Telecom SA - Orange Connection Kit.) -- C:\Program Files (x86)\Orange\Connexion Internet Orange\connectivity\CoreCom\OraConfigRecover.exe [53248] [PID.4244] [MD5.557E7074F895938EA6A125B4F92F3DE8] - (.Orange - Assistance Livebox.) -- C:\Program Files (x86)\Orange\Assistance Livebox\dist\ST2.exe [13207096] [PID.5856] [MD5.51C392EC9DA1119EC86D562FF3E7344F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [825808] [PID.1544] [MD5.9987636E1191907AB52F3A49FFB83393] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7431168] [PID.3048] [MD5.28D6701C710AD7BA3CB95E75F8F1A9AA] - (.AVAST Software - avast! Service.) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [46808] [PID.1180] [MD5.C2009C6A452BD07B30D773349589B762] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\Alwil Software\Avast5\afwServ.exe [137960] [PID.1424] [MD5.ADC420616C501B45D26C0FD3EF1E54E4] - (.ArcSoft Inc. - ArcSoft Connect Service.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152] [PID.2004] [MD5.ADDA5E1951B90D3D23C56D3CF0622ADC] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65640] [PID.2028] [MD5.B0C9FFF54F16DF2012F53A34736A0975] - (.France Telecom SA - Orange Connection Kit.) -- C:\Program Files (x86)\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe [69632] [PID.1324] [MD5.76B35CB0F3A4E69D6DFF27F542B9F856] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler.exe [216968] [PID.2412] [MD5.2238B91AC1A12CC6CC4C4FED41258B2A] - (.Hewlett-Packard Company - LightScribe Service.) -- c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728] [PID.2480] [MD5.89525CC2DBAD44F7199B9CC188B3F9C5] - (...) -- C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056] [PID.2760] [MD5.63F6D08C54D5B3C1B12A6172032055C7] - (.ArcSoft, Inc. - MgiSvr.) -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960] [PID.2956] [MD5.686045905787B68D829CE647A6DFAD2B] - (.Research In Motion Limited - BlackBerry Device Manager.) -- C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe [577536] [PID.4520] ~ Processes Running: Scanned in 00mn 01s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [User Data\Default] None G0 - GCSP: Preference [User Data\Default][HomePage] http://www.google.fr G0 - GCSP: Preference [User Data\Default] http://www.google.com G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Store v.0.2 (Activé) G2 - GCE: Preference [User Data\Default] [aknpkdffaafgjchaibgeefbgmgeghloj] Angry Birds v.1.5.0.7 (Activé) G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Googleu00A0Drive v.6.3 (Activé) G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé) G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activé) G2 - GCE: Preference [User Data\Default] [deogekjnnojddplbhakfjejilpaigkfo] freecorder 4 v.10.16.2.509, (Désactivé) G2 - GCE: Preference [User Data\Default] [dffhljlmcohcioeilbnpmbchdcbhifdh] WiseConvert 1.5 v.2.3.15.10 (Désactivé) =>Toolbar.Conduit G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé) G2 - GCE: Preference [User Data\Default] [fagpjgjmoaccgkkpjeoinehnoaimnbla] hola Toolbar v.1.0 (Désactivé) G2 - GCE: Preference [User Data\Default] [fplhdcjmbpfkejbhngmlngaecbjmoimd] avast! Ad Blocker v.8.0 (Désactivé) G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] avast! Online Security v.8.0.7, (Activé) G2 - GCE: Preference [User Data\Default] [hakpajgggjjcjmidfbnnncnbaihjneaj] 01NET.com Main v.10.16.1.521, (Désactivé) G2 - GCE: Preference [User Data\Default] [idhngdhcfkoamngbedgpaokgjbnpdiji] RealDownloader v.1.3.1 (Désactivé) G2 - GCE: Preference [User Data\Default] [jafdhbipfdlldljdanpnlipdinjcjjid] Portail Orange v.1.0 (Activé) G2 - GCE: Preference [User Data\Default] [kbjlipmgfoamgjaogmbihaffnpkpjajp] Bubble Dock v.1.0.0.130 (Désactivé) G2 - GCE: Preference [User Data\Default] [khjhkmbfjffedinjldiococnnclncpnc] Angry Birds Space v.2.3.1 (Activé) G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [nfkdglgjjpicgkbfdflchobhdiblbjgf] Menu Contextuel Orange v.1.1 (Activé) G2 - GCE: Preference [User Data\Default] [pflphaooapbgpeakohlggbpidpppgdff] MySearchDial v.8.0.1, (Désactivé) =>Adware.MyWebSearch G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé) ~ Google Browser: 25 Scanned in 00mn 11s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_202.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20125.0.) -- c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll P2 - FPN: [HKLM] [@microsoft.com/OfficeAuthz,version=14.0] - (.Microsoft Corporation - Office Authorization plug-in for NPAPI browsers.) -- C:\Program Files\Microsoft Office\Office14\NPAUTHZ.dll P2 - FPN: [HKCU] [ubisoft.com/uplaypc] - (.Ubisoft - Uplay PC Plugin.) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ~ Firefox Browser: 4 Scanned in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ~ IE Browser: 8 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Redirection du fichier Hosts (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer [64Bits] - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealDownloader - RealPlayer Download and Record Plugin.) -- C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll O2 - BHO: Search Helper [64Bits] - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} . (.Microsoft Corporation - Search Helper for Internet Explorer.) -- C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper [64Bits] - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.dll O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.Hewlett-Packard - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll ~ BHO: 7 Scanned in 00mn 00s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: (no name) [64Bits] - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline ~ Toolbar: Scanned in 00mn 00s ---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [PC-Doctor for Windows localizer] . (.PC-Doctor, Inc. - Hardware Diagnostic Tools Localizer.) -- C:\Program Files\PC-Doctor for Windows\localizer.exe O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKCU\..\Run: [Orange Installer] . (...) -- C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe O4 - HKCU\..\Run: [MailNotifier] . (.Orange - MailNotifier.) -- C:\Program Files (x86)\Orange\MailNotifier\MailNotifier.exe O4 - HKCU\..\Run: [OrangeInside] . (.Orange - Executable Orange Inside.) -- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe O4 - HKCU\..\Run: [RocketDock] . (...) -- C:\Program Files (x86)\RocketDock\RocketDock.exe O4 - HKCU\..\Run: [GoogleDriveSync] . (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe O4 - HKLM\..\Wow6432Node\Run: [hpsysdrv] . (.Hewlett-Packard - hpsysdrv.) -- c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKLM\..\Wow6432Node\Run: [Easybits Recovery] . (.EasyBits Software AS - Pas de description.) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe O4 - HKLM\..\Wow6432Node\Run: [ORAHSSSessionManager] . (.France Telecom SA - Orange Connection Kit.) -- C:\Program Files (x86)\Orange\Connexion Internet Orange\SessionManager\SessionManager.exe O4 - HKLM\..\Wow6432Node\Run: [OpwareSE2] . (.ScanSoft, Inc. - OCR Aware (32-bit).) -- C:\Program Files (x86)\ScanSoft\OmniPageSE2.0\OpwareSE2.exe O4 - HKLM\..\Wow6432Node\Run: [ArcSoft Connection Service] . (.ArcSoft Inc. - ArcSoft Connect Daemon.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe O4 - HKLM\..\Wow6432Node\Run: [RIMBBLaunchAgent.exe] . (.Research In Motion Limited - Launch Agent Service.) -- C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe O4 - HKLM\..\Wow6432Node\Run: [REGSHAVE] . (.FUJI PHOTO FILM CO., LTD. - Shaving Registry.) -- C:\Program Files (x86)\REGSHAVE\REGSHAVE.exe O4 - HKLM\..\Wow6432Node\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe O4 - HKLM\..\Wow6432Node\Run: [TkBellExe] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O4 - HKUS\S-1-5-18\..\Run: [SearchProtect] \SearchProtect\bin\cltmng.exe =>Toolbar.Conduit O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-21-3575764572-4265277144-1718528653-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKUS\S-1-5-21-3575764572-4265277144-1718528653-1000\..\Run: [Orange Installer] . (...) -- C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe O4 - HKUS\S-1-5-21-3575764572-4265277144-1718528653-1000\..\Run: [MailNotifier] . (.Orange - MailNotifier.) -- C:\Program Files (x86)\Orange\MailNotifier\MailNotifier.exe O4 - HKUS\S-1-5-21-3575764572-4265277144-1718528653-1000\..\Run: [OrangeInside] . (.Orange - Executable Orange Inside.) -- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe O4 - HKUS\S-1-5-21-3575764572-4265277144-1718528653-1000\..\Run: [RocketDock] . (...) -- C:\Program Files (x86)\RocketDock\RocketDock.exe O4 - HKUS\S-1-5-21-3575764572-4265277144-1718528653-1000\..\Run: [GoogleDriveSync] . (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe ~ Application: Scanned in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - GS\TaskBar: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - GS\TaskBar: Microsoft Excel 2010.lnk . (...) -- C:\Windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\xlicons.exe O4 - GS\TaskBar: Microsoft Word 2010.lnk . (...) -- C:\Windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\wordicon.exe O4 - GS\TaskBar: Skype.lnk . (...) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe O4 - GS\Programs: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\QuickLaunch: eDrawings 2007.lnk . (.Solidworks - EModelViewer Module.) -- C:\Program Files (x86)\Common Files\eDrawings2007\EModelViewer.exe O4 - GS\QuickLaunch: Jouer à HP Games.lnk . (.WildTangent, Inc. - GameConsole.) -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsole-wt.exe O4 - GS\QuickLaunch: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\Accessories: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe O4 - GS\SendTo: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files (x86)\CDBurnerXP\cdbxpp.exe O4 - GS\SendTo: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe O4 - GS\SendTo: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe O4 - GS\SendTo: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\fsquirt.exe O4 - GS\Desktop: Assistance Livebox.lnk . (.Orange - Assistance Livebox.) -- C:\Program Files (x86)\Orange\Assistance Livebox\AssistanceLivebox.exe O4 - GS\Desktop: Google Drive.lnk . (...) -- C:\Users\Fabienne\Google Drive\MOI\Google Drive O4 - GS\Desktop: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) -- C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe O4 - GS\Desktop: Telechargement.lnk . (...) -- C:\Users\Fabienne\Downloads O4 - GS\Desktop: VirtualDJ Home FREE.lnk . (.Atomix Productions - VirtualDJ.) -- C:\Program Files (x86)\VirtualDJ\virtualdj_home.exe ~ Global Startup: Scanned in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ IE Control Panel: 1 Scanned in 00mn 00s ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9) O9 - Extra button: &Envoyer à OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C6C49} -- C:\Program Files (x86)\MICROS~2\Office14\ONBttnIE.dll (.not file.) O9 - Extra button: Notes &liées OneNote [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} -- C:\Program Files (x86)\MICROS~2\Office14\ONBTTN~1.dll (.not file.) ~ IE Extra Buttons: Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll ~ Winsock: 9 Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{08A4BF65-44C9-493D-AD4C-8F0EDE5CE780}: DhcpNameServer = 192.168.42.129 O17 - HKLM\System\CCS\Services\Tcpip\..\{A76E9CDF-7D92-49D0-A740-4487B3F4A1C4}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{08A4BF65-44C9-493D-AD4C-8F0EDE5CE780}: DhcpNameServer = 192.168.42.129 O17 - HKLM\System\CS1\Services\Tcpip\..\{A76E9CDF-7D92-49D0-A740-4487B3F4A1C4}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{08A4BF65-44C9-493D-AD4C-8F0EDE5CE780}: DhcpNameServer = 192.168.42.129 O17 - HKLM\System\CS2\Services\Tcpip\..\{A76E9CDF-7D92-49D0-A740-4487B3F4A1C4}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 ~ Domain: Scanned in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) -- O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.dll ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ SSODL: 1 Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc. - ArcSoft Connect Service.) - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: avast! Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\Alwil Software\Avast5\afwServ.exe O23 - Service: France Telecom Routing Table Service (FTRTSVC) . (.France Telecom SA - Orange Connection Kit.) - C:\Program Files (x86)\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe O23 - Service: LightScribeService Direct Disc Labeling (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe O23 - Service: Orange update Core Service (Orange update Core Service) . (.France Telecom SA - Orange Upd@te.) - C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe O23 - Service: RealNetworks Downloader Resolver Service (RealNetworks Downloader Resolver Service) . (...) - C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: CamMonitor (uCamMonitor) . (.ArcSoft, Inc. - MgiSvr.) - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe ~ Services: 13 Scanned in 00mn 06s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ BootExecute (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Dealply.job [302] =>PUP.DealPly O39 - APT:Automatic Planified Task - C:\Windows\Tasks\File Helper.job [346] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1068] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1072] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\PCDRScheduledMaintenance.job [544] [MD5.F040037B149FD0F5A5044AE563390FA7] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [256904] [MD5.6FDE63991B9154968C89FAEAC72C56FB] [APT] [AssistanceLivebox] (.Orange.) -- C:\Program Files (x86)\Orange\Assistance Livebox\AssistanceLivebox.exe [149560] [MD5.5CE2C1433B9B634591F0A1C4C1203A0B] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\Alwil Software\Avast5\AvastEmUpdate.exe [251784] [MD5.00000000000000000000000000000000] [APT] [Dealply] (...) -- C:\Users\Fabienne\AppData\Roaming\Dealply\UPDATE~1\UPDATE~1.exe (.not file.) [0] =>PUP.DealPly [MD5.00000000000000000000000000000000] [APT] [Desk 365 RunAsStdUser] (...) -- C:\Program Files (x86)\Desk 365\desk365.exe (.not file.) [0] =>Hijacker.22Find [MD5.00000000000000000000000000000000] [APT] [DVDAgent] (...) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe (.not file.) [0] [MD5.ECAC52036A7B9AEF61C1BAE8F753454B] [APT] [ExtendedServicePlan] (...) -- C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [26680] [MD5.00000000000000000000000000000000] [APT] [File Helper] (...) -- C:\Program Files (x86)\File Helper\File Helper.lnk --scan --stack=from-scheduler (.not file.) [0] [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [136176] [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [136176] [MD5.00000000000000000000000000000000] [APT] [Omiga Plus RunAsStdUser] (...) -- C:\Program Files (x86)\Omiga Plus\omigaplus.exe (.not file.) [0] [MD5.9879731CDFCE67A1214DD636DEBF62A3] [APT] [PCDRScheduledMaintenance] (.PC-Doctor, Inc..) -- C:\Program Files\PC-Doctor for Windows\pcdrcui.exe [147440] [MD5.B04ABC47319CB3C808A3A5525F2F3F2F] [APT] [RealPlayerRealUpgradeLogonTaskS-1-5-21-3575764572-4265277144-1718528653-1000] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [187984] [MD5.B04ABC47319CB3C808A3A5525F2F3F2F] [APT] [RealPlayerRealUpgradeScheduledTaskS-1-5-21-3575764572-4265277144-1718528653-1000] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [187984] [MD5.ECAC52036A7B9AEF61C1BAE8F753454B] [APT] [RecoveryCDWin7] (...) -- C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [26680] [MD5.ECAC52036A7B9AEF61C1BAE8F753454B] [APT] [Registration] (...) -- C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [26680] [MD5.ECAC52036A7B9AEF61C1BAE8F753454B] [APT] [ServicePlan] (...) -- C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [26680] [MD5.00000000000000000000000000000000] [APT] [Updater27096.exe] (...) -- C:\Users\Fabienne\AppData\Local\Updater27096\Updater27096.exe (.not file.) [0] =>PUP.CrossRider [MD5.51C392EC9DA1119EC86D562FF3E7344F] [APT] [{015C5900-95CA-4C94-8E62-DFFA6C62CE4B}] (.Google Inc..) -- c:\program files (x86)\google\chrome\application\chrome.exe [825808] [MD5.7E4AD8220AF0B281274F9785DD53E25C] [APT] [{0E1B9E75-C198-4FD9-BEE5-BBDA8CA90ADB}] (.Skype Technologies S.A..) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [18642024] [MD5.51C392EC9DA1119EC86D562FF3E7344F] [APT] [{550103F9-578E-412C-AEC4-221D3D3835B6}] (.Google Inc..) -- c:\program files (x86)\google\chrome\application\chrome.exe [825808] [MD5.00000000000000000000000000000000] [APT] [{9105BEA1-31F7-41B8-9420-BB19C15D30BA}] (...) -- E:\setup.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{9E10C558-1B28-401C-9A80-AD3FCBF4BF14}] (...) -- L:\Launcher.exe (.not file.) [0] [MD5.51C392EC9DA1119EC86D562FF3E7344F] [APT] [{D0E64936-8344-45F1-978C-9F1042E64065}] (.Google Inc..) -- c:\program files (x86)\google\chrome\application\chrome.exe [825808] [MD5.00000000000000000000000000000000] [APT] [{D7BE6B26-3D20-45CD-9CE5-150EC5CD81F7}] (...) -- E:\setup.exe (.not file.) [0] [MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [HP Support Assistant Quick Start] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [525728] [MD5.0AE2C218A9AB6C16D79160CCE55B35FC] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [525728] [MD5.28E1A34ED1B810BC2F4734F2DBFF2A76] [APT] [Update Check] (.Hewlett-Packard Company.) -- C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [615736] ~ Scheduled Task: 39 Scanned in 00mn 03s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll ~ Active Setup: 9 Scanned in 00mn 00s ---\\ Pilotes lancés au démarrage (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (aswFW) . (.AVAST Software - avast! Filtering TDI driver.) - C:\Windows\system32\drivers\aswFW.sys O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\Drivers\aswrdr2.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (dtsoftbus01) . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) - C:\Windows\System32\DRIVERS\dtsoftbus01.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys ~ Drivers: 66 Scanned in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {A0087DDE-69D0-11E2-AD57-43CA6188709B} O42 - Logiciel: Adobe Acrobat 5.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Acrobat 5.0 O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Reader XI (11.0.03) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} O42 - Logiciel: ArcSoft Magic-i Visual Effects 2 - (.ArcSoft.) [HKLM][64Bits] -- {41B44041-D45D-41EB-A1EF-A12BB5C6996B} O42 - Logiciel: ArcSoft PhotoStudio 5.5 - (.ArcSoft.) [HKLM][64Bits] -- {85309D89-7BE9-4094-BB17-24999C6118FC} O42 - Logiciel: ArcSoft ShowBiz - (.ArcSoft.) [HKLM][64Bits] -- {E92E462A-700D-4949-B24B-789AEDDA3B88} O42 - Logiciel: ArcSoft WebCam Companion 3 - (.ArcSoft.) [HKLM][64Bits] -- {FFEFD86B-5D4F-4A2D-8D4E-ECD7D9AD925E} O42 - Logiciel: Assistance Livebox - (.Orange.) [HKLM][64Bits] -- Assistance Livebox O42 - Logiciel: Audacity 2.0.3 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 O42 - Logiciel: BlackBerry App World Browser Plugin - (.Research In Motion Limited.) [HKLM][64Bits] -- {A21CC8D4-7BA8-4AA9-9F2E-EEF54D5F7E71} O42 - Logiciel: BlackBerry Desktop Software 7.1 - (.Research In Motion Ltd..) [HKLM][64Bits] -- BlackBerry_Desktop O42 - Logiciel: BlackBerry Desktop Software 7.1 - (.Research In Motion Ltd..) [HKLM][64Bits] -- {BE5B0450-DCCB-4FE9-93E2-3B38D88A745B} O42 - Logiciel: CANON iMAGE GATEWAY MyCamera Download Plugin - (.Canon Inc..) [HKLM][64Bits] -- MyCamera Download Plugin O42 - Logiciel: CANON iMAGE GATEWAY Task for ZoomBrowser EX - (.Canon Inc..) [HKLM][64Bits] -- CANON iMAGE GATEWAY Task O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>Piriform Ltd O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM][64Bits] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 O42 - Logiciel: CanoScan Toolbox Ver4.9 - (...) [HKLM][64Bits] -- {CA9BCD4D-B782-4637-8F1F-F9A328D3C244} O42 - Logiciel: Canon MOV Decoder - (.Canon Inc..) [HKLM][64Bits] -- Canon MOV Decoder O42 - Logiciel: Canon MOV Encoder - (.Canon Inc..) [HKLM][64Bits] -- Canon MOV Encoder O42 - Logiciel: Canon MovieEdit Task for ZoomBrowser EX - (.Canon Inc..) [HKLM][64Bits] -- MovieEditTask O42 - Logiciel: Canon Utilities Digital Photo Professional 3.10 - (.Canon Inc..) [HKLM][64Bits] -- DPP O42 - Logiciel: Canon Utilities EOS Sample Music - (.Canon Inc..) [HKLM][64Bits] -- EOS Sample Music O42 - Logiciel: Canon Utilities EOS Utility - (.Canon Inc..) [HKLM][64Bits] -- EOS Utility O42 - Logiciel: Canon Utilities EOS Video Snapshot Task for ZoomBrowser EX - (.Canon Inc..) [HKLM][64Bits] -- EOS Video Snapshot Task O42 - Logiciel: Canon Utilities Movie Uploader for YouTube - (.Canon Inc..) [HKLM][64Bits] -- MovieUploaderForYouTube O42 - Logiciel: Canon Utilities PhotoStitch - (.Canon Inc..) [HKLM][64Bits] -- PhotoStitch O42 - Logiciel: Canon Utilities Picture Style Editor - (.Canon Inc..) [HKLM][64Bits] -- Picture Style Editor O42 - Logiciel: Canon Utilities ZoomBrowser EX - (.Canon Inc..) [HKLM][64Bits] -- ZoomBrowser EX O42 - Logiciel: Canon ZoomBrowser EX Memory Card Utility - (.Canon Inc..) [HKLM][64Bits] -- ZoomBrowser EX Memory Card Utility O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {57A67EC6-0652-4C0A-B8D4-20CD437AD033} O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} O42 - Logiciel: Connexion Internet Orange - (...) [HKLM][64Bits] -- {ORAHSS}.UninstallSuite O42 - Logiciel: CyberLink DVD Suite Deluxe - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} O42 - Logiciel: CyberLink DVD Suite Deluxe - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite O42 - Logiciel: DVD Menu Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF} O42 - Logiciel: DVD Menu Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- {FB4BB287-37F9-4E27-9C4D-2D3882E08EFF} O42 - Logiciel: Euro Truck Simulator - (...) [HKLM][64Bits] -- Euro Truck Simulator O42 - Logiciel: FUJIFILM USB Driver - (...) [HKLM][64Bits] -- {5490882C-6961-11D5-BAE5-00E0188E010B} O42 - Logiciel: FinePixViewer Resource - (...) [HKLM][64Bits] -- {B44529FF-501E-47CD-A06D-223C161BE058} O42 - Logiciel: FinePixViewer Ver.5.1 - (...) [HKLM][64Bits] -- {24ED4D80-8294-11D5-96CD-0040266301AD} O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM][64Bits] -- {1C3DA126-D523-4089-BCCA-FA46FE34D6F8} O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {C768790F-04FB-11E0-9B2C-001AA037B01E} O42 - Logiciel: HP Advisor - (.Hewlett-Packard.) [HKLM][64Bits] -- {40FB8D7C-6FF8-4AF2-BC8B-0B1DB32AF04B} O42 - Logiciel: HP Button Manager - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{F96B04F9-26A9-4384-AA17-77EACA1BA40B} O42 - Logiciel: HP Button Manager - (.Hewlett-Packard.) [HKLM][64Bits] -- {F96B04F9-26A9-4384-AA17-77EACA1BA40B} O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall O42 - Logiciel: HP MediaSmart DVD - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A} O42 - Logiciel: HP MediaSmart DVD - (.Hewlett-Packard.) [HKLM][64Bits] -- {DCCAD079-F92C-44DA-B258-624FC6517A5A} O42 - Logiciel: HP MediaSmart SmartMenu - (.Hewlett-Packard.) [HKLM][64Bits] -- {88E60521-1E4E-4785-B9F1-1798A4BD0C30} O42 - Logiciel: HP Product Detection - (.HP.) [HKLM][64Bits] -- {A436F67F-687E-4736-BD2B-537121A804CF} O42 - Logiciel: HP Remote Solution - (.Hewlett-Packard.) [HKLM][64Bits] -- HP Remote Solution O42 - Logiciel: HP Remote Solution - (.Hewlett-Packard.) [HKLM][64Bits] -- {C611CF88-969D-43E6-A877-D6D6439DD081} O42 - Logiciel: HP Setup - (.Hewlett-Packard.) [HKLM][64Bits] -- {17B4760F-334B-475D-829F-1A3E94A6A4E6} O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {EE202411-2C26-49E8-9784-1BC1DBF7DE96} O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {D46D081B-F60E-467E-A7C4-117B70D76731} O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.1.1 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} O42 - Logiciel: HydraVision - (.ATI Technologies Inc..) [HKLM][64Bits] -- {88B9E14A-8D6F-1C30-4058-3874FDC8EB2C} O42 - Logiciel: JkDefrag 3.36 - (.Trad-Fr.) [HKLM][64Bits] -- {0FC65BD2-FB46-4E89-AEB9-C5CB53E4BC1F}_is1 O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} O42 - Logiciel: Kies - (.Nom de votre société.) [HKLM][64Bits] -- InstallShield_{D6CD26FD-CD7F-4C86-96A3-EEBFABE5FE47} O42 - Logiciel: Kies - (.Nom de votre société.) [HKLM][64Bits] -- {D6CD26FD-CD7F-4C86-96A3-EEBFABE5FE47} O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM][64Bits] -- {CC8E94A2-55C7-4460-953C-2A790180578C} O42 - Logiciel: Logiciel d'archivage WinRAR - (...) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: Magic Desktop - (.EasyBits Software AS.) [HKLM][64Bits] -- EasyBits Magic Desktop O42 - Logiciel: Manual CanoScan LiDE 60 - (...) [HKLM][64Bits] -- {23B72D50-1C7E-491C-8086-9E060051D316} O42 - Logiciel: Manuel de l'utilisateur de la Webcam HP - (.Hewlett-Packard.) [HKLM][64Bits] -- {3BB33344-3179-49A4-B6EB-22D2A390764D} O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} O42 - Logiciel: Microsoft Money - (.Microsoft.) [HKLM][64Bits] -- Money2005b O42 - Logiciel: Microsoft Search Enhancement Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {CFF8B8E8-E086-4DE0-935F-FE22CAB54F80} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft WSE 3.0 Runtime - (.Microsoft Corp..) [HKLM][64Bits] -- {E3E71D07-CD27-46CB-8448-16D4FB29AA13} O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B160861-7250-451E-B5EE-8B92BF30A710} O42 - Logiciel: Movie Theme Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E} O42 - Logiciel: Movie Theme Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- {3023EBDA-BF1B-4831-B347-E5018555F26E} O42 - Logiciel: Notification Mail - (.Orange.) [HKLM][64Bits] -- MailNotifier O42 - Logiciel: OmniPage SE 2.0 - (.ScanSoft, Inc..) [HKLM][64Bits] -- {79D5997E-BF79-48BB-8B41-9BE59C15C2D7} O42 - Logiciel: Orange Inside - (.Orange.) [HKCU][64Bits] -- Orange Inside O42 - Logiciel: Orange Installer - (.Orange.) [HKLM][64Bits] -- Orange Installer O42 - Logiciel: Orange update - (.Orange.) [HKLM][64Bits] -- OrangeUpdateManager O42 - Logiciel: Outils de diagnostic du matériel - (.PC-Doctor, Inc..) [HKLM][64Bits] -- PC-Doctor for Windows O42 - Logiciel: PC Connectivity Solution - (.Nokia.) [HKLM][64Bits] -- {34610DE0-3C13-42CA-8E32-01FFA38AB6E8} O42 - Logiciel: Package de pilotes Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) - (.Nokia.) [HKLM][64Bits] -- FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D O42 - Logiciel: PhotoFiltre Studio X - (...) [HKCU][64Bits] -- PhotoFiltre Studio X O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04} O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1} O42 - Logiciel: RealDownloader - (.RealNetworks, Inc..) [HKLM][64Bits] -- {EA1FAE0F-2354-4E32-B423-ABAE8E358F91} O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM][64Bits] -- RealPlayer 16.0 O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM][64Bits] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Recovery Manager - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5} O42 - Logiciel: Revo Uninstaller 1.94 - (.VS Revo Group.) [HKLM][64Bits] -- Revo Uninstaller O42 - Logiciel: RocketDock 1.3.5 - (.Punk Software.) [HKLM][64Bits] -- RocketDock_is1 O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} O42 - Logiciel: SBK®X Superbike World Championship - (.Black Bean Games.) [HKLM][64Bits] -- {94838967-2844-4F7B-BB98-22E61654503C} O42 - Logiciel: Secocut installation - (.Seco Tools.) [HKLM][64Bits] -- {C720C9AE-BB99-4449-8855-EBCAECEA39A9} O42 - Logiciel: Skype™ 6.3 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D} O42 - Logiciel: Sony Ericsson Update Engine - (.Sony Ericsson Communications AB.) [HKLM][64Bits] -- Update Engine O42 - Logiciel: Sony PC Companion 2.10.136 - (.Sony.) [HKLM][64Bits] -- {F09EF8F2-0976-42C1-8D9D-8DF78337C6E3} O42 - Logiciel: Steam(TM) - (.Valve.) [HKLM][64Bits] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3} O42 - Logiciel: TmNationsForever - (.Nadeo.) [HKLM][64Bits] -- TmNationsForever_is1 O42 - Logiciel: Tom Clancy's Splinter Cell Conviction - (.Ubisoft.) [HKLM][64Bits] -- {6D8DDB4A-C263-40DE-BA16-AFDAD159D59A} O42 - Logiciel: Ubisoft Game Launcher - (.UBISOFT.) [HKLM][64Bits] -- {888F1505-C2B3-4FDE-835D-36353EBD4754} O42 - Logiciel: VLC media player 2.0.6 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player O42 - Logiciel: VirtualDJ Home FREE - (.Atomix Productions.) [HKLM][64Bits] -- {19192A84-6172-4312-A661-D8F9A34585AB} O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst O42 - Logiciel: World of Tanks - (.Wargaming.net.) [HKLM][64Bits] -- {1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1 O42 - Logiciel: avast! Internet Security v8.0.1489.0 - (.AVAST Software.) [HKLM][64Bits] -- avast O42 - Logiciel: barre d'outils Orange - (.France Telecom SA.) [HKLM][64Bits] -- OrangeToolbarFR O42 - Logiciel: eDrawings 2007 - (.SolidWorks.) [HKLM][64Bits] -- {75FEB085-179F-4C85-B0E4-B517D2160750} O42 - Logiciel: µTorrent - (...) [HKLM][64Bits] -- uTorrent =>P2P.µTorrent ~ Logic: 229 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\ATI] [HKCU\Software\AVAST Software] [HKCU\Software\Acoustica] [HKCU\Software\Adobe] [HKCU\Software\AppDataLow\Software\Freecorder] [HKCU\Software\AppDataLow\Software\MarkAny] [HKCU\Software\AppDataLow\Software\Monitored] [HKCU\Software\AppDataLow\Software\Orange] [HKCU\Software\AppDataLow\Software\Unity] [HKCU\Software\AppDataLow\Software\settings] [HKCU\Software\AppDataLow] [HKCU\Software\ApplianTechnologies] [HKCU\Software\ArcSoft] [HKCU\Software\Audacity] [HKCU\Software\BabSolution] =>Hijacker.BabSolution [HKCU\Software\Binary Noise] [HKCU\Software\BitTorrent] =>P2P.BitTorrent [HKCU\Software\BrowserTemp] [HKCU\Software\CDDB] [HKCU\Software\Canneverbe Limited] [HKCU\Software\Canon] [HKCU\Software\Canon_Inc_IC] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Corel] [HKCU\Software\CyberLink] [HKCU\Software\Cygnus Solutions] [HKCU\Software\DT Soft] [HKCU\Software\EasyBits] [HKCU\Software\Electronic Arts] [HKCU\Software\Extended Systems] [HKCU\Software\FUJIFILM] [HKCU\Software\File Helper] [HKCU\Software\GameHouse] [HKCU\Software\Garmin] [HKCU\Software\Google] [HKCU\Software\HP] [HKCU\Software\Hewlett-Packard] [HKCU\Software\IGA] [HKCU\Software\IM Providers] [HKCU\Software\JEDI-VCL] [HKCU\Software\JavaSoft] [HKCU\Software\LeaderTech] [HKCU\Software\Licenses] [HKCU\Software\MCAFEE] [HKCU\Software\Macromedia] [HKCU\Software\Macrovision] [HKCU\Software\MainConcept] [HKCU\Software\MarineCat] [HKCU\Software\MimarSinan] [HKCU\Software\MozillaPlugins] [HKCU\Software\Netscape] [HKCU\Software\Norton] [HKCU\Software\ODBC] [HKCU\Software\OrangeInside] [HKCU\Software\Orange] [HKCU\Software\PC-Doctor] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\RealNetworks] [HKCU\Software\Research In Motion] [HKCU\Software\RocketDock] [HKCU\Software\SCS Software] [HKCU\Software\Samsung] [HKCU\Software\ScanSoft] [HKCU\Software\Skype] [HKCU\Software\Software] [HKCU\Software\SolidWorks] [HKCU\Software\Sony Corporation] [HKCU\Software\Sony Ericsson] [HKCU\Software\Sony] [HKCU\Software\SweetIM] =>PUP.SweetIM [HKCU\Software\TeleCharger] [HKCU\Software\TightVNC] [HKCU\Software\Trolltech] [HKCU\Software\Ubisoft] [HKCU\Software\Unity] [HKCU\Software\VSRevoGroup] [HKCU\Software\Valve] [HKCU\Software\VirtualDJ] [HKCU\Software\Wargaming.net] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\Winamp] [HKCU\Software\Wow6432Node] [HKCU\Software\Wp-Corporation] [HKCU\Software\ZebHelpProcess Helper] [HKCU\Software\eDrawings] [HKCU\Software\kde.org] [HKCU\Software\mozilla] [HKLM\Software\AMD] [HKLM\Software\ATI Technologies] [HKLM\Software\ATI] [HKLM\Software\BrowserChoice] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\File Helper] [HKLM\Software\Google] [HKLM\Software\Hewlett-Packard] [HKLM\Software\IM Providers] [HKLM\Software\Intel] [HKLM\Software\Macromedia] [HKLM\Software\MozillaPlugins] [HKLM\Software\Novatek] [HKLM\Software\ODBC] [HKLM\Software\PC Connectivity Solution] [HKLM\Software\PC-Doctor] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SAMSUNG] [HKLM\Software\SRS Labs] [HKLM\Software\Sonic] [HKLM\Software\WildTangent] [HKLM\Software\WinRAR] [HKLM\Software\Wow6432Node\ACE Compression Software] [HKLM\Software\Wow6432Node\ATI Technologies] [HKLM\Software\Wow6432Node\ATI] [HKLM\Software\Wow6432Node\AVAST Software] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\Applian Technologies] [HKLM\Software\Wow6432Node\ArcSoft] [HKLM\Software\Wow6432Node\Black Bean Games] [HKLM\Software\Wow6432Node\CDDB] [HKLM\Software\Wow6432Node\Canneverbe Limited] [HKLM\Software\Wow6432Node\Canon] [HKLM\Software\Wow6432Node\Canon_Inc_IC] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\CyberLink] [HKLM\Software\Wow6432Node\DT Soft] [HKLM\Software\Wow6432Node\EasyBits] [HKLM\Software\Wow6432Node\Extended Systems] [HKLM\Software\Wow6432Node\FRANCE TELECOM] [HKLM\Software\Wow6432Node\FUJI PHOTO FILM CO.,LTD.] [HKLM\Software\Wow6432Node\FUJIFILM] [HKLM\Software\Wow6432Node\GameSpy] [HKLM\Software\Wow6432Node\Garmin] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\Hewlett-Packard] [HKLM\Software\Wow6432Node\IM Providers] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\JavaSoft] [HKLM\Software\Wow6432Node\LightScribe] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\Milestone] [HKLM\Software\Wow6432Node\MimarSinan] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\Orange] [HKLM\Software\Wow6432Node\PC Connectivity Solution] [HKLM\Software\Wow6432Node\PC-Doctor] [HKLM\Software\Wow6432Node\Persits Software] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\RealNetworks] [HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.] [HKLM\Software\Wow6432Node\Realtek] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\Research In Motion] [HKLM\Software\Wow6432Node\ScanSoft] [HKLM\Software\Wow6432Node\Seco Tools] [HKLM\Software\Wow6432Node\Skype] [HKLM\Software\Wow6432Node\SolidWorks Corporation] [HKLM\Software\Wow6432Node\SolidWorks] [HKLM\Software\Wow6432Node\Sony] [HKLM\Software\Wow6432Node\Southlogic] [HKLM\Software\Wow6432Node\Srac] [HKLM\Software\Wow6432Node\SweetIM] =>PUP.SweetIM [HKLM\Software\Wow6432Node\Symantec] [HKLM\Software\Wow6432Node\TSM_Upgrade] [HKLM\Software\Wow6432Node\Trymedia Systems] =>Adware.Trymedia [HKLM\Software\Wow6432Node\Ubisoft] [HKLM\Software\Wow6432Node\Uniblue] [HKLM\Software\Wow6432Node\Valve] [HKLM\Software\Wow6432Node\VideoLAN] [HKLM\Software\Wow6432Node\VirtualDJ] [HKLM\Software\Wow6432Node\Volatile] [HKLM\Software\Wow6432Node\WildTangent] [HKLM\Software\Wow6432Node\Wilson WindowWare] [HKLM\Software\Wow6432Node\WinPcap] [HKLM\Software\Wow6432Node\Xing Technology Corp.] [HKLM\Software\Wow6432Node\eDrawings] [HKLM\Software\Wow6432Node\hdcode] [HKLM\Software\Wow6432Node\omigaplusSvc] [HKLM\Software\Wow6432Node\winzipersvc] [HKLM\Software\Wow6432Node] ~ Key Software: 294 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 14/07/2010 - 18:32:46 - [12,099] ----D C:\Program Files (x86)\Activation Assistant for the 2007 Microsoft Office suites O43 - CFD: 17/03/2013 - 21:01:40 - [133,823] ----D C:\Program Files (x86)\Adobe O43 - CFD: 23/03/2011 - 12:13:13 - [0,000] ----D C:\Program Files (x86)\Anuman Interactive O43 - CFD: 20/06/2011 - 18:17:21 - [273,520] ----D C:\Program Files (x86)\ArcSoft O43 - CFD: 05/12/2009 - 08:35:16 - [89,449] ----D C:\Program Files (x86)\ATI Technologies O43 - CFD: 26/05/2013 - 20:58:34 - [44,319] ----D C:\Program Files (x86)\Audacity O43 - CFD: 16/04/2011 - 18:08:59 - [1971,862] ----D C:\Program Files (x86)\BlackBeanGames O43 - CFD: 30/12/2012 - 14:55:04 - [264,824] ----D C:\Program Files (x86)\Canon O43 - CFD: 10/05/2013 - 20:09:39 - [16,252] ----D C:\Program Files (x86)\CDBurnerXP O43 - CFD: 31/05/2013 - 19:28:32 - [0,545] ----D C:\Program Files (x86)\CDex O43 - CFD: 03/05/2013 - 19:31:11 - [1010,092] ----D C:\Program Files (x86)\Common Files O43 - CFD: 05/12/2009 - 08:43:15 - [889,815] ----D C:\Program Files (x86)\Cyberlink O43 - CFD: 16/04/2011 - 18:05:42 - [16,659] ----D C:\Program Files (x86)\DAEMON Tools Lite O43 - CFD: 29/01/2012 - 10:59:49 - [43,172] ----D C:\Program Files (x86)\DATOS O43 - CFD: 21/06/2011 - 13:51:55 - [90,006] ----D C:\Program Files (x86)\EasyBits For Kids O43 - CFD: 24/03/2011 - 19:29:18 - [431,702] ----D C:\Program Files (x86)\Euro Truck Simulator O43 - CFD: 01/06/2013 - 13:40:06 - [0] ----D C:\Program Files (x86)\Freecorder O43 - CFD: 21/04/2011 - 11:58:01 - [0,000] ----D C:\Program Files (x86)\GameSpy Arcade O43 - CFD: 03/03/2013 - 20:58:33 - [522,316] ----D C:\Program Files (x86)\Google O43 - CFD: 15/11/2012 - 22:43:54 - [788,655] ----D C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 20/06/2011 - 18:18:27 - [19,091] ----D C:\Program Files (x86)\hp O43 - CFD: 16/07/2010 - 17:54:58 - [702,586] ----D C:\Program Files (x86)\HP Games O43 - CFD: 28/02/2013 - 12:55:18 - [251,518] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 15/05/2013 - 21:28:41 - [5,093] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 02/06/2013 - 08:23:27 - [1,067] ----D C:\Program Files (x86)\JkDefrag O43 - CFD: 09/01/2011 - 09:48:37 - [1,950] ----D C:\Program Files (x86)\MarkAny O43 - CFD: 07/01/2013 - 21:59:56 - [2,541] ----D C:\Program Files (x86)\Microsoft O43 - CFD: 12/12/2012 - 06:55:57 - [38,002] ----D C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 21/07/2010 - 15:47:12 - [145,301] ----D C:\Program Files (x86)\Microsoft Money 2005 O43 - CFD: 12/12/2012 - 06:58:36 - [591,558] ----D C:\Program Files (x86)\Microsoft Office O43 - CFD: 13/03/2013 - 20:43:09 - [40,835] ----D C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 05/12/2009 - 09:12:22 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 10/10/2012 - 22:05:47 - [137,975] ----D C:\Program Files (x86)\Microsoft Works O43 - CFD: 04/06/2011 - 19:45:55 - [0,934] ----D C:\Program Files (x86)\Microsoft WSE O43 - CFD: 12/12/2012 - 06:58:35 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 10/03/2013 - 21:34:27 - [0] ----D C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 14/07/2009 - 07:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 14/07/2010 - 19:00:55 - [0] ----D C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 20/07/2010 - 17:39:25 - [1,290] R---D C:\Program Files (x86)\Online Services O43 - CFD: 01/06/2013 - 12:04:43 - [0] ----D C:\Program Files (x86)\OpenCandyDemoInstaller =>Adware.OpenCandy O43 - CFD: 29/03/2013 - 14:04:12 - [489,191] ----D C:\Program Files (x86)\Orange O43 - CFD: 04/02/2011 - 21:28:37 - [17,635] ----D C:\Program Files (x86)\PC Connectivity Solution O43 - CFD: 24/02/2013 - 20:27:25 - [14,018] ----D C:\Program Files (x86)\PhotoFiltre Studio X O43 - CFD: 18/03/2013 - 21:00:40 - [111,716] ----D C:\Program Files (x86)\Real O43 - CFD: 18/03/2013 - 21:00:51 - [17,997] ----D C:\Program Files (x86)\RealNetworks O43 - CFD: 05/12/2009 - 08:35:52 - [46,192] ----D C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - 07:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 28/02/2013 - 12:54:03 - [0,051] ----D C:\Program Files (x86)\REGSHAVE O43 - CFD: 03/11/2012 - 13:10:40 - [62,257] ----D C:\Program Files (x86)\Research In Motion O43 - CFD: 09/01/2013 - 22:01:11 - [0,653] ----D C:\Program Files (x86)\Research In Motion Limited O43 - CFD: 03/04/2013 - 20:19:12 - [11,080] ----D C:\Program Files (x86)\RocketDock O43 - CFD: 09/01/2011 - 09:48:08 - [186,125] ----D C:\Program Files (x86)\Samsung O43 - CFD: 17/07/2010 - 16:38:17 - [88,522] ----D C:\Program Files (x86)\ScanSoft O43 - CFD: 29/01/2012 - 10:59:49 - [2,730] ----D C:\Program Files (x86)\Seco Tools O43 - CFD: 05/05/2013 - 20:45:54 - [18,031] R---D C:\Program Files (x86)\Skype O43 - CFD: 21/03/2011 - 20:59:30 - [4,950] ----D C:\Program Files (x86)\SolidWorks O43 - CFD: 21/03/2011 - 20:58:39 - [1,168] ----D C:\Program Files (x86)\SolidWorks Installation Manager O43 - CFD: 07/01/2013 - 18:25:10 - [96,658] ----D C:\Program Files (x86)\Sony O43 - CFD: 07/01/2013 - 18:28:01 - [103,406] ----D C:\Program Files (x86)\Sony Ericsson O43 - CFD: 07/01/2013 - 18:52:24 - [11,252] ----D C:\Program Files (x86)\Sony Media Go Install O43 - CFD: 05/12/2009 - 08:36:03 - [0] --H-D C:\Program Files (x86)\Temp O43 - CFD: 11/08/2011 - 17:25:02 - [-1006,618] ----D C:\Program Files (x86)\Ubisoft O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information O43 - CFD: 04/03/2013 - 05:27:46 - [0,381] ----D C:\Program Files (x86)\uTorrent =>P2P.µTorrent O43 - CFD: 15/08/2010 - 20:28:15 - [1305,519] ----D C:\Program Files (x86)\Valve O43 - CFD: 19/07/2012 - 19:13:37 - [101,901] ----D C:\Program Files (x86)\VideoLAN O43 - CFD: 16/12/2011 - 20:18:17 - [18,979] ----D C:\Program Files (x86)\VirtualDJ O43 - CFD: 20/12/2012 - 20:33:10 - [6,503] ----D C:\Program Files (x86)\VS Revo Group O43 - CFD: 05/06/2010 - 12:19:50 - [3,047] ----D C:\Program Files (x86)\Wanadoo O43 - CFD: 05/12/2009 - 17:20:50 - [0,500] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 03/05/2013 - 19:31:20 - [287,856] ----D C:\Program Files (x86)\Windows Live O43 - CFD: 19/05/2011 - 22:13:34 - [5,895] ----D C:\Program Files (x86)\Windows Mail O43 - CFD: 17/03/2013 - 20:48:31 - [4,791] ----D C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - 07:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 19/05/2011 - 22:13:34 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 19/05/2011 - 22:13:34 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 19/05/2011 - 22:13:34 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 23/03/2011 - 12:20:21 - [0,000] ----D C:\Program Files (x86)\WinRAR O43 - CFD: 01/06/2013 - 13:54:02 - [0] ----D C:\Program Files (x86)\WinZipper O43 - CFD: 02/06/2013 - 09:40:42 - [16,819] ----D C:\Program Files (x86)\ZHPDiag O43 - CFD: 17/03/2013 - 21:01:40 - [6,474] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 18/05/2013 - 16:41:47 - [45,628] ----D C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 20/06/2011 - 18:15:07 - [15,084] ----D C:\Program Files (x86)\Common Files\ArcSoft O43 - CFD: 17/07/2010 - 20:45:24 - [0] ----D C:\Program Files (x86)\Common Files\BitDefender O43 - CFD: 30/12/2012 - 14:49:19 - [1,273] ----D C:\Program Files (x86)\Common Files\Canon O43 - CFD: 12/12/2012 - 06:58:42 - [0,095] ----D C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 21/03/2011 - 20:54:32 - [31,775] ----D C:\Program Files (x86)\Common Files\eDrawings2007 O43 - CFD: 14/07/2010 - 09:47:45 - [10,351] ----D C:\Program Files (x86)\Common Files\France Telecom O43 - CFD: 17/07/2010 - 16:36:55 - [5,391] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 05/12/2009 - 08:47:34 - [36,086] ---AD C:\Program Files (x86)\Common Files\LightScribe O43 - CFD: 05/12/2009 - 08:46:43 - [0,054] ---AD C:\Program Files (x86)\Common Files\LS Getting Started O43 - CFD: 13/03/2013 - 20:42:15 - [275,322] ----D C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 23/12/2012 - 12:21:26 - [47,975] ----D C:\Program Files (x86)\Common Files\Research In Motion O43 - CFD: 09/01/2011 - 09:48:47 - [51,905] ----D C:\Program Files (x86)\Common Files\Samsung O43 - CFD: 17/07/2010 - 16:38:35 - [1,186] ----D C:\Program Files (x86)\Common Files\ScanSoft Shared O43 - CFD: 14/07/2009 - 05:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 03/05/2013 - 19:31:11 - [1,904] ----D C:\Program Files (x86)\Common Files\Skype O43 - CFD: 24/11/2010 - 14:49:58 - [374,151] ----D C:\Program Files (x86)\Common Files\Solidworks Data O43 - CFD: 21/03/2011 - 20:59:30 - [0,069] ----D C:\Program Files (x86)\Common Files\SolidWorks Shared O43 - CFD: 14/07/2009 - 05:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 25/10/2012 - 08:13:16 - [0,505] ----D C:\Program Files (x86)\Common Files\Steam O43 - CFD: 28/02/2013 - 12:55:12 - [0] ----D C:\Program Files (x86)\Common Files\SWF Studio O43 - CFD: 17/07/2010 - 20:42:39 - [0] ----D C:\Program Files (x86)\Common Files\Symantec Shared O43 - CFD: 09/11/2011 - 21:35:02 - [19,404] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 05/12/2009 - 09:07:17 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 03/11/2012 - 13:11:24 - [45,921] ----D C:\Program Files (x86)\Common Files\XCPCSync.OEM O43 - CFD: 18/03/2013 - 21:00:36 - [0,336] ----D C:\Program Files (x86)\Common Files\xing shared O43 - CFD: 04/07/2010 - 19:26:44 - [0] ----D C:\ProgramData\2DBoy O43 - CFD: 17/03/2013 - 21:04:33 - [173,998] ----D C:\ProgramData\Adobe O43 - CFD: 25/07/2010 - 13:41:03 - [5,492] ----D C:\ProgramData\Alwil Software O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Application Data O43 - CFD: 20/06/2011 - 18:35:20 - [1,613] ----D C:\ProgramData\ArcSoft O43 - CFD: 05/12/2009 - 08:35:17 - [0,000] ----D C:\ProgramData\ATI O43 - CFD: 03/03/2013 - 20:57:14 - [68,468] ----D C:\ProgramData\AVAST Software O43 - CFD: 05/06/2010 - 11:55:41 - [0] --H-D C:\ProgramData\Bureau O43 - CFD: 10/05/2013 - 19:07:11 - [0] ----D C:\ProgramData\Canneverbe Limited O43 - CFD: 23/03/2011 - 11:07:46 - [0,038] ----D C:\ProgramData\CyberLink O43 - CFD: 16/04/2011 - 18:04:48 - [0,001] ----D C:\ProgramData\DAEMON Tools Lite O43 - CFD: 22/03/2011 - 13:00:05 - [0] ----D C:\ProgramData\DassaultSystemes O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Documents O43 - CFD: 14/07/2010 - 11:10:50 - [0,000] ----D C:\ProgramData\Driver Whiz O43 - CFD: 05/06/2010 - 11:55:41 - [0] --H-D C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Favorites O43 - CFD: 21/12/2010 - 19:06:14 - [82,076] ----D C:\ProgramData\Hewlett-Packard O43 - CFD: 30/10/2012 - 09:03:02 - [0] ----D C:\ProgramData\McAfee O43 - CFD: 05/06/2010 - 11:55:41 - [0] --H-D C:\ProgramData\Menu Démarrer O43 - CFD: 12/12/2012 - 06:57:02 - [380,519] -S--D C:\ProgramData\Microsoft O43 - CFD: 15/05/2013 - 21:11:00 - [0,064] ----D C:\ProgramData\Microsoft Help O43 - CFD: 05/06/2010 - 11:55:41 - [0] --H-D C:\ProgramData\Modèles O43 - CFD: 17/07/2010 - 20:43:39 - [0,015] ----D C:\ProgramData\Norton O43 - CFD: 05/12/2009 - 09:14:34 - [5,288] ----D C:\ProgramData\NortonInstaller O43 - CFD: 16/12/2012 - 10:40:43 - [0,589] ----D C:\ProgramData\Orange O43 - CFD: 09/01/2011 - 09:54:49 - [0] ----D C:\ProgramData\PC Suite O43 - CFD: 05/12/2009 - 08:49:06 - [3,097] ----D C:\ProgramData\PC-Doctor for Windows O43 - CFD: 18/03/2013 - 21:01:49 - [2,405] ----D C:\ProgramData\Real O43 - CFD: 18/03/2013 - 21:00:46 - [3,300] ----D C:\ProgramData\RealNetworks O43 - CFD: 28/08/2010 - 13:07:38 - [0,092] ----D C:\ProgramData\Recovery O43 - CFD: 03/11/2012 - 13:11:22 - [0,062] ----D C:\ProgramData\Research In Motion O43 - CFD: 09/01/2011 - 09:52:37 - [2,983] ----D C:\ProgramData\Samsung O43 - CFD: 28/05/2013 - 21:41:08 - [0] ----D C:\ProgramData\ScanSoft O43 - CFD: 04/03/2013 - 19:48:58 - [0] ----D C:\ProgramData\simplitec O43 - CFD: 05/05/2013 - 20:46:03 - [20,632] ----D C:\ProgramData\Skype O43 - CFD: 15/05/2011 - 19:59:06 - [1,243] ----D C:\ProgramData\Skype Extras O43 - CFD: 07/01/2013 - 18:25:10 - [117,720] ----D C:\ProgramData\Sony O43 - CFD: 07/01/2013 - 18:28:12 - [399,431] ----D C:\ProgramData\Sony Ericsson O43 - CFD: 17/07/2010 - 16:38:35 - [0] ----D C:\ProgramData\SSScanAppDataDir O43 - CFD: 17/07/2010 - 16:38:35 - [0] ----D C:\ProgramData\SSScanWizard O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Start Menu O43 - CFD: 05/12/2009 - 09:16:04 - [0,348] ----D C:\ProgramData\Temp O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Templates O43 - CFD: 03/11/2010 - 19:49:41 - [185,861] ----D C:\ProgramData\TrackMania O43 - CFD: 11/08/2011 - 19:59:24 - [0,001] ----D C:\ProgramData\Ubisoft O43 - CFD: 03/04/2011 - 08:47:30 - [8,124] ----D C:\ProgramData\Virtualized Applications O43 - CFD: 12/08/2010 - 06:52:55 - [0] ----D C:\ProgramData\VirtualizedApplications O43 - CFD: 04/07/2010 - 20:34:37 - [1056,327] ----D C:\ProgramData\WildTangent O43 - CFD: 30/12/2012 - 14:54:34 - [0] ----D C:\ProgramData\ZoomBrowser O43 - CFD: 15/11/2012 - 22:41:41 - [39,643] ----D C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF} O43 - CFD: 14/07/2010 - 18:32:46 - [6,585] ----D C:\ProgramData\{B3C2C1CD-6B77-4A96-B670-F734AC2A1CBC} O43 - CFD: 05/12/2009 - 08:34:17 - [5,468] --H-D C:\ProgramData\{D441869F-BEC4-446D-9888-C5CA29F160F9} O43 - CFD: 10/05/2013 - 18:59:03 - [0,131] ----D C:\Users\Fabienne\AppData\Roaming\Acoustica O43 - CFD: 23/08/2012 - 14:41:20 - [10,348] ----D C:\Users\Fabienne\AppData\Roaming\Adobe O43 - CFD: 31/05/2013 - 19:36:10 - [0] ----D C:\Users\Fabienne\AppData\Roaming\Apowersoft O43 - CFD: 10/01/2013 - 20:16:27 - [0] ----D C:\Users\Fabienne\AppData\Roaming\ARA O43 - CFD: 05/10/2011 - 19:18:07 - [1,994] ----D C:\Users\Fabienne\AppData\Roaming\ArcSoft O43 - CFD: 05/06/2010 - 12:01:08 - [0] ----D C:\Users\Fabienne\AppData\Roaming\ATI O43 - CFD: 31/05/2013 - 19:38:40 - [0,001] ----D C:\Users\Fabienne\AppData\Roaming\Audacity O43 - CFD: 16/04/2011 - 18:16:16 - [2,167] ----D C:\Users\Fabienne\AppData\Roaming\BlackBean O43 - CFD: 10/05/2013 - 19:07:10 - [0,002] ----D C:\Users\Fabienne\AppData\Roaming\Canneverbe Limited O43 - CFD: 30/12/2012 - 18:00:53 - [0,000] ----D C:\Users\Fabienne\AppData\Roaming\Canon O43 - CFD: 04/07/2010 - 18:18:47 - [0,002] ----D C:\Users\Fabienne\AppData\Roaming\CyberLink O43 - CFD: 13/11/2012 - 20:13:03 - [0] ----D C:\Users\Fabienne\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 22/03/2011 - 13:00:05 - [0] ----D C:\Users\Fabienne\AppData\Roaming\DassaultSystemes O43 - CFD: 04/03/2013 - 22:22:17 - [0,000] ----D C:\Users\Fabienne\AppData\Roaming\dvdcss O43 - CFD: 24/11/2010 - 14:55:14 - [0,001] ----D C:\Users\Fabienne\AppData\Roaming\DWGeditor O43 - CFD: 28/02/2013 - 13:02:55 - [0,029] ----D C:\Users\Fabienne\AppData\Roaming\FUJIFILM O43 - CFD: 16/08/2012 - 12:38:36 - [0,127] ----D C:\Users\Fabienne\AppData\Roaming\Garmin O43 - CFD: 20/07/2010 - 17:26:06 - [0,136] ----D C:\Users\Fabienne\AppData\Roaming\Hewlett-Packard O43 - CFD: 22/05/2013 - 13:24:52 - [0,001] ----D C:\Users\Fabienne\AppData\Roaming\HP Support Assistant O43 - CFD: 15/11/2012 - 22:42:43 - [0,126] ----D C:\Users\Fabienne\AppData\Roaming\hpqLog O43 - CFD: 22/05/2013 - 13:24:52 - [0,073] ----D C:\Users\Fabienne\AppData\Roaming\HpUpdate O43 - CFD: 24/02/2013 - 20:27:30 - [0,000] ----D C:\Users\Fabienne\AppData\Roaming\Identities O43 - CFD: 17/07/2010 - 16:36:22 - [0] ----D C:\Users\Fabienne\AppData\Roaming\InterTrust O43 - CFD: 21/04/2011 - 11:58:01 - [0] ----D C:\Users\Fabienne\AppData\Roaming\Leadertech O43 - CFD: 04/07/2010 - 20:33:37 - [0,055] ----D C:\Users\Fabienne\AppData\Roaming\Macromedia O43 - CFD: 14/07/2009 - 09:44:38 - [0] ----D C:\Users\Fabienne\AppData\Roaming\Media Center Programs O43 - CFD: 01/06/2013 - 14:52:56 - [13,228] -S--D C:\Users\Fabienne\AppData\Roaming\Microsoft O43 - CFD: 10/05/2013 - 19:04:22 - [4,864] ----D C:\Users\Fabienne\AppData\Roaming\Mozilla O43 - CFD: 01/06/2013 - 12:32:39 - [0] ----D C:\Users\Fabienne\AppData\Roaming\Omiga Plus O43 - CFD: 29/03/2013 - 14:09:47 - [3,164] ----D C:\Users\Fabienne\AppData\Roaming\Orange O43 - CFD: 09/01/2011 - 09:54:49 - [0,000] ----D C:\Users\Fabienne\AppData\Roaming\PC Suite O43 - CFD: 24/02/2013 - 20:29:22 - [0,002] ----D C:\Users\Fabienne\AppData\Roaming\PhotoFiltre Studio X O43 - CFD: 21/03/2013 - 21:38:53 - [39,599] ----D C:\Users\Fabienne\AppData\Roaming\Real O43 - CFD: 18/03/2013 - 21:01:25 - [0,027] ----D C:\Users\Fabienne\AppData\Roaming\RealNetworks O43 - CFD: 03/11/2012 - 13:23:15 - [232,843] ----D C:\Users\Fabienne\AppData\Roaming\Research In Motion O43 - CFD: 09/01/2011 - 09:49:12 - [45,082] ----D C:\Users\Fabienne\AppData\Roaming\Samsung O43 - CFD: 17/07/2010 - 16:38:36 - [0,020] ----D C:\Users\Fabienne\AppData\Roaming\ScanSoft O43 - CFD: 01/06/2013 - 17:31:00 - [3,962] ----D C:\Users\Fabienne\AppData\Roaming\Skype O43 - CFD: 15/08/2011 - 08:18:58 - [0,002] ----D C:\Users\Fabienne\AppData\Roaming\skypePM O43 - CFD: 08/12/2012 - 20:49:56 - [13,229] ----D C:\Users\Fabienne\AppData\Roaming\SoftGrid Client O43 - CFD: 07/01/2013 - 18:52:23 - [0,004] ----D C:\Users\Fabienne\AppData\Roaming\Sony O43 - CFD: 06/06/2010 - 10:42:44 - [0,013] ----D C:\Users\Fabienne\AppData\Roaming\Template O43 - CFD: 03/04/2011 - 08:47:22 - [0] ----D C:\Users\Fabienne\AppData\Roaming\TP O43 - CFD: 09/03/2013 - 09:18:52 - [1,596] ----D C:\Users\Fabienne\AppData\Roaming\uTorrent =>P2P.