~ Rapport de ZHPDiag v2013.9.14.26 - Nicolas Coolman (14/09/2013) ~ Lancé par Administrateur (17/09/2013 23:09:37) ~ Adresse du Site Web http://nicolascoolman.webs.com ~ Traduit par Nicolas Coolman ~ Etat de la version : ~ Liste blanche : Désactivée par l'utilisateur ~ Elévation des Privilèges : OK ~ User Account Control (UAC): Not Found ---\\ Navigateurs Internet MSIE: Internet Explorer v8.0.6001.18702 MFIE: Mozilla Firefox 17.0.1 GCIE: Google Chrome v29.0.1547.66 (Defaut) ---\\ Informations sur les produits Windows ~ Langage: Français Windows XP Professional Service Pack 3 (Build 2600) Windows Automatic Updates : OK Windows Genuine Advantage : OK ---\\ Logiciels de protection du système Avira Free Antivirus v13.0.0.4042 ---\\ Logiciels d'optimisation du système ---\\ Logiciels de partage PeerToPeer eMule µTorrent v2.2.1 =>P2P.µTorrent ---\\ Surveillance de Logiciels Adobe Flash Player 11 ActiveX Adobe Reader XI Java 7 Update 25 ---\\ Informations sur le système ~ Processor: x86 Family 15 Model 107 Stepping 2, AuthenticAMD ~ Operating System: 32 Bits Boot mode: Normal (Normal boot) Total RAM: 2047 MB (45% free) System Restore: Activé (Enable) System drive C: has 12 GB (8%) free of 146 GB ---\\ Mode de connexion au système ~ Computer Name: JEAN-9C795382AF ~ User Name: Administrateur ~ All Users Names: UpdatusUser, SUPPORT_388945a0, HelpAssistant, ASPNET, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppData% : C:\Documents and Settings\Administrateur\Application Data\ ~ %Desktop% : C:\Documents and Settings\Administrateur\Bureau\ ~ %Favorites% : C:\Documents and Settings\Administrateur\Favoris\ ~ %LocalAppData% : C:\Documents and Settings\Administrateur\Local Settings\Application Data\ ~ %StartMenu% : C:\Documents and Settings\Administrateur\Menu Démarrer\ ~ %Windir% : C:\WINDOWS\ ~ %System% : C:\WINDOWS\system32\ ---\\ Enumération des unités disques A:\ Floppy drive, Flash card reader, USB Key (Not Inserted) C:\ Hard drive, Flash drive, Thumb drive (Free 12 Go of 146 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 65 Go of 319 Go) E:\ CD-ROM drive (Not Inserted) F:\ CD-ROM drive (Free 0 Go of 7 Go) G:\ Floppy drive, Flash card reader, USB Key (Not Inserted) H:\ Floppy drive, Flash card reader, USB Key (Free 21 Go of 29 Go) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: Modified [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 26 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) (.13/04/2008 - 18:34:04.) -- C:\WINDOWS\Explorer.exe [1037824] [MD5.EA7AB3839BE1FFE067A8131F3547160D] - (.Microsoft Corporation - Internet Extensions for Win32.) (.08/08/2013 - 07:05:46.) -- C:\WINDOWS\system32\wininet.dll [920064] [MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows NT.) (.13/04/2008 - 18:34:30.) -- C:\WINDOWS\system32\Winlogon.exe [512000] [MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.17/08/2011 - 14:49:54.) -- C:\WINDOWS\system32\Drivers\AFD.sys [138496] [MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) (.13/04/2008 - 10:40:32.) -- C:\WINDOWS\system32\Drivers\atapi.sys [96512] [MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/04/2008 - 11:14:22.) -- C:\WINDOWS\system32\Drivers\Cdfs.sys [63744] [MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.13/04/2008 - 10:40:48.) -- C:\WINDOWS\system32\Drivers\Cdrom.sys [62976] [MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) (.13/04/2008 - 17:57:40.) -- C:\WINDOWS\system32\Drivers\Fips.sys [44672] [MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) (.13/04/2008 - 08:36:06.) -- C:\WINDOWS\system32\Drivers\HDAudBus.sys [144384] [MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) (.13/04/2008 - 18:00:54.) -- C:\WINDOWS\system32\Drivers\i8042prt.sys [54144] [MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) (.13/04/2008 - 10:41:00.) -- C:\WINDOWS\system32\Drivers\Imapi.sys [42112] [MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) (.13/04/2008 - 10:57:16.) -- C:\WINDOWS\system32\Drivers\IpNat.sys [152832] [MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) (.13/04/2008 - 11:19:44.) -- C:\WINDOWS\system32\Drivers\IPSec.sys [75264] [MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.15/07/2011 - 14:29:31.) -- C:\WINDOWS\system32\Drivers\MRxSmb.sys [456320] [MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) (.13/04/2008 - 11:21:02.) -- C:\WINDOWS\system32\Drivers\netBT.sys [162816] [MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) (.13/04/2008 - 11:15:54.) -- C:\WINDOWS\system32\Drivers\ntfs.sys [574976] [MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) (.13/04/2008 - 18:47:24.) -- C:\WINDOWS\system32\Drivers\Parport.sys [80384] [MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.13/04/2008 - 11:19:44.) -- C:\WINDOWS\system32\Drivers\Rasl2tp.sys [51328] [MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.13/04/2008 - 10:32:52.) -- C:\WINDOWS\system32\Drivers\rdpdr.sys [196224] [MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) (.13/04/2008 - 19:57:36.) -- C:\WINDOWS\system32\Drivers\redbook.sys [58752] [MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.13/04/2008 - 17:56:06.) -- C:\WINDOWS\system32\Drivers\volsnap.sys [53376] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 2/6311 ~ Mes musiques (My Musics) : 72/280 ~ Mes Videos (My Videos) : 2/19 ~ Mes Favoris (My Favorites) : 1/9 ~ Mes Documents (My Documents) : 2/18624 ~ Mon Bureau (My Desktop) : 3/63 ~ Menu demarrer (Programs) : 1/60 ~ Hidden Files: Scanned in 00mn 00s ---\\ Processus lancés [MD5.8769E2D1072B62AB071F166F03B3E3DC] - (.Avira Operations GmbH & Co. KG - Avira Scheduler.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [84024] [PID.1572] [MD5.4CB7C0105E9BF50EF2C2F220FBEDBF49] - (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\WINDOWS\RTHDCPL.exe [20053608] [PID.1932] [MD5.C637FC4638A96165256B28D38DE7B953] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [49208] [PID.1948] [MD5.93AD0B78C7357A05F50E594EC7C22300] - (...) -- ystem32\RunDLL32.exe [0] [PID.2000] [MD5.8772A605542D8487F4C08FF9F89F2AB7] - (.Adobe Systems Inc. - AcroTray.) -- C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [815512] [PID.2036] [MD5.94AFA557B3D4B5AB847F45341AC820DD] - (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [310640] [PID.2044] [MD5.DB3F7F19F942D3CE4E1A0E8D9FF541FB] - (.Avira Operations GmbH & Co. KG - Avira System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [347192] [PID.184] [MD5.D63797E8E7781EE1500A810CB6194FA6] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe [253816] [PID.216] [MD5.15A1A88D97D440C735058CCF3F74A6EE] - (.Nero AG - Nero Home.) -- C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe [94208] [PID.276] [MD5.0B0E48A76797CC0B8128AC64D4FA36CF] - (.Samsung - Kies.) -- C:\Program Files\Samsung\Kies\Kies.exe [1511792] [PID.512] [MD5.DEECBAEA606C4AEADF8D93F33A0CC8BD] - (.Samsung - KiesPDLR.) -- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [1106288] [PID.424] [MD5.9A8568C7642B79F43DCEB0BDF9F49050] - (.Druide informatique inc. - Gestionnaire Antidote.) -- C:\Program Files\Druide\Antidote\Gestionnaire Antidote.exe [542136] [PID.604] [MD5.4543367E50BD35E7D1269D42841B156E] - (.Hewlett-Packard Development Company, L.P. - HP Digital Imaging Monitor.) -- C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [288472] [PID.1196] [MD5.D41D8CD98F00B204E9800998ECF8427E] - (...) -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [163328] [PID.1724] [MD5.AD1D13E6326E0B8DA2A7BE13B39A8FE0] - (.Avira Operations GmbH & Co. KG - Avira On-Access Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [108088] [PID.1536] [MD5.9ECF00E19736054E019C532AED8228FC] - (.Oracle Corporation - Java Quick Starter Service.) -- C:\Program Files\Java\jre7\bin\jqs.exe [182184] [PID.884] [MD5.87BCF7A6A70060A48F9F5E6F80228A3F] - (.Hewlett-Packard Development Company, L.P. - HP Photosmart Premier.) -- C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe [479232] [PID.2228] [MD5.086DA58F38AB4C690D594D223F6C4BC4] - (.Nalpeiron Ltd. - Nalpeiron LAN Service Build March 20th 2012.) -- C:\WINDOWS\system32\nalserv.exe [135168] [PID.2600] [MD5.B1EF4686961986DFFB7FE8F18E6FCB5B] - (.Nalpeiron Ltd. - This service enables products that use the.) -- C:\WINDOWS\system32\nlssrv32.exe [66560] [PID.2848] [MD5.FFD30DAAF62D605069F6EB42D2E807C3] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 306.8.) -- C:\WINDOWS\system32\nvsvc32.exe [164200] [PID.3380] [MD5.88029974B1C9995CFA3BD9560BBA2EEF] - (.Hewlett-Packard Development Company, L.P. - HP CUE Status.) -- C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe [239320] [PID.2312] [MD5.DF1BBA1168C0AD1D080A1F1B99576A76] - (.Google Inc. - Google Chrome.) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe [829392] [PID.3404] [MD5.F30BF9FC4275156F2AE96FCDF1ED5EE4] - (.Avira Operations GmbH & Co. KG - Avira Shadow Copy Service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [76856] [PID.2844] [MD5.2E0B0A051FFAA86E358465BB0880D453] - (.Microsoft Corporation - Windows Update.) -- C:\WINDOWS\system32\wuauclt.exe [53784] [PID.2676] [MD5.587AAAAEF6F62BB2619754B3BC9EF415] - (.Microsoft Corporation - Microsoft Office Word.) -- C:\Program Files\Microsoft Office\Office12\WINWORD.exe [409776] [PID.2944] [MD5.66CBA380C78A1D1649E9B6CC41763B02] - (.Adobe Systems Incorporated - Adobe Reader.) -- C:\Program Files\Adobe\Reader 11.0\Reader\AcroRd32.exe [1411448] [PID.4012] [MD5.070753E47E04181DD440EA2FEFE3115C] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe [18678376] [PID.2084] [MD5.FBAB93BDB2723543B935FDA3C049708F] - (.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe [64512] [PID.2992] [MD5.2D091A99624FB9E7EEF0A86D872EC0C3] - (.HP - PML Driver.) -- C:\WINDOWS\system32\HPZipm12.exe [73728] [PID.6116] [MD5.D15FE044EF9776466FBA00D7FBD7B7B6] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [7953408] [PID.8464] [MD5.506B0B498216371D64ABB69145B70E4C] - (...) -- C:\Program Files\Tor\tor.exe [3233806] [PID.276] [MD5.5E9A6658A2A69AE7EB195113B7A2E7A9] - (.Microsoft Corporation - Application Layer Gateway Service.) -- C:\WINDOWS\System32\alg.exe [44544] [PID.3716] ~ Processes Running: Scanned in 00mn 01s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [User Data\Default] None G0 - GCSP: Preference [User Data\Default] http://www.google.com G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Store v.0.2 (Activé) G2 - GCE: Preference [User Data\Default] [cbomoeegedoaojamojdnchkblgciocdf] DownloadnSave v.1.0 (Désactivé) =>Adware.JustPlugIt G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé) G2 - GCE: Preference [User Data\Default] [ffdcfjdljhbehggjdkdioajnknjcpbjb] Download Accelerator Plus (DAP) v.2.0.10 (Désactivé) G2 - GCE: Preference [User Data\Default] [kpionmjnkbpcdpcflammlgllecmejgjj] vshare plugin v.1.3 (Désactivé) =>PUP.VShareRedir G2 - GCE: Preference [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype Click to Call v.5.6.0.8442 (Désactivé) G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Chrome In-App Payments service v.0.0.4.11 (Activé) ~ Google Browser: 12 Scanned in 00mn 05s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\c47pkh9g.default\prefs.js M3 - MFPP: Plugins - [Administrateur] -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\c47pkh9g.default\searchplugins\babylon.xml =>Toolbar.Babylon M3 - MFPP: Plugins - [Administrateur] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml M3 - MFPP: Plugins - [Administrateur] -- C:\Program Files\Mozilla FireFox\searchplugins\bing.xml M3 - MFPP: Plugins - [Administrateur] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml M3 - MFPP: Plugins - [Administrateur] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml M3 - MFPP: Plugins - [Administrateur] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml M3 - MFPP: Plugins - [Administrateur] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml M3 - MFPP: Plugins - [Administrateur] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml =>Toolbar.Yahoo P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.25.2] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\WINDOWS\system32\npDeployJava1.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.25.2] - (.Oracle Corporation - Next Generation Java Plug-in 10.25.2 for Mozilla browsers.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20513.0.) -- C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll P2 - FPN: [HKLM] [@veetle.com/veetleCorePlugin,version=0.9.18] - (.Veetle Inc - Version 0.9.18, Copyright 2006-2009 Veetle Inc
PUP.BitGuard ~ AppInit DLL: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Web Site Monitor.) -- C:\WINDOWS\system32\webcheck.dll O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} . (.Microsoft Corporation - Objet du service d'environnement Systray.) -- C:\WINDOWS\system32\stobject.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} . (.Microsoft Corporation - Windows Portable Device Shell Service Objec.) -- C:\WINDOWS\system32\WPDShServiceObj.dll ~ SSODL: 5 Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (...) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Avira Scheduler.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Avira On-Access Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: BitGuard (BitGuard) . (...) - C:\Documents and Settings\All Users\Application Data\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe (.not file.) =>PUP.BitGuard O23 - Service: Java Quick Starter (JavaQuickStarterService) . (.Oracle Corporation - Java Quick Starter Service.) - C:\Program Files\Java\jre7\bin\jqs.exe O23 - Service: Nalpeiron Control Service (NalServ) . (.Nalpeiron Ltd. - Nalpeiron LAN Service Build March 20th 2012.) - C:\WINDOWS\system32\nalserv.exe O23 - Service: NewServiceInstall1 (NewServiceInstall1) . (...) - C:\Program Files\SDL International\T2007\TT\Lng\Dialogs1031.lng" (.not file.) O23 - Service: Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd. - This service enables products that use the.) - C:\WINDOWS\system32\nlssrv32.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 306.8.) - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: Pml Driver HPZ12 (Pml Driver HPZ12) . (.HP - PML Driver.) - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: Tor Win32 Service (tor) . (...) - C:\Program Files\Tor\tor.exe ~ Services: 11 Scanned in 00mn 03s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(.Microsoft Corporation - Microsoft Office Word.) - C:\Program Files\Microsoft Office\Office12\WINWORD.exe O24 - Desktop General: BackupWallPaper - .(...) - C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Wallpaper1.bmp O24 - Desktop General: WallPaper - .(...) - C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Wallpaper1.bmp ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ Enumère les données de BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\AdobeAAMUpdater-1.0-JEAN-9C795382AF-Administrateur.job [368] O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\AdobeFlashPlayerUpdate 2.job [300] O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\AdobeFlashPlayerUpdate.job [300] O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1177238915-2025429265-1801674531-500Core.job [1012] O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1177238915-2025429265-1801674531-500UA.job [1034] O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1177238915-2025429265-1801674531-500Core.job [1132] O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1177238915-2025429265-1801674531-500UA.job [1184] [MD5.D41D8CD98F00B204E9800998ECF8427E] [APT] [Adobe Flash Player Updater] (...) -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [163328] [MD5.1315C5C5C54CE2AA37A155F97027DB59] [APT] [AdobeAAMUpdater-1.0-JEAN-9C795382AF-Administrateur] (.Adobe Systems Incorporated.) -- C:\Program Files\Fichiers communs\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [446392] [MD5.D41D8CD98F00B204E9800998ECF8427E] [APT] [AdobeFlashPlayerUpdate 2] (...) -- C:\WINDOWS\system32\FlashPlayerUpdateService.exe [163328] [MD5.D41D8CD98F00B204E9800998ECF8427E] [APT] [AdobeFlashPlayerUpdate] (...) -- C:\WINDOWS\system32\FlashPlayerUpdateService.exe [163328] [MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-1177238915-2025429265-1801674531-500Core] (.Facebook Inc..) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe [138096] [MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-1177238915-2025429265-1801674531-500UA] (.Facebook Inc..) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Facebook\Update\FacebookUpdate.exe [138096] [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-1177238915-2025429265-1801674531-500Core] (.Google Inc..) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [136176] [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-1177238915-2025429265-1801674531-500UA] (.Google Inc..) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [136176] ~ Scheduled Task: 16 Scanned in 00mn 01s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Mise à jour de la version d’Internet Explorer - <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} . (.Microsoft Corporation - IE Per User Active Setup Uninstall Utility.) -- C:\WINDOWS\system32\ieudinit.exe O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d'installation du Lecteur Windows Media de Microsoft.) -- C:\WINDOWS\inf\unregmp2.exe O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Explorer par utilisateur.) -- C:\WINDOWS\system32\ie4uinit.exe.mui O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - IEAK branding.) -- C:\WINDOWS\system32\iedkcs32.dll O40 - ASIC: Outlook Express - >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} . (.Microsoft Corporation - Windows NT User Data Migration Tool.) -- C:\WINDOWS\system32\shmgrate.exe O40 - ASIC: Microsoft VM - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (...) -- C:\WINDOWS\system32\msjava.dll O40 - ASIC: Microsoft NetShow Player - {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\WINDOWS\system32\wmpdxm.dll O40 - ASIC: Microsoft Windows Media Player 6.4 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\WINDOWS\system32\wmpdxm.dll O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\WINDOWS\system32\themeui.dll O40 - ASIC: Microsoft Outlook Express 6 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Bibliothèque d'installation Outlook Express.) -- C:\Program Files\Outlook Express\setup50.exe O40 - ASIC: NetMeeting 3.01 - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} . (...) -- C:\WINDOWS\INF\msnetmtg.inf O40 - ASIC: Windows Messenger 4.7 - {5945c046-1e7d-11d1-bc44-00c04fd912be} . (...) -- C:\WINDOWS\INF\msmsgs.inf O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\WINDOWS\system32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (...) -- C:\WINDOWS\INF\wmp11.inf O40 - ASIC: Carnet d'adresses 6 - {7790769C-0471-11d2-AF11-00C04FA35D02} . (.Microsoft Corporation - Bibliothèque d'installation Outlook Express.) -- C:\Program Files\Outlook Express\setup50.exe O40 - ASIC: Mise à jour du Bureau Windows - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Explorer par utilisateur.) -- C:\WINDOWS\system32\ie4uinit.exe.mui O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\WINDOWS\system32\mscories.dll O40 - ASIC: Shockwave Flash - {D27CDB6E-AE6D-11cf-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 11.5 r502.) -- C:\WINDOWS\system32\Macromed\Flash\Flash32_11_5_502_135.ocx O40 - ASIC: Installed Component - S-1-5-21-1177238915-2025429265-1801674531-500 - <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} -- Not Hexadécimal CLSID O40 - ASIC: Installed Component - S-1-5-21-1177238915-2025429265-1801674531-500 - >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS -- Not Hexadécimal CLSID ~ Active Setup: 21 Scanned in 00mn 00s ---\\ Pilotes lancés au démarrage du système (O41) O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\WINDOWS\system32\drivers\afd.sys O41 - Driver: (avipbb) . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) - C:\WINDOWS\system32\DRIVERS\avipbb.sys O41 - Driver: (avkmgr) . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) - C:\WINDOWS\system32\DRIVERS\avkmgr.sys O41 - Driver: (Cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\WINDOWS\system32\DRIVERS\cdrom.sys O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\WINDOWS\system32\DRIVERS\i8042prt.sys O41 - Driver: (Imapi) . (.Microsoft Corporation - IMAPI Kernel Driver.) - C:\WINDOWS\system32\DRIVERS\imapi.sys O41 - Driver: (InCDPass) . (. - .) - C:\WINDOWS\system32\drivers\InCDPass.sys (.not file.) O41 - Driver: (InCDRm) . (. - .) - C:\WINDOWS\system32\drivers\InCDRm.sys (.not file.) O41 - Driver: (IPSec) . (.Microsoft Corporation - IPSec Driver.) - C:\WINDOWS\system32\DRIVERS\ipsec.sys O41 - Driver: (Kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\WINDOWS\system32\DRIVERS\kbdclass.sys O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre souris HID.) - C:\WINDOWS\system32\DRIVERS\kbdhid.sys O41 - Driver: (Mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\WINDOWS\system32\DRIVERS\mouclass.sys O41 - Driver: (MRxSmb) . (.Microsoft Corporation - Windows NT SMB Minirdr.) - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\WINDOWS\system32\DRIVERS\netbios.sys O41 - Driver: (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\WINDOWS\system32\DRIVERS\netbt.sys O41 - Driver: (Processor) . (.Microsoft Corporation - Pilote de périphérique processeur.) - C:\WINDOWS\system32\DRIVERS\processr.sys O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\WINDOWS\system32\DRIVERS\rasacd.sys O41 - Driver: (Rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\WINDOWS\system32\DRIVERS\rdbss.sys O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\WINDOWS\system32\DRIVERS\RDPCDD.sys O41 - Driver: (redbook) . (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) - C:\WINDOWS\system32\DRIVERS\redbook.sys O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\WINDOWS\system32\DRIVERS\serial.sys O41 - Driver: (ssmdrv) . (.Avira GmbH - AVIRA SnapShot Driver.) - C:\WINDOWS\system32\DRIVERS\ssmdrv.sys O41 - Driver: (Tcpip) . (.Microsoft Corporation - TCP/IP Protocol Driver.) - C:\WINDOWS\system32\DRIVERS\tcpip.