~ Rapport de ZHPDiag v2014.2.17.15 - Nicolas Coolman (17/02/2014) ~ Lancé par Aimé (18/02/2014 11:33:02) ~ Adresse du Site Web http://nicolascoolman.webs.com ~ Forums gratuits d'Assistance à la désinfection : http://nicolascoolman.webs.com/apps/links/ ~ Traduit par Nicolas Coolman ~ Etat de la version : ~ Liste blanche : Désactivée par l'utilisateur ~ Elévation des Privilèges : OK ~ User Account Control (UAC): Deactivate by program ---\\ Navigateurs Internet MSIE: Internet Explorer v11.0.9600.16518 MFIE: Mozilla Firefox 26.0 (Defaut) ---\\ Informations sur les produits Windows ~ Langage: Français Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK ~ Windows(R) 7, OEM_COA_NSLP channel Windows ID Activation : OK ~ Windows Partial Key : Q2CVJ Windows License : OK ~ Windows Remaining Initializations Number : 4 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection du système avast! Internet Security v9.0.2013 Malwarebytes Anti-Malware version 1.75.0.1300 Windows Defender W7 ---\\ Logiciels d'optimisation du système CCleaner v4.10 =>Piriform Ltd ---\\ Logiciels de partage PeerToPeer ---\\ Surveillance de Logiciels Adobe Flash Player 12 Plugin Adobe Reader XI ---\\ Informations sur le système ~ Processor: Intel64 Family 6 Model 23 Stepping 7, GenuineIntel ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 3070 MB (49% free) System Restore: Activé (Enable) System drive C: has 297 GB (75%) free of 391 GB ---\\ Mode de connexion au système ~ Computer Name: AIMÉ-PC ~ User Name: Aimé ~ All Users Names: HomeGroupUser$, Aimé, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppZHP% : C:\Users\Aimé\AppData\Roaming\ZHP\ ~ %AppData% : C:\Users\Aimé\AppData\Roaming\ ~ %Desktop% : C:\Users\Aimé\Desktop\ ~ %Favorites% : C:\Users\Aimé\Favorites\ ~ %LocalAppData% : C:\Users\Aimé\AppData\Local\ ~ %StartMenu% : C:\Users\Aimé\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumération des unités disques C: Hard drive, Flash drive, Thumb drive (Free 297 Go of 391 Go) D: CD-ROM drive (Not Inserted) F: Floppy drive, Flash card reader, USB Key (Not Inserted) G: Floppy drive, Flash card reader, USB Key (Not Inserted) H: Floppy drive, Flash card reader, USB Key (Not Inserted) I: Floppy drive, Flash card reader, USB Key (Not Inserted) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyGames: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 49 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024] [MD5.263B6E451526A90FF8B1CEC759F22956] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.06/02/2014 - 10:24:52.) -- C:\Windows\System32\wininet.dll [2334208] [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/11/2010 - 14:25:30.) -- C:\Windows\System32\Winlogon.exe [390656] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 14:27:26.) -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.79059559E89D06E8B80CE2944BE20228] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/09/2013 - 02:09:10.) -- C:\Windows\system32\Drivers\AFD.sys [497152] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 10:19:21.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 10:26:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 11:43:43.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224] [MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 10:23:20.) -- C:\Windows\system32\Drivers\netBT.sys [261632] [MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 15:45:08.) -- C:\Windows\system32\Drivers\ntfs.sys [1656680] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 11:52:35.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536] [MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.20/11/2010 - 12:06:41.) -- C:\Windows\system32\Drivers\rdpdr.sys [165888] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 10:21:56.) -- C:\Windows\system32\Drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 14:34:02.) -- C:\Windows\system32\Drivers\volsnap.sys [295808] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 2/4219 ~ Mes musiques (My Musics) : 1/158 ~ Mes Videos (My Videos) : 1/8 ~ Mes Favoris (My Favorites) : 1/24 ~ Mes Documents (My Documents) : 1/490 ~ Mon Bureau (My Desktop) : 1/22 ~ Menu demarrer (Programs) : 1/31 ~ Hidden Files: Scanned in 00mn 01s ---\\ Processus lancés [MD5.A78AAB0D2D70EF7DD56B7328AC502059] - (.AVAST Software - avast! Antivirus.) -- C:\Logiciels\AVAST Software\Avast\AvastUI.exe [3767096] [PID.2884] [MD5.3F744D5BCEF935B32B43BF7F83098032] - (.QFX Software Corporation - KeyScrambler.) -- C:\Logiciels\KeyScrambler\KeyScrambler.exe [508144] [PID.3248] [MD5.A3AD3E69BFAEBA9D3CEFC187D2322537] - (.Cyber Power Systems, Inc. - PowerPanel Personal Edition User Interactio.) -- C:\Logiciels\CyberPower PowerPanelPersonal\pppeuser.exe [350144] [PID.3288] [MD5.259FC81909D6FEEB1BEDB2595100513D] - (.Mozilla Corporation - Thunderbird.) -- C:\Logiciels\Mozilla Thunderbird\thunderbird.exe [390256] [PID.1316] [MD5.D9184C5FF3FD526761D518A95ABA74A3] - (.Mozilla Corporation - Firefox.) -- C:\Logiciels\Mozilla Firefox\firefox.exe [275568] [PID.2784] [MD5.AB44884BC129FC04D75A4649E0710203] - (.Nicolas Coolman - ZHPDiag.) -- C:\Logiciels\ZHPDiag\ZHPDiag.exe [8338432] [PID.5032] [MD5.CC42F104172B4A62793083D380867317] - (.AVAST Software - avast! Service.) -- C:\Logiciels\AVAST Software\Avast\AvastSvc.exe [50344] [PID.1356] [MD5.B362181ED3771DC03B4141927C80F801] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65432] [PID.1812] [MD5.859D1D0EEF2E0DD293FB3E1BBA3DCAEC] - (.Cyber Power Systems, Inc. - PowerPanel Personal Edition Service.) -- C:\Logiciels\CyberPower PowerPanelPersonal\ppped.exe [1013696] [PID.2368] [MD5.962503AA7DFFB1D00D8664CD3A1FC40B] - (.Razer Inc. - RzKLService.) -- C:\Logiciels\Razer Game Booster\RzKLService.exe [105448] [PID.2508] ~ Processes Running: Scanned in 00mn 01s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) M0 - MFSP: prefs.js [Aimé - g0zt868w.default] http://www.google.com M2 - MFEP: prefs.js [Aimé - g0zt868w.default\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}] [dwhelper] DownloadHelper v4.9.21 (..) P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20913.0.) -- c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll P2 - FPN: [HKCU] [ubisoft.com/uplaypc] - (...) -- C:\Jeux\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ~ Firefox Browser: 5 Scanned in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.16428 (winblue_gdr.131013-1700)) -- C:\Windows\SysWOW64\ieframe.dll R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ~ IE Browser: 20 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Logiciels\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: (no name) [64Bits] - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline ~ BHO: 3 Scanned in 00mn 00s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: avast! Online Security - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} . (.AVAST Software - IE Webrep plugin.) -- C:\Logiciels\AVAST Software\Avast\aswWebRepIE64.dll O3 - Toolbar: avast! Online Security - [HKLM]{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} . (.AVAST Software - IE Webrep plugin.) -- C:\Logiciels\AVAST Software\Avast\aswWebRepIE64.dll ~ Toolbar: Scanned in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - GS\Desktop [Public]: Audials 10.lnk . (.Audials AG - SplashScreenStarter.) -- C:\Logiciels\Audials\Audials 10\AudialsStarter.exe O4 - GS\Desktop [Public]: avast! Internet Security.lnk . (.AVAST Software - avast! Antivirus.) -- C:\Logiciels\AVAST Software\Avast\AvastUI.exe O4 - GS\Desktop [Public]: avast! SafeZone.lnk . (.AVAST Software - avast! Antivirus.) -- C:\Logiciels\AVAST Software\Avast\AvastUI.exe O4 - GS\Desktop [Public]: Defraggler.lnk . (.Piriform Ltd - Defraggler.) -- C:\Program Files\Defraggler\Defraggler64.exe O4 - GS\Desktop [Public]: IObit Uninstaller.lnk . (.IObit - Uninstall Programs.