µTorrent O43 - CFD: 01/06/2013 - 13:09:37 - [0,079] ----D C:\Users\Fabienne\AppData\Roaming\vlc O43 - CFD: 02/05/2012 - 20:02:27 - [109,303] ----D C:\Users\Fabienne\AppData\Roaming\wargaming.net O43 - CFD: 05/06/2010 - 17:09:57 - [0,001] ----D C:\Users\Fabienne\AppData\Roaming\WildTangent O43 - CFD: 18/07/2010 - 08:37:06 - [0] ----D C:\Users\Fabienne\AppData\Roaming\WinBatch O43 - CFD: 24/10/2010 - 12:38:29 - [0] ----D C:\Users\Fabienne\AppData\Roaming\Windows Live Writer O43 - CFD: 23/03/2011 - 11:15:46 - [0,000] ----D C:\Users\Fabienne\AppData\Roaming\WinRAR O43 - CFD: 01/06/2013 - 12:21:08 - [0] ----D C:\Users\Fabienne\AppData\Roaming\WinZipper O43 - CFD: 30/12/2012 - 17:59:02 - [0] ----D C:\Users\Fabienne\AppData\Roaming\ZoomBrowser EX O43 - CFD: 21/06/2011 - 13:50:01 - [0,016] ----D C:\Users\Fabienne\AppData\Roaming\_MDLogs O43 - CFD: 04/07/2010 - 19:26:44 - [0,000] ----D C:\Users\Fabienne\AppData\Local\2DBoy O43 - CFD: 23/08/2012 - 14:41:14 - [32,094] ----D C:\Users\Fabienne\AppData\Local\Adobe O43 - CFD: 05/06/2010 - 11:55:47 - [0] ----D C:\Users\Fabienne\AppData\Local\Application Data O43 - CFD: 17/07/2010 - 22:30:41 - [1,171] ----D C:\Users\Fabienne\AppData\Local\Apps O43 - CFD: 20/06/2011 - 18:18:28 - [0,001] ----D C:\Users\Fabienne\AppData\Local\ArcSoft O43 - CFD: 05/06/2010 - 12:01:08 - [0,061] ----D C:\Users\Fabienne\AppData\Local\ATI O43 - CFD: 30/12/2012 - 18:00:38 - [0,002] ----D C:\Users\Fabienne\AppData\Local\CANON_INC O43 - CFD: 01/06/2013 - 12:13:48 - [53,705] ----D C:\Users\Fabienne\AppData\Local\CrashDumps O43 - CFD: 31/05/2013 - 19:49:04 - [2,609] ----D C:\Users\Fabienne\AppData\Local\CRE O43 - CFD: 05/06/2010 - 12:22:35 - [1,395] ----D C:\Users\Fabienne\AppData\Local\CyberLink O43 - CFD: 22/03/2011 - 13:00:05 - [0] ----D C:\Users\Fabienne\AppData\Local\DassaultSystemes O43 - CFD: 17/07/2010 - 22:30:53 - [0] ----D C:\Users\Fabienne\AppData\Local\Deployment O43 - CFD: 28/04/2013 - 12:28:15 - [0] ----D C:\Users\Fabienne\AppData\Local\Diagnostics O43 - CFD: 27/05/2013 - 19:26:59 - [0,064] ----D C:\Users\Fabienne\AppData\Local\ElevatedDiagnostics O43 - CFD: 22/10/2011 - 21:57:37 - [0,018] ----D C:\Users\Fabienne\AppData\Local\FLVService O43 - CFD: 03/03/2013 - 20:58:34 - [323,270] ----D C:\Users\Fabienne\AppData\Local\Google O43 - CFD: 24/02/2011 - 19:55:58 - [0,022] ----D C:\Users\Fabienne\AppData\Local\Hewlett-Packard O43 - CFD: 05/06/2010 - 11:55:47 - [0] ----D C:\Users\Fabienne\AppData\Local\Historique O43 - CFD: 31/05/2013 - 20:15:28 - [726,222] ----D C:\Users\Fabienne\AppData\Local\Microsoft O43 - CFD: 11/04/2011 - 17:42:21 - [0,860] ----D C:\Users\Fabienne\AppData\Local\Microsoft Games O43 - CFD: 03/03/2012 - 13:34:13 - [0,279] ----D C:\Users\Fabienne\AppData\Local\Microsoft Help O43 - CFD: 08/01/2013 - 19:58:55 - [0,173] ----D C:\Users\Fabienne\AppData\Local\MigWiz O43 - CFD: 14/07/2010 - 09:54:57 - [0,003] ----D C:\Users\Fabienne\AppData\Local\Orange O43 - CFD: 05/06/2010 - 12:22:34 - [0] ----D C:\Users\Fabienne\AppData\Local\PowerCinema O43 - CFD: 26/05/2013 - 20:58:08 - [0] ----D C:\Users\Fabienne\AppData\Local\Programs O43 - CFD: 03/11/2012 - 13:25:08 - [3,887] ----D C:\Users\Fabienne\AppData\Local\Research In Motion O43 - CFD: 14/07/2010 - 18:32:36 - [0,272] ----D C:\Users\Fabienne\AppData\Local\Seven Zip O43 - CFD: 03/04/2011 - 08:47:42 - [6,004] ----D C:\Users\Fabienne\AppData\Local\SoftGrid Client O43 - CFD: 01/06/2013 - 12:03:21 - [0] ----D C:\Users\Fabienne\AppData\Local\Software O43 - CFD: 02/06/2013 - 09:38:53 - [118,452] ----D C:\Users\Fabienne\AppData\Local\Temp O43 - CFD: 05/06/2010 - 11:55:47 - [0] ----D C:\Users\Fabienne\AppData\Local\Temporary Internet Files O43 - CFD: 11/08/2012 - 14:25:06 - [0,001] ----D C:\Users\Fabienne\AppData\Local\Ubisoft Game Launcher O43 - CFD: 03/03/2012 - 13:36:55 - [0] ----D C:\Users\Fabienne\AppData\Local\Unity O43 - CFD: 14/07/2010 - 13:20:51 - [49,337] ----D C:\Users\Fabienne\AppData\Local\VirtualStore O43 - CFD: 01/08/2012 - 18:00:52 - [0,109] ----D C:\Users\Fabienne\AppData\Local\Windows Live O43 - CFD: 24/10/2010 - 12:38:37 - [0,618] ----D C:\Users\Fabienne\AppData\Local\Windows Live Writer O43 - CFD: 14/07/2009 - 06:54:32 - [0,013] R---D C:\Users\Fabienne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 15/05/2013 - 21:32:38 - [0,000] R---D C:\Users\Fabienne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 07/09/2010 - 10:40:52 - [0,000] ----D C:\Users\Fabienne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 14/07/2009 - 06:49:38 - [0,001] R---D C:\Users\Fabienne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 29/03/2013 - 14:09:51 - [0] ----D C:\Users\Fabienne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My Application O43 - CFD: 23/08/2012 - 14:41:58 - [0,003] ----D C:\Users\Fabienne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Orange O43 - CFD: 24/02/2013 - 20:27:26 - [0] ----D C:\Users\Fabienne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X O43 - CFD: 20/12/2012 - 20:33:11 - [0,005] ----D C:\Users\Fabienne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller O43 - CFD: 15/05/2013 - 21:32:38 - [0,000] R---D C:\Users\Fabienne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 16/12/2011 - 20:18:23 - [0,007] ----D C:\Users\Fabienne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ O43 - CFD: 04/03/2013 - 05:27:52 - [0,003] ----D C:\Users\Fabienne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ~ 561 Dossiers CLSID vides (CLSID Empty Folders) ~ Program Folder: 821 Scanned in 00mn 11s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.F3AFB80EAFB02EB95A50DA7195780ED9] - 02/06/2013 - 08:32:12 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1051791] O44 - LFC:[MD5.AA9C24E743E3E3DC15A11BB61FA70BC1] - 02/06/2013 - 08:31:52 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.A32F1EF187897B04D559EB14EAE81D07] - 02/06/2013 - 07:45:23 ---A- . (...) -- C:\Windows\IE10_main.log [1349] O44 - LFC:[MD5.A57E2C2F6DBEB9FB05A9769B88F027F8] - 01/06/2013 - 19:12:46 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1549936] O44 - LFC:[MD5.AFDC2B17A3FD0828F02658A010B5E1F7] - 01/06/2013 - 19:12:46 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [106412] O44 - LFC:[MD5.AAEA066262514BF46FAD2E120CA63AE6] - 01/06/2013 - 19:12:46 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [130770] O44 - LFC:[MD5.C9113717839170B3083DE93E73D7229B] - 01/06/2013 - 19:12:46 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [616032] O44 - LFC:[MD5.A2258C23BACB6B525D7F071173CEAB47] - 01/06/2013 - 19:12:46 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [704464] O44 - LFC:[MD5.A57E2C2F6DBEB9FB05A9769B88F027F8] - 01/06/2013 - 19:12:46 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1549936] O44 - LFC:[MD5.AFDC2B17A3FD0828F02658A010B5E1F7] - 01/06/2013 - 19:12:46 RSHAD . (...) -- C:\Windows\System32\perfc009.dat [106412] O44 - LFC:[MD5.AAEA066262514BF46FAD2E120CA63AE6] - 01/06/2013 - 19:12:46 RSHAD . (...) -- C:\Windows\System32\perfc00C.dat [130770] O44 - LFC:[MD5.C9113717839170B3083DE93E73D7229B] - 01/06/2013 - 19:12:46 RSHAD . (...) -- C:\Windows\System32\perfh009.dat [616032] O44 - LFC:[MD5.A2258C23BACB6B525D7F071173CEAB47] - 01/06/2013 - 19:12:46 RSHAD . (...) -- C:\Windows\System32\perfh00C.dat [704464] O44 - LFC:[MD5.94CCA87794454E1824D59B092B9F70C4] - 01/06/2013 - 14:31:18 RSHAD . (.AVAST Software - avast! Filtering NDIS driver.) -- C:\Windows\System32\Drivers\aswNdis2.sys [270824] O44 - LFC:[MD5.7A62C389380F6FF3FA952D511D8790B8] - 01/06/2013 - 14:31:17 RSHAD . (.AVAST Software - avast! Filtering TDI driver.) -- C:\Windows\System32\Drivers\aswFW.sys [131232] O44 - LFC:[MD5.890918D53B80B474CFAFB48995B85AF3] - 01/06/2013 - 14:31:16 RSHAD . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\Drivers\aswKbd.sys [22600] O44 - LFC:[MD5.B006E233438CC1C19991D61E6F74BA74] - 28/05/2013 - 17:42:51 ---A- . (.PerformerSoft LLC - PC Performer.) -- C:\Windows\SysNative\roboot64.exe [19632] =>Rogue.PCPerformer O44 - LFC:[MD5.B006E233438CC1C19991D61E6F74BA74] - 28/05/2013 - 17:42:51 RSHAD . (.PerformerSoft LLC - PC Performer.) -- C:\Windows\System32\roboot64.exe [19632] =>Rogue.PCPerformer O44 - LFC:[MD5.4FC6E2C2FC50445450651F42E90CC0BD] - 28/05/2013 - 17:42:05 RSHAD . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\Drivers\Apowersoft_AudioDevice.sys [31968] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 22/05/2013 - 12:26:10 ---A- . (...) -- C:\Windows\SysNative\HP_ActiveX_Patch_NOT_DETECTED.txt [0] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 22/05/2013 - 12:26:10 RSHAD . (...) -- C:\Windows\System32\HP_ActiveX_Patch_NOT_DETECTED.txt [0] ~ Files: 21 Scanned in 00mn 04s ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.AD2D31B953D52D2B8AA68F58A1D1C1CF] - 01/06/2013 - 10:15:22 ---A- - C:\Windows\Prefetch\Layout.ini O45 - LFCP:[MD5.D814DEB1C3AB6078343003B4A2540905] - 01/06/2013 - 10:18:29 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-411A328D.pf O45 - LFCP:[MD5.587B6A46BF8CB75242D485E1F9693D0B] - 01/06/2013 - 10:20:28 ---A- - C:\Windows\Prefetch\POWERCFG.EXE-668FA411.pf O45 - LFCP:[MD5.1712279610204C0CCF6F8BD75EA90D05] - 01/06/2013 - 10:25:29 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-230FC512.pf O45 - LFCP:[MD5.B972C7D5E9E4AA2DD9FC2C4BD6C3D85B] - 01/06/2013 - 10:25:30 ---A- - C:\Windows\Prefetch\SDIAGNHOST.EXE-8D72177C.pf O45 - LFCP:[MD5.4F62D79676E4E36269CB9DD037D31AAA] - 01/06/2013 - 10:25:31 ---A- - C:\Windows\Prefetch\CSC.EXE-BE9AC2DF.pf O45 - LFCP:[MD5.C68EBF752080A51190276A789B8C0074] - 01/06/2013 - 10:25:31 ---A- - C:\Windows\Prefetch\CVTRES.EXE-2B9D810D.pf O45 - LFCP:[MD5.4B186C98F9ED64836C178282DD64927A] - 01/06/2013 - 10:25:35 ---A- - C:\Windows\Prefetch\W32TM.EXE-1101AF41.pf O45 - LFCP:[MD5.FEBC49146C0B195D2CA4965E1B7344C2] - 01/06/2013 - 11:02:21 ---A- - C:\Windows\Prefetch\INST.EXE-586CA748.pf O45 - LFCP:[MD5.83B00A819367D1037324094E83AEA722] - 01/06/2013 - 11:02:22 ---A- - C:\Windows\Prefetch\ASK & RECORD TOOLBAR.EXE-44F6D347.pf O45 - LFCP:[MD5.5D7C30A8433D1BE79B4D1A4FC2356896] - 01/06/2013 - 11:02:31 ---A- - C:\Windows\Prefetch\4F79719D-1368-4F37-A09F-28BD5-F514EBDD.pf O45 - LFCP:[MD5.823A5366F1FBCE03DF7018ADE8A52690] - 01/06/2013 - 11:02:50 ---A- - C:\Windows\Prefetch\MYSEARCHDIALSRV.EXE-095CDED4.pf =>Adware.MyWebSearch O45 - LFCP:[MD5.665F1565556F20AED45E2A545448313D] - 01/06/2013 - 11:03:04 ---A- - C:\Windows\Prefetch\MYSEARCHDIALUPDATE.EXE-B8CF310C.pf =>Adware.MyWebSearch O45 - LFCP:[MD5.E504E94B2AC670C190D0229464DC0FF1] - 01/06/2013 - 11:03:07 ---A- - C:\Windows\Prefetch\UPDATETASK.EXE-FCD5C85A.pf O45 - LFCP:[MD5.921309882D3AC647BDC2BA7E5F0C3992] - 01/06/2013 - 11:03:11 ---A- - C:\Windows\Prefetch\MYSEARCHDIAL_3004_EN-139CC2A5-77D26488.pf =>Adware.MyWebSearch O45 - LFCP:[MD5.D1EF064CA9089F5D9355C4C25279195E] - 01/06/2013 - 11:03:26 ---A- - C:\Windows\Prefetch\OBBOXORE_2304-5982487B.EXE-4E598D04.pf =>Adware.Boxore O45 - LFCP:[MD5.B034A6E238E315EDF09D3AB2A06BB7D4] - 01/06/2013 - 11:03:27 ---A- - C:\Windows\Prefetch\BOXOREINSTALLER.EXE-CED189AA.pf =>Adware.Boxore O45 - LFCP:[MD5.AA63F0BF16ABCE6E111C4C3A1FCF1270] - 01/06/2013 - 11:03:29 ---A- - C:\Windows\Prefetch\SOFTWAREUPDATE.EXE-92FF6B64.pf O45 - LFCP:[MD5.D0848682C3C8CA7FCD637E4FEDAA7659] - 01/06/2013 - 11:03:43 ---A- - C:\Windows\Prefetch\ATBSETUP.EXE-BDF7AF97.pf O45 - LFCP:[MD5.EFE62CC92C125CB76A73DCAB472FD971] - 01/06/2013 - 11:03:44 ---A- - C:\Windows\Prefetch\IRSETUP.EXE-0CA2B242.pf O45 - LFCP:[MD5.A5FB42EA406A703D56DD15FC366646B1] - 01/06/2013 - 11:03:52 ---A- - C:\Windows\Prefetch\FLVSRVC.EXE-791A9C24.pf O45 - LFCP:[MD5.3116D56A77A14AC8DB517731E72C9A2F] - 01/06/2013 - 11:04:28 ---A- - C:\Windows\Prefetch\FREECORDER.EXE-526592AB.pf O45 - LFCP:[MD5.FEAD752EBFF6F4BCBB4254A5C21486A7] - 01/06/2013 - 11:04:28 ---A- - C:\Windows\Prefetch\GLB9B75.TMP-A5E06DE8.pf O45 - LFCP:[MD5.4CFBFBCE7AAC7610521AD608605867D6] - 01/06/2013 - 11:04:37 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-5F58D8A1.pf O45 - LFCP:[MD5.9EC16A99AF7AD29A426CD41D1553B717] - 01/06/2013 - 11:04:37 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-C9D5F27C.pf O45 - LFCP:[MD5.FB8ED1F191415875FA9D8490A3F2546A] - 01/06/2013 - 11:04:38 ---A- - C:\Windows\Prefetch\OCPROMO.EXE-61BF2889.pf O45 - LFCP:[MD5.6229FE7758A2F2D8C2D033B183A033D2] - 01/06/2013 - 11:04:43 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-7AB6C604.pf O45 - LFCP:[MD5.85C5E81FAC8D702AAFA86D695AA92B57] - 01/06/2013 - 11:04:47 ---A- - C:\Windows\Prefetch\LATESTDLMGR.EXE-7DE5FA12.pf O45 - LFCP:[MD5.1D1AF76CB7D209828273D2880857DDB0] - 01/06/2013 - 11:04:50 ---A- - C:\Windows\Prefetch\BUBBLEDOCKFR_P1V0.EXE-16E38E8F.pf O45 - LFCP:[MD5.6B851DF03D647289D504B2BDC731C1BE] - 01/06/2013 - 11:04:51 ---A- - C:\Windows\Prefetch\INSTALL_BUBBLEDOCK.EXE-B6B290A7.pf O45 - LFCP:[MD5.A63BCBADAFF815F10A12C34A0C998017] - 01/06/2013 - 11:04:52 ---A- - C:\Windows\Prefetch\MSASCUI.EXE-07E0123F.pf O45 - LFCP:[MD5.31C0054217600881B3B94F422D143C48] - 01/06/2013 - 11:05:02 ---A- - C:\Windows\Prefetch\BUBBLE DOCK BSETUP.EXE-93D6751B.pf O45 - LFCP:[MD5.71E9BF0C20C6D17547AA1B3748DF9892] - 01/06/2013 - 11:05:14 ---A- - C:\Windows\Prefetch\FLVPLAYER.EXE-3F7F7157.pf O45 - LFCP:[MD5.3F00AC65FCBB7226CB8E19678B8F2F8E] - 01/06/2013 - 11:05:29 ---A- - C:\Windows\Prefetch\BUBBLE DOCK.EXE-238FBA54.pf O45 - LFCP:[MD5.9AD0274AC1D99CECA57EECD591B9B1A2] - 01/06/2013 - 11:05:29 ---A- - C:\Windows\Prefetch\LBUBBLE DOCK.EXE-0CBEAF78.pf O45 - LFCP:[MD5.C7DC7409C62D1BE225D10B9514FEAFA3] - 01/06/2013 - 11:06:06 ---A- - C:\Windows\Prefetch\SERVICES X86.EXE-A813134D.pf =>PUP.CrossRider O45 - LFCP:[MD5.44E87550E487DF6B32C3F534ED076A40] - 01/06/2013 - 11:07:21 ---A- - C:\Windows\Prefetch\01NET.COM_MAINTOOLBARHELPER.E-65C9EC7A.pf O45 - LFCP:[MD5.D802700CC63D2BBA8005674029B497A3] - 01/06/2013 - 11:07:22 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-010059D8.pf O45 - LFCP:[MD5.A4D5E90F03E410F21265468DB24A0ECC] - 01/06/2013 - 11:07:22 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-51B58BFC.pf O45 - LFCP:[MD5.8B406410932AF8BF52F11C4F079B5E3A] - 01/06/2013 - 11:07:35 ---A- - C:\Windows\Prefetch\FLASHUTIL64_11_7_700_202_ACTI-5BE5E0BB.pf O45 - LFCP:[MD5.EFA81EBD1CC3736CE3FAD97139ED55F7] - 01/06/2013 - 11:09:43 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-4F28A26F.pf O45 - LFCP:[MD5.743CA6B0DE5824C4058FCB4178A3C648] - 01/06/2013 - 11:11:48 ---A- - C:\Windows\Prefetch\UNINSTALL BUBBLE DOCK.EXE-34421486.pf O45 - LFCP:[MD5.3EC6518C27C45EF28110D45628D6C00A] - 01/06/2013 - 11:12:25 ---A- - C:\Windows\Prefetch\NSB1_AR_201351311423_QVO6.EXE-AD4FFDC0.pf =>Hijacker.Qvo6 O45 - LFCP:[MD5.12116D35571B0661AED685B1CFDF0A33] - 01/06/2013 - 11:12:37 ---A- - C:\Windows\Prefetch\EXQ.EXE-00E40A61.pf O45 - LFCP:[MD5.BDF59EF42DA570A6B2EF1E700167E551] - 01/06/2013 - 11:12:42 ---A- - C:\Windows\Prefetch\SAVINGSWAVE.EXE-1C1FC9E4.pf O45 - LFCP:[MD5.D1942761B9456E44FB0DF291C6760310] - 01/06/2013 - 11:12:44 ---A- - C:\Windows\Prefetch\ILEGSKDSTT.EXE-C832E42C.pf O45 - LFCP:[MD5.97219AD33B07B1FC701FC76B31CB734C] - 01/06/2013 - 11:12:48 ---A- - C:\Windows\Prefetch\DESK365.EXE-6CDD43B4.pf =>Hijacker.22Find O45 - LFCP:[MD5.CD6FCDB9D9BB5A283A895602BBD31570] - 01/06/2013 - 11:12:56 ---A- - C:\Windows\Prefetch\EINSTALL.EXE-5C9DE712.pf O45 - LFCP:[MD5.AC019C2AB99B6F514F4B01E1AB068894] - 01/06/2013 - 11:13:01 ---A- - C:\Windows\Prefetch\SCS.EXE-1513A7BD.pf O45 - LFCP:[MD5.46244E7B9287ECBC1A069A493EBDA726] - 01/06/2013 - 11:13:13 ---A- - C:\Windows\Prefetch\EGDPSVC.EXE-065994BF.pf O45 - LFCP:[MD5.B1CA0BD214F14AB7F4BEF954D2AEC2FE] - 01/06/2013 - 11:13:15 ---A- - C:\Windows\Prefetch\SAVINGS WAVE-CODEDOWNLOADER.E-3CFF9010.pf =>PUP.CrossRider O45 - LFCP:[MD5.8FDE07DCACE2712048D0AA68C9411BAA] - 01/06/2013 - 11:13:23 ---A- - C:\Windows\Prefetch\EGDPSVC.EXE-93F5DEC9.pf O45 - LFCP:[MD5.22678F1A2D85D3A3649A6DFD8F22C846] - 01/06/2013 - 11:13:24 ---A- - C:\Windows\Prefetch\SAVINGS WAVE-HELPER.EXE-BCE09186.pf =>PUP.CrossRider O45 - LFCP:[MD5.AB59C797B9D2BBDB5FEE9CF9B260DE75] - 01/06/2013 - 11:13:26 ---A- - C:\Windows\Prefetch\SAVINGS WAVE-BG.EXE-57816D0B.pf =>PUP.CrossRider O45 - LFCP:[MD5.7BA28E89D64F520DFD257CB33E8D485C] - 01/06/2013 - 11:13:38 ---A- - C:\Windows\Prefetch\UPDATER12765.EXE-1BD6841F.pf O45 - LFCP:[MD5.632448A2D7838F13FF6B1093BCAA8192] - 01/06/2013 - 11:13:45 ---A- - C:\Windows\Prefetch\ASWRUNDLL.EXE-955556EE.pf O45 - LFCP:[MD5.A7FAA40C7E19CF9ADD4BF227DE57438C] - 01/06/2013 - 11:13:45 ---A- - C:\Windows\Prefetch\UNINST.EXE-B350A5BD.pf O45 - LFCP:[MD5.248E3B770ED89E4AC5DE5D4352F29122] - 01/06/2013 - 11:13:48 ---A- - C:\Windows\Prefetch\DP.EXE-7AF39502.pf O45 - LFCP:[MD5.CA3D9F0092F02771658643BBE5C212DA] - 01/06/2013 - 11:13:48 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-37549B7E.pf O45 - LFCP:[MD5.88A46A32FECF129F1D70480A8444E1E2] - 01/06/2013 - 11:20:49 ---A- - C:\Windows\Prefetch\EUNINSTALL.EXE-87463445.pf O45 - LFCP:[MD5.DE51E1EC64BCC19F84D1C1B96F0441E6] - 01/06/2013 - 11:20:53 ---A- - C:\Windows\Prefetch\EDHELPER64.EXE-6CF2CA11.pf O45 - LFCP:[MD5.67F00CAF56FBC6734DF11F30A61D0D18] - 01/06/2013 - 11:20:55 ---A- - C:\Windows\Prefetch\DESKSVC.EXE-17D4CED1.pf O45 - LFCP:[MD5.24166EAFCAFB691890A3FF04EB4C7C57] - 01/06/2013 - 11:21:00 ---A- - C:\Windows\Prefetch\WINZIPPERDL.EXE-C3A9F351.pf O45 - LFCP:[MD5.E41D2CCD8DBC3ECA4B92828E01793A69] - 01/06/2013 - 11:21:02 ---A- - C:\Windows\Prefetch\DESKPLUSDL.EXE-CC763458.pf O45 - LFCP:[MD5.9B3F206CCE820F17DD381E332EE21643] - 01/06/2013 - 11:21:09 ---A- - C:\Windows\Prefetch\ESAFESVC.EXE-CBD96749.pf O45 - LFCP:[MD5.66EAAFD84D4114F06809F3E6F7747F9D] - 01/06/2013 - 11:21:11 ---A- - C:\Windows\Prefetch\DL_7252767.EXE-E19DED48.pf O45 - LFCP:[MD5.7B7A62279EC884F9E388B80651CA9BE8] - 01/06/2013 - 11:21:13 ---A- - C:\Windows\Prefetch\TRAYDOWNLOADER.EXE-051D8111.pf O45 - LFCP:[MD5.FFFDF6CC12FDB6295F934960968E6205] - 01/06/2013 - 11:21:14 ---A- - C:\Windows\Prefetch\EINSTALL.EXE-C9B48D86.pf O45 - LFCP:[MD5.A549845926E950F9CF4945084BA15A66] - 01/06/2013 - 11:21:15 ---A- - C:\Windows\Prefetch\DL_7251488.EXE-66350A3B.pf O45 - LFCP:[MD5.8641B2B6833947AA0D3E1530CF470669] - 01/06/2013 - 11:21:15 ---A- - C:\Windows\Prefetch\EINSTALL.EXE-74A07E81.pf O45 - LFCP:[MD5.570D86390308E33B284A24E907AD8685] - 01/06/2013 - 11:28:42 ---A- - C:\Windows\Prefetch\OMIGAPLUSSVC.EXE-9B4FAEC7.pf O45 - LFCP:[MD5.A489CFCDF52C4501CAE9105F89BBCEE2] - 01/06/2013 - 11:37:51 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-45C79D85.pf O45 - LFCP:[MD5.8538211B0F0CF93377A3D989B5A86475] - 01/06/2013 - 11:38:00 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-DE486C50.pf O45 - LFCP:[MD5.8C061F4B0B09609B7D85CCD2D5296C40] - 01/06/2013 - 12:42:58 ---A- - C:\Windows\Prefetch\ATBROKER.EXE-2E15A492.pf O45 - LFCP:[MD5.4DB07E2190F605E21FC9542623422CAD] - 01/06/2013 - 12:43:23 ---A- - C:\Windows\Prefetch\BOXORE.EXE-BCDE0609.pf =>Adware.Boxore O45 - LFCP:[MD5.D3F40CB6D077AF758AF6861AD0BF6B9C] - 01/06/2013 - 12:44:11 ---A- - C:\Windows\Prefetch\AgCx_SC4.db O45 - LFCP:[MD5.4FFD0D2F0499FFF727071ABB62A786C0] - 01/06/2013 - 12:44:12 ---A- - C:\Windows\Prefetch\SOFTWARECRASHHANDLER.EXE-6BA116FA.pf O45 - LFCP:[MD5.86838CDE4F2293630895BB980981D605] - 01/06/2013 - 12:52:59 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-D5170E12.pf O45 - LFCP:[MD5.83D995F802531C22B7CDF015EFF2819C] - 01/06/2013 - 12:53:25 ---A- - C:\Windows\Prefetch\TIMEOUT.EXE-CDF297C7.pf O45 - LFCP:[MD5.A0BC2EFD78DF4E851656198D252CC9D4] - 01/06/2013 - 12:53:53 ---A- - C:\Windows\Prefetch\ESAFESVC.EXE-7B3F3555.pf O45 - LFCP:[MD5.F013152A8A05D0B2C84E7FC9C82A3F0B] - 01/06/2013 - 12:54:01 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-8461DBEE.pf O45 - LFCP:[MD5.9C8BB75A1AAE075708AD7EE63642D7FA] - 01/06/2013 - 12:54:02 ---A- - C:\Windows\Prefetch\WINZIPERSVC.EXE-FF4A320D.pf O45 - LFCP:[MD5.477BFB39345968A16D6040BE0C59F5A7] - 01/06/2013 - 13:08:12 ---A- - C:\Windows\Prefetch\SOFTWAREUPDATE.EXE-C9D94961.pf O45 - LFCP:[MD5.6A29E3772FD84684A0BCFAE18F2684AA] - 01/06/2013 - 13:08:18 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-B2EB1806.pf O45 - LFCP:[MD5.7DD41F74A9261A7D84E34FEBBFFEB054] - 01/06/2013 - 13:09:06 ---A- - C:\Windows\Prefetch\AU_.EXE-74D8B9BD.pf O45 - LFCP:[MD5.550B1876F3BEFE5C3AFD3AD836F63E60] - 01/06/2013 - 13:16:00 ---A- - C:\Windows\Prefetch\MPCMDRUN.EXE-F401FBB4.pf O45 - LFCP:[MD5.E76365B3A97477560551B17562125E3B] - 01/06/2013 - 14:38:08 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7CFEDEA3.pf O45 - LFCP:[MD5.48934FB74CC7657D21C035C22772FF94] - 01/06/2013 - 14:38:08 ---A- - C:\Windows\Prefetch\VSSVC.EXE-B8AFC319.pf O45 - LFCP:[MD5.2A07989CF8EB0A4088ACCFD78D07DFD1] - 01/06/2013 - 14:38:55 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-E09A077A.pf O45 - LFCP:[MD5.1B6347A5BD9C5AF0E97B8CF880A1D4CF] - 01/06/2013 - 14:38:56 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-A2D55CB6.pf O45 - LFCP:[MD5.A83094AC20B1BD6520D5A430B5F41F70] - 01/06/2013 - 16:56:05 ---A- - C:\Windows\Prefetch\REVOUNINSTALLER.EXE-0601D209.pf O45 - LFCP:[MD5.1F84199DDDFA1D56068E3DF4C1377006] - 01/06/2013 - 17:26:04 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-EEE13F6D.pf O45 - LFCP:[MD5.18B25D2B14FF67ECE0DF35EB592662A3] - 01/06/2013 - 17:32:22 ---A- - C:\Windows\Prefetch\SERVICES X86-BG.EXE-02D14EE3.pf =>PUP.CrossRider O45 - LFCP:[MD5.00EF43D04FB4A36EC41A790C1379FE6A] - 01/06/2013 - 19:36:43 ---A- - C:\Windows\Prefetch\REALPLAY.EXE-BBD23B10.pf O45 - LFCP:[MD5.69F391E3FCF4B9B8C6AF727CFE7A09F5] - 01/06/2013 - 20:30:07 ---A- - C:\Windows\Prefetch\PHOTOSCREENSAVER.SCR-BE555075.pf O45 - LFCP:[MD5.EEF793E08366D65EE185A8C281698A4D] - 01/06/2013 - 20:47:36 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf O45 - LFCP:[MD5.FB0E68C542D1C7100108582060BADE63] - 01/06/2013 - 20:51:52 ---A- - C:\Windows\Prefetch\RECORDINGMANAGER.EXE-EC3608E9.pf O45 - LFCP:[MD5.DB2AE774D7C39D99BD2DA04397F21DC9] - 01/06/2013 - 21:37:25 ---A- - C:\Windows\Prefetch\WMPNETWK.EXE-D9F2A96F.pf O45 - LFCP:[MD5.310F203B4F8FBC746505727DDFE8307A] - 01/06/2013 - 21:59:46 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin O45 - LFCP:[MD5.C3835FCF9BCF4240C9DB324C9090B15A] - 01/06/2013 - 21:59:47 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db O45 - LFCP:[MD5.BD49DE80E51A2513E18DA7D7038FAF19] - 01/06/2013 - 21:59:47 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db O45 - LFCP:[MD5.419D6B54A21C10571E6F86614EE22A3D] - 01/06/2013 - 21:59:47 ---A- - C:\Windows\Prefetch\AgRobust.db O45 - LFCP:[MD5.821C11808682A10C60CDB59143073249] - 01/06/2013 - 21:59:48 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db O45 - LFCP:[MD5.602D3E4B551B9B63491B2FA845B7E6BA] - 02/06/2013 - 07:18:02 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf O45 - LFCP:[MD5.22527BEFF2900CB7704D5E01475CA917] - 02/06/2013 - 07:18:09 ---A- - C:\Windows\Prefetch\ORACONFIGRECOVER.EXE-B8D1C778.pf O45 - LFCP:[MD5.16FDDB2E626ADFD4DA7E8AD716C0DB4A] - 02/06/2013 - 07:18:23 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-57D17DAF.pf O45 - LFCP:[MD5.165F8401202F5334B3D386841D7D7F52] - 02/06/2013 - 07:18:23 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf O45 - LFCP:[MD5.9C86C9F3DDF4DDE6128693B280C1D550] - 02/06/2013 - 07:18:24 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-40DD444D.pf O45 - LFCP:[MD5.FA386AC42C4D004CEB379C17FE94586F] - 02/06/2013 - 07:18:34 ---A- - C:\Windows\Prefetch\HPSA_SERVICE.EXE-AD6579F0.pf O45 - LFCP:[MD5.D9F29FA49E5A26FAB01D79D516A490A2] - 02/06/2013 - 07:18:36 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-05F624AB.pf O45 - LFCP:[MD5.FE152316256B6876A0B0968AABDB6EA9] - 02/06/2013 - 07:20:00 ---A- - C:\Windows\Prefetch\FLASHPLAYERUPDATESERVICE.EXE-216D9C35.pf O45 - LFCP:[MD5.BD2928E3F0C76E8BFD227BC252E41495] - 02/06/2013 - 07:20:22 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf O45 - LFCP:[MD5.8C625D342FFEA3662A46FE066B1703D8] - 02/06/2013 - 07:21:19 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-E2C2633A.pf O45 - LFCP:[MD5.68DF608F524940086D9B8DADBC85F0AB] - 02/06/2013 - 07:29:08 ---A- - C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf O45 - LFCP:[MD5.A783C4DA04C85F2AE77850FF7DE8726B] - 02/06/2013 - 07:29:19 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-A3E35360.pf O45 - LFCP:[MD5.66E9A20CB4F37F10863E1CF098B0F0FE] - 02/06/2013 - 07:31:14 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-E7777CC4.pf O45 - LFCP:[MD5.0ADCCACBCE5C2D697085278FC3D7722F] - 02/06/2013 - 07:43:37 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-4B6C9213.pf O45 - LFCP:[MD5.3FBB5E2E2953ADBB062931388E37BE35] - 02/06/2013 - 07:43:37 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-908C99F8.pf O45 - LFCP:[MD5.1FDAC6437217D83A43D35C729103C336] - 02/06/2013 - 08:31:56 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx O45 - LFCP:[MD5.CFC99A71078EF4B43F7AB2211C70455A] - 02/06/2013 - 08:31:56 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-B95715F5.pf O45 - LFCP:[MD5.922004B2826570367B0274AD3CEE25AE] - 02/06/2013 - 08:31:56 ---A- - C:\Windows\Prefetch\WMPNSCFG.EXE-FC0D39BF.pf O45 - LFCP:[MD5.085B736DB72BFE594AE1A77411915B98] - 02/06/2013 - 08:32:02 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-7238F31D.pf O45 - LFCP:[MD5.CCAA038B9A8EFDB7EE50841F46E4B1DD] - 02/06/2013 - 08:32:04 ---A- - C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf O45 - LFCP:[MD5.52619C8D07259D3F909749E68F298996] - 02/06/2013 - 08:32:16 ---A- - C:\Windows\Prefetch\AVAST.SETUP-3DA1C849.pf O45 - LFCP:[MD5.E00CFA9B129BF8467D1D002D6498D9B9] - 02/06/2013 - 08:32:56 ---A- - C:\Windows\Prefetch\AgCx_SC1.db O45 - LFCP:[MD5.778A05F0F98F7E38459CA1C9FC5BB9EA] - 02/06/2013 - 08:33:24 ---A- - C:\Windows\Prefetch\PING.EXE-7E94E73E.pf O45 - LFCP:[MD5.0F18F91BE40C25035BB297E077870DB1] - 02/06/2013 - 08:36:02 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-3575764572-4265277144-1718528653-1000.db O45 - LFCP:[MD5.B62B84606B119663FB86F0E7EB6572E4] - 02/06/2013 - 08:36:02 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-3575764572-4265277144-1718528653-1000.db O45 - LFCP:[MD5.948653060ECF13DB4CCF0E40D50B7A3F] - 02/06/2013 - 08:37:05 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf O45 - LFCP:[MD5.8E56C9EBF2CCCA978CC6F3A31DF37E8A] - 02/06/2013 - 08:37:05 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf O45 - LFCP:[MD5.0B2F96BCE4D27E01B37FBF52D5530489] - 02/06/2013 - 08:37:29 ---A- - C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf O45 - LFCP:[MD5.0D142CA24528CAEE25ABB59DAE601B68] - 02/06/2013 - 08:37:34 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf O45 - LFCP:[MD5.3B766064C8907346D84202173E73ACA2] - 02/06/2013 - 08:38:06 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf O45 - LFCP:[MD5.161636BBC2EC011338246B18F771B2FF] - 02/06/2013 - 08:38:37 ---A- - C:\Windows\Prefetch\CHROME.EXE-D999B1BA.pf O45 - LFCP:[MD5.78CB36C760CC77E9E1B7E045911F2DC1] - 02/06/2013 - 08:40:11 ---A- - C:\Windows\Prefetch\CMD.EXE-AC113AA8.pf O45 - LFCP:[MD5.0338D6A6B26A3E458DF20EEA4FFCAD57] - 02/06/2013 - 08:40:11 ---A- - C:\Windows\Prefetch\CONHOST.EXE-1F3E9D7E.pf O45 - LFCP:[MD5.86B35512D74F91C1D35ADBC0C1EACDE9] - 02/06/2013 - 08:40:13 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-B0F8131B.pf O45 - LFCP:[MD5.F66A00A4B7CC737C9A5E349E5594D821] - 02/06/2013 - 08:40:27 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-80F4A784.pf O45 - LFCP:[MD5.66CF1D853D3A0C54EFF6E374C001BDD7] - 02/06/2013 - 08:40:52 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-AD598958.pf O45 - LFCP:[MD5.503A3257AF6ABBEEF2462814BB2AE32A] - 28/05/2013 - 20:47:44 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf ~ Prefetcher: 140 Scanned in 00mn 01s ---\\ Export de clé d'application autorisée (O47) O47 - AAKE:Key Export SP - "C:\Program Files (x86)\Orange\Connexion Internet Orange\Connectivity\ConnectivityManager.exe" [Enabled] .