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\WINDOWS\system32\DRIVERS\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\WINDOWS\system32\drivers\vga.sys ~ Drivers: 75 Scanned in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {FE23D063-934D-4829-A0D8-00634CE79B4A} O42 - Logiciel: Adobe Acrobat X Professional - Arabic, Hebrew, French, Greek - (.Adobe Systems.) [HKLM] -- {AC76BA86-1037-0000-7760-000000000005} O42 - Logiciel: Adobe CS6 Design and Web Premium - (.Adobe Systems Incorporated.) [HKLM] -- {402F6F2E-5683-491C-977D-0CA599A07CAF} O42 - Logiciel: Adobe Content Viewer - (.Adobe Systems Incorporated.) [HKLM] -- com.adobe.dmp.contentviewer O42 - Logiciel: Adobe Content Viewer - (.Adobe Systems Incorporated.) [HKLM] -- {4E33D05D-76CF-5D3C-4D5D-7727530FA161} O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AF37176A-78CA-545B-34EF-8B6A21514DD1} O42 - Logiciel: Adobe Reader XI (11.0.04) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} O42 - Logiciel: Adobe Widget Browser - (.Adobe Systems Incorporated..) [HKLM] -- com.adobe.WidgetBrowser O42 - Logiciel: Adobe Widget Browser - (.Adobe Systems Incorporated..) [HKLM] -- {EFBE6DD5-B224-96E5-72B9-68D328CB12A6} O42 - Logiciel: AlignAssist - (.Ginstrom IT Solutions (GITS).) [HKLM] -- AlignAssist_is1 O42 - Logiciel: Antidote RX v7 - (.Druide informatique inc..) [HKLM] -- {A474EA56-5DBD-4181-8230-806A4762EA7F} O42 - Logiciel: Auslogics BoostSpeed - (.Auslogics Software Pty Ltd.) [HKLM] -- {7216871F-869E-437C-B9BF-2A13F2DCE63F}_is1 O42 - Logiciel: Auslogics Disk Defrag - (.Auslogics Software Pty Ltd.) [HKLM] -- {DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1 O42 - Logiciel: Avira Free Antivirus v13.0.0.4042 - (.Avira.) [HKLM] -- Avira AntiVir Desktop O42 - Logiciel: ClipMate 7 - (.Thornsoft Development, Inc..) [HKLM] -- {2E924A2A-8FBC-4C84-8A3A-63FB386C9A29}_is1 O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM] -- DAEMON Tools Lite O42 - Logiciel: DEMO FIFA 12 - (.Electronic Arts.) [HKLM] -- {3FEA6CD1-EA13-4CE7-A74E-A74A4A0A7B5C} O42 - Logiciel: Download Accelerator Plus (DAP) - (.Speedbit Ltd..) [HKLM] -- Download Accelerator Plus (DAP) O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU] -- Dropbox O42 - Logiciel: Facebook Video Calling 1.2.0.287 - (.Skype Limited.) [HKLM] -- {B92C5909-1D37-4C51-8397-A28BB28E5DC3} O42 - Logiciel: FastStone Capture 5.3 - (.FastStone Soft.) [HKLM] -- FastStone Capture O42 - Logiciel: Free Video Converter V 3.1 - (.Koyote Soft.) [HKLM] -- Free Video Converter_is1 O42 - Logiciel: French App Name - (.Adobe Systems Incorporated.) [HKLM] -- com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 O42 - Logiciel: French App Name - (.Adobe Systems Incorporated.) [HKLM] -- {DE3A9DC5-9A5D-6485-9662-347162C7E4CA} O42 - Logiciel: GigaTribe 3.01.006 - (.GigaTribe SAS.) [HKLM] -- ShalSoft.GigaTribe_is1 O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome O42 - Logiciel: HP Customer Participation Program 7.0 - (.HP.) [HKLM] -- HPExtendedCapabilities O42 - Logiciel: HP Document Viewer 7.0 - (.HP.) [HKLM] -- HP Document Viewer O42 - Logiciel: HP Imaging Device Functions 7.0 - (.HP.) [HKLM] -- HP Imaging Device Functions O42 - Logiciel: HP Photosmart Premier Software 6.5 - (.HP.) [HKLM] -- HP Photo & Imaging O42 - Logiciel: HP Photosmart, Officejet and Deskjet 7.0.A - (.HP.) [HKLM] -- {BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C} O42 - Logiciel: HP Product Assistant - (.Hewlett-Packard.) [HKLM] -- {36FDBE6E-6684-462B-AE98-9A39A1B200CC} O42 - Logiciel: HP Product Detection - (.HP.) [HKLM] -- {A436F67F-687E-4736-BD2B-537121A804CF} O42 - Logiciel: HP Smart Print 1.1.5.2 - (.Hewlett-Packard.) [HKLM] -- {8B157EE4-0BAB-4CCE-B92C-5844AB6E20F1} O42 - Logiciel: HP Solution Center 7.0 - (.HP.) [HKLM] -- HP Solution Center & Imaging Support Tools O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3} O42 - Logiciel: Hewlett-Packard ACLM.NET v1.1.0.0 - (.Hewlett-Packard.) [HKLM] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} O42 - Logiciel: InstantShareAlert - (.HP.) [HKLM] -- {069730C2-755A-485B-A205-27A1AAFA836A} O42 - Logiciel: J2SE Runtime Environment 5.0 Update 10 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0150100} O42 - Logiciel: Java 7 Update 25 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217025FF} O42 - Logiciel: Java(TM) 6 Update 24 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216024F0} O42 - Logiciel: Java(TM) 6 Update 37 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216033FF} O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619} O42 - Logiciel: Lecteur Windows Media 11 - (...) [HKLM] -- Windows Media Player O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: MappyPlus - (.Mappy.) [HKLM] -- {A62CDADB-9A49-47F5-9ECE-2B2F0C5608DE} O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM] -- {832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F} O42 - Logiciel: Microsoft Games for Windows Marketplace - (.Microsoft Corporation.) [HKLM] -- {4CB0307C-565E-4441-86BE-0DF2E4FB828C} O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.1 - (.Microsoft Corporation.) [HKLM] -- Wdf01001 O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft User-Mode Driver Framework Feature Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- Wudf01000 O42 - Logiciel: Microsoft WSE 2.0 SP3 Runtime - (.Microsoft Corp..) [HKLM] -- {F3CA9611-CD42-4562-ADAB-A554CF8E17F1} O42 - Logiciel: Microsoft Windows SDK for Visual Studio 2008 Express Tools for .NET Framewo - (.Microsoft.) [HKLM] -- {AB47EEE8-507B-331F-AA28-B7C7257F014C} O42 - Logiciel: Microsoft Windows SDK for Visual Studio 2008 Express Tools for Win32 - (.Microsoft Corporation.) [HKLM] -- {07FCBED5-94C3-4F94-B9D3-360FA27C7B06} O42 - Logiciel: Microsoft Windows SDK for Visual Studio 2008 Headers and Libraries - (.Microsoft Corporation.) [HKLM] -- {842FAF7C-50EF-4463-9B8F-6222E1384D7D} O42 - Logiciel: Mises à jour NVIDIA 1.10.8 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update O42 - Logiciel: Mozilla Firefox 17.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 17.0.1 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService O42 - Logiciel: MyFreeCodec - (...) [HKCU] -- MyFreeCodec O42 - Logiciel: NVIDIA Display Control Panel - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Display Control Panel O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers O42 - Logiciel: NVIDIA Logiciel système PhysX 9.12.0604 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {2FDD750F-49B7-40C1-9D5E-D2955BC0E2D8} O42 - Logiciel: NVIDIA Pilote graphique 306.81 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: NVIDIA nView 136.28 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView O42 - Logiciel: NVIDIA nView Desktop Manager - (.NVIDIA Corporation.) [HKLM] -- NVIDIA nView Desktop Manager O42 - Logiciel: Nero 7 Demo - (.Nero AG.) [HKLM] -- {C985153C-3801-EB63-1432-088E71801036} O42 - Logiciel: Notepad++ - (...) [HKLM] -- Notepad++ O42 - Logiciel: OCR Software by I.R.I.S 7.0 - (.HP.) [HKLM] -- HPOCR O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} O42 - Logiciel: PDFCreator - (.Frank Heindörfer, Philip Chinery.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} O42 - Logiciel: PhotoFiltre - (...) [HKCU] -- PhotoFiltre O42 - Logiciel: Quick Media Converter HD - (...) [HKCU] -- QUICKMEDIACONVERTER O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} O42 - Logiciel: SDL MultiTerm 2011 SP2 - Remove suite of products - (.SDL.) [HKLM] -- Multiterm2011 O42 - Logiciel: SDL MultiTerm 2011 SP2 Convert - (.SDL.) [HKLM] -- {212062FE-9FEF-457F-980F-6B25270CC99D} O42 - Logiciel: SDL MultiTerm 2011 SP2 Core - (.SDL.) [HKLM] -- {6664CA13-C9B1-4488-881E-4AC14CE0F260} O42 - Logiciel: SDL MultiTerm 2011 SP2 Desktop - (.SDL.) [HKLM] -- {777BE1C2-F665-42E2-90DD-157A67715710} O42 - Logiciel: SDL MultiTerm 2011 SP2 Extract - (.SDL.) [HKLM] -- {7071528D-59E2-412D-8EA4-272C87F7027C} O42 - Logiciel: SDL MultiTerm 2011 SP2 Word Integration - (.SDL.) [HKLM] -- {7C21542D-7618-42D4-990D-9B458DCDE71E} O42 - Logiciel: SDL Passolo Essential 2011 SP6 - (.SDL.) [HKLM] -- {627163CD-8116-4982-9AC1-8C6DE4A499A0} O42 - Logiciel: SDL Trados 2011 SP2 - Remove suite of products - (.SDL.) [HKLM] -- TranslationStudio2011 O42 - Logiciel: SDL Trados Compatibility module - (.SDL.) [HKLM] -- {7230BA04-AE1B-4C17-91A0-E7DF6DF6E05C} O42 - Logiciel: SDL Trados Studio 2011 SP2 - (.SDL.) [HKLM] -- {7205B6D1-2975-4DDC-85D4-30AECFBFC138} O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM] -- InstallShield_{758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM] -- {758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: Scribus 1.4.1 - (.The Scribus Team.) [HKLM] -- Scribus 1.4.1 O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7} O42 - Logiciel: Skype Click to Call - (.Skype Technologies S.A..) [HKLM] -- {B6CF2967-C81E-40C0-9815-C05774FEF120} O42 - Logiciel: Skype™ 6.3 - (.Skype Technologies S.A..) [HKLM] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D} O42 - Logiciel: SopCast 3.4.0 - (.www.sopcast.com.) [HKLM] -- SopCast O42 - Logiciel: System Requirements Lab - (...) [HKLM] -- SystemRequirementsLab O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU] -- UnityWebPlayer O42 - Logiciel: VLC Player - (.vlcplayerdownload.com.) [HKLM] -- VLC Player O42 - Logiciel: VLC media player 1.1.11 - (.VideoLAN.) [HKLM] -- VLC media player O42 - Logiciel: Veetle TV - (.Veetle, Inc.) [HKLM] -- Veetle TV O42 - Logiciel: Viper Plagiarism Scanner - (.All Answers Ltd.) [HKLM] -- {2D9F8754-84AB-4C46-8243-9EADF23A63EE}_is1 O42 - Logiciel: WinRAR 4.01 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime O42 - Logiciel: Windows Media Format 11 runtime - (.Microsoft Corporation.) [HKLM] -- WMFDist11 O42 - Logiciel: Windows Media Player 11 - (.Microsoft Corporation.) [HKLM] -- wmp11 O42 - Logiciel: XBMC Media Center - (.Team XBMC.) [HKCU] -- XBMC O42 - Logiciel: XML Paper Specification Shared Components Language Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XPSEPSCLP O42 - Logiciel: eMule - (...) [HKLM] -- eMule O42 - Logiciel: µTorrent - (...) [HKLM] -- uTorrent =>P2P.µTorrent ~ Logic: 192 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\2K Sports] [HKCU\Software\52288ddb13aed15] [HKCU\Software\AVS4YOU] [HKCU\Software\Adaptec] [HKCU\Software\Adobe] [HKCU\Software\Ahead audio RAW convertor] [HKCU\Software\Ahead] [HKCU\Software\AppDataLow] [HKCU\Software\AudioPluginManager] [HKCU\Software\Auslogics] [HKCU\Software\Avira] [HKCU\Software\BitTorrent] =>P2P.BitTorrent [HKCU\Software\CDDB] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Cocoon Software] [HKCU\Software\DSS] [HKCU\Software\DT Soft] [HKCU\Software\DivXNetworks] [HKCU\Software\Druide informatique inc.] [HKCU\Software\EA Games] [HKCU\Software\EA Sports] [HKCU\Software\Facebook] [HKCU\Software\Google] [HKCU\Software\HP] [HKCU\Software\Hewlett-Packard] [HKCU\Software\HookNetwork] [HKCU\Software\IM Providers] [HKCU\Software\IncrediMail] [HKCU\Software\Intel] [HKCU\Software\JavaSoft] [HKCU\Software\KLC] [HKCU\Software\Lavalys] [HKCU\Software\Licenses] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\Macromedia] [HKCU\Software\Mappy] [HKCU\Software\MozillaPlugins] [HKCU\Software\MultiStageTrayAgent] [HKCU\Software\Myfree Codec] [HKCU\Software\NVIDIA Corporation] [HKCU\Software\Nero Digital Audio (HE-AAC)] [HKCU\Software\Netscape] [HKCU\Software\ODBC] [HKCU\Software\PASS Engineering] [HKCU\Software\PC SOFT] [HKCU\Software\PDFCreator] [HKCU\Software\Policies] [HKCU\Software\Realtek] [HKCU\Software\SDL] [HKCU\Software\Samsung] [HKCU\Software\ShalSoft] [HKCU\Software\SkypeRS] [HKCU\Software\Skype] [HKCU\Software\Softi] [HKCU\Software\SolidDocuments] [HKCU\Software\SpeedBit] [HKCU\Software\THETA AnIn] [HKCU\Software\TeamViewer] [HKCU\Software\TeleCharger] [HKCU\Software\The Silicon Realms Toolworks] [HKCU\Software\Thornsoft] [HKCU\Software\Tracker Software] [HKCU\Software\Trados] [HKCU\Software\Trolltech] [HKCU\Software\Ubisoft] [HKCU\Software\Unity] [HKCU\Software\VB and VBA Program Settings] [HKCU\Software\Veetle] [HKCU\Software\VirtualDub.org] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\Windows Media Audio] [HKCU\Software\Xilisoft] [HKCU\Software\Yamb] [HKCU\Software\Ziepod] [HKCU\Software\eMule] [HKCU\Software\ej-technologies] [HKCU\Software\mozilla] [HKCU\Software\mp3PRO] [HKCU\Software\unpacker] [HKCU\Software\vShare.tv] =>PUP.VShareRedir [HKLM\Software\AGEIA Technologies] [HKLM\Software\AVS4YOU] [HKLM\Software\AdobeFlashPlayerUpdate] [HKLM\Software\Adobe] [HKLM\Software\AdwCleaner] [HKLM\Software\Avira] [HKLM\Software\Bunndle] [HKLM\Software\C07ft5Y] [HKLM\Software\CDDB] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\Copernic] [HKLM\Software\Creative Tech] [HKLM\Software\DT Soft] [HKLM\Software\DesktopSearch2] [HKLM\Software\Dropbox] [HKLM\Software\Druide informatique inc.] [HKLM\Software\EA Sports] [HKLM\Software\Electronic Arts] [HKLM\Software\FlexLM License Manager] [HKLM\Software\Florian Heidenreich] [HKLM\Software\Gemplus] [HKLM\Software\Google] [HKLM\Software\HP] [HKLM\Software\Hewlett-Packard] [HKLM\Software\ICE] [HKLM\Software\IM Providers] [HKLM\Software\IncrediMail] [HKLM\Software\InstallShield] [HKLM\Software\JavaSoft] [HKLM\Software\JreMetrics] [HKLM\Software\KLC] [HKLM\Software\Khronos] [HKLM\Software\LEAD Technologies, Inc.] [HKLM\Software\Licenses] [HKLM\Software\Lidan] [HKLM\Software\MAXSOFT-OCRON] [HKLM\Software\Macromedia] [HKLM\Software\Macrovision] [HKLM\Software\MarkAny] [HKLM\Software\MicroQuill] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\Myfree Codec] [HKLM\Software\NVIDIA Corporation] [HKLM\Software\Nalpeiron] [HKLM\Software\Nullsoft] [HKLM\Software\ODBC] [HKLM\Software\PDFCreator] [HKLM\Software\Policies] [HKLM\Software\Program Groups] [HKLM\Software\Realtek Semiconductor Corp.] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SDL International] [HKLM\Software\SDL] [HKLM\Software\Samsung] [HKLM\Software\Schlumberger] [HKLM\Software\Secure] [HKLM\Software\ShalSoft] [HKLM\Software\Skype] [HKLM\Software\SolidDocuments] [HKLM\Software\SpeedBit] [HKLM\Software\TeamViewer] [HKLM\Software\Tracker Software] [HKLM\Software\Trados] [HKLM\Software\Veetle] [HKLM\Software\VideoLAN] [HKLM\Software\WinRAR] [HKLM\Software\Windows 3.1 Migration Status] [HKLM\Software\Windows] [HKLM\Software\Wow6432Node] [HKLM\Software\X-AVCSD] [HKLM\Software\ahead] [HKLM\Software\ej-technologies] [HKLM\Software\mozilla.org] ~ Key Software: 245 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 30/10/2012 - 14:21:26 - [578,940] ----D C:\Program Files\2K Sports O43 - CFD: 27/08/2013 - 20:10:28 - [983,857] ----D C:\Program Files\Adobe O43 - CFD: 21/03/2012 - 15:43:11 - [2,665] ----D C:\Program Files\Adobe Media Player O43 - CFD: 13/09/2013 - 02:27:26 - [4,692] ----D C:\Program Files\All Answers Ltd O43 - CFD: 16/04/2013 - 19:26:02 - [46,653] ----D C:\Program Files\Assistant Suite O43 - CFD: 18/11/2012 - 13:26:20 - [50,372] ----D C:\Program Files\Auslogics O43 - CFD: 30/04/2013 - 21:43:39 - [231,579] ----D C:\Program Files\Avira O43 - CFD: 31/05/2012 - 23:17:29 - [3,739] ----D C:\Program Files\AVS4YOU O43 - CFD: 17/08/2013 - 12:48:54 - [0,000] ----D C:\Program Files\ClipMate6 O43 - CFD: 11/09/2013 - 15:11:58 - [5,445] ----D C:\Program Files\ClipMate7 O43 - CFD: 19/07/2011 - 14:59:36 - [0,153] ----D C:\Program Files\Common Files O43 - CFD: 25/10/2012 - 12:14:43 - [0] ----D C:\Program Files\Copernic Agent O43 - CFD: 29/07/2012 - 11:44:56 - [25,441] ----D C:\Program Files\DAEMON Tools Lite O43 - CFD: 21/12/2011 - 16:04:32 - [14,732] ----D C:\Program Files\DAP O43 - CFD: 19/05/2013 - 13:41:58 - [65,479] ----D C:\Program Files\Dropbox O43 - CFD: 29/01/2013 - 16:37:41 - [149,919] ----D C:\Program Files\Druide O43 - CFD: 14/09/2011 - 21:58:30 - [1512,502] ----D C:\Program Files\EA Sports O43 - CFD: 11/08/2011 - 17:13:49 - [797,204] ----D C:\Program Files\eMule O43 - CFD: 10/07/2013 - 15:53:07 - [1,387] ----D C:\Program Files\FastStone Capture O43 - CFD: 02/06/2013 - 18:43:50 - [1635,938] ----D C:\Program Files\Fichiers communs O43 - CFD: 20/05/2013 - 18:40:09 - [12,475] ----D C:\Program Files\Free Video Converter O43 - CFD: 09/04/2012 - 14:14:55 - [31,207] ----D C:\Program Files\GigaTribe O43 - CFD: 16/01/2013 - 12:39:17 - [0,000] ----D C:\Program Files\Google Books Downloader O43 - CFD: 22/11/2012 - 19:19:52 - [34,407] ----D C:\Program Files\Hewlett-Packard O43 - CFD: 04/08/2011 - 13:47:53 - [287,452] ----D C:\Program Files\HP O43 - CFD: 29/08/2012 - 15:32:19 - [7,459] --H-D C:\Program Files\InstallShield Installation Information O43 - CFD: 12/09/2013 - 06:53:10 - [4,466] ----D C:\Program Files\Internet Explorer O43 - CFD: 23/06/2013 - 18:14:58 - [344,356] ----D C:\Program Files\Java O43 - CFD: 17/06/2012 - 19:37:17 - [0] ----D C:\Program Files\JDownloader O43 - CFD: 20/11/2012 - 20:25:26 - [0,000] ----D C:\Program Files\KLC O43 - CFD: 08/03/2013 - 18:15:20 - [65,459] ----D C:\Program Files\Mappy O43 - CFD: 19/07/2011 - 14:59:30 - [2,414] ----D C:\Program Files\MarkAny O43 - CFD: 19/07/2011 - 14:05:52 - [2,053] ----D C:\Program Files\Messenger O43 - CFD: 19/07/2011 - 19:09:27 - [0,216] ----D C:\Program Files\Microsoft O43 - CFD: 18/07/2011 - 14:23:54 - [0] ----D C:\Program Files\microsoft frontpage O43 - CFD: 24/01/2012 - 23:06:29 - [8,929] ----D C:\Program Files\Microsoft Games for Windows - LIVE O43 - CFD: 30/07/2011 - 16:35:49 - [548,798] ----D C:\Program Files\Microsoft Office O43 - CFD: 19/03/2013 - 21:21:43 - [1,487] ----D C:\Program Files\Microsoft Office Outlook Connector O43 - CFD: 23/12/2012 - 21:58:34 - [119,561] ----D C:\Program Files\Microsoft SDKs O43 - CFD: 12/07/2013 - 09:13:58 - [40,851] ----D C:\Program Files\Microsoft Silverlight O43 - CFD: 18/07/2011 - 19:57:30 - [0,014] ----D C:\Program Files\Microsoft Visual Studio O43 - CFD: 23/12/2012 - 22:09:56 - [218,207] ----D C:\Program Files\Microsoft Visual Studio 9.0 O43 - CFD: 20/07/2011 - 20:14:23 - [3,554] ----D C:\Program Files\Microsoft Works O43 - CFD: 04/12/2012 - 22:38:00 - [0,708] ----D C:\Program Files\Microsoft WSE O43 - CFD: 19/07/2011 - 14:55:30 - [7,797] ----D C:\Program Files\Microsoft.NET O43 - CFD: 19/07/2011 - 13:57:25 - [9,894] ----D C:\Program Files\Movie Maker O43 - CFD: 17/09/2013 - 11:48:15 - [42,496] ----D C:\Program Files\Mozilla Firefox O43 - CFD: 06/12/2012 - 17:37:20 - [0,212] ----D C:\Program Files\Mozilla Maintenance Service O43 - CFD: 04/12/2012 - 22:40:43 - [1,174] ----D C:\Program Files\MSBuild O43 - CFD: 18/07/2011 - 14:20:41 - [18,385] ----D C:\Program Files\MSN O43 - CFD: 18/07/2011 - 14:21:03 - [8,341] ----D C:\Program Files\MSN Gaming Zone O43 - CFD: 20/07/2011 - 20:08:59 - [0] ----D C:\Program Files\MSXML 4.0 O43 - CFD: 29/01/2013 - 13:04:56 - [10,585] ----D C:\Program Files\MyFree Codec O43 - CFD: 19/07/2011 - 14:20:45 - [211,072] ----D C:\Program Files\Nero O43 - CFD: 18/07/2011 - 14:22:23 - [3,133] ----D C:\Program Files\NetMeeting O43 - CFD: 09/10/2012 - 19:34:35 - [11,830] ----D C:\Program Files\Notepad++ O43 - CFD: 10/10/2012 - 22:43:22 - [1122,527] ----D C:\Program Files\NVIDIA Corporation O43 - CFD: 18/07/2011 - 14:21:11 - [0,002] ----D C:\Program Files\Online Services O43 - CFD: 04/12/2012 - 22:37:51 - [19,137] ----D C:\Program Files\Open XML SDK O43 - CFD: 19/07/2011 - 13:57:44 - [4,176] ----D C:\Program Files\Outlook Express O43 - CFD: 23/07/2011 - 15:09:36 - [0] ----D C:\Program Files\PC Connectivity Solution O43 - CFD: 25/11/2011 - 19:37:47 - [31,311] ----D C:\Program Files\PDFCreator O43 - CFD: 19/07/2011 - 23:27:25 - [3,706] ----D C:\Program Files\PhotoFiltre O43 - CFD: 08/09/2013 - 19:58:50 - [84,896] ----D C:\Program Files\QuickMediaConverter O43 - CFD: 19/07/2011 - 12:44:04 - [68,179] ----D C:\Program Files\Realtek O43 - CFD: 17/09/2011 - 23:21:45 - [56,870] ----D C:\Program Files\Reference Assemblies O43 - CFD: 19/07/2011 - 15:01:23 - [250,694] ----D C:\Program Files\Samsung O43 - CFD: 25/10/2012 - 14:07:54 - [157,082] ----D C:\Program Files\Scribus 1.4.1 O43 - CFD: 04/12/2012 - 22:56:13 - [922,827] ----D C:\Program Files\SDL O43 - CFD: 18/07/2011 - 14:22:44 - [0,001] ----D C:\Program Files\Services en ligne O43 - CFD: 21/12/2011 - 16:07:54 - [0,021] ----D C:\Program Files\SimpleOCR O43 - CFD: 02/06/2013 - 18:43:51 - [34,370] R---D C:\Program Files\Skype O43 - CFD: 30/01/2012 - 00:35:01 - [8,678] ----D C:\Program Files\SopCast O43 - CFD: 24/01/2012 - 23:14:59 - [0,733] ----D C:\Program Files\SystemRequirementsLab O43 - CFD: 04/11/2011 - 15:09:37 - [0,000] ----D C:\Program Files\TeamViewer O43 - CFD: 28/08/2013 - 21:39:17 - [3,084] ----D C:\Program Files\Tor O43 - CFD: 06/04/2013 - 12:03:07 - [0] ----D C:\Program Files\Tracker Software O43 - CFD: 21/01/2012 - 16:26:34 - [66,779] ----D C:\Program Files\Ubisoft O43 - CFD: 18/07/2011 - 14:26:51 - [0] --H-D C:\Program Files\Uninstall Information O43 - CFD: 17/06/2012 - 19:40:18 - [0] ----D C:\Program Files\Unlocker O43 - CFD: 28/08/2012 - 20:13:33 - [0,381] ----D C:\Program Files\uTorrent =>P2P.