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe O4 - GS\Desktop [Public]: Ma-Config.com - Démarrer la détection.lnk . (...) -- C:\Program Files (x86)\ma-config.com\MCDetection.exe (.not file.) O4 - GS\Desktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Logiciels\Malwarebytes' Anti-Malware\mbam.exe O4 - GS\Desktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Logiciels\Mozilla Firefox\firefox.exe O4 - GS\Desktop [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) -- C:\Logiciels\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation O4 - GS\Desktop [Public]: Nexus Mod Manager.lnk . (.Black Tree Gaming - Nexus Mod Manager.) -- C:\Logiciels\Nexus Mod Manager\NexusClient.exe O4 - GS\Desktop [Public]: Picasa 3.lnk . (.Google Inc. - Picasa.) -- C:\Logiciels\Picasa3\Picasa3.exe O4 - GS\Desktop [Public]: Razer Game Booster.lnk . (.Razer Inc. - RazerGameBooster.) -- C:\Logiciels\Razer Game Booster\RazerGameBooster.exe O4 - GS\Desktop [Public]: Skype.lnk . (...) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe O4 - GS\Desktop [Public]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Logiciels\Steam\Steam.exe O4 - GS\Program [Public]: Adobe Reader XI.lnk . (...) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico O4 - GS\Program [Public]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Logiciels\CDBurnerXP\cdbxpp.exe O4 - GS\Program [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) -- C:\Windows\system32\WindowsAnytimeUpgradeUI.exe O4 - GS\Program [Public]: Windows DVD Maker.lnk . (...) -- C:\Program Files (x86)\DVD Maker\DVDMaker.exe (.not file.) O4 - GS\Program [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) -- C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) -- C:\Windows\system32\mblctr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\NetProj.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Mise en route.) -- C:\Windows\system32\OobeFldr.dll =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) -- C:\Windows\system32\perfmon.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) -- C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\system32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\system32\taskschd.msc O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) -- C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) -- C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\QuickLaunch [Aimé]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\Program [Aimé]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\Accessories [Aimé]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Aimé]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Aimé]: Run.lnk - Clé orpheline O4 - GS\Accessories [Aimé]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Aimé]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\SystemTools [Aimé]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\SendTo [Aimé]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Logiciels\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O4 - GS\Desktop [Aimé]: Ahnenblatt.lnk . (.Dirk Böttcher - Ahnenblatt.) -- C:\Logiciels\Ahnenblatt\Ahnblatt.exe O4 - GS\Desktop [Aimé]: AVG PC Tuneup 2011.lnk . (.AVG - PC Tuneup 2011.) -- C:\Logiciels\AVG PC Tuneup 2011\BoostSpeed.exe O4 - GS\Desktop [Aimé]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) -- C:\Logiciels\CCleaner\CCleaner64.exe =>Piriform Ltd O4 - GS\Desktop [Aimé]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Logiciels\CDBurnerXP\cdbxpp.exe O4 - GS\Desktop [Aimé]: Dactylo.lnk . (...) -- C:\Logiciels\Dactylo\Dactyl.exe O4 - GS\Desktop [Aimé]: fdm - Raccourci.lnk . (.FreeDownloadManager.ORG - Free Download Manager.) -- C:\Logiciels\Free Download Manager\fdm.exe O4 - GS\Desktop [Aimé]: GameExplorer.lnk - Clé orpheline O4 - GS\Desktop [Aimé]: Générateur de Mot de Passe.lnk . (...) -- C:\Logiciels\GenerateurMotPasse20\Generateurmotpasse.exe O4 - GS\Desktop [Aimé]: Microsoft Office Word 2007.lnk . (...) -- C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe O4 - GS\Desktop [Aimé]: On-Screen Keyboard.lnk . (.Microsoft Corporation - Accessibilité au Clavier visuel.) -- C:\Windows\system32\osk.exe O4 - GS\Desktop [Aimé]: PhotoStudio.lnk . (.ArcSoft, Inc. - Photo Editing Software.) -- C:\Logiciels\ArcSoft\PhotoStudio 5.5\PhotoStudio.exe O4 - GS\Desktop [Aimé]: pppe - Raccourci.lnk . (.Cyber Power Systems, Inc. - PowerPanel Personal Edition User Interface.) -- C:\Logiciels\CyberPower PowerPanelPersonal\pppe.exe O4 - GS\Desktop [Aimé]: QuickCam10.lnk . (...) -- C:\Logiciels\Logitech\QuickCam10.exe O4 - GS\Desktop [Aimé]: Téléchargements.lnk . (...) -- C:\Users\Aimé\Downloads O4 - GS\Desktop [Aimé]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Desktop [Aimé]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Desktop [Aimé]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Logiciels\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman O4 - GS\Desktop [Aimé]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Logiciels\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman ~ Global Startup: 72 Scanned in 00mn 00s ---\\ Applications lancées au démarrage du sytème (O4) O4 - HKLM\..\Run: [COMODO Internet Security] . (.COMODO - COMODO Internet Security.) -- C:\Logiciels\COMODO\COMODO Internet Security\cistray.exe O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Logiciels\AVAST Software\Avast\AvastUI.exe O4 - HKLM\..\Wow6432Node\Run: [KeyScrambler] . (.QFX Software Corporation - KeyScrambler.) -- C:\Logiciels\KeyScrambler\keyscrambler.exe O4 - HKLM\..\Wow6432Node\Run: [PowerPanel Personal Edition User Interaction] . (.Cyber Power Systems, Inc. - PowerPanel Personal Edition User Interactio.) -- C:\Logiciels\CyberPower PowerPanelPersonal\pppeuser.exe O4 - HKUS\.DEFAULT\..\Run: [AudialsNotifier] C:\Logiciels\Audials\AudialsNotifier.exe (.not file.) O4 - HKUS\S-1-5-18\..\Run: [AudialsNotifier] C:\Logiciels\Audials\AudialsNotifier.exe (.not file.) O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation ~ Application: Scanned in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ IE Control Panel: 1 Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll ~ Winsock: 6 Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{717BBA79-60E0-464D-91AF-2AF0F40C33AB}: DhcpNameServer = 212.27.40.241 212.27.40.240 O17 - HKLM\System\CS1\Services\Tcpip\..\{717BBA79-60E0-464D-91AF-2AF0F40C33AB}: DhcpNameServer = 212.27.40.241 212.27.40.240 O17 - HKLM\System\CS2\Services\Tcpip\..\{717BBA79-60E0-464D-91AF-2AF0F40C33AB}: DhcpNameServer = 212.27.40.241 212.27.40.240 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240 ~ Domain: Scanned in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ SSODL: 1 Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Logiciels\AVAST Software\Avast\AvastSvc.exe O23 - Service: COMODO Internet Security Helper Service (cmdAgent) . (.COMODO - COMODO Internet Security.) - C:\Logiciels\COMODO\COMODO Internet Security\cmdagent.exe O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe O23 - Service: LVSrvLauncher (LVSrvLauncher) . (.Logitech Inc. - Service Launcher.) - C:\Program Files (x86)\Common Files\Logitech\SrvLnch\SrvLnch.exe O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe O23 - Service: PowerPanel Personal Edition Service (ppped) . (.Cyber Power Systems, Inc. - PowerPanel Personal Edition Service.) - C:\Logiciels\CyberPower PowerPanelPersonal\ppped.exe O23 - Service: RzKLService (RzKLService) . (.Razer Inc. - RzKLService.) - C:\Logiciels\Razer Game Booster\RzKLService.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Logiciels\Skype\Updater\Updater.exe ~ Services: 10 Scanned in 00mn 28s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ Enumère les données de BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] [MD5.C8C6C0D659734FDBF63F6F421A5416BC] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [257928] [MD5.F82F374417148CF545221DD88876219F] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Logiciels\AVAST Software\Avast\AvastEmUpdate.exe [783728] [MD5.D52DC3CD5A3AF6F0CAA14A7FC79E95E3] [APT] [Uninstaller_SkipUac_Administrator] (.IObit.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [11201344] [MD5.00000000000000000000000000000000] [APT] [{06884B9E-185B-40DA-8F38-9E4C94327B20}] (...) -- C:\Users\Aimé\Desktop\dactylo_dactylo_6.0_francais_9827.