(.France Telecom SA.) -- C:\Program Files (x86)\Orange\Connexion Internet Orange\Connectivity\ConnectivityManager.exe ~ Keys Export: 1 Scanned in 00mn 00s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll ~ LSA: 9 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ CSB: 13 Scanned in 00mn 00s ---\\ MountPoints2 Shell Key (O51) O51 - MPSK:{4045b1a7-265c-11e2-b93d-e0cb4e4c587c}\AutoRun\command. (.Western Digital - Unlock Utility for WD Encrypted Drive.) -- F:\WD Drive Unlock.exe O51 - MPSK:{4a68b4f7-6bed-11e0-87bf-e0cb4e4c587c}\AutoRun\command. (...) -- L:\starter.exe (.not file.) O51 - MPSK:{5b82e2be-67fa-11e0-8833-e0cb4e4c587c}\AutoRun\command. (...) -- K:\Launcher.exe (.not file.) O51 - MPSK:{b3c37bd2-58e5-11e2-9387-e0cb4e4c587c}\AutoRun\command. (...) -- N:\Startme.exe (.not file.) ~ Keys: Scanned in 00mn 00s ---\\ Trojan Driver Search Data (HKLM) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ TDSD: 2 Scanned in 00mn 00s ---\\ ShareTools MSconfig StartupReg (O53) O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O53 - SMSR:HKLM\...\startupreg\Bubble Dock [Key] . (...) -- C:\Users\Fabienne\AppData\Roaming\Nosibay\Bubble Dock\LBubble Dock.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe O53 - SMSR:HKLM\...\startupreg\Freecorder FLV Service [Key] . (...) -- C:\Program Files (x86)\Freecorder\FLVSrvc.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe O53 - SMSR:HKLM\...\startupreg\HPADVISOR [Key] . (.Hewlett-Packard - HP Advisor.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe O53 - SMSR:HKLM\...\startupreg\Iminent [Key] . (...) -- C:\Program Files (x86)\Iminent\Iminent.exe (.not file.) =>Adware.IMBooster O53 - SMSR:HKLM\...\startupreg\IminentMessenger [Key] . (...) -- C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (.not file.) =>Adware.IMBooster O53 - SMSR:HKLM\...\startupreg\KiesTrayAgent [Key] . (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\\\KiesTrayAgent.exe O53 - SMSR:HKLM\...\startupreg\msnmsgr [Key] . (...) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\NortonOnlineBackupReminder [Key] . (...) -- C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\OPSE reminder [Key] . (...) -- C:\Program Files (x86)\ScanSoft\OmniPageSE2.0\EregFre\Ereg.exe O53 - SMSR:HKLM\...\startupreg\SmartMenu [Key] . (.Pas de propriétaire - SmartMenu.) -- C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe O53 - SMSR:HKLM\...\startupreg\Sony PC Companion [Key] . (.Sony - Sony PC Companion.) -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (.Valve Corporation - Steam Client Bootstrapper (buildbot_winslav.) -- C:\Program Files (x86)\Valve\Steam\Steam.exe O53 - SMSR:HKLM\...\startupreg\SweetIM [Key] . (...) -- C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe (.not file.) =>PUP.SweetIM ~ SMSR Keys: 16 Scanned in 00mn 00s ---\\ Microsoft Control Security Providers (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ MSCP: 2 Scanned in 00mn 00s ---\\ Microsoft Windows Policies System (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 O55 - MWPS:[HKLM\...\Policies\System] - "HideFastUserSwitching"=0 O55 - MWPS:[HKCU\...\Policies\System] - "DisableLockWorkstation"=0 O55 - MWPS:[HKCU\...\Policies\System] - "DisableChangePassword"=0 ~ MWPS: 19 Scanned in 00mn 00s ---\\ Microsoft Windows Policies Explorer (O56) O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"= O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 ~ MWPE Keys: 4 Scanned in 00mn 00s ---\\ Liste des Drivers Système (O58) O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088] O58 - SDL:[MD5.4F63FF698DC72EC2EC0262427F8B53CB] - 22/12/2009 - 03:31:02 ---A- . (.Devguru Co., Ltd - Device Error Recovery SDK(x86).) -- C:\Windows\SysWOW64\drivers\dgderdrv.sys [18136] O58 - SDL:[MD5.B670C5D89F0726B7A2A7DFB4E968CDF8] - 24/08/2009 - 11:22:58 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 MPR Protocol Driver.) -- C:\Windows\SysWOW64\pcampr5.sys [34688] ~ Drivers: Scanned in 00mn 00s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 01/06/2013 - 09:23:58 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\menuWin.xml [924] O61 - LFC: 01/06/2013 - 09:24:01 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\menuWin\email.bmp [822] O61 - LFC: 01/06/2013 - 09:24:04 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\menuWin\orange.bmp [822] O61 - LFC: 01/06/2013 - 09:24:06 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\menuWin\search.bmp [822] O61 - LFC: 01/06/2013 - 09:24:08 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\menuWin\sms.bmp [822] O61 - LFC: 01/06/2013 - 09:24:11 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\OIExt.dll [190976] O61 - LFC: 01/06/2013 - 09:24:35 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\src\AddFavorites_html\AddFavorites.html [392] O61 - LFC: 01/06/2013 - 09:24:36 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\src\sendmail_html\sendmail.html [335] O61 - LFC: 01/06/2013 - 09:24:36 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\src\sendsms_html\sendsms.html [379] O61 - LFC: 01/06/2013 - 09:24:36 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\src\sendsmsselectedtext_html\sendsmsselectedtext.html [524] O61 - LFC: 01/06/2013 - 09:40:08 ---A- C:\Users\Fabienne\AppData\Roaming\wargaming.net\WorldOfTanks\dossier_cache\NRXWO2LOFZYDELTXN5ZGYZDPMZ2GC3TLOMXGK5J2GIYDAMJWHNWTOMRR.dat [17241] O61 - LFC: 01/06/2013 - 11:00:56 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_freecorder4toolbar.ourtoolbar.com_0.localstorage-journal [3608] O61 - LFC: 01/06/2013 - 11:02:13 ---A- C:\Users\Fabienne\Downloads\Ask & Record Toolbar.exe [203848] O61 - LFC: 01/06/2013 - 11:02:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\34958uninstall.exe [410624] O61 - LFC: 01/06/2013 - 11:02:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\Sqlite3.dll [599419] O61 - LFC: 01/06/2013 - 11:03:15 ---A- C:\Users\Fabienne\AppData\Local\Temp\nsnAFA3.tmp\OBBoxore_2304-5982487b.exe [638683] =>Adware.Boxore O61 - LFC: 01/06/2013 - 11:03:36 ---A- C:\Users\Fabienne\AppData\Local\Temp\MSIede3f.LOG [394] O61 - LFC: 01/06/2013 - 11:03:42 ---A- C:\Users\Fabienne\AppData\Local\FLVService\lib\FLVSrvLib.dll [18432] O61 - LFC: 01/06/2013 - 11:05:10 ---A- C:\Users\Fabienne\AppData\Local\Temp\mProjector3175261488\Flash6MovieV2.3.1.1e.mvx [192512] O61 - LFC: 01/06/2013 - 11:05:10 ---A- C:\Users\Fabienne\AppData\Local\Temp\mProjector3175261488\FlashPlayer.3.1.1e.ocx [2987392] O61 - LFC: 01/06/2013 - 11:05:10 ---A- C:\Users\Fabienne\AppData\Local\Temp\mProjector3175261488\System.3.1.1e.mfx [27136] O61 - LFC: 01/06/2013 - 11:05:10 ---A- C:\Users\Fabienne\AppData\Local\Temp\mProjector3175261488\mPlayer.3.1.1e.dll [126976] O61 - LFC: 01/06/2013 - 11:05:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\Bubble Dock.txt [1140] O61 - LFC: 01/06/2013 - 11:05:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\LBubble Dock.txt [4944] O61 - LFC: 01/06/2013 - 11:06:19 ---A- C:\Users\Fabienne\AppData\Local\Temp\ping.txt [19] O61 - LFC: 01/06/2013 - 11:13:43 ---A- C:\Users\Fabienne\AppData\Local\CrashDumps\regsvr32.exe.5232.dmp [341527] O61 - LFC: 01/06/2013 - 11:14:00 ---A- C:\Users\Fabienne\AppData\Local\Temp\bundle.txt [0] O61 - LFC: 01/06/2013 - 11:14:01 ---A- C:\Users\Fabienne\AppData\Local\Temp\netlog.txt [7] O61 - LFC: 01/06/2013 - 11:25:00 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\macromedia.com\support\flashplayer\sys\#savingswave-a.akamaihd.net\settings.sol [96] O61 - LFC: 01/06/2013 - 11:30:12 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\savingswave-a.akamaihd.net\items\e6a00\storage.swf\gpl.sol [297] O61 - LFC: 01/06/2013 - 11:31:18 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.qvo6.com_0.localstorage-journal [3608] =>Hijacker.Qvo6 O61 - LFC: 01/06/2013 - 11:40:38 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\src\orange_html\orange.html [334] O61 - LFC: 01/06/2013 - 11:41:22 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\src\translate_html\translate.html [395] O61 - LFC: 01/06/2013 - 11:42:10 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\src\translateSelectedText_html\translateSelectedText.html [540] O61 - LFC: 01/06/2013 - 11:42:54 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\src\selectedsearch_html\selectedsearch.html [534] O61 - LFC: 01/06/2013 - 11:43:37 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\src\AddFavorites_html\selectedsearch.html [534] O61 - LFC: 01/06/2013 - 11:44:20 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\src\sendmail_html\selectedsearch.html [534] O61 - LFC: 01/06/2013 - 11:45:03 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\src\sendsms_html\selectedsearch.html [534] O61 - LFC: 01/06/2013 - 11:45:46 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\src\sendsmsselectedtext_html\selectedsearch.html [534] O61 - LFC: 01/06/2013 - 12:30:16 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\CURRENT [16] O61 - LFC: 01/06/2013 - 12:30:16 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\LOCK [0] O61 - LFC: 01/06/2013 - 12:30:16 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\MANIFEST-000002 [50] O61 - LFC: 01/06/2013 - 12:30:17 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\LOG [47] O61 - LFC: 01/06/2013 - 12:32:59 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\www.ajaxcdn.org\swf.swf\dm_cookie.sol [414] O61 - LFC: 01/06/2013 - 12:37:00 ---A- C:\Users\Fabienne\Downloads\IE10-Windows6.1-x64-fr-fr.exe [46496792] O61 - LFC: 01/06/2013 - 12:48:44 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\cdncache1-a.akamaihd.net\items\e6a00\storage.swf\gpl.sol [350] O61 - LFC: 01/06/2013 - 12:49:06 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extension Cookies [6144] O61 - LFC: 01/06/2013 - 12:49:06 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extension Cookies-journal [4640] O61 - LFC: 01/06/2013 - 12:49:31 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\databases\Databases.db [9216] O61 - LFC: 01/06/2013 - 12:49:31 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\databases\Databases.db-journal [4640] O61 - LFC: 01/06/2013 - 12:49:45 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\001153.sst [2299] O61 - LFC: 01/06/2013 - 13:05:16 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\001157.sst [356] O61 - LFC: 01/06/2013 - 13:18:03 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\adventori.com\cookie.sol [94] O61 - LFC: 01/06/2013 - 13:18:34 ---A- C:\Users\Fabienne\Downloads\IE10-Windows6.1-x64-fr-fr (1).exe [46496792] O61 - LFC: 01/06/2013 - 13:38:15 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\mariage bene\autres fin soiree\AlbumArtSmall.jpg [2966] O61 - LFC: 01/06/2013 - 13:38:15 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\mariage bene\autres fin soiree\AlbumArt_{E0B5F6EB-9E7A-4290-A301-FD4994D78C20}_Small.jpg [2966] O61 - LFC: 01/06/2013 - 13:38:16 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\mariage bene\autres fin soiree\AlbumArt_{E0B5F6EB-9E7A-4290-A301-FD4994D78C20}_Large.jpg [12401] O61 - LFC: 01/06/2013 - 13:38:16 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\mariage bene\autres fin soiree\Folder.jpg [12401] O61 - LFC: 01/06/2013 - 13:39:06 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\001162.sst [253] O61 - LFC: 01/06/2013 - 13:40:13 ---A- C:\Users\Fabienne\Downloads\IE10-Windows6.1-fr-fr.exe [861208] O61 - LFC: 01/06/2013 - 13:40:59 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\mariage bene\AlbumArtSmall.jpg [2899] O61 - LFC: 01/06/2013 - 13:40:59 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\mariage bene\AlbumArt_{1083C0D1-4460-4447-B80B-4458E445FC43}_Large.jpg [11658] O61 - LFC: 01/06/2013 - 13:40:59 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\mariage bene\AlbumArt_{1083C0D1-4460-4447-B80B-4458E445FC43}_Small.jpg [2899] O61 - LFC: 01/06/2013 - 13:40:59 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\mariage bene\Folder.jpg [11658] O61 - LFC: 01/06/2013 - 14:01:45 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.01net.com_0.localstorage-journal [3608] O61 - LFC: 01/06/2013 - 14:04:58 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\ced.sascdn.com\diff\28\a130494\300x250.swf\curlyBanner.sol [67] O61 - LFC: 01/06/2013 - 14:04:58 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\macromedia.com\support\flashplayer\sys\#ced.sascdn.com\settings.sol [84] O61 - LFC: 01/06/2013 - 14:24:58 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\stats.txt [226] O61 - LFC: 01/06/2013 - 14:33:22 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\_win32sysloader.pyd [8192] O61 - LFC: 01/06/2013 - 14:33:23 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\select.pyd [10240] O61 - LFC: 01/06/2013 - 14:33:23 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\unicodedata.pyd [686080] O61 - LFC: 01/06/2013 - 14:33:23 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32pipe.pyd [24064] O61 - LFC: 01/06/2013 - 14:33:24 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\pyexpat.pyd [127488] O61 - LFC: 01/06/2013 - 14:33:24 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32event.pyd [18432] O61 - LFC: 01/06/2013 - 14:33:24 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\wx._controls_.pyd [1062400] O61 - LFC: 01/06/2013 - 14:33:25 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\kernel32.dll [989696] O61 - LFC: 01/06/2013 - 14:33:25 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\psapi.dll [23040] O61 - LFC: 01/06/2013 - 14:33:25 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\shell32.dll [8461312] O61 - LFC: 01/06/2013 - 14:33:25 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32inet.pyd [38912] O61 - LFC: 01/06/2013 - 14:33:26 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32file.pyd [119808] O61 - LFC: 01/06/2013 - 14:33:26 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32wnet.pyd [25088] O61 - LFC: 01/06/2013 - 14:33:27 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\wx._windows_.pyd [811008] O61 - LFC: 01/06/2013 - 14:33:27 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\wx._wizard.pyd [122368] O61 - LFC: 01/06/2013 - 14:33:28 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\_hashlib.pyd [711680] O61 - LFC: 01/06/2013 - 14:33:28 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\_ssl.pyd [1153024] O61 - LFC: 01/06/2013 - 14:33:28 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\bz2.pyd [68608] O61 - LFC: 01/06/2013 - 14:33:28 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32pdh.pyd [25600] O61 - LFC: 01/06/2013 - 14:33:28 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32process.pyd [35840] O61 - LFC: 01/06/2013 - 14:33:28 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32ui.pyd [778752] O61 - LFC: 01/06/2013 - 14:33:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\PyWinTypes27.dll [110080] O61 - LFC: 01/06/2013 - 14:33:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\_ctypes.pyd [87040] O61 - LFC: 01/06/2013 - 14:33:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\pythoncom27.dll [364544] O61 - LFC: 01/06/2013 - 14:33:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32crypt.pyd [11264] O61 - LFC: 01/06/2013 - 14:33:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32evtlog.pyd [33792] O61 - LFC: 01/06/2013 - 14:33:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32profile.pyd [17408] O61 - LFC: 01/06/2013 - 14:33:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32security.pyd [108544] O61 - LFC: 01/06/2013 - 14:33:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32trace.pyd [15872] O61 - LFC: 01/06/2013 - 14:33:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\windows._cacheinvalidation.pyd [1022416] O61 - LFC: 01/06/2013 - 14:33:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\wx._core_.pyd [1175040] O61 - LFC: 01/06/2013 - 14:33:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\wx._gdi_.pyd [805888] O61 - LFC: 01/06/2013 - 14:33:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\wx._html2.pyd [70656] O61 - LFC: 01/06/2013 - 14:33:29 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\wx._misc_.pyd [735232] O61 - LFC: 01/06/2013 - 14:33:30 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\_elementtree.pyd [128512] O61 - LFC: 01/06/2013 - 14:33:30 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\_multiprocessing.pyd [26624] O61 - LFC: 01/06/2013 - 14:33:30 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\_socket.pyd [44032] O61 - LFC: 01/06/2013 - 14:33:30 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\pysqlite2._sqlite.pyd [557056] O61 - LFC: 01/06/2013 - 14:33:30 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\python27.dll [2436608] O61 - LFC: 01/06/2013 - 14:33:30 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32api.pyd [98816] O61 - LFC: 01/06/2013 - 14:33:30 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32com.shell.shell.pyd [320512] O61 - LFC: 01/06/2013 - 14:33:30 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\win32ts.pyd [22528] O61 - LFC: 01/06/2013 - 14:33:30 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\wxbase294u_vc90.dll [1985024] O61 - LFC: 01/06/2013 - 14:33:30 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\wxmsw294u_core_vc90.dll [4598272] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\mfc90.dll [1156600] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\mfc90u.dll [1162744] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\mfcm90.dll [59904] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\mfcm90u.dll [59904] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gdoc16.png [292] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gdoc256.png [8221] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gdoc32.png [1124] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gdoc48.png [1625] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gdraw16.png [437] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gdraw256.png [8865] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gdraw32.png [1254] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gdraw48.png [1753] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gform16.png [360] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gform256.png [8615] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gform32.png [1194] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gform48.png [1699] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-glink16.png [866] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-glink256.png [16273] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-glink32.png [1946] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-glink48.png [2770] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gsheet16.png [305] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gsheet256.png [8216] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gsheet32.png [1176] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gsheet48.png [1633] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gslides16.png [312] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gslides256.png [8675] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gslides32.png [1139] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-gslides48.png [1640] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-sync16.png [1533] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-sync16.xpm [2895] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-sync256.png [19252] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-sync32.xpm [2492] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\drive-sync64.png [4432] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\exclaim.png [605] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\file.png [121] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\folder-mac.icns [117965] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\mime\drive.mime.types [24371] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\wxbase294u_net_vc90.dll [154112] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\wxmsw294u_adv_vc90.dll [1234944] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\wxmsw294u_html_vc90.dll [595968] O61 - LFC: 01/06/2013 - 14:33:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\wxmsw294u_webview_vc90.dll [91648] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\folder-winseven.ico [57802] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\folder-winxp.ico [15406] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\folder.png [115] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gdoc.icns [298141] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gdoc.ico [26671] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gdraw.icns [305541] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gdraw.ico [27212] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gform.icns [305412] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gform.ico [27036] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\glink.icns [419431] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\glink.ico [37282] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gnote.icns [90463] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gnote.ico [28554] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gscript.icns [303839] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gscript.ico [26883] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gsheet.icns [298895] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gsheet.ico [26661] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gslides.icns [303147] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gslides.ico [27114] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gtable.icns [310308] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\gtable.ico [27253] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\image_resources.py [5833] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\image_resources.pyo [6720] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\info1-mac.png [16824] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\info1-windows7.png [9749] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\info1-windowsxp.png [10976] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\info2-default.png [2778] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\info2-mac.png [9762] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\info2-win7.png [8184] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\info2-winxp.png [8062] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate1-inverse.png [324] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate1-inverse_2x.png [3300] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate1.png [322] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate1_2x.png [3301] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate2-inverse.png [381] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate2-inverse_2x.png [3529] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate2.png [382] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate2_2x.png [3535] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate3-inverse.png [341] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate3-inverse_2x.png [3377] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate3.png [336] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate3_2x.png [3299] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate4-inverse.png [381] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate4-inverse_2x.png [3487] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate4.png [383] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate4_2x.png [3431] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate5-inverse.png [323] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate5-inverse_2x.png [3295] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate5.png [322] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate5_2x.png [3301] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate6-inverse.png [390] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate6-inverse_2x.png [3509] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate6.png [401] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate6_2x.png [3566] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate7-inverse.png [333] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate7-inverse_2x.png [3294] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate7.png [337] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate7_2x.png [3301] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate8-inverse.png [378] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate8-inverse_2x.png [3472] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate8.png [382] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-animate8_2x.png [3460] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-error-inverse.png [252] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-error-inverse_2x.png [3146] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-error.png [257] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-error_2x.png [3140] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-inactive-inverse.png [254] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-inactive-inverse_2x.png [3122] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-inactive.png [259] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-inactive_2x.png [3098] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-normal-inverse.png [262] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-normal-inverse_2x.png [3154] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-normal.png [269] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-normal_2x.png [3147] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-pause-inverse_2x.png [3130] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-paused-inverse.png [263] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-paused-inverse_2x.png [3149] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-paused.png [261] O61 - LFC: 01/06/2013 - 14:33:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\mac-paused_2x.png [3164] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx [25575] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\html\drive_thankyou.html [1537] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\tr\LC_MESSAGES\syncclient.mo [25614] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\uk\LC_MESSAGES\syncclient.mo [31950] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\vi\LC_MESSAGES\syncclient.mo [26948] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\zh-Hans\LC_MESSAGES\syncclient.mo [23837] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\zh-Hant\LC_MESSAGES\syncclient.mo [24134] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\zh\LC_MESSAGES\syncclient.mo [23837] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\zh_CN\LC_MESSAGES\syncclient.mo [23837] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\zh_HK\LC_MESSAGES\syncclient.mo [24144] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\zh_TW\LC_MESSAGES\syncclient.mo [24134] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\__init__.py [0] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\__init__.pyo [198] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\menu_warning.png [237] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\menu_warning_2x.png [1317] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\overlays\Blacklisted.ico [40903] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\overlays\Shared.ico [35679] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\overlays\Synced.ico [35679] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\overlays\Syncing.ico [35424] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\sharedfolder-mac.icns [117416] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\sharedfolder-winseven.ico [55019] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\sharedfolder-winxp.ico [15406] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\shareguyicon.png [179] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\sync.icns [117146] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\sync.ico [45533] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\sync.png [1312] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\sync_128.png [7846] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\toprighticon.png [3355] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\warning-hdpi_2x.png [1259] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\win-animate1.png [656] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\win-animate2.png [689] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\win-animate3.png [625] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\win-animate4.png [632] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\win-animate5.png [643] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\win-animate6.png [642] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\win-animate7.png [612] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\win-animate8.png [619] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\win-normal.png [612] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\win7-error.png [600] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\win7-inactive.png [599] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\win7-paused.png [584] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\winxp-error.png [606] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\winxp-inactive.png [598] O61 - LFC: 01/06/2013 - 14:33:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\images\winxp-paused.png [583] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\en\LC_MESSAGES\syncclient.mo [23295] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\en_GB\LC_MESSAGES\syncclient.mo [23316] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\en_US\LC_MESSAGES\syncclient.mo [413] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\es\LC_MESSAGES\syncclient.mo [25469] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\fi\LC_MESSAGES\syncclient.mo [24179] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\fil\LC_MESSAGES\syncclient.mo [25399] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\fr\LC_MESSAGES\syncclient.mo [25786] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\gu\LC_MESSAGES\syncclient.mo [38468] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\he\LC_MESSAGES\syncclient.mo [26819] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\hi\LC_MESSAGES\syncclient.mo [39351] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\hr\LC_MESSAGES\syncclient.mo [24658] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\hu\LC_MESSAGES\syncclient.mo [25633] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\id\LC_MESSAGES\syncclient.mo [24164] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\it\LC_MESSAGES\syncclient.mo [25156] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\ja\LC_MESSAGES\syncclient.mo [28337] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\kn\LC_MESSAGES\syncclient.mo [43489] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\ko\LC_MESSAGES\syncclient.mo [26140] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\lt\LC_MESSAGES\syncclient.mo [25398] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\lv\LC_MESSAGES\syncclient.mo [25063] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\ml\LC_MESSAGES\syncclient.mo [43944] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\mr\LC_MESSAGES\syncclient.mo [38614] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\nl\LC_MESSAGES\syncclient.mo [24838] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\no\LC_MESSAGES\syncclient.mo [24066] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\pl\LC_MESSAGES\syncclient.mo [24560] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\pt\LC_MESSAGES\syncclient.mo [25177] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\pt_BR\LC_MESSAGES\syncclient.mo [25177] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\pt_PT\LC_MESSAGES\syncclient.mo [25085] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\ro\LC_MESSAGES\syncclient.mo [25464] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\ru\LC_MESSAGES\syncclient.mo [31737] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\sk\LC_MESSAGES\syncclient.mo [25539] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\sl\LC_MESSAGES\syncclient.mo [25010] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\sr\LC_MESSAGES\syncclient.mo [32211] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\sv\LC_MESSAGES\syncclient.mo [24230] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\ta\LC_MESSAGES\syncclient.mo [43375] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\te\LC_MESSAGES\syncclient.mo [41231] O61 - LFC: 01/06/2013 - 14:33:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\th\LC_MESSAGES\syncclient.mo [38265] O61 - LFC: 01/06/2013 - 14:33:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\main.exe.manifest [963] O61 - LFC: 01/06/2013 - 14:33:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\ar\LC_MESSAGES\syncclient.mo [29130] O61 - LFC: 01/06/2013 - 14:33:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\bg\LC_MESSAGES\syncclient.mo [32803] O61 - LFC: 01/06/2013 - 14:33:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\bn\LC_MESSAGES\syncclient.mo [39911] O61 - LFC: 01/06/2013 - 14:33:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\ca\LC_MESSAGES\syncclient.mo [25293] O61 - LFC: 01/06/2013 - 14:33:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\cs\LC_MESSAGES\syncclient.mo [25114] O61 - LFC: 01/06/2013 - 14:33:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\da\LC_MESSAGES\syncclient.mo [24342] O61 - LFC: 01/06/2013 - 14:33:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\de\LC_MESSAGES\syncclient.mo [25847] O61 - LFC: 01/06/2013 - 14:33:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\resources\i18n\locale\el\LC_MESSAGES\syncclient.mo [34981] O61 - LFC: 01/06/2013 - 14:33:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI13402\support\gen_py\__init__.py [0] O61 - LFC: 01/06/2013 - 15:50:11 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\www.tagtele.com\analytics.sol [257] O61 - LFC: 01/06/2013 - 16:07:58 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\macromedia.com\support\flashplayer\sys\#madevid.com\settings.sol [81] O61 - LFC: 01/06/2013 - 16:08:00 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_madevid.com_0.localstorage-journal [3608] O61 - LFC: 01/06/2013 - 16:09:06 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\madevid.com\com.jeroenwijering.sol [64] O61 - LFC: 01/06/2013 - 16:29:53 ---A- C:\Users\Fabienne\AppData\Roaming\Skype\shared_dynco\dc.db [2224128] O61 - LFC: 01/06/2013 - 16:29:53 ---A- C:\Users\Fabienne\AppData\Roaming\Skype\shared_dynco\dc.db-journal [1096280] O61 - LFC: 01/06/2013 - 16:31:00 ---A- C:\Users\Fabienne\AppData\Roaming\Skype\shared.xml [60575] O61 - LFC: 01/06/2013 - 16:35:40 ---A- C:\Users\Fabienne\Downloads\installation-ie8-xp-01NET.exe [667016] O61 - LFC: 01/06/2013 - 16:37:32 ---A- C:\Users\Fabienne\Downloads\IE8-WindowsXP-x86-FRA.exe [17001840] O61 - LFC: 01/06/2013 - 17:44:01 ---A- C:\Users\Fabienne\Downloads\IE10-Windows6.1-x64-fr-fr (2).exe [46496792] O61 - LFC: 01/06/2013 - 18:19:38 ---A- C:\Users\Fabienne\Downloads\7ZipSetup.exe [162056] O61 - LFC: 01/06/2013 - 18:22:24 ---A- C:\Users\Fabienne\Downloads\VuuPC_setup.exe [590944] O61 - LFC: 01/06/2013 - 18:22:36 ---A- C:\Users\Fabienne\AppData\Local\Temp\ICReinstall_VuuPC_setup.exe [590944] O61 - LFC: 01/06/2013 - 18:22:36 ---A- C:\Users\Fabienne\AppData\Local\Temp\is45637729\1322560128.cfg [244] O61 - LFC: 01/06/2013 - 18:22:36 ---A- C:\Users\Fabienne\AppData\Local\Temp\is45637729\13829849_Setup.CIS [0] O61 - LFC: 01/06/2013 - 18:22:40 ---A- C:\Users\Fabienne\AppData\Local\Temp\is45637729\1117217383.cfg [252] O61 - LFC: 01/06/2013 - 18:22:40 ---A- C:\Users\Fabienne\AppData\Local\Temp\is45637729\13829881_Setup.CIS [0] O61 - LFC: 01/06/2013 - 18:22:40 ---A- C:\Users\Fabienne\AppData\Local\Temp\is45637729\2032614200.cfg [252] O61 - LFC: 01/06/2013 - 18:23:47 ---A- C:\Users\Fabienne\Downloads\AdwCleaner.exe [632031] O61 - LFC: 01/06/2013 - 18:29:42 ---A- C:\Users\Fabienne\Downloads\IE10-Windows6.1-fr-fr (1).exe [861208] O61 - LFC: 01/06/2013 - 18:30:04 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_embed.nowvideo.eu_0.localstorage-journal [3608] O61 - LFC: 01/06/2013 - 18:30:44 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\macromedia.com\support\flashplayer\sys\#youwatch.org\settings.sol [82] O61 - LFC: 01/06/2013 - 18:31:41 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\youwatch.org\com.jeroenwijering.sol [64] O61 - LFC: 01/06/2013 - 19:12:04 ---A- C:\Users\Fabienne\AppData\Roaming\Real\RealPlayer\History\ancien episode.lnk [2196] O61 - LFC: 01/06/2013 - 19:17:17 ---A- C:\Users\Fabienne\AppData\Roaming\Real\RealPlayer\History\dies irae.lnk [2176] O61 - LFC: 01/06/2013 - 19:17:21 ---A- C:\Users\Fabienne\AppData\Roaming\Real\RealPlayer\History\kaamelott livre1 tome1.lnk [2228] O61 - LFC: 01/06/2013 - 19:36:43 ---A- C:\Users\Fabienne\AppData\Roaming\Real\RealPlayer\realplayer.ste [850] O61 - LFC: 01/06/2013 - 19:47:12 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\media.fdj.fr\generated\media\ARTICLE\media_5665-1359474541.swf\lotoXmlData.sol [418] O61 - LFC: 01/06/2013 - 19:59:56 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_dub114.mail.live.com_0.localstorage-journal [3608] O61 - LFC: 01/06/2013 - 19:59:59 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\JLMS383E\8F903698240FE799F61EEDA8595181137B996156.heu [152] O61 - LFC: 01/06/2013 - 20:02:15 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\embed.nowvideo.eu\player\nowvideo-v4.swf\novaPlayer.sol [78] O61 - LFC: 01/06/2013 - 20:09:23 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.shared.live.com_0.localstorage-journal [8768] O61 - LFC: 01/06/2013 - 20:58:16 ---A- C:\Users\Fabienne\AppData\Roaming\wargaming.net\WorldOfTanks\custom_data\icons.dat [113023127] O61 - LFC: 01/06/2013 - 20:58:16 ---A- C:\Users\Fabienne\AppData\Roaming\wargaming.net\WorldOfTanks\custom_data\icons.dir [760951] O61 - LFC: 01/06/2013 - 20:59:17 ---A- C:\Users\Fabienne\AppData\Roaming\wargaming.net\WorldOfTanks\dossier_cache\NRXWO2LOFZYDCLTXN5ZGYZDPMZ2GC3TLOMXGK5J2GIYDAMJWHNWTOMRR.dat [17253] O61 - LFC: 01/06/2013 - 20:59:21 ---A- C:\Users\Fabienne\AppData\Roaming\wargaming.net\WorldOfTanks\preferences.xml [19397] O61 - LFC: 01/06/2013 - 21:01:15 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\www8.agame.com\a10\minidash\minidash.swf\mini_dash_save_date.cfg.sol [691] O61 - LFC: 01/06/2013 - 21:02:11 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\www8.agame.com\a10\minidash\minidash.swf\mini_dash_save_global.opt.sol [252] O61 - LFC: 01/06/2013 - 21:02:20 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\cdn.innovid.com\InnovidExtension.sol [175] O61 - LFC: 01/06/2013 - 21:04:11 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\www8.agame.com\a10\minidash\minidash.swf\mini_dash_save_options.cfg.sol [490] O61 - LFC: 01/06/2013 - 21:11:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\www8.agame.com\a10\minidash\minidash.swf\mini_dash_save_allinfo.dat.sol [48059] O61 - LFC: 01/06/2013 - 21:11:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\www8.agame.com\a10\minidash\minidash.swf\mini_dash_save_global.cfg.sol [4933] O61 - LFC: 01/06/2013 - 21:11:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\www8.agame.com\a10\minidash\minidash.swf\mini_dash_save_missions.cfg.sol [1559] O61 - LFC: 01/06/2013 - 21:15:22 ---A- C:\Users\Fabienne\AppData\Local\Temp\chart_data.dat [20958] O61 - LFC: 01/06/2013 - 21:17:24 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\static1.spilcdn.com\analytics.sol [431] O61 - LFC: 01/06/2013 - 21:17:59 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.jeux.fr_0.localstorage-journal [8768] O61 - LFC: 01/06/2013 - 21:36:55 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\_win32sysloader.pyd [8192] O61 - LFC: 01/06/2013 - 21:36:55 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\select.pyd [10240] O61 - LFC: 01/06/2013 - 21:36:55 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\unicodedata.pyd [686080] O61 - LFC: 01/06/2013 - 21:36:55 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32pipe.pyd [24064] O61 - LFC: 01/06/2013 - 21:36:56 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\shell32.dll [8461312] O61 - LFC: 01/06/2013 - 21:36:56 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32event.pyd [18432] O61 - LFC: 01/06/2013 - 21:36:56 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32file.pyd [119808] O61 - LFC: 01/06/2013 - 21:36:56 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32inet.pyd [38912] O61 - LFC: 01/06/2013 - 21:36:56 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32wnet.pyd [25088] O61 - LFC: 01/06/2013 - 21:36:56 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\wx._controls_.pyd [1062400] O61 - LFC: 01/06/2013 - 21:36:57 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\_hashlib.pyd [711680] O61 - LFC: 01/06/2013 - 21:36:57 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\_ssl.pyd [1153024] O61 - LFC: 01/06/2013 - 21:36:57 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32evtlog.pyd [33792] O61 - LFC: 01/06/2013 - 21:36:57 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32pdh.pyd [25600] O61 - LFC: 01/06/2013 - 21:36:57 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32process.pyd [35840] O61 - LFC: 01/06/2013 - 21:36:57 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32security.pyd [108544] O61 - LFC: 01/06/2013 - 21:36:57 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32ui.pyd [778752] O61 - LFC: 01/06/2013 - 21:36:57 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\wx._core_.pyd [1175040] O61 - LFC: 01/06/2013 - 21:36:57 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\wx._misc_.pyd [735232] O61 - LFC: 01/06/2013 - 21:36:57 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\wx._windows_.pyd [811008] O61 - LFC: 01/06/2013 - 21:36:57 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\wx._wizard.pyd [122368] O61 - LFC: 01/06/2013 - 21:36:58 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\_ctypes.pyd [87040] O61 - LFC: 01/06/2013 - 21:36:58 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\_elementtree.pyd [128512] O61 - LFC: 01/06/2013 - 21:36:58 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\_multiprocessing.pyd [26624] O61 - LFC: 01/06/2013 - 21:36:58 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\_socket.pyd [44032] O61 - LFC: 01/06/2013 - 21:36:58 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32api.pyd [98816] O61 - LFC: 01/06/2013 - 21:36:58 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32com.shell.shell.pyd [320512] O61 - LFC: 01/06/2013 - 21:36:58 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32crypt.pyd [11264] O61 - LFC: 01/06/2013 - 21:36:58 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32profile.pyd [17408] O61 - LFC: 01/06/2013 - 21:36:58 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32trace.pyd [15872] O61 - LFC: 01/06/2013 - 21:36:58 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\win32ts.pyd [22528] O61 - LFC: 01/06/2013 - 21:36:58 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\windows._cacheinvalidation.pyd [1022416] O61 - LFC: 01/06/2013 - 21:36:58 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\wx._gdi_.pyd [805888] O61 - LFC: 01/06/2013 - 21:36:58 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\wx._html2.pyd [70656] O61 - LFC: 01/06/2013 - 21:36:59 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\wxbase294u_net_vc90.dll [154112] O61 - LFC: 01/06/2013 - 21:36:59 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\wxbase294u_vc90.dll [1985024] O61 - LFC: 01/06/2013 - 21:36:59 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\wxmsw294u_adv_vc90.dll [1234944] O61 - LFC: 01/06/2013 - 21:36:59 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\wxmsw294u_core_vc90.dll [4598272] O61 - LFC: 01/06/2013 - 21:36:59 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\wxmsw294u_html_vc90.dll [595968] O61 - LFC: 01/06/2013 - 21:36:59 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\wxmsw294u_webview_vc90.dll [91648] O61 - LFC: 01/06/2013 - 21:37:02 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37002\support\gen_py\__init__.py [0] O61 - LFC: 01/06/2013 - 21:39:45 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\be\messages.json [5857] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\ur\messages.json [5339] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\detect.js [41] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\libs\avastwrc.js [61566] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\libs\dateFormat.js [3751] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\libs\jquery-1.5.2.js [219227] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\libs\jquery.1.8.js [92556] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\libs\jquery.js [190963] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\libs\pbj.js [8166] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\libs\protobuf.js [59697] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\libs\query.js [48779] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\libs\wrc_gpb.js [18112] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\popup.html [5461] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\scripts\anchor.js [22705] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\scripts\background.js [36142] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\scripts\dialogs.js [8161] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\scripts\popup.js [10996] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\scripts\popup.new.js [7179] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\scripts\ratings.js [20567] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\scripts\test_rules.js [10189] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\scripts\warnDlg.js [26475] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\css\anchor.css [139] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\css\dialogs.css [7986] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\css\popup.css [10292] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\css\popup.new.css [23808] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\dialog.html [1093] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\avast_logo.png [1796] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\background-body.jpg [523] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\background-right-bottom.jpg [637] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\background-right-top.jpg [634] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\background-sitecorrect.png [54751] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\close.png [1156] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\disabled.png [626] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\grey.png [1763] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\horizontal-line-white.jpg [743] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\horizontal-line.jpg [1032] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icon64.png [4006] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icon_incorrect.png [4733] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\corporate-small-disable.png [2087] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\corporate-small-selected.png [1939] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\corporate.png [3215] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\drugs-small-disable.png [2265] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\drugs-small-selected.png [2263] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\drugs.png [5828] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\gambling-small-disable.png [2303] O61 - LFC: 01/06/2013 - 21:39:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\gambling.png [4773] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\gambling-small-selected.png [2155] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\green-1.png [3829] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\green-2.png [3549] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\green-3.png [3075] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\green-hover.png [1593] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\green-selected.png [2977] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\green.png [1590] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\green1-16.png [1416] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\green1-small.png [1408] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\green2-16.png [1430] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\green2-small.png [1426] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\green3-16.png [1406] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\green3-24.png [1611] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\green3-small.png [1396] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\grey-0.png [3955] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\grey-3.png [3110] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\grey-small.png [1433] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\grey0-16.png [1441] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\grey3-16.png [1451] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\illegal-small-disable.png [2318] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\illegal-small-selected.png [2320] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\illegal.png [6501] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\it-small-disable.png [2139] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\it-small-selected.png [1957] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\it.png [3884] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\limet-hover.png [1300] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\limet-selected.png [2791] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\limet.png [1298] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\line-dark-horizontal.png [1810] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\line-light-horizontal.png [1787] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\logo128.jpg [3601] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\logo256.jpg [8456] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\logo48.jpg [1391] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\logo64.jpg [1769] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\news-small-disable.png [2057] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\news-small-selected.png [1961] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\news.png [3762] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\orange-hover.png [1303] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\orange-selected.png [2788] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\orange.png [1304] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\orange1-16.png [1389] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\orange2-16.png [1406] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\orange3-16.png [1363] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\pornography-small-disable.png [2124] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\pornography-small-selected.png [1984] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\pornography.png [4104] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\red-1.png [3741] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\red-2.png [3479] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\red-3.png [2716] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\red-hover.png [1549] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\red-selected.png [2939] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\red.png [1552] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\red1-16.png [1376] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\red1-small.png [1367] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\red2-16.png [1386] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\red2-small.png [1377] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\red3-16.png [1361] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\red3-small.png [1352] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\shopping-small-disable.png [2122] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\shopping-small-selected.png [2075] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\shopping.png [5208] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\social-small-disable.png [2235] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\social-small-selected.png [2147] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\social.png [5147] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\violence-small-disable.png [2245] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\violence-small-selected.png [2109] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\violence.png [4866] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\weapons-small-disable.png [2245] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\weapons-small-selected.png [2109] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\weapons.png [6701] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\yellow-1.png [3818] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\yellow-2.png [3525] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\yellow-3.png [2697] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\yellow-hover.png [1304] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\yellow-selected.png [2782] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\yellow.png [1304] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\yellow1-16.png [1337] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\yellow1-small.png [1379] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\yellow2-16.png [1345] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\yellow2-small.png [1395] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\yellow3-16.png [1302] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icons\yellow3-small.png [1363] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\logo.jpg [4975] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\vertical-line.jpg [504] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\close.png [1124] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\green1-16.png [1999] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\green2-16.png [1999] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\green3-16.png [1999] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\icon-corporate.png [1571] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\icon-drugs.png [2247] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\icon-gambling.png [2024] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\icon-illegal.png [2352] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\icon-it.png [1699] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\icon-news.png [1581] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\icon-pornography.png [1640] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\icon-shopping.png [2008] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\icon-social.png [2105] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\icon-violence.png [2052] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\logo.png [2130] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\red1-16.png [1998] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\red2-16.png [1998] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\red3-16.png [1998] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\yellow1-16.png [2003] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\yellow2-16.png [3898] O61 - LFC: 01/06/2013 - 21:39:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\yellow3-16.png [3898] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\ar\messages.json [11013] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\bg\messages.json [11057] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\bn\messages.json [11644] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\ca\messages.json [5054] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\cs\messages.json [5733] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\da\messages.json [4917] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\de\messages.json [5063] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\el\messages.json [11793] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\en\messages.json [5007] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\en_GB\messages.json [4607] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\es\messages.json [5079] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\et\messages.json [4944] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\fa\messages.json [8948] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\fi\messages.json [5282] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\fr\messages.json [5270] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\he\messages.json [9517] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\hi\messages.json [11000] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\hr\messages.json [4895] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\hu\messages.json [5767] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\id\messages.json [4848] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\it\messages.json [4816] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\ja\messages.json [8312] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\ko\messages.json [6845] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\lv\messages.json [5522] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\ms\messages.json [4789] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\nb\messages.json [4919] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\nl\messages.json [4855] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\pl\messages.json [5376] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\pt_BR\messages.json [5152] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\pt_PT\messages.json [4943] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\ro\messages.json [5272] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\ru\messages.json [12406] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\sk\messages.json [5538] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\sl\messages.json [4858] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\sr\messages.json [4898] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\sv\messages.json [5135] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\th\messages.json [10781] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\tr\messages.json [5296] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\uk\messages.json [12232] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\vi\messages.json [6838] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\zh_CN\messages.json [5840] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\_locales\zh_TW\messages.json [6189] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\manifest.json [5390] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icon128.png [7703] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icon256.png [12797] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\images\icon48.png [2123] O61 - LFC: 01/06/2013 - 21:39:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.7_0\skin\imgs\grey0-16.png [1046] O61 - LFC: 01/06/2013 - 21:43:55 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [273375] O61 - LFC: 01/06/2013 - 21:43:55 ---A- C:\Users\Fabienne\AppData\Local\Temp\CRX_75DAF8CB7768\crl-set [730] O61 - LFC: 01/06/2013 - 21:43:55 ---A- C:\Users\Fabienne\AppData\Local\Temp\CRX_75DAF8CB7768\manifest.json [34] O61 - LFC: 01/06/2013 - 21:44:14 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\000642.sst [170] O61 - LFC: 01/06/2013 - 21:44:44 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\QuotaManager [20480] O61 - LFC: 01/06/2013 - 21:44:44 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\QuotaManager-journal [11864] O61 - LFC: 01/06/2013 - 21:46:33 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.deezer.com_0.localstorage-journal [3608] O61 - LFC: 01/06/2013 - 21:50:23 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\player.kpsule.me\ads\mediumrect.swf\__kta.sol [811] O61 - LFC: 01/06/2013 - 21:51:39 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage-journal [3608] O61 - LFC: 01/06/2013 - 21:52:11 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.youtube.com_0.localstorage-journal [13928] O61 - LFC: 01/06/2013 - 21:59:40 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\LOG.old [269] O61 - LFC: 01/06/2013 - 21:59:40 --HA- C:\Users\Fabienne\AppData\Local\IconCache.db [1583369] O61 - LFC: 02/06/2013 - 07:16:16 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\WebTrendslogstats.txt [2] O61 - LFC: 02/06/2013 - 07:16:18 ---A- C:\Users\Fabienne\AppData\Roaming\Orange\OrangeInside\crypv.oi [310] O61 - LFC: 02/06/2013 - 07:16:30 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\_win32sysloader.pyd [8192] O61 - LFC: 02/06/2013 - 07:16:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\select.pyd [10240] O61 - LFC: 02/06/2013 - 07:16:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\unicodedata.pyd [686080] O61 - LFC: 02/06/2013 - 07:16:31 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32pipe.pyd [24064] O61 - LFC: 02/06/2013 - 07:16:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\pyexpat.pyd [127488] O61 - LFC: 02/06/2013 - 07:16:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32event.pyd [18432] O61 - LFC: 02/06/2013 - 07:16:32 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\wx._controls_.pyd [1062400] O61 - LFC: 02/06/2013 - 07:16:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\kernel32.dll [989696] O61 - LFC: 02/06/2013 - 07:16:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\psapi.dll [23040] O61 - LFC: 02/06/2013 - 07:16:33 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\shell32.dll [8461312] O61 - LFC: 02/06/2013 - 07:16:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\_hashlib.pyd [711680] O61 - LFC: 02/06/2013 - 07:16:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32file.pyd [119808] O61 - LFC: 02/06/2013 - 07:16:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32inet.pyd [38912] O61 - LFC: 02/06/2013 - 07:16:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32wnet.pyd [25088] O61 - LFC: 02/06/2013 - 07:16:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\wx._windows_.pyd [811008] O61 - LFC: 02/06/2013 - 07:16:34 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\wx._wizard.pyd [122368] O61 - LFC: 02/06/2013 - 07:16:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\_ssl.pyd [1153024] O61 - LFC: 02/06/2013 - 07:16:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\bz2.pyd [68608] O61 - LFC: 02/06/2013 - 07:16:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32pdh.pyd [25600] O61 - LFC: 02/06/2013 - 07:16:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32process.pyd [35840] O61 - LFC: 02/06/2013 - 07:16:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32ui.pyd [778752] O61 - LFC: 02/06/2013 - 07:16:35 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\wx._core_.pyd [1175040] O61 - LFC: 02/06/2013 - 07:16:36 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\PyWinTypes27.dll [110080] O61 - LFC: 02/06/2013 - 07:16:36 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\_ctypes.pyd [87040] O61 - LFC: 02/06/2013 - 07:16:36 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\pythoncom27.dll [364544] O61 - LFC: 02/06/2013 - 07:16:36 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32evtlog.pyd [33792] O61 - LFC: 02/06/2013 - 07:16:36 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32profile.pyd [17408] O61 - LFC: 02/06/2013 - 07:16:36 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32security.pyd [108544] O61 - LFC: 02/06/2013 - 07:16:36 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\wx._misc_.pyd [735232] O61 - LFC: 02/06/2013 - 07:16:37 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32crypt.pyd [11264] O61 - LFC: 02/06/2013 - 07:16:37 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32trace.pyd [15872] O61 - LFC: 02/06/2013 - 07:16:37 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\windows._cacheinvalidation.pyd [1022416] O61 - LFC: 02/06/2013 - 07:16:37 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\wx._gdi_.pyd [805888] O61 - LFC: 02/06/2013 - 07:16:37 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\wx._html2.pyd [70656] O61 - LFC: 02/06/2013 - 07:16:38 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\_multiprocessing.pyd [26624] O61 - LFC: 02/06/2013 - 07:16:38 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\pysqlite2._sqlite.pyd [557056] O61 - LFC: 02/06/2013 - 07:16:38 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32api.pyd [98816] O61 - LFC: 02/06/2013 - 07:16:38 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32com.shell.shell.pyd [320512] O61 - LFC: 02/06/2013 - 07:16:38 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\win32ts.pyd [22528] O61 - LFC: 02/06/2013 - 07:16:39 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\_elementtree.pyd [128512] O61 - LFC: 02/06/2013 - 07:16:39 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\_socket.pyd [44032] O61 - LFC: 02/06/2013 - 07:16:39 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\python27.dll [2436608] O61 - LFC: 02/06/2013 - 07:16:39 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\wxbase294u_vc90.dll [1985024] O61 - LFC: 02/06/2013 - 07:16:40 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\mfc90.dll [1156600] O61 - LFC: 02/06/2013 - 07:16:40 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\wxmsw294u_adv_vc90.dll [1234944] O61 - LFC: 02/06/2013 - 07:16:40 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\wxmsw294u_core_vc90.dll [4598272] O61 - LFC: 02/06/2013 - 07:16:40 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\wxmsw294u_html_vc90.dll [595968] O61 - LFC: 02/06/2013 - 07:16:41 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\mfc90u.dll [1162744] O61 - LFC: 02/06/2013 - 07:16:41 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\mfcm90.dll [59904] O61 - LFC: 02/06/2013 - 07:16:41 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\mfcm90u.dll [59904] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gdoc16.png [292] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gdoc256.png [8221] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gdoc32.png [1124] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gdoc48.png [1625] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gdraw16.png [437] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gdraw256.png [8865] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gdraw32.png [1254] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gdraw48.png [1753] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gform16.png [360] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gform256.png [8615] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gform32.png [1194] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gform48.png [1699] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-glink16.png [866] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-glink256.png [16273] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-glink32.png [1946] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\mime\drive.mime.types [24371] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\wxbase294u_net_vc90.dll [154112] O61 - LFC: 02/06/2013 - 07:16:42 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\wxmsw294u_webview_vc90.dll [91648] O61 - LFC: 02/06/2013 - 07:16:43 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-glink48.png [2770] O61 - LFC: 02/06/2013 - 07:16:43 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gsheet16.png [305] O61 - LFC: 02/06/2013 - 07:16:43 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gsheet256.png [8216] O61 - LFC: 02/06/2013 - 07:16:43 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gsheet32.png [1176] O61 - LFC: 02/06/2013 - 07:16:43 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gsheet48.png [1633] O61 - LFC: 02/06/2013 - 07:16:43 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gslides16.png [312] O61 - LFC: 02/06/2013 - 07:16:43 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gslides256.png [8675] O61 - LFC: 02/06/2013 - 07:16:43 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gslides32.png [1139] O61 - LFC: 02/06/2013 - 07:16:43 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-gslides48.png [1640] O61 - LFC: 02/06/2013 - 07:16:43 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-sync16.png [1533] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-sync16.xpm [2895] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-sync256.png [19252] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-sync32.xpm [2492] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\drive-sync64.png [4432] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\exclaim.png [605] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\file.png [121] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\folder-mac.icns [117965] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\folder-winseven.ico [57802] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\folder-winxp.ico [15406] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\folder.png [115] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gdoc.icns [298141] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gdoc.ico [26671] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gdraw.icns [305541] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gdraw.ico [27212] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gform.icns [305412] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gform.ico [27036] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\glink.icns [419431] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\glink.ico [37282] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gnote.icns [90463] O61 - LFC: 02/06/2013 - 07:16:44 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gnote.ico [28554] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gscript.icns [303839] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gscript.ico [26883] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gsheet.icns [298895] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gsheet.ico [26661] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gslides.icns [303147] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gslides.ico [27114] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gtable.icns [310308] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\gtable.ico [27253] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\image_resources.py [5833] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\image_resources.pyo [6720] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\info1-mac.png [16824] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\info1-windows7.png [9749] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\info1-windowsxp.png [10976] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\info2-default.png [2778] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\info2-mac.png [9762] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\info2-win7.png [8184] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\info2-winxp.png [8062] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate1-inverse.png [324] O61 - LFC: 02/06/2013 - 07:16:45 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate1-inverse_2x.png [3300] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate1.png [322] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate1_2x.png [3301] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate2-inverse.png [381] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate2-inverse_2x.png [3529] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate2.png [382] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate2_2x.png [3535] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate3-inverse.png [341] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate3-inverse_2x.png [3377] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate3.png [336] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate3_2x.png [3299] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate4-inverse.png [381] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate4-inverse_2x.png [3487] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate4.png [383] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate4_2x.png [3431] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate5-inverse.png [323] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate5-inverse_2x.png [3295] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate5.png [322] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate5_2x.png [3301] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate6-inverse.png [390] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate6-inverse_2x.png [3509] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate6.png [401] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate6_2x.png [3566] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate7-inverse.png [333] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate7-inverse_2x.png [3294] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate7.png [337] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate7_2x.png [3301] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate8-inverse.png [378] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate8-inverse_2x.png [3472] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate8.png [382] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-animate8_2x.png [3460] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-error-inverse.png [252] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-error-inverse_2x.png [3146] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-error.png [257] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-error_2x.png [3140] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-inactive-inverse.png [254] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-inactive-inverse_2x.png [3122] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-inactive.png [259] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-inactive_2x.png [3098] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-normal-inverse.png [262] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-normal-inverse_2x.png [3154] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-normal.png [269] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-normal_2x.png [3147] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-pause-inverse_2x.png [3130] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-paused-inverse.png [263] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-paused-inverse_2x.png [3149] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-paused.png [261] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\mac-paused_2x.png [3164] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\menu_warning.png [237] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\menu_warning_2x.png [1317] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\sharedfolder-mac.icns [117416] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\sharedfolder-winseven.ico [55019] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\sharedfolder-winxp.ico [15406] O61 - LFC: 02/06/2013 - 07:16:46 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\shareguyicon.png [179] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\chrome_ext\apdfllckaahabafndbhieahigkjlhalf_live.crx [25575] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\html\drive_thankyou.html [1537] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\vi\LC_MESSAGES\syncclient.mo [26948] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\zh-Hans\LC_MESSAGES\syncclient.mo [23837] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\zh-Hant\LC_MESSAGES\syncclient.mo [24134] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\zh\LC_MESSAGES\syncclient.mo [23837] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\zh_CN\LC_MESSAGES\syncclient.mo [23837] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\zh_HK\LC_MESSAGES\syncclient.mo [24144] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\zh_TW\LC_MESSAGES\syncclient.mo [24134] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\__init__.py [0] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\__init__.pyo [198] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\overlays\Blacklisted.ico [40903] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\overlays\Shared.ico [35679] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\overlays\Synced.ico [35679] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\overlays\Syncing.ico [35424] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\sync.icns [117146] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\sync.ico [45533] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\sync.png [1312] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\sync_128.png [7846] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\toprighticon.png [3355] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\warning-hdpi_2x.png [1259] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\win-animate1.png [656] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\win-animate2.png [689] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\win-animate3.png [625] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\win-animate4.png [632] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\win-animate5.png [643] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\win-animate6.png [642] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\win-animate7.png [612] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\win-animate8.png [619] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\win-normal.png [612] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\win7-error.png [600] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\win7-inactive.png [599] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\win7-paused.png [584] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\winxp-error.png [606] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\winxp-inactive.png [598] O61 - LFC: 02/06/2013 - 07:16:47 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\images\winxp-paused.png [583] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\main.exe.manifest [963] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\ar\LC_MESSAGES\syncclient.mo [29130] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\bg\LC_MESSAGES\syncclient.mo [32803] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\bn\LC_MESSAGES\syncclient.mo [39911] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\ca\LC_MESSAGES\syncclient.mo [25293] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\cs\LC_MESSAGES\syncclient.mo [25114] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\da\LC_MESSAGES\syncclient.mo [24342] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\de\LC_MESSAGES\syncclient.mo [25847] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\el\LC_MESSAGES\syncclient.mo [34981] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\en\LC_MESSAGES\syncclient.mo [23295] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\en_GB\LC_MESSAGES\syncclient.mo [23316] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\en_US\LC_MESSAGES\syncclient.mo [413] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\es\LC_MESSAGES\syncclient.mo [25469] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\fi\LC_MESSAGES\syncclient.mo [24179] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\fil\LC_MESSAGES\syncclient.mo [25399] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\fr\LC_MESSAGES\syncclient.mo [25786] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\gu\LC_MESSAGES\syncclient.mo [38468] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\he\LC_MESSAGES\syncclient.mo [26819] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\hi\LC_MESSAGES\syncclient.mo [39351] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\hr\LC_MESSAGES\syncclient.mo [24658] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\hu\LC_MESSAGES\syncclient.mo [25633] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\id\LC_MESSAGES\syncclient.mo [24164] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\it\LC_MESSAGES\syncclient.mo [25156] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\ja\LC_MESSAGES\syncclient.mo [28337] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\kn\LC_MESSAGES\syncclient.mo [43489] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\ko\LC_MESSAGES\syncclient.mo [26140] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\lt\LC_MESSAGES\syncclient.mo [25398] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\lv\LC_MESSAGES\syncclient.mo [25063] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\ml\LC_MESSAGES\syncclient.mo [43944] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\mr\LC_MESSAGES\syncclient.mo [38614] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\nl\LC_MESSAGES\syncclient.mo [24838] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\no\LC_MESSAGES\syncclient.mo [24066] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\pl\LC_MESSAGES\syncclient.mo [24560] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\pt\LC_MESSAGES\syncclient.mo [25177] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\pt_BR\LC_MESSAGES\syncclient.mo [25177] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\pt_PT\LC_MESSAGES\syncclient.mo [25085] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\ro\LC_MESSAGES\syncclient.mo [25464] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\ru\LC_MESSAGES\syncclient.mo [31737] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\sk\LC_MESSAGES\syncclient.mo [25539] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\sl\LC_MESSAGES\syncclient.mo [25010] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\sr\LC_MESSAGES\syncclient.mo [32211] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\sv\LC_MESSAGES\syncclient.mo [24230] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\ta\LC_MESSAGES\syncclient.mo [43375] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\te\LC_MESSAGES\syncclient.mo [41231] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\th\LC_MESSAGES\syncclient.mo [38265] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\tr\LC_MESSAGES\syncclient.mo [25614] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\resources\i18n\locale\uk\LC_MESSAGES\syncclient.mo [31950] O61 - LFC: 02/06/2013 - 07:16:48 ---A- C:\Users\Fabienne\AppData\Local\Temp\_MEI37003\support\gen_py\__init__.py [0] O61 - LFC: 02/06/2013 - 07:17:15 ---A- C:\Users\Fabienne\AppData\Local\Google\Drive\cacerts [3245] O61 - LFC: 02/06/2013 - 07:17:18 ---A- C:\Users\Fabienne\AppData\Local\Google\Drive\snapshot.db [620544] O61 - LFC: 02/06/2013 - 07:17:19 ---A- C:\Users\Fabienne\AppData\Local\Google\Drive\lockfile [0] O61 - LFC: 02/06/2013 - 07:17:19 ---A- C:\Users\Fabienne\AppData\Local\Google\Drive\pid [4] O61 - LFC: 02/06/2013 - 07:17:20 ---A- C:\Users\Fabienne\AppData\Local\Google\Drive\snapshot.db-shm [32768] O61 - LFC: 02/06/2013 - 07:17:20 ---A- C:\Users\Fabienne\AppData\Local\Google\Drive\sync_config.db-shm [32768] O61 - LFC: 02/06/2013 - 07:17:20 ---A- C:\Users\Fabienne\AppData\Local\Google\Drive\sync_config.db-wal [0] O61 - LFC: 02/06/2013 - 07:17:30 ---A- C:\Users\Fabienne\AppData\Local\Google\Drive\cloud_graph\dict_2.db-shm [32768] O61 - LFC: 02/06/2013 - 07:18:01 ---A- C:\Users\Fabienne\AppData\Roaming\Microsoft\Network\Connections\Pbk\_hiddenPbk\rasphone.pbk [2092] O61 - LFC: 02/06/2013 - 07:18:02 ---A- C:\Users\Fabienne\AppData\Roaming\Microsoft\Network\Connections\Pbk\rasphone.pbk [59] O61 - LFC: 02/06/2013 - 07:18:09 ---A- C:\Users\Fabienne\AppData\Local\ATI\ACE\Manifest.Bin [29843] O61 - LFC: 02/06/2013 - 07:18:09 ---A- C:\Users\Fabienne\AppData\Local\ATI\ACE\Manifest.xml [21888] O61 - LFC: 02/06/2013 - 07:18:59 ---A- C:\Users\Fabienne\AppData\Roaming\Adobe\AIR\ELS\fr.orange.assistancelivebox\PrivateEncryptedDatai [24152] O61 - LFC: 02/06/2013 - 07:23:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Archived History [57344] O61 - LFC: 02/06/2013 - 07:23:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Archived History-journal [512] O61 - LFC: 02/06/2013 - 07:30:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\CURRENT [16] O61 - LFC: 02/06/2013 - 07:30:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\MANIFEST-000644 [282] O61 - LFC: 02/06/2013 - 07:30:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Media Cache\data_0 [8192] O61 - LFC: 02/06/2013 - 07:30:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Media Cache\data_2 [8192] O61 - LFC: 02/06/2013 - 07:30:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Media Cache\data_3 [8192] O61 - LFC: 02/06/2013 - 07:30:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Media Cache\index [524656] O61 - LFC: 02/06/2013 - 07:30:55 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\LOG [148] O61 - LFC: 02/06/2013 - 07:30:55 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Media Cache\data_1 [270336] O61 - LFC: 02/06/2013 - 07:43:41 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Session Storage\002304.sst [195] O61 - LFC: 02/06/2013 - 07:43:56 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Top Sites [49152] O61 - LFC: 02/06/2013 - 07:43:56 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Top Sites-journal [16384] O61 - LFC: 02/06/2013 - 07:45:01 ---A- C:\Users\Fabienne\Downloads\IE10-Windows6.1-x64-fr-fr (3).exe [46496792] O61 - LFC: 02/06/2013 - 07:45:20 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Last Tabs [7764] O61 - LFC: 02/06/2013 - 07:45:21 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Visited Links [131072] O61 - LFC: 02/06/2013 - 08:32:08 ---A- C:\Users\Fabienne\AppData\Local\ATI\ACE\Profiles.xml [11929] O61 - LFC: 02/06/2013 - 08:33:33 ---A- C:\Users\Fabienne\AppData\Local\Google\Drive\cloud_graph\dict_2.db [865280] O61 - LFC: 02/06/2013 - 08:33:33 ---A- C:\Users\Fabienne\AppData\Local\Google\Drive\cloud_graph\dict_2.db-wal [1054320] O61 - LFC: 02/06/2013 - 08:33:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG.old [151] O61 - LFC: 02/06/2013 - 08:33:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Session Storage\002306.sst [354099] O61 - LFC: 02/06/2013 - 08:33:48 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG.old [277] O61 - LFC: 02/06/2013 - 08:33:52 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache [466132] O61 - LFC: 02/06/2013 - 08:33:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Current Tabs [1042] O61 - LFC: 02/06/2013 - 08:33:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Last Session [1558] O61 - LFC: 02/06/2013 - 08:34:43 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\tt.txt [57] O61 - LFC: 02/06/2013 - 08:35:01 ---A- C:\Users\Fabienne\AppData\Local\Google\Drive\snapshot.db-wal [57672] O61 - LFC: 02/06/2013 - 08:35:30 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\MANIFEST-001246 [712] O61 - LFC: 02/06/2013 - 08:35:31 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\CURRENT [16] O61 - LFC: 02/06/2013 - 08:35:32 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG [151] O61 - LFC: 02/06/2013 - 08:35:33 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Session Storage\002309.sst [201851] O61 - LFC: 02/06/2013 - 08:35:33 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Session Storage\CURRENT [16] O61 - LFC: 02/06/2013 - 08:35:33 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Session Storage\MANIFEST-002308 [211] O61 - LFC: 02/06/2013 - 08:35:34 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.fr_0.localstorage [3072] O61 - LFC: 02/06/2013 - 08:35:34 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.fr_0.localstorage-journal [512] O61 - LFC: 02/06/2013 - 08:35:34 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG [277] O61 - LFC: 02/06/2013 - 08:35:40 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Managed Mode Settings [8] O61 - LFC: 02/06/2013 - 08:36:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor [96256] O61 - LFC: 02/06/2013 - 08:36:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor-journal [16384] O61 - LFC: 02/06/2013 - 08:36:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Shortcuts [20480] O61 - LFC: 02/06/2013 - 08:36:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal [12824] O61 - LFC: 02/06/2013 - 08:36:56 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\macromedia.com\support\flashplayer\sys\settings.sol [379] O61 - LFC: 02/06/2013 - 08:36:59 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage [74752] O61 - LFC: 02/06/2013 - 08:36:59 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage-journal [3608] O61 - LFC: 02/06/2013 - 08:37:11 ---A- C:\Users\Fabienne\AppData\Roaming\ArcSoft\Global Deploy\ArcUpdateService.inf [524] O61 - LFC: 02/06/2013 - 08:37:12 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity [1658] O61 - LFC: 02/06/2013 - 08:37:12 ---A- C:\Users\Fabienne\Downloads\ZHPDiag2.exe [5667061] O61 - LFC: 02/06/2013 - 08:38:30 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gomekmidlodglbbmalcneegieacbdmki_0.localstorage [94208] O61 - LFC: 02/06/2013 - 08:38:30 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gomekmidlodglbbmalcneegieacbdmki_0.localstorage-journal [16384] O61 - LFC: 02/06/2013 - 08:38:36 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Web Data [172032] O61 - LFC: 02/06/2013 - 08:38:36 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal [14904] O61 - LFC: 02/06/2013 - 08:38:42 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG [0] O61 - LFC: 02/06/2013 - 08:38:42 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old [0] O61 - LFC: 02/06/2013 - 08:38:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\History [180224] O61 - LFC: 02/06/2013 - 08:38:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Favicons [7161856] O61 - LFC: 02/06/2013 - 08:38:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Favicons-journal [16384] O61 - LFC: 02/06/2013 - 08:38:47 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\History Index 2013-06 [225280] O61 - LFC: 02/06/2013 - 08:38:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Cookies [719872] O61 - LFC: 02/06/2013 - 08:38:53 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Cookies-journal [16384] O61 - LFC: 02/06/2013 - 08:39:06 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\History Index 2013-06-journal [16384] O61 - LFC: 02/06/2013 - 08:39:06 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\History-journal [16384] O61 - LFC: 02/06/2013 - 08:40:13 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Safe Browsing Download [716600] O61 - LFC: 02/06/2013 - 08:40:14 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom [6539964] O61 - LFC: 02/06/2013 - 08:40:15 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom Prefix Set [1576690] O61 - LFC: 02/06/2013 - 08:40:15 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Safe Browsing Csd Whitelist [134972] O61 - LFC: 02/06/2013 - 08:40:15 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Safe Browsing Download Whitelist [19104] O61 - LFC: 02/06/2013 - 08:40:15 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Safe Browsing Extension Blacklist [5008] O61 - LFC: 02/06/2013 - 08:40:40 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Local State [45737] O61 - LFC: 02/06/2013 - 08:40:43 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Safe Browsing Cookies [6144] O61 - LFC: 02/06/2013 - 08:40:43 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Safe Browsing Cookies-journal [4640] O61 - LFC: 02/06/2013 - 08:41:12 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Preferences [116755] O61 - LFC: 30/05/2013 - 07:29:35 ---A- C:\Users\Fabienne\Downloads\3hommes.pps [46592] O61 - LFC: 30/05/2013 - 07:32:58 ---A- C:\Users\Fabienne\Downloads\Les_ex-jeunes_politiques.pps [3590656] O61 - LFC: 30/05/2013 - 07:36:46 ---A- C:\Users\Fabienne\Downloads\(pas de nom de fichier) [22407] O61 - LFC: 30/05/2013 - 07:37:11 ---A- C:\Users\Fabienne\Downloads\2013_ministere de l interieur.pdf [607887] O61 - LFC: 30/05/2013 - 07:44:05 ---A- C:\Users\Fabienne\Downloads\Les_villages_de_France_les_plus_romaniques.pps [6753280] O61 - LFC: 30/05/2013 - 08:11:29 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\Lycee\Theme E52\mon travail\Documents Méthode\contrat de phase - controle 34 vierge.doc [33280] O61 - LFC: 30/05/2013 - 08:46:42 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\Lycee\Theme E52\mon travail\Documents Méthode\contrat de phase - controle 44 ex.doc [38400] O61 - LFC: 30/05/2013 - 09:11:22 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\Lycee\Theme E52\mon travail\word excel-power point\G 54.docx [13626] O61 - LFC: 30/05/2013 - 11:03:27 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_halc.iadvize.com_0.localstorage-journal [3608] O61 - LFC: 30/05/2013 - 12:34:10 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\Lycee\Theme E52\mon travail\Documents Méthode\Doc MMT.doc [247296] O61 - LFC: 30/05/2013 - 16:44:42 R--A- C:\Users\Fabienne\money Sauvegarde.mbf [5019207] O61 - LFC: 30/05/2013 - 16:44:43 ---A- C:\Users\Fabienne\money.mny [5017600] O61 - LFC: 30/05/2013 - 20:17:38 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\Lycee\Theme E52\mon travail\word excel-power point\Nouveau dossier\contrat de phase - controle 44 ex.doc [38400] O61 - LFC: 30/05/2013 - 20:17:51 ---A- C:\Users\Fabienne\Google Drive\MOI\Google Drive\Lycee\Briefcase Database [44185] O61 - LFC: 31/05/2013 - 15:30:27 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Web Data.temp [178176] O61 - LFC: 31/05/2013 - 16:26:08 ---A- C:\Users\Fabienne\Downloads\Lame_v3.99.3_for_Windows.exe [527423] O61 - LFC: 31/05/2013 - 16:29:26 ---A- C:\Users\Fabienne\Downloads\Lame_v3.99.3_for_Windows (1).exe [527423] O61 - LFC: 31/05/2013 - 16:30:44 ---A- C:\Users\Fabienne\daft.wav [49999916] O61 - LFC: 31/05/2013 - 18:21:15 ---A- C:\Users\Fabienne\Downloads\CDex-win32-1.70-b4-2009.exe [8697544] O61 - LFC: 31/05/2013 - 18:30:29 ---A- C:\Users\Fabienne\AppData\Roaming\Real\RealPlayer\History\CAMPRO~1.lnk [2292] O61 - LFC: 31/05/2013 - 18:30:33 ---A- C:\Users\Fabienne\AppData\Roaming\Real\RealPlayer\History\RealNetworks.lnk [2378] O61 - LFC: 31/05/2013 - 18:31:38 ---A- C:\Users\Fabienne\AppData\Roaming\Real\RealPlayer\DRM\rights.xml [778] O61 - LFC: 31/05/2013 - 18:31:38 ---A- C:\Users\Fabienne\AppData\Roaming\Real\RealPlayer\library\view.xml [3684] O61 - LFC: 31/05/2013 - 18:32:47 ---A- C:\Users\Fabienne\AppData\Roaming\Real\RealPlayer\db\dbdata.txt [42] O61 - LFC: 31/05/2013 - 18:32:47 ---A- C:\Users\Fabienne\AppData\Roaming\Real\RealPlayer\db\listview.dat [759] O61 - LFC: 31/05/2013 - 18:32:47 ---A- C:\Users\Fabienne\AppData\Roaming\Real\RealPlayer\db\treestate.dat [567] O61 - LFC: 31/05/2013 - 18:35:37 ---A- C:\Users\Fabienne\Downloads\streaming-music-recorder.exe [11945624] O61 - LFC: 31/05/2013 - 18:38:40 ---A- C:\Users\Fabienne\AppData\Roaming\Audacity\audacity.cfg [1483] O61 - LFC: 31/05/2013 - 18:45:17 ---A- C:\Users\Fabienne\Documents\VirtualDJ\Tracklisting\2013-05-31.m3u [236] O61 - LFC: 31/05/2013 - 18:45:17 ---A- C:\Users\Fabienne\Documents\VirtualDJ\Tracklisting\tracklist.txt [3973] O61 - LFC: 31/05/2013 - 18:46:37 ---A- C:\Users\Fabienne\Documents\Streaming Music Recorder\2013-05-31 194328.mp3 [3827032] O61 - LFC: 31/05/2013 - 18:46:56 ---A- C:\Users\Fabienne\Documents\VirtualDJ\VirtualDJ Database v6.xml [106484] O61 - LFC: 31/05/2013 - 18:48:20 ---A- C:\Users\Fabienne\Downloads\tb_freecorder_4.exe [977976] O61 - LFC: 31/05/2013 - 19:14:45 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_facebook.conduitapps.com_0.localstorage-journal [3608] O61 - LFC: 31/05/2013 - 19:25:54 ---A- C:\Users\Fabienne\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\security.config.cch [11998] O61 - LFC: 31/05/2013 - 19:49:29 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.dailymotion.com_0.localstorage-journal [3608] O61 - LFC: 31/05/2013 - 19:49:35 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\static1.dmcdn.net\com.dm.player.sol [161] O61 - LFC: 31/05/2013 - 19:51:18 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage-journal [11864] O61 - LFC: 31/05/2013 - 19:59:35 -SHA- C:\Users\Fabienne\Music\Various Artists\NRJ Music Awards 2010 Disc 1\Thumbs.db [17408] O61 - LFC: 31/05/2013 - 19:59:36 -SHA- C:\Users\Fabienne\Music\Various Artists\NRJ Music Awards 2010 Disc 2\Thumbs.db [32256] O61 - LFC: 31/05/2013 - 20:03:46 ---A- C:\Users\Fabienne\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\8JRQAJBT\macromedia.com\support\flashplayer\sys\#www.tagtele.com\settings.sol [85] ~ 571 Fichiers temporaires (Temporary files) ~ Files: 1000 Scanned in 01mn 28s ---\\ Liste des outils de nettoyage (O63) O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 ~ ADS: Scanned in 00mn 00s ---\\ Liste des services Legacy (O64) O64 - Services: CurCS - 28/12/2011 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD O64 - Services: CurCS - 09/05/2013 - C:\Windows\System32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK O64 - Services: CurCS - 09/05/2013 - C:\Windows\system32\drivers\aswFW.sys (aswFW) .(.AVAST Software - avast! Filtering TDI driver.) - LEGACY_ASWFW O64 - Services: CurCS - 09/05/2013 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT O64 - Services: CurCS - 09/05/2013 - C:\Windows\System32\drivers\aswNdis2.sys (aswNdis2) .(.AVAST Software - avast! Filtering NDIS driver.) - LEGACY_ASWNDIS2 O64 - Services: CurCS - 09/05/2013 - C:\Windows\system32\Drivers\aswrdr2.sys (aswRdr) .(.AVAST Software - avast! WFP Redirect Driver.) - LEGACY_ASWRDR O64 - Services: CurCS - 09/05/2013 - Pas de propriétaire (aswRvrt) .(...) - LEGACY_ASWRVRT O64 - Services: CurCS - 09/05/2013 - C:\Windows\System32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX O64 - Services: CurCS - 09/05/2013 - C:\Windows\System32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP O64 - Services: CurCS - 09/05/2013 - C:\Windows\System32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI O64 - Services: CurCS - 09/05/2013 - Pas de propriétaire (aswVmm) .(...) - LEGACY_ASWVMM O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\Beep.sys (Beep) .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP O64 - Services: CurCS - 04/07/2012 - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\cdfs.sys (cdfs) .(.Microsoft Corporation - CD-ROM File System Driver.) - LEGACY_CDFS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS O64 - Services: CurCS - 24/08/2012 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG O64 - Services: CurCS - ??\??\???? - Pas de propriétaire (cpuz132) .(...) - LEGACY_CPUZ132 O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC O64 - Services: CurCS - 22/12/2009 - C:\Windows\System32\drivers\dgderdrv.sys (dgderdrv) .(.Devguru Co., Ltd - Device Error Recovery SDK(x86).) - LEGACY_DGDERDRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE O64 - Services: CurCS - 10/04/2013 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\fastfat.sys (fastfat) .(.Microsoft Corporation - Fast FAT File System Driver.) - LEGACY_FASTFAT O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR O64 - Services: CurCS - 24/01/2013 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY O64 - Services: CurCS - 02/06/2012 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD O64 - Services: CurCS - 24/08/2012 - C:\Windows\System32\Drivers\ksecpkg.sys (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\webclnt.dll (MRxDAV) .(.Microsoft Corporation - Fichier DLL du service DAV pour le Web.) - LEGACY_MRXDAV O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10 O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\msisadrv.sys (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT O64 - Services: CurCS - 11/02/2011 - C:\Windows\System32\drivers\npf.sys (npf) .(.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) - LEGACY_NPF O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pcw.sys (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\peauth.sys (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rasacd.sys (RasAcd) .(.Microsoft Corporation - RAS Automatic Connection Driver.) - LEGACY_RASACD O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR O64 - Services: CurCS - 10/06/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\spldr.sys (spldr) .(.Microsoft Corporation - loader for security processor.) - LEGACY_SPLDR O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2 O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP O64 - Services: CurCS - 03/10/2012 - C:\Windows\System32\drivers\tcpipreg.sys (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX O64 - Services: CurCS - 22/12/2009 - C:\Windows\system32\Drivers\TFsExDisk.sys (TFsExDisk) .(.Teruten Inc - File System Mini Filter Drvier.) - LEGACY_TFSEXDISK O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\DRIVERS\udfs.sys (udfs) .(.Microsoft Corporation - UDF File System Driver.) - LEGACY_UDFS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6 O64 - Services: CurCS - 26/07/2012 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\wfplwf.sys (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF O64 - Services: CurCS - 26/07/2012 - C:\Windows\System32\drivers\WudfPf.sys (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF ~ Legacy: 93 Scanned in 00mn 01s ---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Not Key.) O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ~ FASS Keys: 19 Scanned in 00mn 00s ---\\ Start Menu Internet (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche des services démarrés par Svchost (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ~ Services: 32 Scanned in 00mn 00s ---\\ Recherche particuliere à la racine de certains dossiers (O84) [MD5.57184DC9CC12566012452A47FB63B83D] [SPRF][01/06/2013] (.Setup © - Setup.) -- C:\Users\Fabienne\AppData\Local\Temp\34958uninstall.exe [410624] [MD5.32DCED18FFFEA0035E4FA975CA0AE8BE] [SPRF][22/04/2013] (.The Software Group - Software Update Setup.) -- C:\Users\Fabienne\AppData\Local\Temp\BoxoreInstaller.exe [620656] =>Adware.Boxore [MD5.C53DFC0D83ACA4CFF5477EB3FDE02F01] [SPRF][01/06/2013] (...) -- C:\Users\Fabienne\AppData\Local\Temp\chart_data.dat [20958] [MD5.150574442EDBE1E0080CCEE5E0DED6BB] [SPRF][01/06/2013] (...) -- C:\Users\Fabienne\AppData\Local\Temp\ICReinstall_VuuPC_setup.exe [590944] [MD5.5405413FFF79B8D9C747AA900F60F082] [SPRF][01/06/2013] (...) -- C:\Users\Fabienne\AppData\Local\Temp\Sqlite3.dll [599419] [MD5.56DA32D02C0432C5DF8740A38DB26BF8] [SPRF][20/05/2013] (.Conduit Ltd. - Conduit Toolbar.) -- C:\Users\Fabienne\AppData\Local\Temp\tb01N0.dll [5106464] =>Toolbar.Conduit [MD5.1A8438854DD15E4389F5BDEF502C369D] [SPRF][14/03/2011] (.Conduit Ltd. - Conduit Toolbar.) -- C:\Users\Fabienne\AppData\Local\Temp\tbSof0.dll [4216104] =>Toolbar.Conduit [MD5.29E1609B25ACC3A22330F6A2D8E4F141] [SPRF][16/05/2013] (...) -- C:\Users\Fabienne\AppData\Roaming\wklnhst.dat [7814] [MD5.8945CCA5FC4F25168E8B6F401EFAF51F] [SPRF][22/02/2007] (.Microsoft Corporation - Zone.com Stats Client for MSN Messenger.) -- C:\Windows\Downloaded Program Files\MessengerStatsPAClient.dll [304544] ~ Files: Scanned in 00mn 00s ---\\ Firewall Active Exception List (FirewallRules) (O87) O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "WMP-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-P2PHost-In-TCP" | In - None - P6 - TRUE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{FA092EBD-7E87-4A2C-BC47-602138CA15C1}" | In - None - P6 - TRUE | .