µTorrent O43 - CFD: 18/10/2011 - 21:30:02 - [9,742] ----D C:\Program Files\Veetle O43 - CFD: 18/07/2011 - 20:15:05 - [80,855] ----D C:\Program Files\VideoLAN O43 - CFD: 19/12/2011 - 01:05:00 - [82,185] ----D C:\Program Files\VlcPlus O43 - CFD: 28/10/2011 - 20:11:39 - [0,794] ----D C:\Program Files\Winamp O43 - CFD: 19/07/2011 - 19:10:06 - [78,125] ----D C:\Program Files\Windows Live O43 - CFD: 19/07/2011 - 19:09:10 - [0,234] ----D C:\Program Files\Windows Live SkyDrive O43 - CFD: 30/07/2011 - 18:08:38 - [3,415] ----D C:\Program Files\Windows Media Connect 2 O43 - CFD: 30/07/2011 - 18:08:37 - [8,270] ----D C:\Program Files\Windows Media Player O43 - CFD: 18/07/2011 - 14:20:58 - [3,760] ----D C:\Program Files\Windows NT O43 - CFD: 18/07/2011 - 14:22:47 - [0] --H-D C:\Program Files\WindowsUpdate O43 - CFD: 30/07/2011 - 16:05:52 - [3,951] ----D C:\Program Files\WinRAR O43 - CFD: 20/07/2011 - 17:45:58 - [125,044] ----D C:\Program Files\XBMC O43 - CFD: 18/07/2011 - 14:23:54 - [0] ----D C:\Program Files\xerox O43 - CFD: 17/09/2013 - 23:09:51 - [16,858] ----D C:\Program Files\ZHPDiag O43 - CFD: 28/10/2011 - 18:36:39 - [0,434] ----D C:\Program Files\Ziepod O43 - CFD: 27/08/2013 - 20:10:29 - [976,508] ----D C:\Program Files\Fichiers communs\Adobe O43 - CFD: 21/12/2012 - 19:18:35 - [37,554] ----D C:\Program Files\Fichiers communs\Adobe AIR O43 - CFD: 19/07/2011 - 14:22:02 - [49,698] ----D C:\Program Files\Fichiers communs\Ahead O43 - CFD: 31/05/2012 - 23:17:32 - [0,171] ----D C:\Program Files\Fichiers communs\AVSMedia O43 - CFD: 18/07/2011 - 19:57:30 - [0,089] ----D C:\Program Files\Fichiers communs\DESIGNER O43 - CFD: 02/11/2012 - 19:50:33 - [0,543] --H-D C:\Program Files\Fichiers communs\EAInstaller O43 - CFD: 19/07/2011 - 18:50:39 - [0,436] ----D C:\Program Files\Fichiers communs\Hewlett-Packard O43 - CFD: 19/07/2011 - 18:55:08 - [5,300] ----D C:\Program Files\Fichiers communs\HP O43 - CFD: 20/11/2012 - 20:47:56 - [6,724] ----D C:\Program Files\Fichiers communs\InstallShield O43 - CFD: 24/04/2013 - 17:50:39 - [24,843] ----D C:\Program Files\Fichiers communs\Java O43 - CFD: 23/12/2012 - 22:09:03 - [1,493] ----D C:\Program Files\Fichiers communs\Merge Modules O43 - CFD: 23/12/2012 - 22:09:43 - [250,183] ----D C:\Program Files\Fichiers communs\Microsoft Shared O43 - CFD: 18/07/2011 - 14:22:19 - [0,271] ----D C:\Program Files\Fichiers communs\MSSoap O43 - CFD: 18/07/2011 - 16:13:29 - [0] ----D C:\Program Files\Fichiers communs\ODBC O43 - CFD: 19/07/2011 - 14:49:44 - [0,085] ----D C:\Program Files\Fichiers communs\Samsung O43 - CFD: 04/12/2012 - 22:41:30 - [229,772] ----D C:\Program Files\Fichiers communs\SDL O43 - CFD: 18/07/2011 - 14:22:22 - [0,008] ----D C:\Program Files\Fichiers communs\Services O43 - CFD: 02/06/2013 - 18:43:50 - [1,904] ----D C:\Program Files\Fichiers communs\Skype O43 - CFD: 19/07/2011 - 18:55:34 - [0,199] ----D C:\Program Files\Fichiers communs\Sonic Shared O43 - CFD: 18/07/2011 - 16:13:27 - [3,612] ----D C:\Program Files\Fichiers communs\SpeechEngines O43 - CFD: 21/12/2011 - 16:04:29 - [2,414] ----D C:\Program Files\Fichiers communs\SpeedBit O43 - CFD: 19/03/2013 - 21:21:43 - [44,132] ----D C:\Program Files\Fichiers communs\System O43 - CFD: 19/07/2011 - 19:00:14 - [0] ----D C:\Program Files\Fichiers communs\Windows Live O43 - CFD: 27/08/2013 - 20:10:32 - [459,265] ----D C:\Documents and Settings\All Users\Application Data\Adobe O43 - CFD: 21/12/2012 - 19:25:24 - [0] ----D C:\Documents and Settings\All Users\Application Data\ALM O43 - CFD: 30/04/2013 - 21:43:39 - [307,761] ----D C:\Documents and Settings\All Users\Application Data\Avira O43 - CFD: 31/05/2012 - 23:03:09 - [0] ----D C:\Documents and Settings\All Users\Application Data\AVS4YOU O43 - CFD: 11/10/2012 - 23:16:34 - [0,002] ----D C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite O43 - CFD: 13/03/2012 - 19:56:07 - [0,271] ----D C:\Documents and Settings\All Users\Application Data\DivX O43 - CFD: 11/10/2011 - 23:11:55 - [0] ----D C:\Documents and Settings\All Users\Application Data\EA Core O43 - CFD: 11/10/2011 - 23:11:55 - [0,001] ----D C:\Documents and Settings\All Users\Application Data\Electronic Arts O43 - CFD: 20/11/2012 - 21:39:30 - [0,015] ----D C:\Documents and Settings\All Users\Application Data\FLEXnet O43 - CFD: 19/07/2011 - 18:57:32 - [0,006] ----D C:\Documents and Settings\All Users\Application Data\HP O43 - CFD: 11/08/2011 - 14:20:03 - [0,009] ----D C:\Documents and Settings\All Users\Application Data\HP Product Assistant O43 - CFD: 01/08/2012 - 19:17:29 - [2,935] ----D C:\Documents and Settings\All Users\Application Data\InstallMate O43 - CFD: 24/08/2011 - 22:25:56 - [0,000] ----D C:\Documents and Settings\All Users\Application Data\InstallShield O43 - CFD: 12/12/2011 - 03:40:55 - [0,000] ----D C:\Documents and Settings\All Users\Application Data\Jes-Soft O43 - CFD: 04/04/2013 - 15:05:41 - [0,000] ----D C:\Documents and Settings\All Users\Application Data\Licenses O43 - CFD: 28/06/2013 - 10:35:58 - [0,001] ----D C:\Documents and Settings\All Users\Application Data\Logs O43 - CFD: 19/07/2011 - 20:43:04 - [0,000] ----D C:\Documents and Settings\All Users\Application Data\McAfee O43 - CFD: 23/12/2012 - 22:10:54 - [13,672] -S--D C:\Documents and Settings\All Users\Application Data\Microsoft O43 - CFD: 14/09/2013 - 12:04:48 - [2,282] ----D C:\Documents and Settings\All Users\Application Data\Microsoft Help O43 - CFD: 21/11/2012 - 21:16:11 - [0,000] ----D C:\Documents and Settings\All Users\Application Data\Mozilla O43 - CFD: 14/03/2012 - 22:20:16 - [0,185] ----D C:\Documents and Settings\All Users\Application Data\NVIDIA O43 - CFD: 19/07/2011 - 13:14:42 - [0,172] ----D C:\Documents and Settings\All Users\Application Data\NVIDIA Corporation O43 - CFD: 05/03/2012 - 15:33:43 - [0,000] ----D C:\Documents and Settings\All Users\Application Data\Passolo Translator O43 - CFD: 07/09/2013 - 16:10:16 - [0,008] ----D C:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe O43 - CFD: 29/01/2013 - 13:00:17 - [13,552] ----D C:\Documents and Settings\All Users\Application Data\Samsung O43 - CFD: 04/12/2012 - 22:57:07 - [130,093] ----D C:\Documents and Settings\All Users\Application Data\SDL O43 - CFD: 04/12/2012 - 22:38:34 - [0,413] ----D C:\Documents and Settings\All Users\Application Data\SDL International O43 - CFD: 02/06/2013 - 18:43:59 - [99,501] ----D C:\Documents and Settings\All Users\Application Data\Skype O43 - CFD: 19/07/2011 - 18:55:35 - [0,001] ----D C:\Documents and Settings\All Users\Application Data\Sonic O43 - CFD: 21/12/2011 - 16:04:32 - [0,172] ----D C:\Documents and Settings\All Users\Application Data\SpeedBit O43 - CFD: 26/10/2011 - 16:08:32 - [0,000] ----D C:\Documents and Settings\All Users\Application Data\Sun O43 - CFD: 14/09/2013 - 23:22:53 - [0] ---AD C:\Documents and Settings\All Users\Application Data\TEMP O43 - CFD: 24/08/2011 - 22:25:50 - [0,014] ----D C:\Documents and Settings\All Users\Application Data\Ubisoft O43 - CFD: 30/07/2011 - 17:04:12 - [0,003] ----D C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage O43 - CFD: 30/10/2012 - 14:21:26 - [1319,519] ----D C:\Documents and Settings\Administrateur\Application Data\2K Sports O43 - CFD: 31/08/2013 - 13:33:44 - [33,204] ----D C:\Documents and Settings\Administrateur\Application Data\Adobe O43 - CFD: 19/07/2011 - 14:21:34 - [0,000] ----D C:\Documents and Settings\Administrateur\Application Data\Ahead O43 - CFD: 17/11/2012 - 20:00:51 - [227,826] ----D C:\Documents and Settings\Administrateur\Application Data\Auslogics O43 - CFD: 30/04/2013 - 21:49:57 - [0] ----D C:\Documents and Settings\Administrateur\Application Data\Avira O43 - CFD: 31/05/2012 - 23:03:09 - [0] ----D C:\Documents and Settings\Administrateur\Application Data\AVS4YOU O43 - CFD: 03/07/2012 - 12:53:05 - [1,286] ----D C:\Documents and Settings\Administrateur\Application Data\Blue Orb O43 - CFD: 08/09/2013 - 19:54:21 - [28,806] ----D C:\Documents and Settings\Administrateur\Application Data\Cocoon Software O43 - CFD: 12/10/2012 - 17:11:23 - [2,027] ----D C:\Documents and Settings\Administrateur\Application Data\DAEMON Tools Lite O43 - CFD: 25/06/2013 - 21:25:56 - [69,962] ----D C:\Documents and Settings\Administrateur\Application Data\Dropbox O43 - CFD: 29/01/2013 - 16:38:42 - [0,005] ----D C:\Documents and Settings\Administrateur\Application Data\Druide O43 - CFD: 29/01/2013 - 12:40:17 - [0] ----D C:\Documents and Settings\Administrateur\Application Data\DVDVideoSoft O43 - CFD: 27/06/2013 - 22:56:06 - [0] ----D C:\Documents and Settings\Administrateur\Application Data\EurekaLog O43 - CFD: 10/10/2012 - 21:52:53 - [0,002] ----D C:\Documents and Settings\Administrateur\Application Data\FastStone O43 - CFD: 20/05/2013 - 18:40:37 - [0,001] ----D C:\Documents and Settings\Administrateur\Application Data\FreeVideoConverter O43 - CFD: 30/11/2011 - 20:01:43 - [0,017] ----D C:\Documents and Settings\Administrateur\Application Data\Hewlett-Packard O43 - CFD: 22/11/2011 - 17:43:46 - [0,038] ----D C:\Documents and Settings\Administrateur\Application Data\HP O43 - CFD: 29/11/2012 - 19:18:20 - [0,040] ----D C:\Documents and Settings\Administrateur\Application Data\HpUpdate O43 - CFD: 19/07/2011 - 22:38:25 - [0,000] ----D C:\Documents and Settings\Administrateur\Application Data\Identities O43 - CFD: 29/08/2012 - 15:32:58 - [0] ----D C:\Documents and Settings\Administrateur\Application Data\InstallShield O43 - CFD: 19/07/2011 - 13:25:14 - [0,001] ----D C:\Documents and Settings\Administrateur\Application Data\Macromedia O43 - CFD: 29/06/2013 - 01:34:46 - [26,751] -S--D C:\Documents and Settings\Administrateur\Application Data\Microsoft O43 - CFD: 21/11/2012 - 21:25:40 - [12,705] ----D C:\Documents and Settings\Administrateur\Application Data\Mozilla O43 - CFD: 09/10/2012 - 19:36:27 - [0,445] ----D C:\Documents and Settings\Administrateur\Application Data\Notepad++ O43 - CFD: 21/03/2012 - 15:49:13 - [0,007] ----D C:\Documents and Settings\Administrateur\Application Data\NVIDIA O43 - CFD: 05/03/2012 - 15:33:48 - [0] ----D C:\Documents and Settings\Administrateur\Application Data\Passolo Translator O43 - CFD: 19/07/2011 - 23:41:12 - [0,002] ----D C:\Documents and Settings\Administrateur\Application Data\PhotoFiltre O43 - CFD: 29/01/2013 - 13:09:10 - [56,487] ----D C:\Documents and Settings\Administrateur\Application Data\Samsung O43 - CFD: 25/10/2012 - 14:12:53 - [0,133] ----D C:\Documents and Settings\Administrateur\Application Data\Scribus O43 - CFD: 08/04/2013 - 19:12:45 - [0,371] ----D C:\Documents and Settings\Administrateur\Application Data\SDL O43 - CFD: 17/09/2013 - 22:46:08 - [20,883] ----D C:\Documents and Settings\Administrateur\Application Data\Skype O43 - CFD: 14/12/2012 - 17:49:36 - [0,025] ----D C:\Documents and Settings\Administrateur\Application Data\SolidDocuments O43 - CFD: 22/12/2012 - 11:06:01 - [0] ----D C:\Documents and Settings\Administrateur\Application Data\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 O43 - CFD: 26/10/2011 - 16:06:44 - [2,157] ----D C:\Documents and Settings\Administrateur\Application Data\Sun O43 - CFD: 04/11/2011 - 15:09:41 - [0,023] ----D C:\Documents and Settings\Administrateur\Application Data\TeamViewer O43 - CFD: 08/04/2012 - 18:13:12 - [0] ----D C:\Documents and Settings\Administrateur\Application Data\Temp O43 - CFD: 17/08/2013 - 12:38:53 - [467,136] ----D C:\Documents and Settings\Administrateur\Application Data\Thornsoft Development O43 - CFD: 28/10/2011 - 18:42:03 - [0,144] ----D C:\Documents and Settings\Administrateur\Application Data\Todae O43 - CFD: 23/11/2012 - 15:50:26 - [0] ----D C:\Documents and Settings\Administrateur\Application Data\Trados O43 - CFD: 25/06/2013 - 22:07:47 - [0,000] ----D C:\Documents and Settings\Administrateur\Application Data\Unity O43 - CFD: 23/08/2013 - 21:47:56 - [11,196] ----D C:\Documents and Settings\Administrateur\Application Data\uTorrent =>P2P.µTorrent O43 - CFD: 13/09/2013 - 02:31:50 - [0,001] ----D C:\Documents and Settings\Administrateur\Application Data\ViperSettingsFolder O43 - CFD: 29/12/2012 - 13:36:15 - [0,000] -SH-D C:\Documents and Settings\Administrateur\Application Data\ViperUpdate AU O43 - CFD: 02/12/2011 - 17:44:00 - [0,413] ----D C:\Documents and Settings\Administrateur\Application Data\vlc O43 - CFD: 30/07/2011 - 16:06:00 - [0,000] ----D C:\Documents and Settings\Administrateur\Application Data\WinRAR O43 - CFD: 29/12/2012 - 13:39:02 - [0,001] -SH-D C:\Documents and Settings\Administrateur\Application Data\wyUpdate AU O43 - CFD: 09/08/2011 - 16:51:32 - [6,608] ----D C:\Documents and Settings\Administrateur\Application Data\XBMC O43 - CFD: 31/05/2012 - 22:32:45 - [0] ----D C:\Documents and Settings\Administrateur\Application Data\Xilisoft Corporation O43 - CFD: 28/02/2012 - 20:02:45 - [16,649] ----D C:\Documents and Settings\Administrateur\Application Data\Yamb O43 - CFD: 31/08/2013 - 02:00:07 - [122,455] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe O43 - CFD: 19/07/2011 - 14:26:01 - [15,511] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Ahead O43 - CFD: 16/04/2013 - 19:28:32 - [0,028] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\AlignAssist O43 - CFD: 25/06/2013 - 13:30:17 - [0,000] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\AnalyzeAssist O43 - CFD: 17/09/2013 - 11:50:57 - [0,021] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\ApplicationHistory O43 - CFD: 14/09/2013 - 15:54:51 - [0,112] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\avgchrome O43 - CFD: 19/07/2011 - 19:58:08 - [0,364] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Criterion Games O43 - CFD: 29/01/2013 - 12:59:03 - [410,509] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Downloaded Installations O43 - CFD: 21/10/2012 - 22:20:53 - [16,548] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Facebook O43 - CFD: 19/07/2011 - 13:24:55 - [1154,284] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google O43 - CFD: 19/07/2011 - 20:05:47 - [0,340] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\HP O43 - CFD: 19/07/2011 - 20:05:57 - [0,001] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\IsolatedStorage O43 - CFD: 12/12/2011 - 03:40:55 - [0,621] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Jes-Soft O43 - CFD: 08/03/2013 - 18:16:50 - [827,789] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mappy O43 - CFD: 07/09/2013 - 18:05:17 - [1637,012] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft O43 - CFD: 18/07/2011 - 19:55:22 - [0] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft Help O43 - CFD: 21/11/2012 - 21:25:34 - [15,285] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla O43 - CFD: 04/01/2012 - 18:06:43 - [0,000] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Nego O43 - CFD: 16/12/2012 - 13:17:48 - [0] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\PCHealth O43 - CFD: 29/01/2013 - 12:55:25 - [0,020] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Samsung O43 - CFD: 04/12/2012 - 22:54:32 - [176,298] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\SDL O43 - CFD: 10/03/2012 - 19:53:59 - [1,605] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Shalsoft O43 - CFD: 20/11/2012 - 20:47:59 - [12,754] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Sun O43 - CFD: 10/03/2013 - 19:27:52 - [0] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Temp O43 - CFD: 24/08/2011 - 22:34:15 - [0,146] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Ubisoft O43 - CFD: 07/10/2011 - 13:29:43 - [0,000] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Ubisoft Game Launcher O43 - CFD: 25/06/2013 - 21:56:02 - [42,901] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Unity O43 - CFD: 22/07/2011 - 16:21:35 - [0] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\uTorrent =>P2P.µTorrent O43 - CFD: 08/09/2013 - 19:54:20 - [0,000] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\WDSetup O43 - CFD: 08/09/2013 - 22:20:10 - [0] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\WMTools Downloaded Files O43 - CFD: 30/10/2012 - 14:20:24 - [0,006] ----D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\2K Sports O43 - CFD: 19/07/2011 - 14:23:24 - [0,014] R---D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires O43 - CFD: 29/01/2013 - 00:13:49 - [0,002] ----D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Antidote O43 - CFD: 25/06/2013 - 18:33:50 - [0,002] ----D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Dropbox O43 - CFD: 19/05/2013 - 16:06:44 - [0,001] R---D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage O43 - CFD: 11/01/2013 - 00:12:10 - [0,002] ----D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Google Chrome O43 - CFD: 09/10/2012 - 19:34:31 - [0] ----D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Notepad++ O43 - CFD: 19/07/2011 - 00:07:12 - [0,000] R---D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Outils d'administration O43 - CFD: 19/07/2011 - 23:27:25 - [0,003] ----D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\PhotoFiltre O43 - CFD: 25/10/2012 - 14:07:54 - [0,003] ----D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Scribus 1.4.1 O43 - CFD: 30/01/2012 - 00:35:01 - [0,002] ----D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\SopCast O43 - CFD: 19/12/2011 - 01:05:00 - [0,002] ----D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\VLC O43 - CFD: 30/07/2011 - 16:05:52 - [0,002] ----D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\WinRAR O43 - CFD: 20/07/2011 - 17:44:58 - [0,004] ----D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\XBMC Media Center O43 - CFD: 28/02/2012 - 19:51:59 - [0,002] ----D C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Yamb 2.1.0.0 beta 2 ~ Program Folder: 247 Scanned in 00mn 01s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.5FBCBFEEE78930D22F356B3CB5616449] - 17/09/2013 - 21:52:48 ---A- . (...) -- C:\WINDOWS\wiadebug.log [2863] O44 - LFC:[MD5.9384E2AFB7F39CB3235E35B7CAA1D25A] - 17/09/2013 - 15:21:01 ---A- . (...) -- C:\WINDOWS\SchedLgU.Txt [32230] O44 - LFC:[MD5.A792E9A090FFE3F8212B521A731E5832] - 17/09/2013 - 10:55:33 ---A- . (...) -- C:\WINDOWS\WindowsUpdate.log [2090580] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 17/09/2013 - 10:53:37 ---A- . (...) -- C:\WINDOWS\0.log [0] O44 - LFC:[MD5.336DF7DC28B52576EC27C96FA01364EB] - 17/09/2013 - 10:51:07 ---A- . (...) -- C:\WINDOWS\wiaservc.log [50] O44 - LFC:[MD5.6A2CB42966136854F4464516FBB4AE72] - 17/09/2013 - 10:50:37 -S-A- . (...) -- C:\WINDOWS\bootstat.dat [2048] O44 - LFC:[MD5.8C8C1F097E29EED146606C0CC80C10C3] - 17/09/2013 - 10:21:09 ---A- . (...) -- C:\WINDOWS\system32\PerfStringBackup.INI [1366646] O44 - LFC:[MD5.5D9543CE22C4411AB51E32AFC84D7D28] - 17/09/2013 - 10:21:09 ---A- . (...) -- C:\WINDOWS\system32\perfc009.dat [99910] O44 - LFC:[MD5.A178BA801D4B9E4B4FA92DBEECEDA523] - 17/09/2013 - 10:21:09 ---A- . (...) -- C:\WINDOWS\system32\perfc00C.dat [118264] O44 - LFC:[MD5.172209AC2B369FE56E1C7BD555296317] - 17/09/2013 - 10:21:09 ---A- . (...) -- C:\WINDOWS\system32\perfh009.dat [551530] O44 - LFC:[MD5.ED770F8A2B7CAE0BAA5517AB9C2FB608] - 17/09/2013 - 10:21:09 ---A- . (...) -- C:\WINDOWS\system32\perfh00C.dat [626680] O44 - LFC:[MD5.5866F5AC5FA90002CC1275789B715A60] - 16/09/2013 - 11:24:10 ---A- . (...) -- C:\WINDOWS\NeroDigital.ini [116] O44 - LFC:[MD5.D36F5C3BE47A08F17AEC9E3873A92267] - 15/09/2013 - 16:16:20 ---A- . (...) -- C:\WINDOWS\wmsetup.log [116314] O44 - LFC:[MD5.0F1EDDDCE4F25F657EDFF5242C1C2CD5] - 14/09/2013 - 22:11:11 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512] O44 - LFC:[MD5.190304709AE3E45FA79E59E7E2C5C10A] - 14/09/2013 - 21:53:55 ---A- . (...) -- C:\WINDOWS\Antidote.ini [135] O44 - LFC:[MD5.A134DA3533D7529FFE4BC1B76419004F] - 14/09/2013 - 11:03:08 ---A- . (...) -- C:\WINDOWS\system32\???6 [97519942] O44 - LFC:[MD5.234EB80D7898671C077AF580D1F4E8E6] - 13/09/2013 - 13:38:40 ---A- . (...) -- C:\WINDOWS\system32\wpa.dbl [2206] O44 - LFC:[MD5.407A0691377B7B72308C7C88A393CA43] - 12/09/2013 - 06:45:17 ---A- . (...) -- C:\WINDOWS\system32\FNTCACHE.DAT [3993752] O44 - LFC:[MD5.9BA0377E9D2902C7C5FD113FDE19E727] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\FaxSetup.log [686291] O44 - LFC:[MD5.983329375BCAE6D4339885CAFC022758] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\KB2870699-IE8.log [13566] O44 - LFC:[MD5.7F4CBD746832FD516AA7436BF98F5BA3] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\MedCtrOC.log [47175] O44 - LFC:[MD5.2762DCFF5F4C7ADC398B08F55E7BA545] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\comsetup.log [229237] O44 - LFC:[MD5.48FC889F2AF6A40797B44D9A99F8B3C5] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\iis6.log [741546] O44 - LFC:[MD5.4202A83B9DDC891834B479DA6EE3DB49] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\imsins.log [1374] O44 - LFC:[MD5.FFE6BFBCF2C846C48BAC9BB3F0737EAD] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\msgsocm.log [34299] O44 - LFC:[MD5.FC838D1901C5D6B128CB8573484B7FEE] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\msmqinst.log [211756] O44 - LFC:[MD5.87995EB8FA9F46F4714548E180E4A714] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\netfxocm.log [120213] O44 - LFC:[MD5.E2A4F6C9A1EB7250436B58CA0FA05AE3] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\ntdtcsetup.log [138505] O44 - LFC:[MD5.230EF0F4E9693E510978254D251EC436] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\ocgen.log [328116] O44 - LFC:[MD5.F1932FF804F7D524687A56F5B111E924] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\ocmsn.log [37962] O44 - LFC:[MD5.BED84523AAEFE4C000DB2B94918E5C89] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\tabletoc.log [34521] O44 - LFC:[MD5.18829890AD5B122B853F175B8464667B] - 12/09/2013 - 05:53:14 ---A- . (...) -- C:\WINDOWS\tsoc.log [313147] O44 - LFC:[MD5.15F307EF650E17EA7A10A63976CB47E9] - 12/09/2013 - 05:53:09 ---A- . (...) -- C:\WINDOWS\updspapi.log [67494] O44 - LFC:[MD5.8BCA9FBCEF53C6C9B56AF38124DE6F19] - 12/09/2013 - 05:51:26 ---A- . (...) -- C:\WINDOWS\imsins.BAK [1374] O44 - LFC:[MD5.53F73224CC5E372555A5C07B2CEB5F34] - 12/09/2013 - 05:38:40 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\WINDOWS\system32\MRT.exe [76725432] O44 - LFC:[MD5.F260F2EE3D21D00BEC0B08068E27BADB] - 10/09/2013 - 14:28:15 ---A- . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\WINDOWS\system32\Drivers\avipbb.sys [136672] O44 - LFC:[MD5.40A34E457431625086F7E161E59A0528] - 10/09/2013 - 14:28:15 ---A- . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\WINDOWS\system32\Drivers\avgntflt.sys [88840] O44 - LFC:[MD5.B2DD858009ED87989788A24143C6E60F] - 08/09/2013 - 18:54:42 ---A- . (...) -- C:\WINDOWS\win.ini [1305] O44 - LFC:[MD5.D2E1A2B32988D1612940CE3A46641565] - 06/09/2013 - 10:01:22 ---A- . (...) -- C:\WINDOWS\setupapi.log [1004054] ~ Files: 39 Scanned in 02mn 01s ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.A204C4D4719DDCEFB6172C09D96FD3C3] - 17/09/2013 - 11:04:24 ---A- - C:\WINDOWS\Prefetch\NOTEPAD.EXE-2F2D61E1.pf O45 - LFCP:[MD5.E60C1207826422F979DF8B8AD1AB21F9] - 17/09/2013 - 11:10:47 ---A- - C:\WINDOWS\Prefetch\NMINDEXSTORESVR.EXE-13F11D87.pf O45 - LFCP:[MD5.F74A1240CFA3AD67ED520CEC60CE3600] - 17/09/2013 - 11:32:00 ---A- - C:\WINDOWS\Prefetch\GOOGLECRASHHANDLER.EXE-1DBDED1A.pf O45 - LFCP:[MD5.A2EFD6F9725E685983B5BE30481007E9] - 17/09/2013 - 11:37:17 ---A- - C:\WINDOWS\Prefetch\MSCORSVW.EXE-2864EEEB.pf O45 - LFCP:[MD5.C9A130083D99463262380C5876676CFE] - 17/09/2013 - 11:47:03 ---A- - C:\WINDOWS\Prefetch\Layout.ini O45 - LFCP:[MD5.D4089B5758DCB99486B8C6C828ED2AAC] - 17/09/2013 - 11:47:13 ---A- - C:\WINDOWS\Prefetch\DEFRAG.EXE-2858C7E2.pf O45 - LFCP:[MD5.4FA7541C67A2BD8DA19151B1F9486945] - 17/09/2013 - 11:47:13 ---A- - C:\WINDOWS\Prefetch\DFRGNTFS.EXE-38C3807C.pf O45 - LFCP:[MD5.F6CE2DD45816FCC62D8F2319590B91C5] - 17/09/2013 - 14:42:00 ---A- - C:\WINDOWS\Prefetch\SCRNSAVE.SCR-22431769.pf O45 - LFCP:[MD5.ABE86122BCC8514142229E34F665D8B1] - 17/09/2013 - 21:32:01 ---A- - C:\WINDOWS\Prefetch\GOOGLEUPDATE.EXE-2B881994.pf O45 - LFCP:[MD5.120F200D4981F9FE7B8C56FB1C8DEBB5] - 17/09/2013 - 21:35:16 ---A- - C:\WINDOWS\Prefetch\CHROME.EXE-EC22B623.pf O45 - LFCP:[MD5.5BD3D248F9D5798CB534BA43E50C4E4C] - 17/09/2013 - 22:09:45 ---A- - C:\WINDOWS\Prefetch\GUARDGUI.EXE-0C9FDE58.pf O45 - LFCP:[MD5.613844A7E14F0D3100BE483597B717EC] - 17/09/2013 - 22:10:08 ---A- - C:\WINDOWS\Prefetch\SCHTASKS.EXE-362CEDA8.pf O45 - LFCP:[MD5.E9F30C9CB1C8D7B7219930ED1807FB20] - 17/09/2013 - 22:10:56 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-6E8D4657.pf O45 - LFCP:[MD5.64765F556863796A2E36907E8E079184] - 17/09/2013 - 22:11:03 ---A- - C:\WINDOWS\Prefetch\CHROME.EXE-3AB9270B.pf O45 - LFCP:[MD5.EA7C275CBDA1298FD4BDA271168947AA] - 17/09/2013 - 22:11:03 ---A- - C:\WINDOWS\Prefetch\HPQPPROP.EXE-0F7B3BB1.pf O45 - LFCP:[MD5.24F0E3F66C921DABD8C88BD17F44733E] - 17/09/2013 - 22:11:03 ---A- - C:\WINDOWS\Prefetch\HPQTBX01.EXE-0B0F46DE.pf O45 - LFCP:[MD5.9C326D9AB0EFDD8B9BA775DD513EFC87] - 17/09/2013 - 22:11:08 ---A- - C:\WINDOWS\Prefetch\HPZIPM12.EXE-02312CF9.pf ~ Prefetcher: 17 Scanned in 00mn 00s ---\\ Opérations et fonctions au démarrage de Windows Explorer (O46) O46 - SEH:ShellExecuteHooks - URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - shell32.dll ~ ShellExecuteHooks: Scanned in 00mn 00s ---\\ Export de clé d'application autorisée (O47) O47 - AAKE:Key Export SP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O47 - AAKE:Key Export SP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation.) -- C:\WINDOWS\system32\sessmgr.exe O47 - AAKE:Key Export SP - "C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" [Enabled] .(.Microsoft Corporation.) -- C:\Program Files\Microsoft Office\Office12\OUTLOOK.exe O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\muzapp.exe" [Enabled] .(.Musiccity Co.Ltd..) -- C:\WINDOWS\system32\muzapp.exe O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Messenger\wlcsdk.exe" [Enabled] .(.Microsoft Corporation.) -- C:\Program Files\Windows Live\Messenger\wlcsdk.exe O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [Enabled] .(.Microsoft Corporation.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O47 - AAKE:Key Export SP - "C:\Program Files\XBMC\XBMC.exe" [Enabled] .(.Team XBMC.) -- C:\Program Files\XBMC\XBMC.exe O47 - AAKE:Key Export SP - "C:\Program Files\eMule\emule.exe" [Enabled] .(.http://www.emule-project.net.) -- C:\Program Files\eMule\emule.exe O47 - AAKE:Key Export SP - "C:\Program Files\Veetle\Player\VeetleNet.exe" [Enabled] .(.Pas de propriétaire.) -- C:\Program Files\Veetle\Player\VeetleNet.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hposid01.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hposid01.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe" [Enabled] .(..) -- C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe" [Enabled] .(.Hewlett-Packard.) -- C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe" [Enabled] .(.Hewlett-Packard.) -- C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe" [Enabled] .(.Hewlett-Packard.) -- C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe" [Enabled] .(.Pas de propriétaire.) -- C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe O47 - AAKE:Key Export SP - "C:\Program Files\2K Sports\NBA 2K12\nba2k12.exe" [Enabled] .(.2K Sports.) -- C:\Program Files\2K Sports\NBA 2K12\nba2k12.exe O47 - AAKE:Key Export SP - "C:\Program Files\SopCast\adv\SopAdver.exe" [Enabled] .(.www.sopcast.com.) -- C:\Program Files\SopCast\adv\SopAdver.exe O47 - AAKE:Key Export SP - "C:\Program Files\SopCast\SopCast.exe" [Enabled] .(.www.sopcast.com.) -- C:\Program Files\SopCast\SopCast.exe O47 - AAKE:Key Export SP - "C:\Program Files\Java\jre6\bin\javaw.exe" [Enabled] .(.Sun Microsystems, Inc..) -- C:\Program Files\Java\jre6\bin\javaw.exe O47 - AAKE:Key Export SP - "C:\Program Files\GigaTribe\gigatribe.exe" [Enabled] .(.Pas de propriétaire.) -- C:\Program Files\GigaTribe\gigatribe.exe O47 - AAKE:Key Export SP - "C:\Program Files\uTorrent\uTorrent.exe" [Enabled] .(.BitTorrent, Inc..) -- C:\Program Files\uTorrent\uTorrent.exe =>P2P.BitTorrent O47 - AAKE:Key Export SP - "C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe" [Enabled] .(.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O47 - AAKE:Key Export SP - "C:\Documents and Settings\Administrateur\Local Settings\Application Data\Facebook\Video\Skype\FacebookVideoCalling.exe" [Enabled] .(.Skype Limited.) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Facebook\Video\Skype\FacebookVideoCalling.exe O47 - AAKE:Key Export SP - "C:\Program Files\Skype\Phone\Skype.exe" [Enabled] .(.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe O47 - AAKE:Key Export SP - "C:\Documents and Settings\Administrateur\Application Data\Dropbox\bin\Dropbox.exe" [Enabled] .(.Dropbox, Inc..) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\bin\Dropbox.exe O47 - AAKE:Key Export SP - "C:\Program Files\2K Sports\NBA 2K13\nba2k13.exe" [Enabled] .(.2K Sports.) -- C:\Program Files\2K Sports\NBA 2K13\nba2k13.exe O47 - AAKE:Key Export DP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O47 - AAKE:Key Export DP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation.) -- C:\WINDOWS\system32\sessmgr.exe O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Messenger\wlcsdk.exe" [Enabled] .(.Microsoft Corporation.) -- C:\Program Files\Windows Live\Messenger\wlcsdk.exe O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [Enabled] .(.Microsoft Corporation.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O47 - AAKE:Key Export DP - "C:\Program Files\Veetle\Player\VeetleNet.exe" [Enabled] .(.Pas de propriétaire.) -- C:\Program Files\Veetle\Player\VeetleNet.exe ~ Keys Export: 39 Scanned in 00mn 05s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\system32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\WINDOWS\system32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Kerberos Security Package.) -- C:\WINDOWS\system32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\system32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\WINDOWS\system32\wdigest.dll ~ LSA: 6 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ip6fw.sys . (.Microsoft Corporation - IPv6 Windows Firewall Driver.) -- C:\WINDOWS\system32\Drivers\ip6fw.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\system32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpcdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\WINDOWS\system32\Drivers\rdpcdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpdd.sys . (...) -- C:\WINDOWS\system32\Drivers\rdpdd.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpwd.sys . (.Microsoft Corporation - RDP Terminal Stack Driver (US/Canada Only, Not for Export).) -- C:\WINDOWS\system32\Drivers\rdpwd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdpipe.sys . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdpipe.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdtcp.sys . (.Microsoft Corporation - TCP Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdtcp.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.) ~ CSB: 21 Scanned in 00mn 00s ---\\ Clé de registre Shell MountPoints2 (MPKS) (O51) O51 - MPSK:{933f11c0-ec14-11e0-970b-806d6172696f}\AutoRun\command. (...) -- F:\setup.exe O51 - MPSK:{e270a0b2-b20b-11e0-af49-001fd03f7307}\AutoRun\command. (...) -- F:\setup.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.trspch"="tssoft32.acm" . (.DSP GROUP, INC. - Codec audio TrueSpeech(TM) DSP Group pour MSACM V3.50.) -- C:\WINDOWS\system32\tssoft32.acm O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Cinepak® Codec.) -- C:\WINDOWS\system32\iccvid.dll O52 - TDSD: \Drivers32\"vidc.iv31"="ir32_32.dll" . (...) -- C:\WINDOWS\system32\ir32_32.dll O52 - TDSD: \Drivers32\"vidc.iv32"="ir32_32.dll" . (...) -- C:\WINDOWS\system32\ir32_32.dll O52 - TDSD: \Drivers32\"vidc.iv41"="ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\system32\ir41_32.ax O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm O52 - TDSD: \Drivers32\"msacm.iac2"="C:\WINDOWS\system32\iac25_32.ax" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Intel Corporation - Intel Indeo® video 5.10.) -- C:\WINDOWS\system32\ir50_32.dll O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\WINDOWS\system32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\iac25_32.ax"="Indeo® audio software" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm ~ TDSD: 12 Scanned in 00mn 00s ---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll ~ MSCP: 6 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 ~ MWPS: 5 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=145 ~ MWPE Keys: 1 Scanned in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:[MD5.267FC636801EDC5AB28E14036349E3BE] - 18/11/2009 - 00:16:00 ---A- . (.Creative - Creative WDM 3D Audio Driver.) -- C:\WINDOWS\system32\Drivers\Ambfilt.sys [1691480] O58 - SDL:[MD5.6D3ADA4CE95CECA7BCE527A08C4C474E] - 28/08/2001 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ansi.sys [9037] ~ Drivers: 5 Scanned in 00mn 00s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 14/09/2013 - 11:00:12 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\523433ac [124] O61 - LFC: 14/09/2013 - 11:10:25 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\52343611 [124] O61 - LFC: 14/09/2013 - 11:12:29 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe\Acrobat\11.0\Cache\RdLang_rdlang32.fra [12196864] O61 - LFC: 14/09/2013 - 11:12:34 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe\Acrobat\11.0\UserCache.bin [117837] O61 - LFC: 14/09/2013 - 11:12:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe\Acrobat\11.0\Cache\RdLang_AcroForm.FRA [1310720] O61 - LFC: 14/09/2013 - 11:12:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe\Acrobat\11.0\Cache\RdLang_DigSig.FRA [311808] O61 - LFC: 14/09/2013 - 11:12:50 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe\Acrobat\11.0\Cache\RdLang_Annots.FRA [3030528] O61 - LFC: 14/09/2013 - 11:12:50 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe\Acrobat\11.0\Cache\RdLang_EScript.FRA [73728] O61 - LFC: 14/09/2013 - 11:12:50 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe\Acrobat\11.0\Cache\RdLang_PPKLite.FRA [1125376] O61 - LFC: 14/09/2013 - 11:12:52 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Adobe\Acrobat\11.0\Security\CRLCache\48B76449F3D5FEFA1133AA805E420F0FCA643651.crl [898] O61 - LFC: 14/09/2013 - 11:12:52 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Adobe\Acrobat\11.0\Security\CRLCache\A9B8213768ADC68AF64FCC6409E8BE414726687F.crl [36163] O61 - LFC: 14/09/2013 - 11:13:05 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe\Acrobat\11.0\Cache\RdLang_Updater.FRA [12800] O61 - LFC: 14/09/2013 - 13:59:34 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\52345db5 [124] O61 - LFC: 14/09/2013 - 19:40:54 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\5234adb6 [124] O61 - LFC: 14/09/2013 - 19:49:36 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_instagram.com_0.localstorage [3072] O61 - LFC: 14/09/2013 - 19:49:36 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_instagram.com_0.localstorage-journal [3608] O61 - LFC: 14/09/2013 - 19:49:44 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Media Cache\f_000058 [977946] O61 - LFC: 14/09/2013 - 19:56:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Auslogics\Rescue\Boost Speed\130914205600343.rsc [23059] O61 - LFC: 14/09/2013 - 19:57:02 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Auslogics\Rescue\Boost Speed\130914205601343.rsc [148717357] O61 - LFC: 14/09/2013 - 19:57:48 -S-A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\CryptnetUrlCache\Content\0797C381B2F87EB5A1D5573BD15BA4F4 [37213] O61 - LFC: 14/09/2013 - 19:57:48 -S-A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\CryptnetUrlCache\MetaData\0797C381B2F87EB5A1D5573BD15BA4F4 [132] O61 - LFC: 14/09/2013 - 20:02:19 ---A- . (...) -- C:\Documents and Settings\Administrateur\Recent\Une offre fragmentée.docx.lnk [570] O61 - LFC: 14/09/2013 - 20:24:17 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\broadcast.piximedia.fr\footerJS\v4\lib\so.swf\PmUI.sol [33] O61 - LFC: 14/09/2013 - 20:42:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_dub122.mail.live.com_0.localstorage [3072] O61 - LFC: 14/09/2013 - 20:42:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_dub122.mail.live.com_0.localstorage-journal [3608] O61 - LFC: 14/09/2013 - 20:52:46 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\5234be8e [212] O61 - LFC: 14/09/2013 - 20:53:05 ---A- . (...) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\Rapport de stage_ M2 TSM_2013_Marine Bellego.pdf [3592149] O61 - LFC: 14/09/2013 - 20:56:45 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe\Acrobat\11.0\Cache\RdLang_weblink.FRA [38912] O61 - LFC: 14/09/2013 - 21:13:04 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe\Acrobat\11.0\Cache\RdLang_PDDom.FRA [12800] O61 - LFC: 14/09/2013 - 21:13:04 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe\Acrobat\11.0\Cache\RdLang_SaveAsRTF.FRA [36864] O61 - LFC: 14/09/2013 - 21:45:07 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_lr.iadvize.com_0.localstorage [3072] O61 - LFC: 14/09/2013 - 21:45:07 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_lr.iadvize.com_0.localstorage-journal [3608] O61 - LFC: 14/09/2013 - 21:51:36 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Origin Bound Certs [40960] O61 - LFC: 14/09/2013 - 21:51:36 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Origin Bound Certs-journal [3608] O61 - LFC: 14/09/2013 - 21:51:58 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_telechargement.zebulon.fr_0.localstorage [3072] O61 - LFC: 14/09/2013 - 21:51:58 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_telechargement.zebulon.fr_0.localstorage-journal [3608] O61 - LFC: 14/09/2013 - 21:53:05 ---A- . (.Nicolas Coolman.) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\ZHPDiag2.exe [5145471] O61 - LFC: 14/09/2013 - 21:53:55 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Druide\Antidote\ConfigurationMenuAntidote [2022] O61 - LFC: 14/09/2013 - 21:54:21 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe\Acrobat\11.0\Cache\AcroFnt11.lst [8244] O61 - LFC: 14/09/2013 - 22:19:05 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\5234d2c9 [136] O61 - LFC: 15/09/2013 - 12:00:31 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\5235934f [124] O61 - LFC: 15/09/2013 - 12:06:55 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.allocine.fr_0.localstorage [5120] O61 - LFC: 15/09/2013 - 12:06:55 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.allocine.fr_0.localstorage-journal [5672] O61 - LFC: 15/09/2013 - 12:06:57 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\images.allocine.fr\AcV_Config.sol [234] O61 - LFC: 15/09/2013 - 12:07:46 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_mediacdn.disqus.com_0.localstorage [11264] O61 - LFC: 15/09/2013 - 12:07:46 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_mediacdn.disqus.com_0.localstorage-journal [10832] O61 - LFC: 15/09/2013 - 12:08:31 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.sheldonsfans.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 12:08:31 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.sheldonsfans.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 12:15:36 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_9gag.tv_0.localstorage [7168] O61 - LFC: 15/09/2013 - 12:15:36 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_9gag.tv_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 12:18:15 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.youjizz.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 12:18:16 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.youjizz.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 12:39:44 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\cdnb.static.youjizz.com\player\flvPlayer_prev4a.swf\application_settings.sol [94] O61 - LFC: 15/09/2013 - 12:43:58 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\s.ytimg.com\soundData.sol [80] O61 - LFC: 15/09/2013 - 15:10:26 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_sp-work.goviral-content.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:10:26 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_sp-work.goviral-content.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:14:55 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\5235c0df [212] O61 - LFC: 15/09/2013 - 15:15:42 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\macromedia.com\support\flashplayer\sys\#cdncache-a.akamaihd.net\settings.sol [93] O61 - LFC: 15/09/2013 - 15:15:58 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_accounts.google.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:15:58 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_accounts.google.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:16:03 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_serve.bannersdontwork.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:16:03 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_serve.bannersdontwork.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:16:18 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_googleads.g.doubleclick.net_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:16:18 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_googleads.g.doubleclick.net_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:16:20 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_platform.twitter.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:16:20 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_platform.twitter.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:16:28 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ads.creafi-online-media.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:16:28 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ads.creafi-online-media.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:16:29 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_exclusive-rewards.heathyeating.co.uk_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:16:29 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_exclusive-rewards.heathyeating.co.uk_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:16:29 -S-A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\CryptnetUrlCache\Content\0DD03BADB31E24A399F7D99EEB3AA477 [1171] O61 - LFC: 15/09/2013 - 15:16:29 -S-A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\CryptnetUrlCache\MetaData\0DD03BADB31E24A399F7D99EEB3AA477 [112] O61 - LFC: 15/09/2013 - 15:16:40 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_chrome.google.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:16:40 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_chrome.google.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:20:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.kickz.