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{513F871E-D5F0-4042-ADD2-6D9B925406CA}] (...) -- D:\EPSETUP.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{88A682DF-E768-4E05-9D7C-CBCD2AB668B3}] (...) -- I:\Sauvegardes Perso\Sauvegarde Logiciels\cfw_installer_x86.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{AC28EFD8-7746-44F4-8162-8A0950EF4354}] (...) -- D:\Setup.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{DCA3A742-8630-42AA-AD8E-64487A317244}] (...) -- C:\Users\Aimé\Documents\lide60vst6411111a_64fr\SetupSG.exe (.not file.) [0] [MD5.0AC6CDDC08818DC98D97519F61D6F60C] [APT] [COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}] (.COMODO.) -- C:\Logiciels\COMODO\COMODO Internet Security\cfpconfg.exe [4900568] [MD5.1D99AF0B19CDDB7D9E62AF20E675145B] [APT] [COMODO Welcome {CEB54B45-2B5E-4FF5-9223-6735CD80FE69}] (.COMODO.) -- C:\Logiciels\COMODO\COMODO Internet Security\cis.exe [8788696] ~ Scheduled Task: 14 Scanned in 00mn 02s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Internet Explorer [64Bits] - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll ~ Active Setup: 10 Scanned in 00mn 00s ---\\ Pilotes lancés au démarrage du système (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (aswKbd) . (.AVAST Software - avast! Keyboard Filter Driver.) - C:\Windows\system32\drivers\aswKbd.sys O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\drivers\aswRdr2.sys O41 - Driver: (aswSnx) . (.AVAST Software - avast! Virtualization Driver.) - C:\Windows\system32\drivers\aswSnx.sys O41 - Driver: (aswSP) . (.AVAST Software - avast! self protection module.) - C:\Windows\system32\drivers\aswSP.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys O41 - Driver: (cmderd) . (.COMODO - COMODO Internet Security Eradication Driver.) - C:\Windows\System32\DRIVERS\cmderd.sys O41 - Driver: (cmdGuard) . (.COMODO - COMODO Internet Security Sandbox Driver.) - C:\Windows\System32\DRIVERS\cmdguard.sys O41 - Driver: (cmdHlp) . (.COMODO - COMODO Internet Security Helper Driver.) - C:\Windows\System32\DRIVERS\cmdhlp.sys O41 - Driver: C:\Windows\System32\cscsvc.dll (CSC) . (.Microsoft Corporation - Windows Client Side Caching Driver.) - C:\Windows\System32\drivers\csc.sys O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (inspect) . (.COMODO - COMODO Internet Security Firewall Driver.) - C:\Windows\System32\DRIVERS\inspect.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: (Serial) . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) - C:\Windows\System32\DRIVERS\serial.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys ~ Drivers: 87 Scanned in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {37FCE154-7F59-74F0-3A35-BF503CEB230B} O42 - Logiciel: AVG PC Tuneup 2011 - (.AVG.) [HKLM][64Bits] -- {50316C0A-CC2A-460A-9EA5-F486E54AC17D}_is1 O42 - Logiciel: Adobe Flash Player 12 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Reader XI (11.0.06) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} O42 - Logiciel: Ahnenblatt 2.74 - (.Dirk Boettcher.) [HKLM][64Bits] -- Ahnenblatt_is1 O42 - Logiciel: ArcSoft PhotoStudio 5.5 - (...) [HKLM][64Bits] -- {230CCBE9-14B0-4008-97AF-30C10F99E42C} O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>Piriform Ltd O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM][64Bits] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 O42 - Logiciel: Company of Heroes - (.THQ Inc..) [HKLM][64Bits] -- Company of Heroes O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {14574B7F-75D1-4718-B7F2-EBF6E2862A35} O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {199E6632-EB28-4F73-AECB-3E192EB92D18} O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {25724802-CC14-4B90-9F3B-3D6955EE27B1} O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {32C4A4EB-C97D-414E-99C5-38F8DFD31D5D} O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {50193078-F553-4EBA-AA77-64C9FAA12F98} O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {51D718D1-DA81-4FAD-919F-5C1CE3C33379} O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {66F78C51-D108-4F0C-A93C-1CBE74CE338F} O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {7F4B1592-222F-4E5F-A100-E5AFD61A0BB3} O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {80D03817-7943-4839-8E96-B9F924C5E67D} O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {97E5205F-EA4F-438F-B211-F1846419F1C1} O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {99A7722D-9ACB-43F3-A222-ABC7133F159E} O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {BA801B94-C28D-46EE-B806-E1E021A3D519} O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {D4D244D1-05E0-4D24-86A2-B2433C435671} O42 - Logiciel: Company of Heroes - FAKEMSI - (.THQ Inc..) [HKLM][64Bits] -- {EAF636A9-F664-4703-A659-85A894DA264F} O42 - Logiciel: CyberPower PowerPanel Personal Edition 1.3.3 - (.Cyber Power Systems, Inc..) [HKLM][64Bits] -- {397C29B7-F88F-4A34-BB8D-677B9D336B68} O42 - Logiciel: Defraggler - (.Piriform.) [HKLM][64Bits] -- Defraggler O42 - Logiciel: Free Download Manager 3.9.3 - (.FreeDownloadManager.ORG.) [HKLM][64Bits] -- Free Download Manager_is1 O42 - Logiciel: Google+ Auto Backup - (.Google.) [HKLM][64Bits] -- {A50DE037-B5C0-4C8A-8049-B0C576B313D1} O42 - Logiciel: Générateur de Mot de Passe version 2.0 - (...) [HKLM][64Bits] -- Générateur de Mot de Passe_is1 O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM][64Bits] -- IObitUninstall O42 - Logiciel: KeyScrambler - (.QFX Software Corporation.) [HKLM][64Bits] -- KeyScrambler O42 - Logiciel: Logitech QuickCam - (.Logitech Inc..) [HKLM][64Bits] -- {EC42ED6A-751D-45C0-A4F9-8CD00E4690FC} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: Ma-Config.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {CFF24F63-A683-4202-8526-3F9A77A3B0E8} O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Might & Magic Heroes VI - Shades of Darkness - (.Ubisoft.) [HKLM][64Bits] -- {745D37C2-26F4-4B65-BA13-F9840EBFA75B} O42 - Logiciel: Mozilla Firefox 26.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 26.0 (x86 fr) O42 - Logiciel: Mozilla Firefox 27.0.1 (x86 fr) - (.Mozilla.) [HKCU][64Bits] -- Mozilla Firefox 27.0.1 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService O42 - Logiciel: Mozilla Thunderbird 24.2.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 24.2.0 (x86 fr) =>.Mozilla Corporation O42 - Logiciel: Mozilla Thunderbird 24.3.0 (x86 fr) - (.Mozilla.) [HKCU][64Bits] -- Mozilla Thunderbird 24.3.0 (x86 fr) =>.Mozilla Corporation O42 - Logiciel: MyTomTom 3.2.0.1220 - (.TomTom.) [HKLM][64Bits] -- MyTomTom O42 - Logiciel: Nexus Mod Manager - (.Black Tree Gaming.) [HKLM][64Bits] -- 6af12c54-643b-4752-87d0-8335503010de_is1 O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3 O42 - Logiciel: Razer Game Booster - (.Razer Inc..) [HKLM][64Bits] -- Razer Game Booster_is1 O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB931906 O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} O42 - Logiciel: Skype™ 6.11 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D} O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam O42 - Logiciel: The Elder Scrolls V: Skyrim - (.Bethesda Game Studios.) [HKLM][64Bits] -- Steam App 72850 O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM][64Bits] -- {933B4015-4618-4716-A828-5289FC03165F} O42 - Logiciel: Visual Studio C++ 10.0 Runtime - (.TomTom International B.V..) [HKLM][64Bits] -- {4412F224-3849-4461-A3E9-DEEF8D252790} O42 - Logiciel: WRC 4 FIA World Rally Championship - (.Milestone.) [HKLM][64Bits] -- {4D645B2C-E35C-4F6D-AB72-E4A06FCDD375} O42 - Logiciel: WinRAR 5.00 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: avast! Internet Security v9.0.2013 - (.Avast Software.) [HKLM][64Bits] -- Avast ~ Logic: 48 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\ATI] [HKCU\Software\AVAST Software] [HKCU\Software\AVG] [HKCU\Software\Adobe] [HKCU\Software\AppDataLow\COMODO] [HKCU\Software\AppDataLow] [HKCU\Software\ArcSoft] [HKCU\Software\Bugsplat] [HKCU\Software\Canneverbe