(.CyberLink Corp. - PowerDirector.) -- c:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe O87 - FAEL: "{941E6F55-1A83-4AC8-9D01-0D964C377A6F}" | In - None - P6 - TRUE | .(.CyberLink Corp. - HP DVDSmart Main Program.) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPDVDSmart.exe O87 - FAEL: "{0C9F5835-2814-4076-AA50-9D200332059C}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\System32\svchost.exe O87 - FAEL: "{029FD92A-D68C-4D11-8158-A33E82FFD978}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Sync.) -- C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe O87 - FAEL: "{E887B7D5-C607-4D55-97CF-A9D5214BAA57}" | In - Private - P6 - TRUE | .(.Valve Corporation - Steam Client Bootstrapper (buildbot_winslave04_steam_steam_rel_client_win.) -- C:\Program Files (x86)\Valve\Steam\Steam.exe O87 - FAEL: "{085977D4-B402-497F-A62E-C79ECDE58BC6}" | In - Private - P17 - TRUE | .(.Valve Corporation - Steam Client Bootstrapper (buildbot_winslave04_steam_steam_rel_client_win.) -- C:\Program Files (x86)\Valve\Steam\Steam.exe O87 - FAEL: "TCP Query User{68701927-E9A4-4C6D-99B6-9B39118618AB}J:\tmnationsforever\tmforever.exe" |In - Private - P6 - TRUE | .(...) -- J:\tmnationsforever\tmforever.exe (.not file.) O87 - FAEL: "UDP Query User{3B262DC2-C4CB-4665-B34A-2816566B3ED0}J:\tmnationsforever\tmforever.exe" |In - Private - P17 - TRUE | .(...) -- J:\tmnationsforever\tmforever.exe (.not file.) O87 - FAEL: "TCP Query User{AC654D18-5466-4F74-B0FB-B40365BD740A}C:\program files (x86)\valve\steam\steamapps\mathieu72184\condition zero deleted scenes\hl.exe" | In - Private - P6 - TRUE | .(.Valve.) -- C:\program files (x86)\valve\steam\steamapps\mathieu72184\condition zero deleted scenes\hl.exe O87 - FAEL: "UDP Query User{DBF403AD-53D0-42EF-8E3F-B984CDE6A1A7}C:\program files (x86)\valve\steam\steamapps\mathieu72184\condition zero deleted scenes\hl.exe" | In - Private - P17 - TRUE | .(.Valve.) -- C:\program files (x86)\valve\steam\steamapps\mathieu72184\condition zero deleted scenes\hl.exe O87 - FAEL: "TCP Query User{1981FEBA-205A-4548-9782-99F5EA38C99D}C:\program files (x86)\google\google earth\client\googleearth.exe" | In - Private - P6 - TRUE | .(.Google.) -- C:\program files (x86)\google\google earth\client\googleearth.exe O87 - FAEL: "UDP Query User{A1DFFCD1-8230-403D-B40A-5FE9AAD2EDA3}C:\program files (x86)\google\google earth\client\googleearth.exe" | In - Private - P17 - TRUE | .(.Google.) -- C:\program files (x86)\google\google earth\client\googleearth.exe O87 - FAEL: "{65ED62F5-FA05-467E-A4F1-E4B5A0927221}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Communications Platform.) -- C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe O87 - FAEL: "{EC33F9C3-635D-4F78-A558-8BB8FC3A80F5}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Mesh Operating Environment.) -- C:\Program Files (x86)\Windows Live\Mesh\MOE.exe O87 - FAEL: "TCP Query User{BB7C332F-81CF-4618-BFDD-3E9A8D9620E0}J:\tmnationsforever\tmforever.exe" |In - Public - P6 - TRUE | .(...) -- J:\tmnationsforever\tmforever.exe (.not file.) O87 - FAEL: "UDP Query User{AC8C8507-CA12-4A45-AE78-C54D01797F33}J:\tmnationsforever\tmforever.exe" |In - Public - P17 - TRUE | .(...) -- J:\tmnationsforever\tmforever.exe (.not file.) O87 - FAEL: "{12FE1010-C5B8-4564-B493-E178CA40A872}" | In - Private - P6 - TRUE | .(.Musiccity Co.Ltd. - MUZAoDApp Module.) -- C:\Windows\SysWOW64\muzapp.exe O87 - FAEL: "{72C907E8-5D92-459F-A62D-AC442BF6AE99}" | In - Private - P17 - TRUE | .(.Musiccity Co.Ltd. - MUZAoDApp Module.) -- C:\Windows\SysWOW64\muzapp.exe O87 - FAEL: "TCP Query User{9B649BB0-0300-48EE-B8EA-737341552B2A}C:\program files (x86)\utorrent\utorrent.exe" | In - Private - P6 - TRUE | .(.BitTorrent, Inc. - µTorrent.) -- C:\program files (x86)\utorrent\utorrent.exe =>P2P.µTorrent O87 - FAEL: "UDP Query User{12BFAB3B-3881-449D-A31C-D7EDE28ECC0F}C:\program files (x86)\utorrent\utorrent.exe" | In - Private - P17 - TRUE | .(.BitTorrent, Inc. - µTorrent.) -- C:\program files (x86)\utorrent\utorrent.exe =>P2P.µTorrent O87 - FAEL: "TCP Query User{AB5B5CE9-6E9A-48A5-9458-3C328F8EE66C}C:\program files (x86)\google\google earth\client\googleearth.exe" | In - Public - P6 - TRUE | .(.Google.) -- C:\program files (x86)\google\google earth\client\googleearth.exe O87 - FAEL: "UDP Query User{432C2BCD-908E-450D-B56E-939CEF5CDFB2}C:\program files (x86)\google\google earth\client\googleearth.exe" | In - Public - P17 - TRUE | .(.Google.) -- C:\program files (x86)\google\google earth\client\googleearth.exe O87 - FAEL: "{873A502F-518C-4E77-A0A9-3B5E596F4535}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe O87 - FAEL: "{F9EA34C6-F763-4DA2-B229-1764BF88F3B2}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe O87 - FAEL: "{4E98D9CB-C679-435D-982E-0A5D75147A67}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Tom Clancy's Splinter Cell Conviction\src\system\conviction_game.exe O87 - FAEL: "{F68D1A0A-24BD-4BC2-9364-98E4A6C7FBDA}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Tom Clancy's Splinter Cell Conviction\src\system\conviction_game.exe O87 - FAEL: "{8D6838DF-25F7-47C5-ACC0-1221E7A00190}" | In - Private - P6 - TRUE | .(.Ubisoft - Autopatch system.) -- C:\Program Files (x86)\Ubisoft\Tom Clancy's Splinter Cell Conviction\src\system\gu.exe O87 - FAEL: "{F22A11B7-5259-46D1-BFF8-2D724DA2614B}" | In - Private - P17 - TRUE | .(.Ubisoft - Autopatch system.) -- C:\Program Files (x86)\Ubisoft\Tom Clancy's Splinter Cell Conviction\src\system\gu.exe O87 - FAEL: "TCP Query User{6830BDD6-8399-49AE-B067-7D8FE115B06B}C:\program files (x86)\google\google earth\plugin\geplugin.exe" | In - Private - P6 - TRUE | .(.Google.) -- C:\program files (x86)\google\google earth\plugin\geplugin.exe O87 - FAEL: "UDP Query User{40687344-3BC7-4677-A974-6363988659B5}C:\program files (x86)\google\google earth\plugin\geplugin.exe" | In - Private - P17 - TRUE | .(.Google.) -- C:\program files (x86)\google\google earth\plugin\geplugin.exe O87 - FAEL: "{B12BF832-BDFD-400F-90D1-5C96D3323C5D}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "{7BAE7E04-F517-4716-A7B4-84F6AACCDD3C}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "{11B8CCE8-993F-47F3-AFE6-AC9D45A7A247}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "{86317C7C-1E76-4196-9E30-55F02E3C31B1}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{2C092681-3F18-43DA-A825-488575425E2A}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{E0A4D8BC-02E2-49AA-A9FA-927A5843DB37}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{1F40A6DA-DA7F-4053-ADAF-193914364C5D}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{FAB005B6-88DA-4616-8C3C-4CA608A3B9E2}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) O87 - FAEL: "{738A88F3-004E-427C-8F74-AF44C8201681}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "{6F3D2406-B385-406F-9BF1-1029CEEF1DB4}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "{AE2AB8F7-0381-4200-97FD-79FFE6BF5DB1}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "{808E097D-EBC1-4B2A-97D5-AF0FCACC4CA7}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{1917039F-AD4B-4494-B65D-9E1F6BB10633}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{4612D2A1-D47D-4213-9FF8-00E73FB5D9B7}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{03E2AE33-8B00-4C4B-AF4E-9FA31AD5F56F}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{BD533A3D-096F-4C5C-BA3E-C6768B957C93}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{0A338408-7955-42EF-A4EE-5F5516F6094C}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{A2DBD90B-8886-41B4-889A-36FB163B51D0}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{CFAFE1C9-6295-4C01-B731-38861DBCC539}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{7F40F973-9F83-4086-AB1B-CBCACAB482F9}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "{666A5603-5B06-4E25-A5CD-C3B83B9A212E}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{B69A3D4E-3D9B-41F2-B9D3-605FB5CED621}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{A75F48F4-2554-477A-BFFC-7E0D5F1B0272}" | In - Private - P6 - TRUE | .(.Valve - Half-Life Launcher.) -- C:\Program Files (x86)\Valve\Steam\SteamApps\mathieu72184\condition zero\hl.exe O87 - FAEL: "{9A9FB924-54EB-4AC0-9410-9E2B956731B3}" | In - Private - P17 - TRUE | .(.Valve - Half-Life Launcher.) -- C:\Program Files (x86)\Valve\Steam\SteamApps\mathieu72184\condition zero\hl.exe O87 - FAEL: "TCP Query User{1A6FD91C-6A71-4217-B933-4E6F233EA468}C:\games\world_of_tanks\wotlauncher.exe" | In - Private - P6 - TRUE | .(.Wargaming.net - World of Tanks Launcher.) -- C:\games\world_of_tanks\wotlauncher.exe O87 - FAEL: "UDP Query User{94CB03EA-11D6-415E-8477-3A1E398C95D6}C:\games\world_of_tanks\wotlauncher.exe" | In - Private - P17 - TRUE | .(.Wargaming.net - World of Tanks Launcher.) -- C:\games\world_of_tanks\wotlauncher.exe O87 - FAEL: "TCP Query User{4693105E-3632-4EFC-8CD6-6D5426361ADC}C:\games\world_of_tanks\worldoftanks.exe" | In - Private - P6 - TRUE | .(.Wargaming.net - World of Tanks.) -- C:\games\world_of_tanks\worldoftanks.exe O87 - FAEL: "UDP Query User{3E17C5E3-B92E-45E5-9B4A-A4D4FBFD0579}C:\games\world_of_tanks\worldoftanks.exe" | In - Private - P17 - TRUE | .(.Wargaming.net - World of Tanks.) -- C:\games\world_of_tanks\worldoftanks.exe O87 - FAEL: "TCP Query User{05BF11CC-82A6-4B8D-9028-98B0C8938038}C:\program files (x86)\orange\assistance livebox\dist\st2.exe" | In - Private - P6 - TRUE | .(.Orange.) -- C:\program files (x86)\orange\assistance livebox\dist\st2.exe O87 - FAEL: "UDP Query User{0D9CE72A-2134-45E1-B61B-F6C4458D6A44}C:\program files (x86)\orange\assistance livebox\dist\st2.exe" | In - Private - P17 - TRUE | .(.Orange.) -- C:\program files (x86)\orange\assistance livebox\dist\st2.exe O87 - FAEL: "{8873DB0B-3238-4858-8C76-788A3073B27D}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Microsoft OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.exe O87 - FAEL: "{FAC2A01F-4348-4834-A955-BA4F37415D64}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Microsoft OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.exe O87 - FAEL: "{46D948B9-34AE-4E8B-B32E-F72734E0FB7D}" | In - Private - P6 - TRUE | .(.France Telecom SA - Orange Upd@te.) -- C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe O87 - FAEL: "{B3984DA7-C319-4599-A967-8FF9D5E9FABF}" | In - Private - P17 - TRUE | .(.France Telecom SA - Orange Upd@te.) -- C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe O87 - FAEL: "{38153EA6-13B6-4505-9F7D-E5E33B6429E4}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe O87 - FAEL: "{5882DE18-5CE3-4FDA-A690-F3AA1A2B3958}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe O87 - FAEL: "RemoteDesktop-UserMode-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "TCP Query User{44D61369-2D44-4878-B6AA-4B2BE89E2D16}C:\program files (x86)\Orange\Assistance Livebox\dist\ST2.exe" | In - Public - P6 - TRUE | .(.Orange.) -- C:\program files (x86)\Orange\Assistance Livebox\dist\ST2.exe O87 - FAEL: "UDP Query User{F657FC6E-DA0C-4CE0-824B-611559BB2413}C:\program files (x86)\Orange\Assistance Livebox\dist\ST2.exe" | In - Public - P17 - TRUE | .(.Orange.) -- C:\program files (x86)\Orange\Assistance Livebox\dist\ST2.exe O87 - FAEL: "{C095857E-ED80-4643-A043-EB87EE22A6CB}" | In - Private - P6 - TRUE | .(.Research In Motion - BlackBerry Desktop Software.) -- C:\Program Files (x86)\Research In Motion\BlackBerry desktop\Rim.desktop.exe O87 - FAEL: "{6C96683E-073A-4A5A-941C-82168BF001A0}" | In - Private - P17 - TRUE | .(.Research In Motion - BlackBerry Desktop Software.) -- C:\Program Files (x86)\Research In Motion\BlackBerry desktop\Rim.desktop.exe O87 - FAEL: "{F8C94113-AC4F-4700-BD60-2424BB925736}" | In - Private - P6 - TRUE | .(.Valve - Half-Life Launcher.) -- C:\Program Files (x86)\Valve\Steam\SteamApps\common\Half-Life\hl.exe O87 - FAEL: "{8FDF4C30-0344-4EC5-8C04-18AC79B3C2DF}" | In - Private - P17 - TRUE | .(.Valve - Half-Life Launcher.) -- C:\Program Files (x86)\Valve\Steam\SteamApps\common\Half-Life\hl.exe O87 - FAEL: "{21AFAF82-33B2-47E6-B817-9922AE027180}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe O87 - FAEL: "{D3E986E1-5485-40CE-8ABE-FE21BC983EB3}" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe O87 - FAEL: "{C20B021A-4435-4F02-891D-F278F5356B92}" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe O87 - FAEL: "{5AFCCCF4-3B9E-419D-9156-CD04EDF5D6C1}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe O87 - FAEL: "{D63C08B0-9DD8-44CF-B64E-C97AC93C28AC}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe ~ Firewall: 239 Scanned in 00mn 01s ---\\ Scan Additionnel (O88) Database Version : v2.12368 - (01/06/2013) Clés trouvées (Keys found) : 57 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 2 Fichiers trouvés (Files found) : 5 [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{08C06D61-F1F3-4799-86F8-BE1A89362C85}] =>Toolbar.Orange [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F479A18A22A86E3429341589FF57D81A] =>PUP.SweetIM [HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\Iminent] =>Adware.IMBooster [HKCU\Software\SweetIM] =>PUP.SweetIM [HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\SweetIM] =>PUP.SweetIM [HKLM\Software\Wow6432Node\SweetIM] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>Toolbar.Agent [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>Toolbar.Agent [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E] =>PUP.SweetIM [HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\desksvc] =>Hijacker.22find [HKLM\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff] =>Adware.MyWebSearch [HKLM\Software\Wow6432Node\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff] =>Adware.MyWebSearch [HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\eSafeSvc] =>PUP.eSafeSecurity [HKLM\Software\Wow6432Node\Applian Technologies\OpenCandy] =>Adware.OpenCandy [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636] =>PUP.SweetIM^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094] =>PUP.SweetIM^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536] =>PUP.SweetIM^ C:\Program Files (x86)\OpenCandyDemoInstaller =>Adware.OpenCandy C:\Users\Fabienne\AppData\Local\Software =>Adware.Boxore C:\Users\Fabienne\AppData\Local\Temp\BoxoreInstaller.exe =>Adware.Boxore C:\Users\Fabienne\AppData\Local\Temp\tb01N0.dll =>Toolbar.Conduit C:\Users\Fabienne\AppData\Local\Temp\tbSof0.dll =>Toolbar.Conduit ~ Additionnel Scan: 294995 Items scanned in 00mn 28s ---\\ Product Upgrade Codes (O90) O90 - PUC: "000021090200C0400000000000F01FEC" . (.Module de compatibilité pour Microsoft Office System 2007.) -- C:\Windows\Installer\{90120000-0020-040C-0000-0000000FF1CE}\O12ConvIcon.exe O90 - PUC: "00004159A700C0400000000000F01FEC" . (.Microsoft Office Outlook Connector.) -- C:\Windows\Installer\{95140000-007A-040C-0000-0000000FF1CE}\OLCIcon.exe O90 - PUC: "00004159D70090400000000000F01FEC" . (.Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit.) -- C:\Windows\Installer\{95140000-007D-0409-0000-0000000FF1CE}\oscwlIcon.exe O90 - PUC: "0540B5EBBCCD9EF4392EB3838DA847B5" . (.BlackBerry Desktop Software 7.1.) -- C:\Windows\Installer\{BE5B0450-DCCB-4FE9-93E2-3B38D88A745B}\ARPPRODUCTICON.exe O90 - PUC: "05DC085F4EEF32DBE629600E796A1297" . (.Catalyst Control Center Graphics Full Existing.) -- C:\Windows\Installer\{F580CD50-FEE4-BD23-6E92-06E097A62179}\ARPPRODUCTICON.exe O90 - PUC: "0694AF70830BBE9498B1F95939A05A44" . (.HP Customer Experience Enhancements.) -- C:\Windows\Installer\{07FA4960-B038-49EB-891B-9F95930AA544}\ARPPRODUCTICON.exe O90 - PUC: "076CFAAAB965F2A4284B2449E5D03EFE" . (.Windows Live Writer.) -- C:\Windows\Installer\{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}\ApplicationIcon.ico O90 - PUC: "098990BCF5D15D11E99A0005AB3E711E" . (.PowerDirector.) -- c:\Windows\Installer\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\ARPPRODUCTICON.exe O90 - PUC: "0D667F3274DEBDC134DED4975632EE40" . (.Catalyst Control Center Graphics Previews Vista.) -- C:\Windows\Installer\{23F766D0-ED47-1CDB-43ED-4D796523EE04}\ARPPRODUCTICON.exe O90 - PUC: "0ED0164331C3AC24E82310FF3AA86B8E" . (.PC Connectivity Solution.) -- C:\Windows\Installer\{34610DE0-3C13-42CA-8E32-01FFA38AB6E8}\ARPPRODUCTICON.exe O90 - PUC: "114202EE62C28E947948B11CBD7FED69" . (.HP Support Assistant.) -- C:\Windows\Installer\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}\ARPPRODUCTICON.exe O90 - PUC: "11F12B5E3396B0E42AC597363E0CD711" . (.Windows Live Messenger.) -- C:\Windows\Installer\{E5B21F11-6933-4E0B-A25C-7963E3C07D11}\MsblIco.Exe O90 - PUC: "12506E88E4E158749B1F71894ADBC003" . (.HP MediaSmart SmartMenu.) -- C:\Windows\Installer\{88E60521-1E4E-4785-B9F1-1798A4BD0C30}\SmartMenuIcon O90 - PUC: "168061B30527E1545BEEB829FB037A01" . (.Microsoft Works.) -- C:\Windows\Installer\{3B160861-7250-451E-B5EE-8B92BF30A710}\MSWorks.exe O90 - PUC: "1C4235E6CF4867F4A9A36CE5708FE06E" . (.Complément Messenger.) -- C:\Windows\Installer\{6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}\CompanionIcon O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon O90 - PUC: "271164F3D14DCD4D5CFFDD5540B7BF26" . (.Catalyst Control Center Localization All.) -- C:\Windows\Installer\{3F461172-D41D-D4DC-C5FF-DD55047BFB62}\ARPPRODUCTICON.exe O90 - PUC: "2A49E8CC7C55064459C3A297100875C8" . (.LightScribe System Software.) -- c:\Windows\Installer\{CC8E94A2-55C7-4460-953C-2A790180578C}\ARPPRODUCTICON.exe O90 - PUC: "38E1FB04BE028D11795C00905C206085" . (.Power2Go.) -- c:\Windows\Installer\{40BF1E83-20EB-11D8-97C5-0009C5020658}\ARPPRODUCTICON.exe O90 - PUC: "42C6FBF1DF1C10144AB2C065F4E9E897" . (.PowerStarter.) -- c:\Windows\Installer\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\ARPPRODUCTICON.exe O90 - PUC: "4D8CC12A8AB79AA4F9E2EE5FD4F5E717" . (.BlackBerry App World Browser Plugin.) -- C:\Windows\Installer\{A21CC8D4-7BA8-4AA9-9F2E-EEF54D5F7E71}\ARPIcon O90 - PUC: "538D86ACBBFC041413C0425E13EE0DB0" . (.Catalyst Control Center HydraVision Full.) -- C:\Windows\Installer\{CA68D835-CFBB-4140-310C-24E531EED00B}\ARPPRODUCTICON.exe O90 - PUC: "580BEF57F97158C40B4E5B712D617005" . (.eDrawings 2007.) -- C:\Windows\Installer\{75FEB085-179F-4C85-B0E4-B517D2160750}\eModelViewer1.exe O90 - PUC: "621AD3C1325D9804CBACAF64EF436D8F" . (.Google Drive.) -- C:\Windows\Installer\{1C3DA126-D523-4089-BCCA-FA46FE34D6F8}\DriveIcon O90 - PUC: "660B7A66A5B78C0DDCA493652FD8F091" . (.Catalyst Control Center Core Implementation.) -- C:\Windows\Installer\{66A7B066-7B5A-D0C8-CD4A-3956F28D0F19}\ARPPRODUCTICON.exe O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.03) - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico O90 - PUC: "6CE76A752560A0C48B4D02DC34A70D33" . (.Catalyst Control Center - Branding.) -- C:\Windows\Installer\{57A67EC6-0652-4C0A-B8D4-20CD437AD033}\ARPPRODUCTICON.exe O90 - PUC: "701043F6AA9F6C745BC43C1AF91155F3" . (.Hewlett-Packard ACLM.NET v1.2.1.1.) -- C:\Windows\Installer\{6F340107-F9AA-47C6-B54C-C3A19F11553F}\ARPPRODUCTICON.exe O90 - PUC: "76EA78D0BE4101C4885AADC61318BE81" . (.Windows Live Family Safety.) -- C:\Windows\Installer\{0D87AE67-14EB-4C10-88A5-DA6C3181EB18}\fssicon.ico O90 - PUC: "782BB4BF9F7372E4C9D4D283280EE8FF" . (.HP.) -- c:\Windows\Installer\{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}\ARPPRODUCTICON.exe O90 - PUC: "907018673D7AD86419761A87C0E167C6" . (.Windows Live FolderShare.) -- C:\Windows\Installer\{76810709-A7D3-468D-9167-A1780C1E766C}\FolderShare48x48.ico O90 - PUC: "96BC58553DB5BCB78C9E881051A3AEE7" . (.Catalyst Control Center Graphics Previews Common.) -- C:\Windows\Installer\{5585CB69-5BD3-7BCB-C8E9-8801153AEA7E}\ARPPRODUCTICON.exe O90 - PUC: "970DACCDC29FAD442B8526F46C15A7A5" . (.MediaSmart DVD.) -- c:\Windows\Installer\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\ARPPRODUCTICON.exe O90 - PUC: "976961A91023C0C2F9139DDEC7C27FA3" . (.Catalyst Control Center Graphics Light.) -- C:\Windows\Installer\{9A169679-3201-2C0C-9F31-D9ED7C2CF73A}\ARPPRODUCTICON.exe O90 - PUC: "9F40B69F9A624834AA7177AEACB14AB0" . (.HP Button Manager.) -- C:\Windows\Installer\{F96B04F9-26A9-4384-AA17-77EACA1BA40B}\ARPPRODUCTICON.exe O90 - PUC: "A41E9B88F6D803C104858347DF8CBEC2" . (.HydraVision.) -- C:\Windows\Installer\{88B9E14A-8D6F-1C30-4058-3874FDC8EB2C}\ARPPRODUCTICON.exe O90 - PUC: "ABC965A54EB90BAEB93464C8AE32327B" . (.ATI Catalyst Install Manager.) -- C:\Windows\Installer\{5A569CBA-9BE4-EAB0-9B43-468CEA2323B7}\ARPPRODUCTICON.exe O90 - PUC: "ADBE3203B1FB13843B745E1058552FE6" . (.HP.) -- c:\Windows\Installer\{3023EBDA-BF1B-4831-B347-E5018555F26E}\ARPPRODUCTICON.exe O90 - PUC: "BA0A2B44E214C8F40B851D8EEACCFD5F" . (.PowerRecover.) -- C:\Windows\Installer\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}\ARPPRODUCTICON.exe O90 - PUC: "C297B363F78544CF25DECC694C1098DD" . (.Catalyst Control Center Graphics Full New.) -- C:\Windows\Installer\{363B792C-587F-FC44-52ED-CC96C40189DD}\ARPPRODUCTICON.exe O90 - PUC: "C7D8BF048FF62FA4CBB8B0D13BA20FB4" . (.HP Advisor.) -- C:\Windows\Installer\{40FB8D7C-6FF8-4AF2-BC8B-0B1DB32AF04B}\ARPPRODUCTICON.exe O90 - PUC: "C971C95CD8669A946BAE1012CCCF2134" . (.LabelPrint.) -- c:\Windows\Installer\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\ARPPRODUCTICON.exe O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- c:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon O90 - PUC: "DF62DC6DF7DC68C4693AEEFBBA5EEF74" . (.Kies.) -- C:\Windows\Installer\{D6CD26FD-CD7F-4C86-96A3-EEBFABE5FE47}\ARPPRODUCTICON.exe O90 - PUC: "E7995D9797FBBB84B814B95EC9512C7D" . (.OmniPage SE.) -- C:\Windows\Installer\{79D5997E-BF79-48BB-8B41-9BE59C15C2D7}\Op.exe O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype™ 6.3.) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe O90 - PUC: "EA6E1E565AD13F15082BE8F17489EE09" . (.ccc-utility64.) -- C:\Windows\Installer\{65E1E6AE-1DA5-51F3-80B2-8E1F4798EE90}\ARPPRODUCTICON.exe O90 - PUC: "EA9C027C99BB94448855BEACCEAE939A" . (.Secocut installation.) -- C:\Windows\Installer\{C720C9AE-BB99-4449-8855-EBCAECEA39A9}\ARPPRODUCTICON.exe O90 - PUC: "F04DC0094D613280C95C314C0092E207" . (.ccc-core-static.) -- C:\Windows\Installer\{900CD40F-16D4-0823-9CC5-13C400292E70}\ARPPRODUCTICON.exe O90 - PUC: "F097867CBF400E11B9C200A10A730BE1" . (.Google Earth.) -- C:\Windows\Installer\{C768790F-04FB-11E0-9B2C-001AA037B01E}\ARPPRODUCTICON.exe O90 - PUC: "F0EAF1AE453223E44B32BAEAE853F819" . (.RealDownloader.) -- C:\Windows\Installer\{EA1FAE0F-2354-4E32-B423-ABAE8E358F91}\AddRemoveProgramsIcon ~ Update Products: 155 Scanned in 00mn 00s ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 18/03/2010 113152 | (ACDaemon) . (.ArcSoft Inc..) - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe SR - | Auto 11/05/2013 65640 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SS - | Demand 15/05/2013 256904 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SR - | Auto 09/09/2009 202752 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe SR - | Auto 09/05/2013 46808 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe SR - | Auto 09/05/2013 137960 | (avast! Firewall) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\afwServ.exe SR - | Demand 18/01/2013 577536 | (Blackberry Device Manager) . (.Research In Motion Limited.) - C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe SR - | Auto 14/07/2009 27136 | C:\Windows\System32\ezsvc7.dll (ezSharedSvc) . (.EasyBits Sofware AS.) - C:\Windows\System32\svchost.exe SR - | Auto 24/08/2009 69632 | C:\Program Files (x86)\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe (FTRTSVC) . (.France Telecom SA.) - C:\Program Files (x86)\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe SS - | Demand 06/06/2009 250616 | (GameConsoleService) . (.WildTangent, Inc..) - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe SS - | Auto 04/09/2010 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 04/09/2010 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SR - | Auto 27/09/2012 86528 | (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe SS - | Demand 10/08/2012 1001376 | (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe SR - | Auto 20/08/2009 73728 | (LightScribeService) . (.Hewlett-Packard Company.) - c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe SS - | Auto 18/09/2012 1082016 | (Orange update Core Service) . (.France Telecom SA.) - C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe SR - | Auto 39056 | (RealNetworks Downloader Resolver Service) . (...) - C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe SR - | Auto 22/09/2010 249136 | (SeaPort) . (.Microsoft Corporation.) - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe SS - | Demand 11/11/2008 620544 | (ServiceLayer) . (.Nokia..) - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe SS - | Auto 28/02/2013 161384 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe SS - | Demand 24/11/2010 72704 | (SolidWorks Licensing Service) . (.SolidWorks.) - C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe SS - | Demand 18/01/2012 155320 | (Sony PC Companion) . (.Avanquest Software.) - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe SS - | Demand 24/10/2012 529744 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe SR - | Auto 18/09/2008 104960 | (uCamMonitor) . (.ArcSoft, Inc..) - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe SR - | Auto 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 02s ---\\ Recherche Master Boot Record Infection (MBR)(O80) Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net Run by Fabienne at 02/06/2013 09:46:19 device: opened successfully user: error reading MBR Disk trace: error: Read Descripteur non valide kernel: error reading MBR ~ MBR: 9 Scanned in 00mn 02s ---\\ Recherche Master Boot Record Infection (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by Fabienne at 02/06/2013 09:46:21 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 04s ---\\ Liste des émulateurs de CD/DVD (Hook du MBR) O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite ~ Emulateurs: Scanned in 00mn 04s End of the scan (2972 lines in 06mn 18s)(0)