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:20:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.kickz.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:20:55 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_dis.eu.criteo.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:20:55 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_dis.eu.criteo.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:21:52 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:21:52 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:22:06 ---A- . (...) -- C:\Documents and Settings\Administrateur\Cookies\AFJ3ERVU.txt [420] O61 - LFC: 15/09/2013 - 15:22:06 ---A- . (...) -- C:\Documents and Settings\Administrateur\Cookies\R33UQ926.txt [210] O61 - LFC: 15/09/2013 - 15:22:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol [492] O61 - LFC: 15/09/2013 - 15:22:32 -S-A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\CryptnetUrlCache\Content\96D7A99548C36B10D2E8035A3E0DCA1A [1232831] O61 - LFC: 15/09/2013 - 15:22:32 -S-A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\CryptnetUrlCache\MetaData\96D7A99548C36B10D2E8035A3E0DCA1A [134] O61 - LFC: 15/09/2013 - 15:23:02 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.google.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:23:02 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.google.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:23:05 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\macromedia.com\support\flashplayer\sys\#www.superfish.com\settings.sol [87] O61 - LFC: 15/09/2013 - 15:24:33 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\www.superfish.com\ws\cookie\storage_v4.swf\superfish.sol [356] O61 - LFC: 15/09/2013 - 15:26:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\chatsync\17\1799710d151dad0c.dat [3027] O61 - LFC: 15/09/2013 - 15:31:04 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_intensedebate.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:04 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_intensedebate.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:11 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_pub10.media-clic.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:12 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_pub10.media-clic.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:15 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_tap2-cdn.rubiconproject.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:15 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_tap2-cdn.rubiconproject.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:21 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_srv1.mediads.info_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:21 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_srv1.mediads.info_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:22 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ct1.addthis.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:22 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ct1.addthis.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:23 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ad.yieldmanager.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:23 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ad.yieldmanager.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:23 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_cdncache-a.akamaihd.net_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:23 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_cdncache-a.akamaihd.net_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:26 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_secure.serving-display.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:26 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_secure.serving-display.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:27 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ad.z5x.net_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:27 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ad.z5x.net_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:33 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.egglad.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:33 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.egglad.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ad-emea.doubleclick.net_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ad-emea.doubleclick.net_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage [218112] O61 - LFC: 15/09/2013 - 15:31:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_pixel.invitemedia.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_pixel.invitemedia.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:50 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_pfa.levexis.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:50 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_pfa.levexis.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:31:50 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.fr.lastminute.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:31:50 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.fr.lastminute.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:39:22 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\cdncache-a.akamaihd.net\items\e6a00\storage.swf\gpl.sol [360] O61 - LFC: 15/09/2013 - 15:39:23 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_translate.google.fr_0.localstorage [3072] O61 - LFC: 15/09/2013 - 15:39:23 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_translate.google.fr_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 15:39:32 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extension Cookies [8192] O61 - LFC: 15/09/2013 - 15:39:32 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extension Cookies-journal [6704] O61 - LFC: 15/09/2013 - 16:06:59 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences.bad [298222] O61 - LFC: 15/09/2013 - 16:07:38 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\background.html [4580] O61 - LFC: 15/09/2013 - 16:07:38 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\change_sink.js [6629] O61 - LFC: 15/09/2013 - 16:07:38 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\contentscript.js [12288] O61 - LFC: 15/09/2013 - 16:07:38 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\document_iterator.js [13660] O61 - LFC: 15/09/2013 - 16:07:38 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\dropdown_menu_icon_set.png [5122] O61 - LFC: 15/09/2013 - 16:07:38 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\find_proxy.js [10968] O61 - LFC: 15/09/2013 - 16:07:38 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\get_html_text.js [4223] O61 - LFC: 15/09/2013 - 16:07:38 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\global_constants.js [2865] O61 - LFC: 15/09/2013 - 16:07:38 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\name_injection_builder.js [1984] O61 - LFC: 15/09/2013 - 16:07:39 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\manifest.json [834] O61 - LFC: 15/09/2013 - 16:07:39 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\number_injection_builder.js [10099] O61 - LFC: 15/09/2013 - 16:07:39 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\skype.png [740] O61 - LFC: 15/09/2013 - 16:07:39 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\string_finder.js [9935] O61 - LFC: 15/09/2013 - 16:07:39 ---A- . (.Skype Technologies S.A..) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.6.0.8442_0\npSkypeChromePlugin.dll [3975840] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\iw\messages.json [19337] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\no\messages.json [12707] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\background.js [1368] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\load_symbols.js [2447] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name.js [13935] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_ar.js [54117] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_bg.js [51067] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_ca.js [15513] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_cs.js [19494] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_da.js [14038] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_de.js [15552] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_el.js [55324] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_en_gb.js [13942] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_es.js [15179] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_es_419.js [15179] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_fi.js [14370] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_fil.js [13992] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_fr.js [15435] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_hi.js [47597] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_hr.js [14656] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_hu.js [16140] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_id.js [13888] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_it.js [13943] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_iw.js [35117] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_ja.js [34352] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_ko.js [29930] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_lt.js [17128] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_lv.js [17105] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_nl.js [14243] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_no.js [14395] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_pl.js [15282] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_pt_br.js [15497] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_pt_pt.js [15486] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_ro.js [16064] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_ru.js [54888] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_sk.js [19282] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_sl.js [19834] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_sr.js [50705] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_sv.js [14839] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_th.js [50049] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_tr.js [15702] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_uk.js [55785] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_vi.js [22382] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_zh_cn.js [26826] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\locale_name_zh_tw.js [26509] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols.js [3135] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_ar.js [6384] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_bg.js [5653] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_ca.js [3447] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_cs.js [3639] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_da.js [3294] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_de.js [3287] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_el.js [5843] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_en_gb.js [3245] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_es.js [3342] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_es_419.js [3336] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_fi.js [3591] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_fil.js [3259] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_fr.js [3422] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_hi.js [6181] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_hr.js [3414] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_hu.js [3644] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_id.js [3203] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_it.js [3307] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_iw.js [5722] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_ja.js [3798] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_ko.js [4048] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_lt.js [3562] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_lv.js [3569] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_nl.js [3286] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_no.js [3307] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_pl.js [3430] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_pt_br.js [3405] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_pt_pt.js [3425] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_ro.js [3418] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_ru.js [5819] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_sk.js [3430] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_sl.js [3381] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_sr.js [5689] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_sv.js [3376] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_th.js [6459] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_tr.js [3455] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_uk.js [5684] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_vi.js [3888] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_zh_cn.js [4089] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\i18n\symbols_zh_tw.js [3964] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\amex.png [2052] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\bank.png [234] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\check.png [235] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\checkmark.png [239] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\close_dialog.png [139] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\close_dialog_hover.png [214] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\close_dialog_pressed.png [213] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\cvc-amex.png [1344] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\cvc.png [1343] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\discover.png [1700] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\info_icon.png [1354] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\jcb.png [1179] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\lock.png [182] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\mastercard.png [1818] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\stored_value.png [1141] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\1x\visa.png [1710] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\amex.png [3446] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\bank.png [412] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\check.png [631] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\checkmark.png [358] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\close_dialog.png [170] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\close_dialog_hover.png [385] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\close_dialog_pressed.png [390] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\cvc-amex.png [1748] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\cvc.png [1744] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\discover.png [2928] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\info_icon.png [1817] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\jcb.png [2874] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\lock.png [298] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\mastercard.png [3585] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\stored_value.png [1985] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\2x\visa.png [2584] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\wallet-icon-sm.png [1528] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\images\wallet-icon-tiny.png [800] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\main.html [950] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\payments.js [257480] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\pbhelper.html [119] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\pbhelper.js [581] O61 - LFC: 15/09/2013 - 16:08:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\styles\payments.css [13283] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\ar\messages.json [52790] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\bg\messages.json [41117] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\ca\messages.json [16920] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\cs\messages.json [21633] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\da\messages.json [15723] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\de\messages.json [16303] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\el\messages.json [45461] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\en\messages.json [16620] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\en_GB\messages.json [15076] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\es\messages.json [17148] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\es_419\messages.json [16477] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\fi\messages.json [15881] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\fil\messages.json [16003] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\fr\messages.json [20254] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\hi\messages.json [38236] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\hr\messages.json [22320] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\hu\messages.json [20750] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\id\messages.json [15356] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\it\messages.json [16030] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\ja\messages.json [24124] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\ko\messages.json [21891] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\lt\messages.json [21284] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\lv\messages.json [21167] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\nl\messages.json [15358] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\pl\messages.json [23217] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\pt_BR\messages.json [16741] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\pt_PT\messages.json [17074] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\ro\messages.json [20402] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\ru\messages.json [57898] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\sk\messages.json [20607] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\sl\messages.json [22304] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\sr\messages.json [58404] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\sv\messages.json [15748] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\th\messages.json [41806] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\tr\messages.json [18435] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\uk\messages.json [59279] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\vi\messages.json [23117] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\zh_CN\messages.json [20233] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\_locales\zh_TW\messages.json [20013] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\icon_128.png [9460] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\icon_16.png [702] O61 - LFC: 15/09/2013 - 16:08:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_9\manifest.json [1426] O61 - LFC: 15/09/2013 - 16:08:17 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\httpfe\cookies.dat [2] O61 - LFC: 15/09/2013 - 16:41:17 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\File System\Origins\LOG.old [148] O61 - LFC: 15/09/2013 - 16:45:18 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage [92160] O61 - LFC: 15/09/2013 - 16:45:18 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage-journal [16384] O61 - LFC: 15/09/2013 - 16:45:42 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Media Player\LocalMLS_0.wmdb [2120452] O61 - LFC: 15/09/2013 - 16:53:07 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_talkgadget.google.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 16:53:07 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_talkgadget.google.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 17:01:28 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_basketsession.com_0.localstorage [5120] O61 - LFC: 15/09/2013 - 17:01:28 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_basketsession.com_0.localstorage-journal [5672] O61 - LFC: 15/09/2013 - 17:04:47 ---A- . (...) -- C:\Documents and Settings\Administrateur\Recent\Soumis aux mêmes impératifs de qualité et délais que quiconque.docx.lnk [780] O61 - LFC: 15/09/2013 - 17:05:02 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\VB12.pip [168] O61 - LFC: 15/09/2013 - 17:05:10 ---A- . (...) -- C:\Documents and Settings\Administrateur\Recent\viper_err.txt.lnk [510] O61 - LFC: 15/09/2013 - 17:06:47 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Recent\SBC.docx.LNK [403] O61 - LFC: 15/09/2013 - 17:08:19 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Recent\Doc2.docx.LNK [410] O61 - LFC: 15/09/2013 - 17:09:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Adobe\Acrobat\11.0\Security\services_rdrk.dat [180] O61 - LFC: 15/09/2013 - 17:09:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Adobe\Acrobat\11.0\Security\services_rdri.dat [24152] O61 - LFC: 15/09/2013 - 17:09:16 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Adobe\Acrobat\11.0\Security\services_rdr.dat [10240] O61 - LFC: 15/09/2013 - 17:13:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Media Player\wmpfolders.wmdb [24826] O61 - LFC: 15/09/2013 - 18:36:09 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\static1.dmcdn.net\com.dm.player.sol [310] O61 - LFC: 15/09/2013 - 18:41:37 -SHA- . (...) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\Thumbs.db [594432] O61 - LFC: 15/09/2013 - 18:48:32 ---A- . (...) -- C:\Documents and Settings\Administrateur\Recent\tumblr_md4mqvk01z1rhpt5ro1_400.gif.lnk [615] O61 - LFC: 15/09/2013 - 18:52:40 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.matchendirect.fr_0.localstorage [5120] O61 - LFC: 15/09/2013 - 18:52:40 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.matchendirect.fr_0.localstorage-journal [5672] O61 - LFC: 15/09/2013 - 18:56:42 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe\Acrobat\11.0\AdobeSysFnt11.lst [185866] O61 - LFC: 15/09/2013 - 18:56:55 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Recent\CV Jean-Philippe PENNEQUIN, traducteur.doc.LNK [795] O61 - LFC: 15/09/2013 - 19:08:53 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Recent\CV Jean-Philippe PENNEQUIN [2 pages].docx.LNK [790] O61 - LFC: 15/09/2013 - 19:08:53 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Recent\[Mes Curriculum vitae].LNK [530] O61 - LFC: 15/09/2013 - 19:24:20 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Recent\CV amaury Lejeune 2007.doc bis.doc.LNK [841] O61 - LFC: 15/09/2013 - 19:24:20 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Recent\Mes fichiers reçus.LNK [616] O61 - LFC: 15/09/2013 - 19:27:51 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.topito.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 19:27:51 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.topito.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 19:34:26 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Recent\CV maman.doc.LNK [706] O61 - LFC: 15/09/2013 - 19:34:27 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Recent\Fichiers Word.LNK [591] O61 - LFC: 15/09/2013 - 19:45:25 ---A- . (.modele.) -- C:\Documents and Settings\Administrateur\Mes documents\[Mes Curriculum vitae]\CV Jean-Philippe PENNEQUIN, traducteur.doc [182784] O61 - LFC: 15/09/2013 - 20:02:05 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\macromedia.com\support\flashplayer\sys\#103.31.187.78\settings.sol [83] O61 - LFC: 15/09/2013 - 20:04:04 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ib.adnxs.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 20:04:04 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ib.adnxs.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 20:05:06 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_s.m2pub.com_0.localstorage [3072] O61 - LFC: 15/09/2013 - 20:05:06 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_s.m2pub.com_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 20:12:47 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\macromedia.com\support\flashplayer\sys\#graphics.pop6.com\settings.sol [87] O61 - LFC: 15/09/2013 - 20:13:04 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\graphics.pop6.com\com.longtailvideo.jwplayer.sol [58] O61 - LFC: 15/09/2013 - 20:13:57 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\103.31.187.78\com.jeroenwijering.sol [54] O61 - LFC: 15/09/2013 - 20:24:10 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\macromedia.com\support\flashplayer\sys\#31.131.6.107\settings.sol [82] O61 - LFC: 15/09/2013 - 20:32:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\85.25.119.26\com.jeroenwijering.sol [60] O61 - LFC: 15/09/2013 - 20:33:32 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_click.privatecdn.tv_0.localstorage [3072] O61 - LFC: 15/09/2013 - 20:33:32 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_click.privatecdn.tv_0.localstorage-journal [3608] O61 - LFC: 15/09/2013 - 20:33:47 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\members.bet365.com\FCE.sol [89] O61 - LFC: 15/09/2013 - 20:34:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\content.adriver.ru\storage.sol [72] O61 - LFC: 15/09/2013 - 20:34:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\macromedia.com\support\flashplayer\sys\#content.adriver.ru\settings.sol [88] O61 - LFC: 15/09/2013 - 20:34:58 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\macromedia.com\support\flashplayer\sys\#static.castalba.tv\settings.sol [88] O61 - LFC: 15/09/2013 - 21:46:06 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\castasap.com\uppodData229.sol [51] O61 - LFC: 15/09/2013 - 22:10:38 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_badoo.com_0.localstorage [47104] O61 - LFC: 15/09/2013 - 22:10:38 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_badoo.com_0.localstorage-journal [16384] O61 - LFC: 15/09/2013 - 22:13:33 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\History Index 2013-06 [18030592] O61 - LFC: 15/09/2013 - 22:33:12 ---A- . (...) -- C:\Documents and Settings\Administrateur\Recent\[Mes Curriculum vitae].lnk [512] O61 - LFC: 15/09/2013 - 22:33:37 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Word12.pip [2216] O61 - LFC: 16/09/2013 - 10:32:53 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\5236d045 [124] O61 - LFC: 16/09/2013 - 10:33:32 -SHA- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\MSHist012013090920130916\index.dat [180224] O61 - LFC: 16/09/2013 - 10:33:32 -SHA- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\MSHist012013091620130917\index.dat [49152] O61 - LFC: 16/09/2013 - 10:35:27 -SHA- . (...) -- C:\Documents and Settings\Administrateur\Mes documents\[Mes Curriculum vitae]\Thumbs.db [5120] O61 - LFC: 16/09/2013 - 10:37:40 -SHA- . (...) -- C:\Documents and Settings\Administrateur\Mes documents\A conserver\S.B.C\Thumbs.db [629248] O61 - LFC: 16/09/2013 - 10:48:19 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\macromedia.com\##B9A0555D7A2D035A\00000001.sol [192] O61 - LFC: 16/09/2013 - 10:48:19 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\macromedia.com\support\flashplayer\sys\settings.sol [8695] O61 - LFC: 16/09/2013 - 10:50:14 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\fr-canalplus.cdn.videoplaza.tv\com.videoplaza.bootloader.sol [120] O61 - LFC: 16/09/2013 - 10:53:59 -SHA- . (...) -- C:\Documents and Settings\Administrateur\Bureau\Screenshots\Thumbs.db [40960] O61 - LFC: 16/09/2013 - 10:54:11 -SHA- . (...) -- C:\Documents and Settings\Administrateur\Bureau\Thumbs.db [1356996] O61 - LFC: 16/09/2013 - 10:54:57 ---A- . (...) -- C:\Documents and Settings\Administrateur\Recent\Signature Mail.jpg.lnk [1224] O61 - LFC: 16/09/2013 - 10:56:05 -SHA- . (...) -- C:\Documents and Settings\Administrateur\Mes documents\A conserver\S.B.C\Images\Images divers sur le thème du basket\Thumbs.db [1348608] O61 - LFC: 16/09/2013 - 10:57:27 -SHA- . (...) -- C:\Documents and Settings\Administrateur\Mes documents\A conserver\S.B.C\Images\Nouveau Logo et tenues SBC\Décat'\Thumbs.db [52224] O61 - LFC: 16/09/2013 - 11:04:30 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\K88FMCBJ\7421C71F94DB4F028E7528B2D278F3FE4DC21273.heu [152] O61 - LFC: 16/09/2013 - 11:04:31 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\K88FMCBJ\C3306B26751D6A80EB1FCB651912469AE18819AB.heu [152] O61 - LFC: 16/09/2013 - 11:05:41 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\K88FMCBJ\F74FCD943BAC79E6DADBF0307B55B0697C5907E4.heu [151] O61 - LFC: 16/09/2013 - 11:05:41 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\K88FMCBJ\F74FCD943BAC79E6DADBF0307B55B0697C5907E4.swz [621999] O61 - LFC: 16/09/2013 - 11:06:00 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\K88FMCBJ\33D9983BC427DD69DF151E816FB0AB02C0B8D5CF.heu [151] O61 - LFC: 16/09/2013 - 11:06:00 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\K88FMCBJ\33D9983BC427DD69DF151E816FB0AB02C0B8D5CF.swz [317992] O61 - LFC: 16/09/2013 - 11:06:03 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\K88FMCBJ\67BA9F962EEC4D8B413432AFAD5C88BB810426B9.heu [151] O61 - LFC: 16/09/2013 - 11:06:03 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\K88FMCBJ\67BA9F962EEC4D8B413432AFAD5C88BB810426B9.swz [54494] O61 - LFC: 16/09/2013 - 11:06:12 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\K88FMCBJ\D796AC95BD6E16151B6D3C0019A52E648CED1FE1.heu [151] O61 - LFC: 16/09/2013 - 11:06:12 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\K88FMCBJ\D796AC95BD6E16151B6D3C0019A52E648CED1FE1.swz [131911] O61 - LFC: 16/09/2013 - 11:06:12 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\K88FMCBJ\cacheSize.txt [8] O61 - LFC: 16/09/2013 - 11:07:55 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\player.canalplus.fr\site\flash\player.swf\HDCore.sol [42] O61 - LFC: 16/09/2013 - 11:07:55 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\player.canalplus.fr\site\flash\player.swf\canalPlusPlayerEmbarque.sol [167] O61 - LFC: 16/09/2013 - 11:24:08 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Media Player\lastplayed.wpl [495] O61 - LFC: 16/09/2013 - 13:28:13 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\5236f95d [212] O61 - LFC: 16/09/2013 - 13:28:26 ---A- . (...) -- C:\Documents and Settings\Administrateur\Recent\ZHPDiag.txt.lnk [498] O61 - LFC: 16/09/2013 - 13:31:22 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.buzzly.fr_0.localstorage [668672] O61 - LFC: 16/09/2013 - 13:31:22 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.buzzly.fr_0.localstorage-journal [3608] O61 - LFC: 16/09/2013 - 14:00:09 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-4ba89667.idx [463] O61 - LFC: 16/09/2013 - 14:27:08 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\JP672YWM\www.dailymotion.com\com.dm.player.sol [317] O61 - LFC: 16/09/2013 - 21:00:02 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\History Index 2013-07 [52039680] O61 - LFC: 16/09/2013 - 21:16:51 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\History Provider Cache [1264233] O61 - LFC: 17/09/2013 - 10:09:02 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\52381c2e [124] O61 - LFC: 17/09/2013 - 10:19:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Certificate Revocation Lists [261887] O61 - LFC: 17/09/2013 - 10:32:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\52382191 [124] O61 - LFC: 17/09/2013 - 10:35:26 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Session Storage\LOG.old [276] O61 - LFC: 17/09/2013 - 10:35:31 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\chrome web data [712704] O61 - LFC: 17/09/2013 - 10:35:36 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extension State\LOG.old [151] O61 - LFC: 17/09/2013 - 10:39:12 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Last Tabs [112387] O61 - LFC: 17/09/2013 - 10:40:26 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\5238238a [212] O61 - LFC: 17/09/2013 - 10:41:28 ---A- . (...) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\adwcleaner.exe [1039554] O61 - LFC: 17/09/2013 - 10:47:28 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Last Session [382840] O61 - LFC: 17/09/2013 - 10:47:34 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\chromepreferences [116744] O61 - LFC: 17/09/2013 - 10:48:11 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\HP\Digital Imaging\db\administrativeInfo.dbf [786] O61 - LFC: 17/09/2013 - 10:48:12 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extension Rules\LOG.old [148] O61 - LFC: 17/09/2013 - 10:48:12 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Visited Links [4194176] O61 - LFC: 17/09/2013 - 10:48:16 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\c47pkh9g.default\prefs.js [4082] O61 - LFC: 17/09/2013 - 10:48:23 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\avgchrome\avgp [117493] O61 - LFC: 17/09/2013 - 10:50:39 -SHA- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Credentials\S-1-5-21-1177238915-2025429265-1801674531-500\Credentials [29154] O61 - LFC: 17/09/2013 - 10:50:40 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\523825ef [124] O61 - LFC: 17/09/2013 - 10:50:56 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\ApplicationHistory\hpqimzone.exe.3204510e.ini.inuse [0] O61 - LFC: 17/09/2013 - 10:51:10 -SHA- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\MSHist012013091720130918\index.dat [65536] O61 - LFC: 17/09/2013 - 10:51:21 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\HP\Digital Imaging\handle.dat [179] O61 - LFC: 17/09/2013 - 10:51:35 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\HP\CRMLogs\BrandAuthentication.htm [4764] O61 - LFC: 17/09/2013 - 10:51:41 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\HP\Digital Imaging\db\CB_Server_Errors.txt [0] O61 - LFC: 17/09/2013 - 10:51:44 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Adobe\Acrobat\Distiller 10\Cache\PSHFList1 [113878] O61 - LFC: 17/09/2013 - 10:51:52 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\IsolatedStorage\y45dtvck.oav\zn0adgk1.3cq\StrongName.xitmqsrqvpqpovqi5kx5u3ghwej4ru23\identity.dat [515] O61 - LFC: 17/09/2013 - 10:53:47 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extension Rules\CURRENT [16] O61 - LFC: 17/09/2013 - 10:53:47 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extension Rules\MANIFEST-000651 [1090] O61 - LFC: 17/09/2013 - 10:53:49 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extension Rules\LOG [148] O61 - LFC: 17/09/2013 - 10:53:58 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\File System\Origins\CURRENT [16] O61 - LFC: 17/09/2013 - 10:53:58 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\File System\Origins\MANIFEST-000106 [171] O61 - LFC: 17/09/2013 - 10:53:58 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Managed Mode Settings [8] O61 - LFC: 17/09/2013 - 10:54:00 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\File System\Origins\LOG [148] O61 - LFC: 17/09/2013 - 10:54:32 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\QuotaManager [23552] O61 - LFC: 17/09/2013 - 10:54:32 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\QuotaManager-journal [11864] O61 - LFC: 17/09/2013 - 10:54:42 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extension State\CURRENT [16] O61 - LFC: 17/09/2013 - 10:54:42 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extension State\LOG [151] O61 - LFC: 17/09/2013 - 10:54:42 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extension State\MANIFEST-002801 [570] O61 - LFC: 17/09/2013 - 10:55:02 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Session Storage\CURRENT [16] O61 - LFC: 17/09/2013 - 10:57:32 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\5238278c [212] O61 - LFC: 17/09/2013 - 10:57:37 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\52382791 [136] O61 - LFC: 17/09/2013 - 10:57:40 ---A- . (...) -- C:\Documents and Settings\Administrateur\Bureau\AdwCleaner[S0].txt [20898] O61 - LFC: 17/09/2013 - 11:01:20 ---A- . (...) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\SFTGC.exe [1064060] O61 - LFC: 17/09/2013 - 11:04:42 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Dropbox\shellext\l\5238293a [136] O61 - LFC: 17/09/2013 - 11:04:45 ---A- . (...) -- C:\Documents and Settings\Administrateur\Bureau\SFTGC.txt [149076] O61 - LFC: 17/09/2013 - 11:04:50 ---A- . (...) -- C:\Documents and Settings\Administrateur\Recent\SFTGC.txt.lnk [486] O61 - LFC: 17/09/2013 - 11:10:42 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Ahead\Nero Home\bgscncfg.dat [363600] O61 - LFC: 17/09/2013 - 11:12:00 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Session Storage\MANIFEST-005274 [1129] O61 - LFC: 17/09/2013 - 11:12:03 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Session Storage\LOG [696] O61 - LFC: 17/09/2013 - 11:16:38 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_bh.contextweb.com_0.localstorage [3072] O61 - LFC: 17/09/2013 - 11:16:38 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_bh.contextweb.com_0.localstorage-journal [512] O61 - LFC: 17/09/2013 - 11:16:43 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_connexity.net_0.localstorage [3072] O61 - LFC: 17/09/2013 - 11:16:43 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_connexity.net_0.localstorage-journal [3608] O61 - LFC: 17/09/2013 - 11:20:32 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_pub5.media-clic.com_0.localstorage [3072] O61 - LFC: 17/09/2013 - 11:20:32 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_pub5.media-clic.com_0.localstorage-journal [3608] O61 - LFC: 17/09/2013 - 11:39:18 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ams1.ib.adnxs.com_0.localstorage [3072] O61 - LFC: 17/09/2013 - 11:39:18 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ams1.ib.adnxs.com_0.localstorage-journal [3608] O61 - LFC: 17/09/2013 - 11:53:47 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_m.lavoixdunord.fr_0.localstorage [3072] O61 - LFC: 17/09/2013 - 11:53:47 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_m.lavoixdunord.fr_0.localstorage-journal [3608] O61 - LFC: 17/09/2013 - 12:01:06 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_www.google.fr_0.localstorage [5120] O61 - LFC: 17/09/2013 - 12:01:06 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_www.google.fr_0.localstorage-journal [5672] O61 - LFC: 17/09/2013 - 12:11:56 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.dailymotion.com_0.localstorage [3072] O61 - LFC: 17/09/2013 - 12:11:56 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.dailymotion.com_0.localstorage-journal [3608] O61 - LFC: 17/09/2013 - 12:19:16 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.Word\~WRC0000.dot [19968] O61 - LFC: 17/09/2013 - 13:00:46 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Temp\msohtmlclip1\01\clip_colorschememapping.xml [314] O61 - LFC: 17/09/2013 - 13:00:46 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Temp\msohtmlclip1\01\clip_themedata.thmx [3086] O61 - LFC: 17/09/2013 - 13:56:12 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\History Index 2013-08 [41725952] O61 - LFC: 17/09/2013 - 13:56:12 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\History Index 2013-08-journal [16384] O61 - LFC: 17/09/2013 - 14:09:28 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_dub126.mail.live.com_0.localstorage [3072] O61 - LFC: 17/09/2013 - 14:09:28 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_dub126.mail.live.com_0.localstorage-journal [3608] O61 - LFC: 17/09/2013 - 15:39:04 ---A- . (...) -- C:\Documents and Settings\Administrateur\Recent\Rapport de stage_Pennequin_Jean-Philippe_Master_2_TSM.pdf.lnk [730] O61 - LFC: 17/09/2013 - 15:39:07 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Adobe\Acrobat\11.0\ReaderMessages [25600] O61 - LFC: 17/09/2013 - 15:39:23 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data [712704] O61 - LFC: 17/09/2013 - 15:39:23 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data-journal [6680] O61 - LFC: 17/09/2013 - 15:41:15 -SHA- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\index.dat [32768] O61 - LFC: 17/09/2013 - 15:41:31 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\DbTemp\temp-sMO9er3DcOA4ABXd7zItDJwj [20480] O61 - LFC: 17/09/2013 - 15:41:31 -S-A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\CryptnetUrlCache\Content\3B6E683A7A45CC59BF035C9BA8C7AB9D [494] O61 - LFC: 17/09/2013 - 15:41:31 -S-A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\CryptnetUrlCache\MetaData\3B6E683A7A45CC59BF035C9BA8C7AB9D [132] O61 - LFC: 17/09/2013 - 15:41:32 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\eas.db [65536] O61 - LFC: 17/09/2013 - 15:41:32 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\eas.db-journal [41552] O61 - LFC: 17/09/2013 - 15:41:32 -S-A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\CryptnetUrlCache\Content\8C5B82AE05DF6F77F2216F84EA164791 [679] O61 - LFC: 17/09/2013 - 15:41:32 -S-A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\CryptnetUrlCache\MetaData\8C5B82AE05DF6F77F2216F84EA164791 [110] O61 - LFC: 17/09/2013 - 15:41:35 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Macromedia\Flash Player\#SharedObjects\C2MKE2AS\skype.com\#ui\preferences.sol [233] O61 - LFC: 17/09/2013 - 15:41:35 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\DbTemp\temp-DxRrgM4K0gWAjTrYT0VmFdBf [8720] O61 - LFC: 17/09/2013 - 15:42:06 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\keyval.db [49152] O61 - LFC: 17/09/2013 - 15:42:06 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\keyval.db-journal [41552] O61 - LFC: 17/09/2013 - 15:49:27 -SHA- . (...) -- C:\Documents and Settings\Administrateur\IETldCache\index.dat [262144] O61 - LFC: 17/09/2013 - 15:55:33 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.youtube.com_0.localstorage [140288] O61 - LFC: 17/09/2013 - 15:55:33 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.youtube.com_0.localstorage-journal [16384] O61 - LFC: 17/09/2013 - 16:20:30 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_fr.wikipedia.org_0.localstorage [3072] O61 - LFC: 17/09/2013 - 16:20:30 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_fr.wikipedia.org_0.localstorage-journal [3608] O61 - LFC: 17/09/2013 - 16:27:30 