Limited] [HKCU\Software\Canon] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\ComodoGroup] [HKCU\Software\FreeDownloadManager.ORG] [HKCU\Software\Generateur Mot de Passe] [HKCU\Software\Google] [HKCU\Software\IM Providers] [HKCU\Software\JEDI-VCL] [HKCU\Software\Logitech] [HKCU\Software\Macromedia] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mozilla] [HKCU\Software\Netscape] [HKCU\Software\ODBC] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\QFX Software] [HKCU\Software\RapidSolution] [HKCU\Software\Realtek] [HKCU\Software\SEIKO EPSON] [HKCU\Software\Skype] [HKCU\Software\SlimWare Utilities Inc] [HKCU\Software\TomTom] [HKCU\Software\Trolltech] [HKCU\Software\Ubisoft] [HKCU\Software\VSRevoGroup] [HKCU\Software\Valve] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\Wow6432Node] [HKCU\Software\ZebHelpProcess Helper] [HKLM\Software\AMD] [HKLM\Software\ATI Technologies] [HKLM\Software\COMODO] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\ComodoGroup] [HKLM\Software\Creative Tech] [HKLM\Software\DivX] [HKLM\Software\EnigmaSoftwareGroup] [HKLM\Software\IM Providers] [HKLM\Software\Intel] [HKLM\Software\Logitech] [HKLM\Software\Macromedia] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\Nuance] [HKLM\Software\ODBC] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\RDBoot] [HKLM\Software\RTLSetup] [HKLM\Software\RapidSolution] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SRS Labs] [HKLM\Software\Waves Audio] [HKLM\Software\WinRAR] [HKLM\Software\Wow6432Node\ATI Technologies] [HKLM\Software\Wow6432Node\ATI] [HKLM\Software\Wow6432Node\AVAST Software] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\AdwCleaner] [HKLM\Software\Wow6432Node\America Online] [HKLM\Software\Wow6432Node\ArcSoft] [HKLM\Software\Wow6432Node\BackWeb] [HKLM\Software\Wow6432Node\CDDB] [HKLM\Software\Wow6432Node\Canneverbe Limited] [HKLM\Software\Wow6432Node\Canon] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\DivXNetworks] [HKLM\Software\Wow6432Node\FreeDownloadManager.ORG] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\IM Providers] [HKLM\Software\Wow6432Node\IObit] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\Licenses] [HKLM\Software\Wow6432Node\Logitech] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware] [HKLM\Software\Wow6432Node\Milestone] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\Nuance] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\QFX Software] [HKLM\Software\Wow6432Node\RapidSolution] [HKLM\Software\Wow6432Node\Razer] [HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.] [HKLM\Software\Wow6432Node\Realtek] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\S3R521] [HKLM\Software\Wow6432Node\Skype] [HKLM\Software\Wow6432Node\THQ] [HKLM\Software\Wow6432Node\TomTom] [HKLM\Software\Wow6432Node\Ubisoft] [HKLM\Software\Wow6432Node\Valve] [HKLM\Software\Wow6432Node\Volatile] [HKLM\Software\Wow6432Node\bethesda softworks] [HKLM\Software\Wow6432Node\iSafe] =>Trojan.Trojan.Staser [HKLM\Software\Wow6432Node\mozilla.org] [HKLM\Software\Wow6432Node] [HKLM\Software\ZSMC] [HKLM\Software\cybelsoft] ~ Key Software: 227 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 17/02/2014 - 21:07:26 - [263,020] ----D C:\Program Files (x86)\Common Files O43 - CFD: 17/01/2014 - 18:41:41 - [0] ----D C:\Program Files (x86)\DivX O43 - CFD: 14/01/2014 - 15:47:57 - [0,130] ----D C:\Program Files (x86)\Google O43 - CFD: 10/02/2014 - 14:03:29 - [114,710] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 14/02/2014 - 13:42:55 - [9,681] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 10/02/2014 - 14:03:29 - [24,189] ----D C:\Program Files (x86)\IObit O43 - CFD: 15/01/2014 - 17:30:13 - [0,764] ----D C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2 O43 - CFD: 16/01/2014 - 17:14:23 - [41,658] ----D C:\Program Files (x86)\Microsoft Office O43 - CFD: 16/01/2014 - 18:12:21 - [40,851] ----D C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 14/01/2014 - 11:59:27 - [0,023] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 17/01/2014 - 18:43:07 - [0,216] ----D C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 14/07/2009 - 06:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 15/01/2014 - 07:17:34 - [0] ----D C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 20/01/2014 - 16:49:54 - [17,510] ----D C:\Program Files (x86)\MyTomTom 3 O43 - CFD: 10/02/2014 - 14:03:30 - [6,029] ----D C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - 06:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 08/02/2014 - 09:57:35 - [0] --H-D C:\Program Files (x86)\Temp O43 - CFD: 20/01/2014 - 16:49:56 - [0,021] ----D C:\Program Files (x86)\TomTom International B.V O43 - CFD: 15/01/2014 - 21:39:00 - [206,097] ----D C:\Program Files (x86)\Ubisoft O43 - CFD: 15/01/2014 - 11:52:03 - [0,500] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 15/01/2014 - 06:59:29 - [5,895] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 15/01/2014 - 11:52:07 - [4,791] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 14/07/2009 - 06:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 15/01/2014 - 06:59:28 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 15/01/2014 - 06:59:29 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 15/01/2014 - 06:59:29 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 15/01/2014 - 16:03:12 - [6,363] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 28/01/2014 - 14:58:33 - [7,561] ----D C:\Program Files (x86)\Common Files\ArcSoft O43 - CFD: 15/01/2014 - 13:26:09 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 15/01/2014 - 10:18:50 - [4,788] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 13/01/2014 - 21:24:02 - [5,257] ----D C:\Program Files (x86)\Common Files\Logitech O43 - CFD: 15/01/2014 - 17:28:06 - [110,264] ----D C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 18/01/2014 - 16:53:02 - [0,438] ----D C:\Program Files (x86)\Common Files\PX Storage Engine O43 - CFD: 14/07/2009 - 04:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 13/01/2014 - 19:04:37 - [1,904] ----D C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/07/2009 - 04:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 23/01/2014 - 17:20:31 - [0] ----D C:\Program Files (x86)\Common Files\SpeedBit O43 - CFD: 11/02/2014 - 15:57:25 - [0,545] ----D C:\Program Files (x86)\Common Files\Steam O43 - CFD: 15/01/2014 - 06:59:28 - [42,206] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 17/02/2014 - 21:07:27 - [44,403] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 15/01/2014 - 16:06:52 - [147,951] ----D C:\ProgramData\Adobe O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Application Data O43 - CFD: 28/01/2014 - 14:53:17 - [0,010] ----D C:\ProgramData\ArcSoft O43 - CFD: 13/01/2014 - 17:16:14 - [42,775] ----D C:\ProgramData\AVAST Software O43 - CFD: 13/01/2014 - 17:00:27 - [0] -SH-D C:\ProgramData\Bureau O43 - CFD: 14/01/2014 - 15:36:44 - [0] ----D C:\ProgramData\Canneverbe Limited O43 - CFD: 16/01/2014 - 22:27:59 - [66,643] ----D C:\ProgramData\Comodo O43 - CFD: 13/01/2014 - 22:11:12 - [117,828] ----D C:\ProgramData\Comodo Downloader O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Desktop O43 - CFD: 17/01/2014 - 18:43:07 - [0] ----D C:\ProgramData\DivX O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Documents O43 - CFD: 06/02/2014 - 11:25:19 - [0] ----D C:\ProgramData\Elder Scrolls Online O43 - CFD: 13/01/2014 - 17:00:27 - [0] -SH-D C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Favorites O43 - CFD: 10/02/2014 - 14:03:33 - [0,107] ----D C:\ProgramData\IObit O43 - CFD: 08/02/2014 - 16:37:04 - [0] ----D C:\ProgramData\LogiShrd O43 - CFD: 13/01/2014 - 21:24:00 - [11,563] ----D C:\ProgramData\Logitech O43 - CFD: 08/02/2014 - 09:03:19 - [1,396] ----D C:\ProgramData\ma-config.com O43 - CFD: 13/01/2014 - 17:42:47 - [6,934] ----D C:\ProgramData\Malwarebytes O43 - CFD: 16/01/2014 - 14:42:30 - [0,001] ----D C:\ProgramData\Media Center Programs O43 - CFD: 13/01/2014 - 17:00:27 - [0] -SH-D C:\ProgramData\Menu Démarrer O43 - CFD: 17/01/2014 - 