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\msn.db [147456] O61 - LFC: 17/09/2013 - 16:27:30 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\msn.db-journal [111320] O61 - LFC: 17/09/2013 - 16:31:41 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\chatsync\66\66b8c8f781a80a9e.dat [40888] O61 - LFC: 17/09/2013 - 16:42:11 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage [3072] O61 - LFC: 17/09/2013 - 16:42:11 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage-journal [3608] O61 - LFC: 17/09/2013 - 16:47:58 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Recent\Bureau.LNK [312] O61 - LFC: 17/09/2013 - 16:47:58 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Recent\Rapport de stage M2 - Benoît Leroy.docx.LNK [562] O61 - LFC: 17/09/2013 - 16:47:58 --HA- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Microsoft\Office\Recent\index.dat [6601] O61 - LFC: 17/09/2013 - 16:59:25 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Network Action Predictor [2736128] O61 - LFC: 17/09/2013 - 16:59:25 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Network Action Predictor-journal [16384] O61 - LFC: 17/09/2013 - 16:59:25 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Shortcuts [1990656] O61 - LFC: 17/09/2013 - 16:59:25 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Shortcuts-journal [16384] O61 - LFC: 17/09/2013 - 17:11:31 ---A- . (...) -- C:\Documents and Settings\Administrateur\Bureau\Rapport de stage M2 - Benoît Leroy.docx [2784399] O61 - LFC: 17/09/2013 - 17:13:04 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Office\ONetConfig\c5ee5df507b33f7c813c174e94f44134.sig [128] O61 - LFC: 17/09/2013 - 17:13:04 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Office\ONetConfig\c5ee5df507b33f7c813c174e94f44134.xml [2063] O61 - LFC: 17/09/2013 - 17:13:06 ---A- . (...) -- C:\Documents and Settings\Administrateur\Cookies\7TAI3J2B.txt [180] O61 - LFC: 17/09/2013 - 17:39:37 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Temp\KiesLiveupdateTemp\PluginHost.xml [278] O61 - LFC: 17/09/2013 - 19:41:37 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\bistats.db [143360] O61 - LFC: 17/09/2013 - 19:41:37 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\bistats.db-journal [49760] O61 - LFC: 17/09/2013 - 19:43:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\shared_dynco\dc.db [1966080] O61 - LFC: 17/09/2013 - 19:43:02 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\shared_dynco\dc.db-journal [1182464] O61 - LFC: 17/09/2013 - 21:46:08 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\shared.xml [84972] O61 - LFC: 17/09/2013 - 21:58:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Top Sites [917504] O61 - LFC: 17/09/2013 - 21:58:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Top Sites-journal [16384] O61 - LFC: 17/09/2013 - 22:00:43 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage [62464] O61 - LFC: 17/09/2013 - 22:00:43 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage-journal [8768] O61 - LFC: 17/09/2013 - 22:01:59 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Safe Browsing Download [735560] O61 - LFC: 17/09/2013 - 22:02:00 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Safe Browsing Bloom [7156432] O61 - LFC: 17/09/2013 - 22:02:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Safe Browsing Bloom Prefix Set [1752376] O61 - LFC: 17/09/2013 - 22:02:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Safe Browsing Csd Whitelist [135184] O61 - LFC: 17/09/2013 - 22:02:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Safe Browsing Download Whitelist [19028] O61 - LFC: 17/09/2013 - 22:02:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Safe Browsing Extension Blacklist [6300] O61 - LFC: 17/09/2013 - 22:02:28 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Safe Browsing Cookies [6144] O61 - LFC: 17/09/2013 - 22:02:28 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Safe Browsing Cookies-journal [4640] O61 - LFC: 17/09/2013 - 22:04:21 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_dub116.mail.live.com_0.localstorage [3072] O61 - LFC: 17/09/2013 - 22:04:21 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_dub116.mail.live.com_0.localstorage-journal [3608] O61 - LFC: 17/09/2013 - 22:08:02 ---A- . (...) -- C:\Documents and Settings\Administrateur\Recent\Rapport de stage M2 - Benoît Leroy.docx.lnk [640] O61 - LFC: 17/09/2013 - 22:08:18 ---A- . (...) -- C:\Documents and Settings\Administrateur\Cookies\index.dat [81920] O61 - LFC: 17/09/2013 - 22:08:18 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\index.dat [1359872] O61 - LFC: 17/09/2013 - 22:11:42 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\config.xml [13598] O61 - LFC: 17/09/2013 - 22:12:50 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\dc.db [90112] O61 - LFC: 17/09/2013 - 22:14:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\main.db [11288576] O61 - LFC: 17/09/2013 - 22:14:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Application Data\Skype\pennequin.family\main.db-journal [332936] O61 - LFC: 17/09/2013 - 22:14:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Favicons [17778688] O61 - LFC: 17/09/2013 - 22:14:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Favicons-journal [16384] O61 - LFC: 17/09/2013 - 22:14:37 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies [1888256] O61 - LFC: 17/09/2013 - 22:14:37 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies-journal [16384] O61 - LFC: 17/09/2013 - 22:14:59 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\History [26034176] O61 - LFC: 17/09/2013 - 22:14:59 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\History Index 2013-09 [16478208] O61 - LFC: 17/09/2013 - 22:14:59 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\History Index 2013-09-journal [16384] O61 - LFC: 17/09/2013 - 22:15:01 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\History-journal [21032] O61 - LFC: 17/09/2013 - 22:15:05 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_secure.shared.live.com_0.localstorage [10240] O61 - LFC: 17/09/2013 - 22:15:05 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_secure.shared.live.com_0.localstorage-journal [10832] O61 - LFC: 17/09/2013 - 22:15:41 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows Media\11.0\WMSDKNS.XML [11252] O61 - LFC: 17/09/2013 - 22:15:42 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\TransportSecurity [4778] O61 - LFC: 17/09/2013 - 22:15:43 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Local State [53662] O61 - LFC: 17/09/2013 - 22:15:44 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Media Player\CurrentDatabase_360.wmdb [88690688] O61 - LFC: 17/09/2013 - 22:15:57 ---A- . (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences [120644] ~ 4 Fichiers temporaires (Temporary files) ~ 4 Fichiers cookies (Cookies files) ~ Files: 546 Scanned in 11mn 36s ---\\ Fichiers Alternate Data Stream (ADS) (O62) O62 - ADS:Alternate Data Stream File - ing C:\WINDOWS\system32\FlashPlayerUpdateService.exe O62 - ADS:Alternate Data Stream File - C:\WINDOWS\system32\Thumbs.db:encryptable ~ ADS: Scanned in 01mn 44s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 ~ ADS: Scanned in 00mn 00s ---\\ Liste les services legacy du registre (LALS) (O64) O64 - Services: CurCS - 02/01/1601 - Pas de propriétaire (AdobeFlashPlayerUpdateSvc) .(...) - LEGACY_ADOBEFLASHPLAYERUPDATESVC O64 - Services: CurCS - 17/08/2011 - C:\WINDOWS\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\alg.exe (ALG) .(.Microsoft Corporation - Application Layer Gateway Service.) - LEGACY_ALG O64 - Services: CurCS - 10/09/2013 - C:\Program Files\Avira\AntiVir Desktop\sched.exe (AntiVirSchedulerService) .(.Avira Operations GmbH & Co. KG - Avira Scheduler.) - LEGACY_ANTIVIRSCHEDULERSERVICE O64 - Services: CurCS - 10/09/2013 - C:\Program Files\Avira\AntiVir Desktop\avguard.exe (AntiVirService) .(.Avira Operations GmbH & Co. KG - Avira On-Access Service.) - LEGACY_ANTIVIRSERVICE O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (AppMgmt) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_APPMGMT O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (AudioSrv) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_AUDIOSRV O64 - Services: CurCS - 10/09/2013 - C:\WINDOWS\system32\DRIVERS\avgntflt.sys (avgntflt) .(.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) - LEGACY_AVGNTFLT O64 - Services: CurCS - 10/09/2013 - C:\WINDOWS\system32\DRIVERS\avipbb.sys (avipbb) .(.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) - LEGACY_AVIPBB O64 - Services: CurCS - 30/04/2013 - C:\WINDOWS\system32\DRIVERS\avkmgr.sys (avkmgr) .(.Avira Operations GmbH & Co. KG - Avira Manager Driver.) - LEGACY_AVKMGR O64 - Services: CurCS - 02/01/1601 - Pas de propriétaire (BitGuard) .(...) - LEGACY_BITGUARD =>PUP.BitGuard O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (BITS) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_BITS O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Browser) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_BROWSER O64 - Services: CurCS - 25/07/2008 - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (clr_optimization_v2.0.50727_32) .(.Microsoft Corporation - .NET Runtime Optimization Service.) - LEGACY_CLR_OPTIMIZATION_V2.0.50727_32 O64 - Services: CurCS - 18/03/2010 - C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (clr_optimization_v4.0.30319_32) .(.Microsoft Corporation - .NET Runtime Optimization Service.) - LEGACY_CLR_OPTIMIZATION_V4.0.30319_32 O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\dllhost.exe (COMSysApp) .(.Microsoft Corporation - COM Surrogate.) - LEGACY_COMSYSAPP O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (CryptSvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_CRYPTSVC O64 - Services: CurCS - 18/12/2012 - C:\WINDOWS\system32\drivers\dgderdrv.sys (dgderdrv) .(.Devguru Co., Ltd - Device Error Recovery SDK(x86).) - LEGACY_DGDERDRV O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Dhcp) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DHCP O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\drivers\dmboot.sys (dmboot) .(.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) - LEGACY_DMBOOT O64 - Services: CurCS - 28/08/2001 - C:\WINDOWS\system32\drivers\dmload.sys (dmload) .(.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) - LEGACY_DMLOAD O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (dmserver) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DMSERVER O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Dnscache) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DNSCACHE O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (ERSvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_ERSVC O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (EventSystem) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_EVENTSYSTEM O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (FastUserSwitchingCompatibility) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_FASTUSERSWITCHINGCOMPATIBILITY O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\fltMgr.sys (FltMgr) .(.Microsoft Corporation - Microsoft Filesystem Filter Manager.) - LEGACY_FLTMGR O64 - Services: CurCS - 29/07/2008 - C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (FontCache3.0.0.0) .(.Microsoft Corporation - PresentationFontCache.exe.) - LEGACY_FONTCACHE3.0.0.0 O64 - Services: CurCS - 25/10/2010 - Pas de propriétaire (FsUsbExDisk) .(...) - LEGACY_FSUSBEXDISK O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\msgpc.sys (Gpc) .(.Microsoft Corporation - MS General Packet Classifier.) - LEGACY_GPC O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (helpsvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HELPSVC O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (HidServ) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HIDSERV O64 - Services: CurCS - 20/10/2009 - C:\WINDOWS\system32\Drivers\HTTP.sys (HTTP) .(.Microsoft Corporation - HTTP Protocol Stack.) - LEGACY_HTTP O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (HTTPFilter) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HTTPFILTER O64 - Services: CurCS - 22/10/2004 - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe (IDriverT) .(.Macrovision Corporation - IDriverT Module.) - LEGACY_IDRIVERT O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\imapi.exe (ImapiService) .(.Microsoft Corporation - API Image Mastering.) - LEGACY_IMAPISERVICE O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\ipnat.sys (IpNat) .(.Microsoft Corporation - IP Network Address Translator.) - LEGACY_IPNAT O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\ipsec.sys (IPSec) .(.Microsoft Corporation - IPSec Driver.) - LEGACY_IPSEC O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\isapnp.sys (isapnp) .(.Microsoft Corporation - Pilote de bus PNP ISA.) - LEGACY_ISAPNP O64 - Services: CurCS - 23/06/2013 - C:\Program Files\Java\jre7\bin\jqs.exe (JavaQuickStarterService) .(.Oracle Corporation - Java Quick Starter Service.) - LEGACY_JAVAQUICKSTARTERSERVICE O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (LanmanServer) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LANMANSERVER O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (LanmanWorkstation) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LANMANWORKSTATION O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (LmHosts) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LMHOSTS O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\mrxdav.sys (MRxDAV) .(.Microsoft Corporation - Windows NT WebDav Minirdr.) - LEGACY_MRXDAV O64 - Services: CurCS - 15/07/2011 - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys (MRxSmb) .(.Microsoft Corporation - Windows NT SMB Minirdr.) - LEGACY_MRXSMB O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\msdtc.exe (MSDTC) .(.Microsoft Corporation - MS DTC console program.) - LEGACY_MSDTC O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\msiexec.exe (MSIServer) .(.Microsoft Corporation - Windows® installer.) - LEGACY_MSISERVER O64 - Services: CurCS - 21/04/2011 - C:\WINDOWS\system32\Drivers\Mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider driver.) - LEGACY_MUP O64 - Services: CurCS - 29/06/2012 - C:\WINDOWS\system32\nalserv.exe (NalServ) .(.Nalpeiron Ltd. - Nalpeiron LAN Service Build March 20th 2012.) - LEGACY_NALSERV O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\Drivers\NDIS.sys (NDIS) .(.Microsoft Corporation - NDIS 5.1 wrapper driver.) - LEGACY_NDIS O64 - Services: CurCS - 08/07/2011 - C:\WINDOWS\system32\DRIVERS\ndistapi.sys (NdisTapi) .(.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) - LEGACY_NDISTAPI O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\ndisuio.sys (Ndisuio) .(.Microsoft Corporation - NDIS User mode I/O Driver.) - LEGACY_NDISUIO O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Netman) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NETMAN O64 - Services: CurCS - 02/01/1601 - Pas de propriétaire (NewServiceInstall1) .(...) - LEGACY_NEWSERVICEINSTALL1 O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Nla) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NLA O64 - Services: CurCS - 29/06/2012 - C:\WINDOWS\system32\nlssrv32.exe (nlsX86cc) .(.Nalpeiron Ltd. - This service enables products that use the.) - LEGACY_NLSX86CC O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (NtmsSvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NTMSSVC O64 - Services: CurCS - 23/09/2012 - C:\WINDOWS\system32\nvsvc32.exe (NVSvc) .(.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 306.8.) - LEGACY_NVSVC O64 - Services: CurCS - 23/09/2012 - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (nvUpdatusService) .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) - LEGACY_NVUPDATUSSERVICE O64 - Services: CurCS - 09/08/2007 - C:\WINDOWS\system32\HPZipm12.exe (Pml Driver HPZ12) .(.HP - PML Driver.) - LEGACY_PML_DRIVER_HPZ12 O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\lsass.exe (PolicyAgent) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_POLICYAGENT O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\lsass.exe (ProtectedStorage) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_PROTECTEDSTORAGE O64 - Services: CurCS - 28/08/2001 - C:\WINDOWS\system32\DRIVERS\rasacd.sys (RasAcd) .(.Microsoft Corporation - RAS Automatic Connection Driver.) - LEGACY_RASACD O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (RasMan) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_RASMAN O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\rdbss.sys (Rdbss) .(.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - LEGACY_RDBSS O64 - Services: CurCS - 28/08/2001 - C:\WINDOWS\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (RemoteRegistry) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_REMOTEREGISTRY O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\lsass.exe (SamSs) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_SAMSS O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Schedule) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SCHEDULE O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (seclogon) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SECLOGON O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (SENS) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SENS O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (SharedAccess) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SHAREDACCESS O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (ShellHWDetection) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SHELLHWDETECTION O64 - Services: CurCS - 19/04/2013 - C:\Program Files\Skype\Updater\Updater.exe (SkypeUpdate) .(.Skype Technologies - Skype Updater Service.) - LEGACY_SKYPEUPDATE O64 - Services: CurCS - 17/08/2010 - C:\WINDOWS\system32\spoolsv.exe (Spooler) .(.Microsoft Corporation - Spooler SubSystem App.) - LEGACY_SPOOLER O64 - Services: CurCS - 29/07/2012 - C:\WINDOWS\system32\Drivers\sptd.sys (sptd) .(.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) - LEGACY_SPTD O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\sr.sys (sr) .(.Microsoft Corporation - Pilote de filtre de système de fichiers pou.) - LEGACY_SR O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (srservice) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SRSERVICE O64 - Services: CurCS - 17/02/2011 - C:\WINDOWS\system32\DRIVERS\srv.sys (Srv) .(.Microsoft Corporation - Server driver.) - LEGACY_SRV O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (SSDPSRV) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SSDPSRV O64 - Services: CurCS - 30/04/2013 - C:\WINDOWS\system32\DRIVERS\ssmdrv.sys (ssmdrv) .(.Avira GmbH - AVIRA SnapShot Driver.) - LEGACY_SSMDRV O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (stisvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_STISVC O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\dllhost.exe (SwPrv) .(.Microsoft Corporation - COM Surrogate.) - LEGACY_SWPRV O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (TapiSrv) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_TAPISRV O64 - Services: CurCS - 20/06/2008 - C:\WINDOWS\system32\DRIVERS\tcpip.sys (Tcpip) .(.Microsoft Corporation - TCP/IP Protocol Driver.) - LEGACY_TCPIP O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Themes) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_THEMES O64 - Services: CurCS - 28/08/2013 - Pas de propriétaire (tor) .(...) - LEGACY_TOR O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (TrkWks) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_TRKWKS O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (upnphost) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_UPNPHOST O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\vssvc.exe (VSS) .(.Microsoft Corporation - Service de cliché instantané de volumes Mic.) - LEGACY_VSS O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (W32Time) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_W32TIME O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\wanarp.sys (Wanarp) .(.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - LEGACY_WANARP O64 - Services: CurCS - 19/04/2006 - C:\WINDOWS\system32\DRIVERS\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - WDF Dynamic.) - LEGACY_WDF01000 O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (WebClient) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WEBCLIENT O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (winmgmt) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WINMGMT O64 - Services: CurCS - 18/08/2009 - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.exe (wlidsvc) .(.Microsoft Corporation - Microsoft® Windows Live ID Service.) - LEGACY_WLIDSVC O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\wbem\wmiapsrv.exe (WmiApSrv) .(.Microsoft Corporation - Service de la carte de performance WMI.) - LEGACY_WMIAPSRV O64 - Services: CurCS - 16/04/2013 - C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe (WPFFontCache_v0400) .(.Microsoft Corporation - wpffontcache_v0400.exe.) - LEGACY_WPFFONTCACHE_V0400 O64 - Services: CurCS - 28/08/2001 - C:\WINDOWS\system32\drivers\ws2ifsl.sys (WS2IFSL) .(.Microsoft Corporation - Winsock2 IFS Layer.) - LEGACY_WS2IFSL O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (wscsvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WSCSVC O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (wuauserv) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WUAUSERV O64 - Services: CurCS - 28/09/2006 - C:\WINDOWS\system32\DRIVERS\WudfPf.sys (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (WudfSvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WUDFSVC O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (WZCSVC) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WZCSVC ~ Legacy: 136 Scanned in 00mn 02s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Not Key.) O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Adobe Systems, Inc. - Adobe Dreamweaver CS6.) -- C:\Program Files\Adobe\Adobe Dreamweaver CS6\Dreamweaver.exe O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe ~ FASS Keys: 17 Scanned in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Web Search) - http://startsear.ch O69 - SBI: SearchScopes [HKCU] {14890C4D-69D6-406E-8D0E-238F36CFF343} - () - http://search.live.com O69 - SBI: SearchScopes [HKCU] {3511BBF6-BE68-4FC0-B07C-4D7896AFDC44} - (Search) - http://start.funmoods.com =>PUP.Funmoods O69 - SBI: SearchScopes [HKCU] {BF44BE3C-C526-41BE-ADFC-5C922B976449} - (Ask Search) - http://websearch.ask.com =>Toolbar.Ask O69 - SBI: SearchScopes [HKUS\.DEFAULT] {14890C4D-69D6-406E-8D0E-238F36CFF343} - () - http://search.live.com O69 - SBI: SearchScopes [HKUS\S-1-5-18] {14890C4D-69D6-406E-8D0E-238F36CFF343} - () - http://search.live.com ~ Keys: Scanned in 00mn 00s ---\\ Enumère les fichiers Crack & Keygen (CKF) (O82) D:\Sauvegarde Clé USB 16.12.12\Trados 2007\SDLX Trados 2007 SP2 + license + SMAC _ Really WORKS\Smac 2.7\KLC.Consulting.SMAC.Professional.v2.7.BETA.Incl.Keygen-Lz0\keygen.exe D:\Sauvegarde Clé USB 4.12.12\Trados 2007\SDLX Trados 2007 SP2 + license + SMAC _ Really WORKS\Smac 2.7\KLC.Consulting.SMAC.Professional.v2.7.BETA.Incl.Keygen-Lz0\keygen.exe D:\Trados 2007\SDLX Trados 2007 SP2 + license + SMAC _ Really WORKS\Smac 2.7\KLC.Consulting.SMAC.Professional.v2.7.BETA.Incl.Keygen-Lz0\keygen.exe ~ Files: Scanned in 03mn 14s ---\\ Enumère les service demarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336] O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - Pas de description.) -- C:\WINDOWS\system32\es.dll [253952] O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504] O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840] O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096] O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll [247808] O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\WINDOWS\system32\seclogon.dll [18944] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\WINDOWS\system32\tapisrv.dll [249856] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [145408] O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\WINDOWS\system32\qmgr.dll [409088] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400] O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\MsPMSNSv.dll [27136] ~ Services: 40 Scanned in 00mn 00s ---\\ Recherche particulière à la racine du système (SPRF) (O84) [MD5.CBB0D39E27A77C26BAC10DF089F8875F] [SPRF][19/07/2011] (...) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\fusioncache.dat [137] [MD5.25AF1D351877EA59097690017147C58E] [SPRF][14/03/2009] (.Jacek Pazera - Pazera Free MP4 to AVI Converter.) -- C:\Documents and Settings\Administrateur\Bureau\mp4toavi.exe [387584] [MD5.8CE7705CB43B03BB7970B04087C7758F] [SPRF][30/06/2006] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\WINDOWS\Downloaded Program Files\dwusplay.dll [29616] [MD5.01E2ECA759056F23C73A035FDABB2D6D] [SPRF][30/06/2006] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\WINDOWS\Downloaded Program Files\dwusplay.exe [201648] [MD5.0C135B4FEFF52ED92CF08BB3F0A75A90] [SPRF][10/09/2006] (.Macrovision Corporation - Macrovision Software Manager Web Agent.) -- C:\WINDOWS\Downloaded Program Files\isusweb.dll [484272] ~ Files: 5 Scanned in 00mn 00s ---\\ Enumère les codes produits des logiciels (PUC) (O90) O90 - PUC: "00002105501100000000000000F01FEC" . (.Microsoft Office 2007 Primary Interop Assemblies.) -- C:\WINDOWS\Installer\{50120000-1105-0000-0000-0000000FF1CE}\misc.exe,6 O90 - PUC: "000021592210C0400000000000F01FEC" . (.Microsoft Office Outlook Connector.) -- C:\WINDOWS\Installer\{95120000-0122-040C-0000-0000000FF1CE}\olc_setup.exe O90 - PUC: "09683D6BE55704F43AA5328FCBB268CA" . (.Microsoft_VC90_MFCLOC_x86.) -- C:\WINDOWS\Installer\{B6D38690-755E-4F40-A35A-23F8BC2B86AC}\ARPPRODUCTICON.exe O90 - PUC: "0ED9D238CFA898648991D4BBEDDBE3F4" . (.Microsoft Games for Windows - LIVE Redistributable.) -- C:\WINDOWS\Installer\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}\GameForWindowsLiveRedist.exe O90 - PUC: "1038C85769625584FA5435B4210089A0" . (.Samsung Kies.) -- C:\WINDOWS\Installer\{758C8301-2696-4855-AF45-534B1200980A}\ARPPRODUCTICON.exe O90 - PUC: "121E2D80A6F7BE3479DF26B944094330" . (.Microsoft_VC90_CRT_x86.) -- C:\WINDOWS\Installer\{08D2E121-7F6A-43EB-97FD-629B44903403}\ARPPRODUCTICON.exe O90 - PUC: "1D6B50275792CDD4584D03EAFCFB1C83" . (.SDL Trados Studio 2011 SP2.) -- C:\WINDOWS\Installer\{7205B6D1-2975-4DDC-85D4-30AECFBFC138}\ProductIcon.exe O90 - PUC: "20B91A1DE71869244AB57058F37DD475" . (.Microsoft_VC80_MFC_x86.) -- C:\WINDOWS\Installer\{D1A19B02-817E-4296-A45B-07853FD74D57}\ARPPRODUCTICON.exe O90 - PUC: "243493A986A4ABE4586A555B954F7E00" . (.Microsoft .NET Framework 1.1 French Language Pack.) -- C:\WINDOWS\Installer\{9A394342-4A68-4EBA-85A6-55B559F4E700}\ndpsetup.ico O90 - PUC: "25BBB29DFF28DE24A8C3E460F249A47B" . (.Microsoft_VC80_MFCLOC_x86.) -- C:\WINDOWS\Installer\{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}\ARPPRODUCTICON.exe O90 - PUC: "2C1EB777566F2E2409DD51A776177501" . (.SDL MultiTerm 2011 SP2 Desktop.) -- C:\WINDOWS\Installer\{777BE1C2-F665-42E2-90DD-157A67715710}\MTStudioIcon.exe O90 - PUC: "31AC46661B9C884488E1A41CC40E2F06" . (.SDL MultiTerm 2011 SP2 Core.) -- C:\WINDOWS\Installer\{6664CA13-C9B1-4488-881E-4AC14CE0F260}\ProductIcon.exe O90 - PUC: "40AB0327B1EA71C4190A7EFDD66F0EC5" . (.SDL Trados Compatibility module.) -- C:\WINDOWS\Installer\{7230BA04-AE1B-4C17-91A0-E7DF6DF6E05C}\ProductIcon.ico O90 - PUC: "5DEBCF703C4949F49B3D63F02AC7B760" . (.Microsoft Windows SDK for Visual Studio 2008 Express Tools for Win32.) -- C:\WINDOWS\Installer\{07FCBED5-94C3-4F94-B9D3-360FA27C7B06}\Icon_msi.ico O90 - PUC: "68267DD57EB949849A099E509EA18C81" . (.Windows Live Mail.) -- C:\WINDOWS\Installer\{5DD76286-9BE7-4894-A990-E905E91AC818}\wlmail.exe O90 - PUC: "68AB67CA730100007706000000000050" . (.Adobe Acrobat X Professional - Arabic, Hebrew, French, Greek.) -- C:\WINDOWS\Installer\{AC76BA86-1037-0000-7760-000000000005}\_SC_Acrobat.ico O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.04) - Français.) -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico O90 - PUC: "6D4B04801DD7781458326ECF0070FE7B" . (.Windows Live ID Sign-in Assistant.) -- C:\WINDOWS\Installer\{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}\prodicon.ico O90 - PUC: "701043F6AA9F6C745BC43C1AF91155F3" . (.Hewlett-Packard ACLM.NET v1.1.0.0.) -- C:\WINDOWS\Installer\{6F340107-F9AA-47C6-B54C-C3A19F11553F}\ARPPRODUCTICON.exe O90 - PUC: "7692FC6BE18C0C0489510C7547EF1F02" . (.Skype Click to Call.) -- C:\WINDOWS\Installer\{B6CF2967-C81E-40C0-9815-C05774FEF120}\IconUninstallIco O90 - PUC: "8F7463F0D15ECCF48826A9D8C0A5FC52" . (.Microsoft_VC80_ATL_x86.) -- C:\WINDOWS\Installer\{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}\ARPPRODUCTICON.exe O90 - PUC: "91785D291CBB3CC40AB8659C8E48CCC2" . (.Microsoft_VC80_CRT_x86.) -- C:\WINDOWS\Installer\{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}\ARPPRODUCTICON.exe O90 - PUC: "966FD11503920C03E86B5582782EE98C" . (.Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - FRA.) -- C:\WINDOWS\Installer\{511DF669-2930-30C0-8EB6-552887E29EC8}\Setup.ico O90 - PUC: "B5DEF536D6C2EB94786EA7F6DC22CBA5" . (.Microsoft_VC90_MFC_x86.) -- C:\WINDOWS\Installer\{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}\ARPPRODUCTICON.exe O90 - PUC: "BDADC26A94A95F74E9ECB2F2C06580ED" . (.MappyPlus.) -- C:\WINDOWS\Installer\{A62CDADB-9A49-47F5-9ECE-2B2F0C5608DE}\app_icon.ico O90 - PUC: "C351589C108336BE412380E817080163" . (.Nero 7 Demo.) -- C:\WINDOWS\Installer\{C985153C-3801-EB63-1432-088E71801036}\ARPPRODUCTICON.exe O90 - PUC: "C4E4AFE2F5B77F841A0CA18A287B9A3C" . (.HP Update.) -- C:\WINDOWS\Installer\{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}\ARPPRODUCTICON.exe O90 - PUC: "C7030BC4E565144468EBD02F4EBF28C8" . (.Microsoft Games for Windows Marketplace.) -- C:\WINDOWS\Installer\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}\GameForWindowsLiveDash.exe O90 - PUC: "C7FAF248FE053644B9F826221E83D4D7" . (.Microsoft Windows SDK for Visual Studio 2008 Headers and Libraries.) -- C:\WINDOWS\Installer\{842FAF7C-50EF-4463-9B8F-6222E1384D7D}\Icon_msi.ico O90 - PUC: "D24512C781674D2499D0B954D8DC7EE1" . (.SDL MultiTerm 2011 SP2 Word Integration.) -- C:\WINDOWS\Installer\{7C21542D-7618-42D4-990D-9B458DCDE71E}\ProductIcon.ico O90 - PUC: "D381B5441F4F8C549BBD1F3155AC56B7" . (.Windows Live Messenger.) -- C:\WINDOWS\Installer\{445B183D-F4F1-45C8-B9DB-F11355CA657B}\MsblIco.Exe O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- C:\WINDOWS\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon O90 - PUC: "D82517072E95D214E84A72C2787F20C7" . (.SDL MultiTerm 2011 SP2 Extract.) -- C:\WINDOWS\Installer\{7071528D-59E2-412D-8EA4-272C87F7027C}\ARPPRODUCTICON.exe O90 - PUC: "DC36172661182894A91CC8D64E4A990A" . (.SDL Passolo Essential 2011 SP6.) -- C:\WINDOWS\Installer\{627163CD-8116-4982-9AC1-8C6DE4A499A0}\ProductIcon.exe O90 - PUC: "DDB6C50237B7ED245850A990F3532A83" . (.Outil de téléchargement Windows Live.) -- C:\WINDOWS\Installer\{205C6BDD-7B73-42DE-8505-9A093F35A238}\RichUpload.ico O90 - PUC: "E6EBDF634866B264EA89A9931A2B00CC" . (.HP Product Assistant.) -- C:\WINDOWS\Installer\{36FDBE6E-6684-462B-AE98-9A39A1B200CC}\ARPPRODUCTICON.exe O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype™ 6.3.) -- C:\WINDOWS\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe O90 - PUC: "E873E3303DA65DA4DBBEBC6DB91340C6" . (.Microsoft_VC90_ATL_x86.) -- C:\WINDOWS\Installer\{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}\ARPPRODUCTICON.exe O90 - PUC: "EF260212FEF9F75489F0B65272C09CD9" . (.SDL MultiTerm 2011 SP2 Convert.) -- C:\WINDOWS\Installer\{212062FE-9FEF-457F-980F-6B25270CC99D}\MultitermConvertIcon.exe ~ Update Products: 147 Scanned in 00mn 00s ---\\ Enumère les données de la clé NameSpace (MNS) (O92) O92 - MNS: Nero Scout - {3D6BE802-FC0D-4595-A304-E611F97089DC} O92 - MNS: Web Folders - {BDEADF00-C265-11D0-BCED-00A0C90AB50F} ~ MNS: 2 Scanned in 00mn 00s ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) [MD5.9BE6151CF95ACEBC4BEFCE0AD47E4275] [WIS][08/03/2013] (.Mappy - MappyPlus.) -- C:\Windows\Installer\12cb2c5.msi [482304] [MD5.9C1E744E24F77CC9E9A323F0A1394909] [WIS][02/11/2011] (.SDL International - Blank Project Template.) -- C:\Windows\Installer\1896d4e.msi [159232] [MD5.30ABD9FCEFCD06810E643D902ADDD2B2] [WIS][04/12/2012] (.SDL - SDL Passolo Essential 2011 SP6 installation database.) -- C:\Windows\Installer\1c5d1c.msi [277504] [MD5.80B39F07EF33E38C2C94781F6D41C236] [WIS][04/12/2012] (.SDL - SDL Trados Compatibility module installation database.) -- C:\Windows\Installer\1c5d22.msi [1586176] [MD5.01DA01D22BF5939A14D6533CDD7D0F4A] [WIS][04/12/2012] (.SDL - SDL Trados Studio 2011 SP2 installation database.) -- C:\Windows\Installer\1c5d28.msi [2276864] [MD5.CD3DCBDC8EC8FC971018D72D39E4C8F5] [WIS][02/06/2013] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\29231b.msi [1638912] [MD5.E3C68CCC17775772FEB5FF19D10BFC24] [WIS][04/12/2012] (.SDL - SDL MultiTerm 2011 SP2 Convert allows for conversion of termino.) -- C:\Windows\Installer\2e2502.msi [265728] [MD5.DF4F8055F5702D65F0A2E44947079ABA] [WIS][04/12/2012] (.SDL - SDL MultiTerm 2011 SP2 Word Integration installation database.) -- C:\Windows\Installer\2e2508.msi [235520] [MD5.FC6E6D99B1BD9E611D1D6C48D0C024BD] [WIS][04/12/2012] (.SDL - SDL MultiTerm 2011 SP2 Desktop installation database.) -- C:\Windows\Installer\2e250e.msi [256000] [MD5.4409A5A7912784E93DB929FA640D5ADC] [WIS][04/12/2012] (.SDL - SDL MultiTerm 2011 SP2 Core installation database.) -- C:\Windows\Installer\2e261e.msi [841728] [MD5.1EBB0491A8DA776E445283E543D1077B] [WIS][04/12/2012] (.SDL - SDL MultiTerm 2011 SP2 Extract automatically locates and extrac.) -- C:\Windows\Installer\2e2624.msi [250368] [MD5.596126F279DB0DC5640FADCBC3DEF1CA] [WIS][21/12/2012] (.Adobe - Blank Project Template.) -- C:\Windows\Installer\35b440.msi [356352] [MD5.5B05D90905E84F9AA337A227F4DD7F96] [WIS][21/12/2012] (.Adobe - Blank Project Template.) -- C:\Windows\Installer\35b448.msi [316416] [MD5.E9E77F69A91F1D32477500F9000F0185] [WIS][09/01/2012] (.2K Sports - NBA 2K12.) -- C:\Windows\Installer\4957c4.msi [2067456] [MD5.0FA1E54BCF61A8ABE95BD8CA52BA3339] [WIS][21/03/2012] (.Adobe - Blank Project Template.) -- C:\Windows\Installer\92c89a.msi [359424] [MD5.E36169A5BF755E150725DBEDC3DEC138] [WIS][21/03/2012] (.Adobe - Blank Project Template.) -- C:\Windows\Installer\92c8a0.msi [356864] [MD5.3C218AD2331B2AEFFD2B252F94C77B1D] [WIS][21/03/2012] (.Adobe - Blank Project Template.) -- C:\Windows\Installer\92c8a6.msi [315392] [MD5.F22C1A2685FF835D1735750ED3D9BDF7] [WIS][21/03/2012] (.Adobe - Blank Project Template.) -- C:\Windows\Installer\92c8ac.msi [316928] [MD5.75DACAF954935FD82AACDFE23F17BBB0] [WIS][21/03/2012] (.Adobe - Blank Project Template.) -- C:\Windows\Installer\92c8be.msi [356352] [MD5.EEA42F48C48B66EC3134730F9DAB85A2] [WIS][19/07/2011] (.eSupportQFolder - eSupportQFolder.) -- C:\Windows\Installer\b42435.msi [121344] [MD5.C2040CA15AEB4186973C33CBA60E6809] [WIS][19/07/2011] (.DeviceManagementQFolder - DeviceManagementQFolder.) -- C:\Windows\Installer\b42450.msi [121344] [MD5.EEAB9726542FB2C0B5A8CBFAF3E223E4] [WIS][19/07/2011] (.HP Image Transfer - HP Image Transfer.) -- C:\Windows\Installer\b4245e.msi [3155456] [MD5.5BEF418E39403D37ED0313B41CB1061C] [WIS][20/11/2012] (.Adobe - Blank Project Template.) -- C:\Windows\Installer\b56565.msi [319488] [MD5.0FBC8971156623615EF54BF3A7C1565E] [WIS][19/07/2011] (.FullDPAppQFolder - FullDPAppQFolder.) -- C:\Windows\Installer\b67b46.msi [121344] [MD5.E0F7AD21087A7D30A683DC05F2A4E638] [WIS][19/07/2011] (.DocumentViewerQFolder - DocumentViewerQFolder.) -- C:\Windows\Installer\b9425a.msi [121344] [MD5.CDF10A6F82B2149263F414C601258C42] [WIS][19/07/2011] (.CustomerResearchQFolder - CustomerResearchQFolder.) -- C:\Windows\Installer\b94264.msi [121344] [MD5.4E91D18EB66FBF72744262435A346A1C] [WIS][21/11/2011] (.DocumentViewerQFolder - DocumentViewerQFolder.) -- C:\Windows\Installer\c476a8.msi [121344] [MD5.848B69A947ECD33AF9F911EBDA4314B2] [WIS][12/10/2012] (.2K Sports - NBA 2K13.) -- C:\Windows\Installer\c9014.msi [2708480] [MD5.5288F1EAB28502AD973B221904AD0616] [WIS][26/10/2011] (.Skype Technologies S.A. - Skype Click to Call.) -- C:\Windows\Installer\d135e3.msi [1252864] ~ WIS: 157 Scanned in 00mn 13s ---\\ Etat général des services not Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 10/07/1658 163328 | (AdobeFlashPlayerUpdateSvc) . (...) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe SR - | Auto 10/09/2013 84024 | (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe SR - | Auto 10/09/2013 108088 | (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe SS - | Auto 10/07/1658 0 | (BitGuard) . (...) - C:\Documents and Settings\All Users\Application Data\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe =>PUP.BitGuard SS - | Demand 13/04/2008 225280 | (dmadmin) . (.Microsoft Corp., Veritas Software.) - C:\WINDOWS\system32\dmadmin.exe SS - | Demand 10/07/1658 0 | (EverestDriver) . (...) - C:\Program Files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt SS - | Demand 22/10/2004 73728 | (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe SR - | Auto 23/06/2013 182184 | (JavaQuickStarterService) . (.Oracle Corporation.) - C:\Program Files\Java\jre7\bin\jqs.exe SS - | Demand 05/12/2012 115168 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe SR - | Auto 29/06/2012 135168 | (NalServ) . (.Nalpeiron Ltd..) - C:\WINDOWS\system32\nalserv.exe SS - | Auto 10/07/1658 0 | C:\Program Files\SDL International\T2007\TT\Lng\Dialogs1031.lng" (NewServiceInstall1) . (...) - C:\Program Files\SDL International\T2007\TT\Lng\Dialogs1031.lng SR - | Auto 29/06/2012 66560 | (nlsX86cc) . (.Nalpeiron Ltd..) - C:\WINDOWS\system32\nlssrv32.exe SR - | Auto 23/09/2012 164200 | (NVSvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvsvc32.exe SS - | Auto 23/09/2012 1258856 | (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe SR - | Auto 09/08/2007 73728 | (Pml Driver HPZ12) . (.HP.) - C:\WINDOWS\system32\HPZipm12.exe SS - | Auto 19/04/2013 161384 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe SS - | Demand 19/02/2010 517096 | (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files\Fichiers communs\Adobe\SwitchBoard\SwitchBoard.exe SR - | Auto 28/08/2013 3233806 | (tor) . (...) - C:\Program Files\Tor\tor.exe ~ Services: Scanned in 00mn 15s ---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80) Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net Run by Administrateur at 17/09/2013 23:29:10 device: opened successfully user: MBR read successfully Disk trace: called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll >>UNKNOWN [0x89D8A1E8]<< 1 ntkrnlpa!IofCallDriver[0x804EF200] >> \Device\Harddisk0\DR0[0x89D3FAB8] 3 CLASSPNP[0xB80E8FD7] >> ntkrnlpa!IofCallDriver[0x804EF200] >> \Device\00000061[0x89CA3920] 5 ACPI[0xB7E63620] >> ntkrnlpa!IofCallDriver[0x804EF200] >> \Device\Scsi\nvgts1Port2Path1Target1Lun0[0x89CC3A38] \Driver\nvgts[0x89CA4A08] >> IRP_MJ_CREATE >> 0x89D8A1E8 kernel: MBR read successfully user & kernel MBR OK ~ MBR: 14 Scanned in 00mn 02s ---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by Administrateur at 17/09/2013 23:29:12 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 04s ---\\ Liste des émulateurs de CD/DVD (MBR Hook) O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM] -- DAEMON Tools Lite ~ Emulateurs: Scanned in 00mn 04s ---\\ Scan Additionnel (O88) Database Version : 12917 - (14/09/2013) Clés trouvées (Keys found) : 15 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 2 Fichiers trouvés (Files found) : 5 [HKLM\Software\Google\Chrome\Extensions\cbomoeegedoaojamojdnchkblgciocdf] =>Adware.JustPlugIt^ [HKLM\Software\Google\Chrome\Extensions\kpionmjnkbpcdpcflammlgllecmejgjj] =>PUP.VShareRedir^ [HKLM\SYSTEM\CurrentControlSet\Services\BitGuard] =>PUP.BitGuard^ [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}] =>Toolbar.Crawler [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}] =>Toolbar.Crawler [HKLM\Software\Classes\CLSID\{67C71B35-A416-4A54-BD1D-15965A4FE41C}] =>Adware.IncrediBar [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}] =>Adware.IncrediBar [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{78F3A323-798E-4AEA-9A57-88F4B05FD5DD}] =>PUP.VShareRedir [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5}] =>PUP.VShareRedir [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] =>Toolbar.Skype [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F9639E4A-801B-4843-AEE3-03D9DA199E77}] =>Adware.IncrediBar [HKCU\Software\vShare.tv] =>PUP.VShareRedir [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>Toolbar.Tarma [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>Toolbar.Tarma [HKLM\Software\Google\Chrome\Extensions\bgnnidmnbdkmhfkjgdnngciimpdgohok] =>Hijacker.FreehdsportTV C:\Documents and Settings\All Users\Application Data\InstallMate =>Toolbar.Tarma C:\Documents and Settings\Administrateur\Local Settings\Application Data\Temp\Iminent =>Adware.IMBooster C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\cbomoeegedoaojamojdnchkblgciocdf =>Adware.JustPlugIt^ C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\kpionmjnkbpcdpcflammlgllecmejgjj =>PUP.VShareRedir^ C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\c47pkh9g.default\searchplugins\babylon.xml =>Toolbar.Babylon^ C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml =>Toolbar.Yahoo^ C:\Documents and Settings\All Users\Application Data\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe =>PUP.BitGuard^ ~ Additionnel Scan: 490313 Items scanned in 00mn 47s ---\\ Récapitulatif des détections trouvées sur votre station ~ http://nicolascoolman.webs.com/apps/blog/show/26764545-adware-justplugit =>Adware.JustPlugIt ~ http://nicolascoolman.webs.com/apps/blog/show/29432250-pup-vshareredir =>PUP.VShareRedir ~ http://nicolascoolman.webs.com/apps/blog/show/26627369-toolbar-babylon =>Toolbar.Babylon ~ http://nicolascoolman.webs.com/apps/blog/show/30268689-toolbar-yahoo =>Toolbar.Yahoo ~ http://nicolascoolman.webs.com/apps/blog/show/32979753-pup-bitguard =>PUP.BitGuard ~ http://nicolascoolman.webs.com/apps/blog/show/27630986-pup-funmoods =>PUP.Funmoods ~ http://nicolascoolman.webs.com/apps/blog/show/28927746-toolbar-ask =>Toolbar.Ask ~ http://nicolascoolman.webs.com/apps/blog/show/26898222-adware-incredibar =>Adware.Incredibar ~ http://nicolascoolman.webs.com/apps/blog/show/30898245-toolbar-skype =>Toolbar.Skype ~ http://nicolascoolman.webs.com/apps/blog/show/29637859-toolbar-tarma =>Toolbar.Tarma ~ http://nicolascoolman.webs.com/apps/blog/show/30583270-hijacker-freehdsporttv =>Hijacker.FreeHDSportTV ~ http://nicolascoolman.webs.com/apps/blog/show/26684723-adware-imbooster =>Adware.IMBooster ~ MSI: 12 link(s) detected in 00mn 47s End of the scan (2222 lines in 20mn 25s)(3)