19:02:27 - [259,009] -S--D C:\ProgramData\Microsoft O43 - CFD: 15/02/2014 - 15:16:59 - [0,049] ----D C:\ProgramData\Microsoft Help O43 - CFD: 13/01/2014 - 17:00:27 - [0] -SH-D C:\ProgramData\Modèles O43 - CFD: 13/01/2014 - 17:48:56 - [0] ----D C:\ProgramData\Mozilla O43 - CFD: 11/02/2014 - 14:50:26 - [0] ----D C:\ProgramData\ProductData O43 - CFD: 10/02/2014 - 14:03:33 - [0] ----D C:\ProgramData\QFX Software O43 - CFD: 14/02/2014 - 14:07:01 - [70,455] ----D C:\ProgramData\RapidSolution O43 - CFD: 10/02/2014 - 14:02:02 - [6,539] ----D C:\ProgramData\Razer O43 - CFD: 13/01/2014 - 22:17:31 - [0] -S--D C:\ProgramData\Shared Space O43 - CFD: 13/01/2014 - 19:04:41 - [28,380] ----D C:\ProgramData\Skype O43 - CFD: 15/01/2014 - 17:02:13 - [0,004] ----D C:\ProgramData\Solidshield O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Start Menu O43 - CFD: 17/02/2014 - 22:55:25 - [0] ---AD C:\ProgramData\TEMP O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Templates O43 - CFD: 23/01/2014 - 14:29:57 - [0,002] ----D C:\ProgramData\Windows Genuine Advantage O43 - CFD: 15/01/2014 - 16:04:48 - [0,255] ----D C:\Users\Aimé\AppData\Roaming\Adobe O43 - CFD: 14/01/2014 - 15:56:01 - [0,698] ----D C:\Users\Aimé\AppData\Roaming\Ahnenblatt O43 - CFD: 14/01/2014 - 16:38:49 - [0,826] ----D C:\Users\Aimé\AppData\Roaming\ArcSoft O43 - CFD: 13/01/2014 - 17:37:33 - [7,964] ----D C:\Users\Aimé\AppData\Roaming\AVAST Software O43 - CFD: 22/01/2014 - 18:12:49 - [1530,387] ----D C:\Users\Aimé\AppData\Roaming\AVG O43 - CFD: 08/02/2014 - 14:27:04 - [0] ----D C:\Users\Aimé\AppData\Roaming\Awesomium O43 - CFD: 14/01/2014 - 15:36:44 - [0,001] ----D C:\Users\Aimé\AppData\Roaming\Canneverbe Limited O43 - CFD: 15/01/2014 - 10:55:38 - [5,970] ----D C:\Users\Aimé\AppData\Roaming\Canon O43 - CFD: 09/02/2014 - 22:28:07 - [4,084] ----D C:\Users\Aimé\AppData\Roaming\Easeware O43 - CFD: 17/02/2014 - 22:04:13 - [0,003] ----D C:\Users\Aimé\AppData\Roaming\Free Download Manager O43 - CFD: 13/01/2014 - 17:00:48 - [0] ----D C:\Users\Aimé\AppData\Roaming\Identities O43 - CFD: 10/02/2014 - 14:03:33 - [0,141] ----D C:\Users\Aimé\AppData\Roaming\IObit O43 - CFD: 08/02/2014 - 16:33:57 - [0,019] ----D C:\Users\Aimé\AppData\Roaming\Logishrd O43 - CFD: 08/02/2014 - 16:33:57 - [0] ----D C:\Users\Aimé\AppData\Roaming\Logitech O43 - CFD: 13/01/2014 - 22:50:58 - [0] ----D C:\Users\Aimé\AppData\Roaming\Macromedia O43 - CFD: 13/01/2014 - 17:43:14 - [0,004] ----D C:\Users\Aimé\AppData\Roaming\Malwarebytes O43 - CFD: 14/07/2009 - 16:35:18 - [0] ----D C:\Users\Aimé\AppData\Roaming\Media Center Programs O43 - CFD: 17/01/2014 - 21:24:09 - [3,504] -S--D C:\Users\Aimé\AppData\Roaming\Microsoft O43 - CFD: 15/02/2014 - 22:26:15 - [84,588] ----D C:\Users\Aimé\AppData\Roaming\Might & Magic Heroes VI O43 - CFD: 15/01/2014 - 17:05:05 - [1,301] ----D C:\Users\Aimé\AppData\Roaming\Milestone O43 - CFD: 14/01/2014 - 07:30:29 - [40,028] ----D C:\Users\Aimé\AppData\Roaming\Mozilla O43 - CFD: 10/02/2014 - 14:03:34 - [0,004] ----D C:\Users\Aimé\AppData\Roaming\ProductData O43 - CFD: 10/02/2014 - 14:03:34 - [0] ----D C:\Users\Aimé\AppData\Roaming\QFX Software O43 - CFD: 16/02/2014 - 17:40:57 - [3,414] ----D C:\Users\Aimé\AppData\Roaming\Skype O43 - CFD: 23/01/2014 - 17:21:53 - [0] ----D C:\Users\Aimé\AppData\Roaming\SpeedBit O43 - CFD: 17/01/2014 - 18:56:14 - [0] ----D C:\Users\Aimé\AppData\Roaming\streamripper O43 - CFD: 13/01/2014 - 17:55:24 - [37,701] ----D C:\Users\Aimé\AppData\Roaming\Thunderbird =>.Mozilla Corporation O43 - CFD: 13/01/2014 - 23:02:07 - [0,142] ----D C:\Users\Aimé\AppData\Roaming\Todae O43 - CFD: 14/01/2014 - 21:56:48 - [0] ----D C:\Users\Aimé\AppData\Roaming\WinRAR O43 - CFD: 18/02/2014 - 11:33:46 - [0,945] ----D C:\Users\Aimé\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 18/01/2014 - 18:03:05 - [0,232] ----D C:\Users\Aimé\AppData\Local\Adobe O43 - CFD: 13/01/2014 - 17:00:38 - [0] -SH-D C:\Users\Aimé\AppData\Local\Application Data O43 - CFD: 28/01/2014 - 14:53:06 - [0,001] ----D C:\Users\Aimé\AppData\Local\ArcSoft O43 - CFD: 12/02/2014 - 17:39:22 - [0,012] ----D C:\Users\Aimé\AppData\Local\Black_Tree_Gaming O43 - CFD: 22/01/2014 - 11:14:06 - [0] ----D C:\Users\Aimé\AppData\Local\CrashRpt O43 - CFD: 17/02/2014 - 11:27:21 - [6,647] ----D C:\Users\Aimé\AppData\Local\Diagnostics O43 - CFD: 17/02/2014 - 11:27:21 - [0,121] ----D C:\Users\Aimé\AppData\Local\ElevatedDiagnostics O43 - CFD: 28/01/2014 - 15:24:16 - [370,417] ----D C:\Users\Aimé\AppData\Local\Google O43 - CFD: 13/01/2014 - 17:00:38 - [0] -SH-D C:\Users\Aimé\AppData\Local\Historique O43 - CFD: 18/01/2014 - 14:59:30 - [0,405] ----D C:\Users\Aimé\AppData\Local\IDRT O43 - CFD: 08/02/2014 - 16:37:02 - [0,041] ----D C:\Users\Aimé\AppData\Local\Logitech O43 - CFD: 13/01/2014 - 22:50:58 - [0] ----D C:\Users\Aimé\AppData\Local\Macromedia O43 - CFD: 10/02/2014 - 14:02:03 - [78,281] ----D C:\Users\Aimé\AppData\Local\Microsoft O43 - CFD: 23/01/2014 - 11:52:22 - [0,758] ----D C:\Users\Aimé\AppData\Local\Microsoft Games O43 - CFD: 13/01/2014 - 18:31:57 - [0] ----D C:\Users\Aimé\AppData\Local\Microsoft Help O43 - CFD: 14/01/2014 - 06:39:47 - [14,759] ----D C:\Users\Aimé\AppData\Local\Mozilla O43 - CFD: 25/01/2014 - 10:22:36 - [0,002] ----D C:\Users\Aimé\AppData\Local\PowerPanel Personal Edition O43 - CFD: 15/01/2014 - 16:12:58 - [6,729] ----D C:\Users\Aimé\AppData\Local\Programs O43 - CFD: 14/02/2014 - 14:04:56 - [163,649] ----D C:\Users\Aimé\AppData\Local\RapidSolution O43 - CFD: 01/02/2014 - 21:05:49 - [0,001] ----D C:\Users\Aimé\AppData\Local\Razer O43 - CFD: 10/02/2014 - 14:03:33 - [0,001] ----D C:\Users\Aimé\AppData\Local\Razer_Inc O43 - CFD: 17/02/2014 - 16:57:48 - [0,001] ----D C:\Users\Aimé\AppData\Local\Skyrim O43 - CFD: 08/02/2014 - 09:22:36 - [0,033] ----D C:\Users\Aimé\AppData\Local\SlimWare Utilities Inc O43 - CFD: 18/02/2014 - 11:32:01 - [7,413] ----D C:\Users\Aimé\AppData\Local\Temp O43 - CFD: 13/01/2014 - 17:00:38 - [0] -SH-D C:\Users\Aimé\AppData\Local\Temporary Internet Files O43 - CFD: 13/01/2014 - 18:03:26 - [13,681] ----D C:\Users\Aimé\AppData\Local\Thunderbird =>.Mozilla Corporation O43 - CFD: 20/01/2014 - 16:50:02 - [6,508] ----D C:\Users\Aimé\AppData\Local\TomTom O43 - CFD: 15/01/2014 - 21:51:55 - [0,004] ----D C:\Users\Aimé\AppData\Local\Ubisoft Game Launcher O43 - CFD: 14/01/2014 - 16:38:55 - [0] ----D C:\Users\Aimé\AppData\Local\VirtualStore O43 - CFD: 14/07/2009 - 05:54:32 - [0,014] R---D C:\Users\Aimé\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 15/01/2014 - 11:57:44 - [0] R---D C:\Users\Aimé\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 15/01/2014 - 16:12:59 - [0,003] ----D C:\Users\Aimé\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup O43 - CFD: 14/07/2009 - 05:49:38 - [0,001] R---D C:\Users\Aimé\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 08/02/2014 - 12:09:57 - [0] R---D C:\Users\Aimé\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 15/01/2014 - 21:39:03 - [0,002] ----D C:\Users\Aimé\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft O43 - CFD: 14/01/2014 - 21:54:55 - [0,003] ----D C:\Users\Aimé\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ~ Program Folder: 142 Scanned in 00mn 00s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.F348B2D0983C91392632B4291C517AA4] - 06/02/2014 - 09:40:06 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter.) -- C:\Windows\System32\ieapfltr.dll [817664] O44 - LFC:[MD5.22874047B810B5B174C68ACD7C0B6510] - 06/02/2014 - 09:55:46 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [1393664] O44 - LFC:[MD5.DB02F4D37E5F7F07A0D0F9FAA68249EE] - 06/02/2014 - 10:22:13 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\System32\ieframe.dll [13051392] O44 - LFC:[MD5.263B6E451526A90FF8B1CEC759F22956] - 06/02/2014 - 10:24:52 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2334208] O44 - LFC:[MD5.83296DE8CFFEADA636DCC1AB2E3BF643] - 06/02/2014 - 10:50:32 ---A- . (.Microsoft Corporation - Panneau de configuration Internet.) -- C:\Windows\System32\inetcpl.cpl [2041856] O44 - LFC:[MD5.CDE728C8FB1D6E132CED44835FA44C87] - 06/02/2014 - 10:57:13 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\System32\msfeeds.dll [627200] O44 - LFC:[MD5.5922EEA922D3AD686342F866CAEE851F] - 06/02/2014 - 11:11:37 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript9.dll [5768704] O44 - LFC:[MD5.1D1D7F52EC84294859642A4309FE648E] - 06/02/2014 - 11:17:15 ---A- . (.Microsoft Corporation - DLL de gestion d'utilisateur local et de co.) -- C:\Windows\System32\msrating.dll [195584] O44 - LFC:[MD5.27516B54E116D5EF8B0129B5C829A87C] - 06/02/2014 - 11:32:49 ---A- . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [218624] O44 - LFC:[MD5.3906C9640406FC0FC00A324947C74893] - 06/02/2014 - 11:48:11 ---A- . (.Microsoft Corporation - Microsoft ® JScript Diagnostics.) -- C:\Windows\System32\jscript9diag.dll [708608] O44 - LFC:[MD5.E129D34089E70215B65EA611F802FA9A] - 06/02/2014 - 11:48:45 ---A- . (.Microsoft Corporation - IE ETW Collector Service.) -- C:\Windows\System32\ieetwcollector.exe [111616] O44 - LFC:[MD5.338415F2E9A188875B6E43B5269620B0] - 06/02/2014 - 11:49:03 ---A- . (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) -- C:\Windows\System32\ieUnatt.exe [139264] O44 - LFC:[MD5.63B5E990896BA81D604032A48CC80A5C] - 06/02/2014 - 11:52:11 ---A- . (.Microsoft Corporation - Moteur de l’interface utilisateur d’Interne.) -- C:\Windows\System32\ieui.dll [574976] O44 - LFC:[MD5.FD08F8BA2437A85F500EFFE3FD3158A6] - 06/02/2014 - 11:56:03 ---A- . (.Microsoft Corporation - Traitement de RunOnce complet avec interfac.) -- C:\Windows\System32\iernonce.dll [33792] O44 - LFC:[MD5.99ED8FBAFD325550D07A32664D9E3CC8] - 06/02/2014 - 11:57:16 ---A- . (.Microsoft Corporation - JScript Proxy Auto-Configuration.) -- C:\Windows\System32\jsproxy.dll [53760] O44 - LFC:[MD5.FCFAEDF0AA1A78A1875FDB798598408B] - 06/02/2014 - 12:06:47 ---A- . (.Microsoft Corporation - IE ETW Collector Proxy Stub Resources.) -- C:\Windows\System32\ieetwproxystub.dll [48640] O44 - LFC:[MD5.C1E2C16D58D76323800C3EE5E2C5095A] - 06/02/2014 - 12:07:39 ---A- . (.Microsoft Corporation - IOD Version Map.) -- C:\Windows\System32\iesetup.dll [66048] O44 - LFC:[MD5.6300AD525D639CECBB3D144B6D7B30F9] - 06/02/2014 - 12:12:09 ---A- . (.Microsoft Corporation - Run time utility for Internet Explorer.) -- C:\Windows\System32\iertutil.dll [2765824] O44 - LFC:[MD5.E77092C38028EB0A5C461B3436E0A6D5] - 06/02/2014 - 12:30:12 ---A- . (.Microsoft Corporation - IE ETW Collector Service Resources.) -- C:\Windows\System32\ieetwcollectorres.dll [4096] O44 - LFC:[MD5.94C59DD02BC7EA0E421055B9946CA861] - 06/02/2014 - 12:30:46 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2724864] O44 - LFC:[MD5.D016F5092E4FFC41147E8555A71D2DDE] - 06/02/2014 - 13:16:01 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [23170048] O44 - LFC:[MD5.F307F1C796C0886490839FDE5ED5728C] - 08/02/2014 - 09:26:58 ---A- . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\Drivers\Rt64win7.sys [685672] O44 - LFC:[MD5.D500488D4D61B8015057E0AD42A2239F] - 08/02/2014 - 09:26:58 ---A- . (.Realtek Semiconductor Corporation - About Page.) -- C:\Windows\System32\RtNicProp64.dll [74344] O44 - LFC:[MD5.49A88E6CD77939F5F7D443628A18A317] - 08/02/2014 - 09:26:58 ---A- . (.Realtek Semiconductor Corporation - RTNUninst.) -- C:\Windows\System32\RTNUninst64.dll [107552] O44 - LFC:[MD5.D0B58740740B8F25C2CFA2954B25C9DE] - 08/02/2014 - 09:56:18 ---A- . (.Realtek Semiconductor Corp. - RtlExUpd DLL for setup utility function.) -- C:\Windows\RtlExUpd.dll [2080472] O44 - LFC:[MD5.2CBDC11690656A1A2D03EC65AE2BCE68] - 08/02/2014 - 09:56:25 ---A- . (.Andrea Electronics Corporation - Capture Noise Filters (64-bit).) -- C:\Windows\System32\AERTAC64.dll [209096] O44 - LFC:[MD5.B3E9EA31E37EDCC1D54CE20504549ABE] - 08/02/2014 - 09:56:25 ---A- . (.Andrea Electronics Corporation - Render Noise Filters (64-bit).) -- C:\Windows\System32\AERTAR64.dll [108640] O44 - LFC:[MD5.6E14F444A2506049EEC25CB5EDFE0905] - 08/02/2014 - 09:56:25 ---A- . (.Real Sound Lab SIA - CONEQ™ Media Suite APO GUI Library.) -- C:\Windows\System32\CONEQMSAPOGUILibrary.dll [113576] O44 - LFC:[MD5.B5DC23C6650F30A46BBE5583AAFACB92] - 08/02/2014 - 09:56:26 ---A- . (.Fortemedia Corporation - Fortemedia SAMSoft sAPO.) -- C:\Windows\System32\FMAPO64.dll [2770976] O44 - LFC:[MD5.D956C3D6ECE65A10A1018A72E08C4973] - 08/02/2014 - 09:56:28 ---A- . (.Waves Audio Ltd. - MaxxAudio APO Shell.) -- C:\Windows\System32\MaxxAudioAPOShell64.dll [1013504] O44 - LFC:[MD5.75616F8DB5C092A8A50AFEC273859DD7] - 08/02/2014 - 09:56:28 ---A- . (.Waves Audio Ltd. - MaxxAudio APO.) -- C:\Windows\System32\MaxxAudioAPO20.dll [318808] O44 - LFC:[MD5.1A6C91215105B6B6C48B0F531E1CD8FA] - 08/02/2014 - 09:56:28 ---A- . (.Waves Audio Ltd. - Pas de description.) -- C:\Windows\System32\MaxxAudioEQ64.dll [2036992] O44 - LFC:[MD5.AFC0794ABE84EA81F8B886F21A7858F4] - 08/02/2014 - 09:56:29 ---A- . (.Creative Technology Ltd. - Audio Processing Object Chaining Module.) -- C:\Windows\System32\MBWrp64.dll [397592] O44 - LFC:[MD5.4CEE426B1FAD0479F95CB23F97EFCDC8] - 08/02/2014 - 09:56:29 ---A- . (.Creative Technology Ltd. - Creative Audio Processing Object Module.) -- C:\Windows\System32\MBAPO64.dll [897152] O44 - LFC:[MD5.09D9D2C960A14D3857B6E5B1AB6F4D0E] - 08/02/2014 - 09:56:29 ---A- . (.Creative Technology Ltd. - Creative Chaining Property Page Loader Modu.) -- C:\Windows\System32\MBPPCn64.dll [60504] O44 - LFC:[MD5.50E41327A6B0312313C5A90A203950CA] - 08/02/2014 - 09:56:29 ---A- . (.Creative Technology Ltd. - Creative Property Page Loader Module.) -- C:\Windows\System32\MBppld64.dll [65112] O44 - LFC:[MD5.227789D3BD8C00B17531F222F4A2BB14] - 08/02/2014 - 09:56:30 ---A- . (.Realtek Semiconductor Corp. - Realtek HD Audio Coinstaller.) -- C:\Windows\System32\RCoInstII64.dll [154840] O44 - LFC:[MD5.824F4C610521AF41EB2009211E5F04F4] - 08/02/2014 - 09:56:31 ---A- . (...) -- C:\Windows\System32\Drivers\RTAIODAT.DAT [710621] O44 - LFC:[MD5.A6286A6C7A1BBFCBA17AA54384A21D1C] - 08/02/2014 - 09:56:31 ---A- . (.Dolby Laboratories, Inc. - Dolby PCEE3 COM DLL x64.) -- C:\Windows\System32\RTEED64A.dll [204120] O44 - LFC:[MD5.D0D0D82B7366E691275E433CD34F89B2] - 08/02/2014 - 09:56:31 ---A- . (.Dolby Laboratories, Inc. - Dolby PCEE3 Control Panel x64.) -- C:\Windows\System32\RTEEP64A.dll [375128] O44 - LFC:[MD5.6F4CD493196100EEF349D7132CECAFD9] - 08/02/2014 - 09:56:31 ---A- . (.Dolby Laboratories, Inc. - Dolby PCEE3 GFX APO x64.) -- C:\Windows\System32\RTEEG64A.dll [78680] O44 - LFC:[MD5.ECAEC5FBBBEF8612AF0A866AFA5F7EF2] - 08/02/2014 - 09:56:31 ---A- . (.Dolby Laboratories, Inc. - Dolby PCEE3 LFX APO x64.) -- C:\Windows\System32\RTEEL64A.dll [101208] O44 - LFC:[MD5.E9D4A333DF15D06C68AC4BFB9B6581CB] - 08/02/2014 - 09:56:31 ---A- . (.Dolby Laboratories, Inc. - PCEE3 DAA Control Panel x64.) -- C:\Windows\System32\RP3DAA64.dll [310104] O44 - LFC:[MD5.B6FE01558CC03F3866C9AD0ED19261D8] - 08/02/2014 - 09:56:31 ---A- . (.Dolby Laboratories, Inc. - PCEE3 DHT Control Panel x64.) -- C:\Windows\System32\RP3DHT64.dll [310104] O44 - LFC:[MD5.E8B3D83888F9FE2E90724113C896E058] - 08/02/2014 - 09:56:31 ---A- . (.Realtek Semiconductor Corp. - HDA driver COM file.) -- C:\Windows\System32\RtDataProc64.dll [624344] O44 - LFC:[MD5.22CAB76AF907B82664FEDE6A653ABA2A] - 08/02/2014 - 09:56:31 ---A- . (.Realtek Semiconductor Corp. - RTCOMDLL Module.) -- C:\Windows\System32\RTCOM64.dll [1286872] O44 - LFC:[MD5.C08DE9FE49B8DE126EE7A42C7C80450E] - 08/02/2014 - 09:56:31 ---A- . (.Realtek Semiconductor Corp. - Realtek APO API.) -- C:\Windows\System32\RtkApi64.dll [1021656] O44 - LFC:[MD5.8814A281406553A2640D6A04702C63BD] - 08/02/2014 - 09:56:31 ---A- . (.Realtek Semiconductor Corp. - Realtek HD Audio Coinstaller.) -- C:\Windows\System32\RtkCoLDR64.dll [14952] O44 - LFC:[MD5.BA97BCF2138C7667FCFEF10DFF2ABECF] - 08/02/2014 - 09:56:31 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\Drivers\RTKVHD64.sys [3801176] O44 - LFC:[MD5.6DB093B854351CD7F36A4E8EA7082E7A] - 08/02/2014 - 09:56:31 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) LFX/GFX DSP component.) -- C:\Windows\System32\RtkAPO64.dll [2782936] O44 - LFC:[MD5.0805289E121F3E3C458C970B08314EB2] - 08/02/2014 - 09:56:31 ---A- . (.Realtek Semiconductor Corp. - RtkCfg.dll.) -- C:\Windows\System32\RtkCfg64.dll [149608] O44 - LFC:[MD5.F0D94C5786977B4C44A914683DEBAA9A] - 08/02/2014 - 09:56:32 ---A- . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\Windows\System32\RTSnMg64.cpl [1958616] O44 - LFC:[MD5.0E2C5B7C842024F50B1795A980C4D0FF] - 08/02/2014 - 09:56:32 ---A- . (.Realtek Semiconductor Corp. - Realtek LFX/GFX DSP UI component for Window.) -- C:\Windows\System32\RtPgEx64.dll [2810072] O44 - LFC:[MD5.CA1D7D09854D305A64B100DC1400BA21] - 08/02/2014 - 09:56:32 ---A- . (.Realtek Semiconductor Corp. - RtlCPAPI Module.) -- C:\Windows\System32\RtlCPAPI64.dll [331880] O44 - LFC:[MD5.A88BE9A6C4E646A2B2A1BD3A7F4B58E7] - 08/02/2014 - 09:56:32 ---A- . (.SRS Labs, Inc. - COM object implementing SRS Headphone 360.) -- C:\Windows\System32\SRSHP64.dll [198896] O44 - LFC:[MD5.A028717B791416182959B325D5B40679] - 08/02/2014 - 09:56:32 ---A- . (.SRS Labs, Inc. - TruSurround HD and HD4 COM object for Windo.) -- C:\Windows\System32\SRSTSH64.dll [211184] O44 - LFC:[MD5.018D3D2478754AA411DE6DA6DE5F8F21] - 08/02/2014 - 09:56:32 ---A- . (.SRS Labs, Inc. - TruSurroundXT Module.) -- C:\Windows\System32\SRSTSX64.dll [518896] O44 - LFC:[MD5.2FCADCC14F8E540F6ADE4BF92BD8AEDD] - 08/02/2014 - 09:56:32 ---A- . (.SRS Labs, Inc. - WOW HD COM object for Windows.) -- C:\Windows\System32\SRSWOW64.dll [155888] O44 - LFC:[MD5.0C089E47D8BD3996742F0939DE7E2D48] - 08/02/2014 - 09:56:33 ---A- . (.Waves Audio Ltd. - General Library for Plug-Ins.) -- C:\Windows\System32\WavesGUILib64.dll [2103040] O44 - LFC:[MD5.9CFEFD62D86DABFAC12D1C5ED72BA6A4] - 08/02/2014 - 10:00:14 ---A- . (...) -- C:\Windows\System32\Drivers\SWDUMon.sys [16152] O44 - LFC:[MD5.40FDF3546B2DD93413C2223169683979] - 12/02/2014 - 15:25:31 ---A- . (...) -- C:\Windows\CDER200Euro.ini [25] O44 - LFC:[MD5.C676E5EA388AF7C4C031F56F9B42E362] - 14/02/2014 - 10:11:33 ---A- . (.Microsoft Corporation - Bibliothèque Microsoft D2D.) -- C:\Windows\System32\d2d1.dll [3928064] O44 - LFC:[MD5.E8710B5DDA963E6BA198DF5FB209E72A] - 14/02/2014 - 10:11:34 ---A- . (.Microsoft Corporation - Direct3D 10 Rasterizer.) -- C:\Windows\System32\d3d10warp.dll [2565120] O44 - LFC:[MD5.DC6DD779F35BB42E2E76FDFEC565C251] - 14/02/2014 - 10:11:39 ---A- . (.Microsoft Corporation - Windows Rights Management Services Server S.) -- C:\Windows\System32\secproc_ssp_isv.dll [123392] O44 - LFC:[MD5.C6AC2C91541D24F9E236A670C0CA793D] - 14/02/2014 - 10:11:40 ---A- . (.Microsoft Corporation - Client Gestion des droits Windows.) -- C:\Windows\System32\msdrm.dll [528384] O44 - LFC:[MD5.399FC1B75790EE606A6FD9F2FB4C891C] - 14/02/2014 - 10:11:40 ---A- . (.Microsoft Corporation - Windows Rights Management Desktop Security.) -- C:\Windows\System32\secproc.dll [488448] O44 - LFC:[MD5.5693212AB2EBCACBBE05EC3A642113E2] - 14/02/2014 - 10:11:40 ---A- . (.Microsoft Corporation - Windows Rights Management Desktop Security.) -- C:\Windows\System32\secproc_isv.dll [485888] O44 - LFC:[MD5.B41B1FEDEBBD955B4E25676B42087885] - 14/02/2014 - 10:11:40 ---A- . (.Microsoft Corporation - Windows Rights Management Services Server S.) -- C:\Windows\System32\secproc_ssp.dll [123392] O44 - LFC:[MD5.03F8F411F118CFDA508E77C747BB05EA] - 14/02/2014 - 10:11:41 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate_ssp.exe [553984] O44 - LFC:[MD5.297926B15AE5390409F1007EB28A8EFB] - 14/02/2014 - 10:11:41 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate_ssp_isv.exe [552960] O44 - LFC:[MD5.1B3741488AA7E237961A29D1E7A44C0A] - 14/02/2014 - 10:11:42 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate.exe [626176] O44 - LFC:[MD5.17CF3B3F68272BD40C878D4DBAB0EBC9] - 14/02/2014 - 10:11:42 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate_isv.exe [658432] O44 - LFC:[MD5.0D298133C359AB8CB9EB4FA178BF3947] - 14/02/2014 - 10:11:54 ---A- . (.Microsoft Corporation - MSXML 3.0 SP11.) -- C:\Windows\System32\msxml3.dll [1882112] O44 - LFC:[MD5.CD2C20CC3B385A32701F78C0ACBBE9F3] - 14/02/2014 - 10:11:54 ---A- . (.Microsoft Corporation - XML Resources.) -- C:\Windows\System32\msxml3r.dll [2048] O44 - LFC:[MD5.EA093130471090037BB70A4AF86FAD1B] - 14/02/2014 - 10:11:56 ---A- . (...) -- C:\Windows\System32\locale.nls [420008] O44 - LFC:[MD5.F67C7D80745379DC4C5332EFFE5AC696] - 14/02/2014 - 10:26:14 ---A- . (.Microsoft Corporation - Microsoft ® VBScript.) -- C:\Windows\System32\vbscript.dll [548864] O44 - LFC:[MD5.44FE8331D96E0C975B5AD76E19F4A3CC] - 14/02/2014 - 13:50:35 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [88567024] O44 - LFC:[MD5.9E2EDE952A3EC44754A829F048CE93A0] - 14/02/2014 - 13:55:25 ---A- . (.Microsoft Corporation - Composant Connexion RemoteApp et Bureau à d.) -- C:\Windows\System32\TSWorkspace.dll [1030144] O44 - LFC:[MD5.A4420969E5AB94856E5C0C02E6099D3F] - 14/02/2014 - 13:55:44 ---A- . (.Microsoft Corporation - Remote Desktop Services Client for Microsof.) -- C:\Windows\System32\rdvidcrl.dll [1057280] O44 - LFC:[MD5.5289A00E2D21BB3A7D6761646543ED5C] - 14/02/2014 - 13:55:46 ---A- . (.Microsoft Corporation - Client de contrainte de quarantaine de la p.) -- C:\Windows\System32\tsgqec.dll [62976] O44 - LFC:[MD5.8E75B1112C374EBDF18FD640DA2F0655] - 14/02/2014 - 13:55:46 ---A- . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\System32\mstsc.exe [1147392] O44 - LFC:[MD5.149A388C17F04AD1F99B477A43BE1A9F] - 14/02/2014 - 13:55:46 ---A- . (.Microsoft Corporation - Microsoft Remote Desktop Services Web Acces.) -- C:\Windows\System32\MsRdpWebAccess.dll [56832] O44 - LFC:[MD5.0D2C2FAC4F29B5868D39B7267058CFEF] - 14/02/2014 - 13:55:46 ---A- . (.Microsoft Corporation - Microsoft Remote Desktop Services Web Proxy.) -- C:\Windows\System32\TSWbPrxy.exe [83968] O44 - LFC:[MD5.79EE5ECB4BE89343E4CF1E48F7769F59] - 14/02/2014 - 13:55:46 ---A- . (.Microsoft Corporation - Runtime de connexion RemoteApp et Bureau à.) -- C:\Windows\System32\wksprt.exe [420864] O44 - LFC:[MD5.7BD2E6E2458A5B95F8341244C7FC7DD4] - 14/02/2014 - 13:55:46 ---A- . (.Microsoft Corporation - WorkspaceRuntime ProxyStub DLL.) -- C:\Windows\System32\wksprtPS.dll [18944] O44 - LFC:[MD5.E9981ECE8D894CEF7038FD1D040EB426] - 14/02/2014 - 13:55:49 ---A- . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\Windows\System32\Drivers\TsUsbFlt.sys [56832] O44 - LFC:[MD5.FEC6178962DFF33074D39CA907971405] - 14/02/2014 - 13:55:50 ---A- . (.Microsoft Corporation - Extension de stratégie de groupe pour la re.) -- C:\Windows\System32\TsUsbRedirectionGroupPolicyExtension.dll [12800] O44 - LFC:[MD5.108C257D765AAD2E6EC46557DA0B02BD] - 14/02/2014 - 13:55:50 ---A- . (.Microsoft Corporation - Remote Desktop USB Redirection GP Extension.) -- C:\Windows\System32\TsUsbRedirectionGroupPolicyControl.exe [13824] O44 - LFC:[MD5.DDED7C5558B3AE09F568945281A9A6D1] - 14/02/2014 - 13:56:01 ---A- . (.Microsoft Corporation - Co-installateur de pilote USB générique du.) -- C:\Windows\System32\TsUsbGDCoInstaller.dll [44544] O44 - LFC:[MD5.8F273C46BF2261BB872B3766521C9C2A] - 15/02/2014 - 14:38:28 ---A- . (.Microsoft Corporation - Client ActiveX des services Bureau à distan.) -- C:\Windows\System32\mstscax.dll [6573056] O44 - LFC:[MD5.4CE8AEDD794B2A85CD14979D04076CCC] - 15/02/2014 - 16:51:16 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1668256] O44 - LFC:[MD5.6A397049048FA62FAFC92F88D8941CF5] - 15/02/2014 - 16:51:16 ---A- . (...) -- C:\Windows\System32\perfc009.dat [121802] O44 - LFC:[MD5.4362403F158F0FE84DA83C6CFBB83583] - 15/02/2014 - 16:51:16 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [149844] O44 - LFC:[MD5.E58D727B5131B1220918A6B64F7A3034] - 15/02/2014 - 16:51:16 ---A- . (...) -- C:\Windows\System32\perfh009.dat [653930] O44 - LFC:[MD5.BD93D36472077C2A758C40039FC6C029] - 15/02/2014 - 16:51:16 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [747320] O44 - LFC:[MD5.0245D0889C3443F5DC9194558583FE59] - 15/02/2014 - 16:57:41 ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\Windows\avastSS.scr [43152] O44 - LFC:[MD5.28192A2A37F52EB97EBE14DEE0F2513B] - 15/02/2014 - 16:57:41 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\System32\aswBoot.exe [334136] O44 - LFC:[MD5.FD3EA14ADF6216BDF4030DB2EFD43D96] - 15/02/2014 - 16:57:42 ---A- . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\Drivers\aswstm.sys [80184] O44 - LFC:[MD5.0ACC3F49015E628590CA4372322EB46B] - 15/02/2014 - 16:57:42 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\Drivers\aswMonFlt.sys [78648] O44 - LFC:[MD5.43599E630DFC30AD4E6A2B4B269EB1C0] - 15/02/2014 - 16:57:42 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\Drivers\aswSnx.sys [1038072] O44 - LFC:[MD5.F22DE5F5BA8ADA0A861441B624B51EB5] - 15/02/2014 - 16:57:42 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\Drivers\aswsp.sys [421704] O44 - LFC:[MD5.815372073DA85B2098A37DED84083C8A] - 16/02/2014 - 11:01:59 ---A- . (...) -- C:\Windows\_MSRSTRT.EXE [2560] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 17/02/2014 - 21:08:45 ---A- . (...) -- C:\autoexec.bat [0] O44 - LFC:[MD5.BB318FCC425967E755EDC9B312098FF0] - 18/02/2014 - 07:01:13 ---A- . (...) -- C:\Windows\ntbtlog.txt [206196] O44 - LFC:[MD5.4AFC85E201A19361DE44C053B0F68625] - 18/02/2014 - 07:03:02 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.D74E3C688AA4F552EB9F55CB8EA67170] - 18/02/2014 - 07:03:04 ---A- . (...) -- C:\Windows\setupact.log [56] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 18/02/2014 - 07:03:04 ---A- . (...) -- C:\Windows\setuperr.log [0] O44 - LFC:[MD5.5FAA3BB8D8104ED9D9FAF7F66DD29AF7] - 18/02/2014 - 07:42:01 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512] O44 - LFC:[MD5.4062F4234076F22866B46DA873795D0A] - 18/02/2014 - 11:18:44 ---A- . (...) -- C:\Windows\WindowsUpdate.log [36831] ~ Files: 109 Scanned in 00mn 05s ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 07/09/2262 - 07:57:58 ----D - C:\Windows\Prefetch\ReadyBoot O45 - LFCP:[MD5.CDAA65338F6F3072119B0D5473C9F780] - 12/02/2014 - 16:44:00 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf O45 - LFCP:[MD5.56B3BB051BAA7204C77BD8C40D775E28] - 13/02/2014 - 13:46:36 ---A- - C:\Windows\Prefetch\AgCx_SC3_0F505C2230CB04BF.db O45 - LFCP:[MD5.52203268AFD0DA5FE3459D8B3A60B434] - 16/02/2014 - 11:01:13 ---A- - C:\Windows\Prefetch\DAP.EXE-CD722E3B.pf O45 - LFCP:[MD5.F71DDDD75E92F965C880063FCC243F16] - 16/02/2014 - 11:29:42 ---A- - C:\Windows\Prefetch\ACRORD32.EXE-2BCF63DF.pf O45 - LFCP:[MD5.D08AB2D6B6D9E5CD16E0F200308F5472] - 16/02/2014 - 12:58:08 ---A- - C:\Windows\Prefetch\AVASTUI.EXE-F4F0C5B0.pf O45 - LFCP:[MD5.AB3E8BD641338E1D7923B719D2E7F098] - 16/02/2014 - 17:40:31 ---A- - C:\Windows\Prefetch\UPDATER.EXE-82AE8440.pf O45 - LFCP:[MD5.D809B7F5064CF2D2DD72F73BA7BBD1E9] - 16/02/2014 - 17:40:55 ---A- - C:\Windows\Prefetch\SKYPE.EXE-4966BCB4.pf O45 - LFCP:[MD5.657CE3A7D87563754A3DB3FEF0C1576B] - 17/02/2014 - 10:03:48 ---A- - C:\Windows\Prefetch\WUDFHOST.EXE-AFFEF87C.pf O45 - LFCP:[MD5.E7FFDFFE76A793F84A3BF81CA9CD90B0] - 17/02/2014 - 10:05:40 ---A- - C:\Windows\Prefetch\CONTROL.EXE-817F8F1D.pf O45 - LFCP:[MD5.99DB1D9D1C3C6A598D99AAED33665F83] - 17/02/2014 - 10:06:03 ---A- - C:\Windows\Prefetch\MMC.EXE-F5DC4F82.pf O45 - LFCP:[MD5.2E15BB2CD6917C9252406BAC4EA6E9A8] - 17/02/2014 - 10:10:07 ---A- - C:\Windows\Prefetch\DINOTIFY.EXE-35A869D6.pf O45 - LFCP:[MD5.508E3E038E70E9D0CF0F53C9FA65756C] - 17/02/2014 - 10:10:07 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-64D07C29.pf O45 - LFCP:[MD5.69199EE28FCCF7DFCE3EB9F5948C6F85] - 17/02/2014 - 10:10:13 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-A10DA0D8.pf O45 - LFCP:[MD5.5D375AC429132B6B6E612D3BECBFC2B3] - 17/02/2014 - 10:10:23 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-E97791EA.pf O45 - LFCP:[MD5.50F5AD4002F474A1331306F6E7D59E03] - 17/02/2014 - 10:10:48 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-3654C521.pf O45 - LFCP:[MD5.C591BC6E030C5AD1CC78CB8435696CE8] - 17/02/2014 - 10:10:49 ---A- - C:\Windows\Prefetch\DRVINST.EXE-4CB4314A.pf O45 - LFCP:[MD5.5AE3E6CBB012D7521CC0807F3EA283C1] - 17/02/2014 - 10:10:57 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-55A5CC9F.pf O45 - LFCP:[MD5.2C3644BE2FE57B4969466142A30790AF] - 17/02/2014 - 11:27:04 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-230FC512.pf O45 - LFCP:[MD5.95D8D8AD03FE8D2E275D4886A1F44BCE] - 17/02/2014 - 11:27:10 ---A- - C:\Windows\Prefetch\W32TM.EXE-1101AF41.pf O45 - LFCP:[MD5.3F76747B0CC539F26BF0709075BCFFFA] - 17/02/2014 - 11:27:20 ---A- - C:\Windows\Prefetch\PING.EXE-7E94E73E.pf O45 - LFCP:[MD5.35A05195752C1F29FD9FCE9CBB23C989] - 17/02/2014 - 15:38:09 ---A- - C:\Windows\Prefetch\AUDIALSSTARTER.EXE-F90C4EA5.pf O45 - LFCP:[MD5.29878E16DFE96FE30322AEA62B8BBF9B] - 17/02/2014 - 15:38:14 ---A- - C:\Windows\Prefetch\AUDIALS.EXE-4DC328B4.pf O45 - LFCP:[MD5.F184C976D2168B435ADA9D996AA750B6] - 17/02/2014 - 15:38:50 ---A- - C:\Windows\Prefetch\LZMA.EXE-80F57619.pf O45 - LFCP:[MD5.398A549E66F280F3BEE01381E5C9F233] - 17/02/2014 - 16:27:37 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-B49E1152.pf O45 - LFCP:[MD5.65C0AB8D53ED6CCAB68A93AFA9C0AC46] - 17/02/2014 - 16:57:22 ---A- - C:\Windows\Prefetch\STEAM.EXE-390D9B72.pf O45 - LFCP:[MD5.4EA5760675A988F7236159C268866E88] - 17/02/2014 - 16:57:31 ---A- - C:\Windows\Prefetch\STEAMERRORREPORTER.EXE-F3CDE7D3.pf O45 - LFCP:[MD5.9B1B343C887841AC92F8EC0B54340B9A] - 17/02/2014 - 16:57:34 ---A- - C:\Windows\Prefetch\STEAMSERVICE.EXE-61749D82.pf O45 - LFCP:[MD5.BD387673F740C079FB00085AA1849AD4] - 17/02/2014 - 16:57:49 ---A- - C:\Windows\Prefetch\NEXUSCLIENT.EXE-F5B9CB0E.pf O45 - LFCP:[MD5.AA44C475C04CD58D0FF08E12DD78DABD] - 17/02/2014 - 17:30:25 ---A- - C:\Windows\Prefetch\CSC.EXE-BE9AC2DF.pf O45 - LFCP:[MD5.897EF5B0BE9CB508A806DF6CE55B8751] - 17/02/2014 - 17:30:25 ---A- - C:\Windows\Prefetch\CVTRES.EXE-2B9D810D.pf O45 - LFCP:[MD5.EC868CC9E646AD7D6DADD142EC55C976] - 17/02/2014 - 17:31:38 ---A- - C:\Windows\Prefetch\MSDT.EXE-09841468.pf O45 - LFCP:[MD5.402FA2DB917DC7450434A6635BC67CD5] - 17/02/2014 - 17:31:39 ---A- - C:\Windows\Prefetch\SDIAGNHOST.EXE-8D72177C.pf O45 - LFCP:[MD5.40D4B64703A0959EE1565ABA94AE27A0] - 17/02/2014 - 17:33:41 ---A- - C:\Windows\Prefetch\INTERNETOPTIMIZER.EXE-84B2D520.pf O45 - LFCP:[MD5.C774A7DC8A31D37912534276DAF97597] - 17/02/2014 - 17:36:25 ---A- - C:\Windows\Prefetch\SKSE_LOADER.EXE-A11BE3CE.pf O45 - LFCP:[MD5.F1C006CDFF50E0CF131885E8FB7864E2] - 17/02/2014 - 17:36:28 ---A- - C:\Windows\Prefetch\TESV.EXE-6AEAC674.pf O45 - LFCP:[MD5.29A29C0EAB4A0F0A36334F819F19938A] - 17/02/2014 - 17:36:42 ---A- - C:\Windows\Prefetch\GAMEOVERLAYUI.EXE-3BDB7B9A.pf O45 - LFCP:[MD5.1FDC0C13ABA589851A16F01F92A10D21] - 17/02/2014 - 18:54:25 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-31B9396E.pf O45 - LFCP:[MD5.73DD363EE994227E74384CD1B6D97110] - 17/02/2014 - 18:54:25 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-E20473AA.pf O45 - LFCP:[MD5.8D6A68F29E6787B43BA667B509AEC3CD] - 17/02/2014 - 20:59:53 ---A- - C:\Windows\Prefetch\YET_ANOTHER_CLEANER.EXE-20BF0173.pf O45 - LFCP:[MD5.C838DE0C943F712D724D5B0B539258ED] - 17/02/2014 - 21:00:06 ---A- - C:\Windows\Prefetch\YAC.EXE-217CC5E3.pf O45 - LFCP:[MD5.1B5BFCE41AACFD2FA8B1D7838F5CA68B] - 17/02/2014 - 21:00:22 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-352D33B8.pf O45 - LFCP:[MD5.A6240F1E6E811626FB2791C68C798694] - 17/02/2014 - 21:00:29 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-FBE42157.pf O45 - LFCP:[MD5.AD609CDBED5A305C201BCF7E876A1D14] - 17/02/2014 - 21:00:39 ---A- - C:\Windows\Prefetch\ISAFESVC.EXE-16BF537D.pf =>Trojan.Trojan.Staser O45 - LFCP:[MD5.7B1F07C7F0DDC140AD23AD98246302BF] - 17/02/2014 - 21:00:56 ---A- - C:\Windows\Prefetch\ISTART.EXE-F0B82CDC.pf O45 - LFCP:[MD5.6C9ED40EF593FCD86DE92A09147E1915] - 17/02/2014 - 21:02:06 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-25BF1AFB.pf O45 - LFCP:[MD5.4BACB023153452DCD49DB7FB8D579864] - 17/02/2014 - 21:06:39 ---A- - C:\Windows\Prefetch\SPYHUNTER-INSTALLER.EXE-E4F576B5.pf =>Crapware.SpyHunter O45 - LFCP:[MD5.179272539A10DD7AAB9B1633665347AB] - 17/02/2014 - 21:07:29 ---A- - C:\Windows\Prefetch\SHSETUP.EXE-2EA51A23.pf =>Crapware.SpyHunter O45 - LFCP:[MD5.44DEF74AE256FFED1CD980E71FEDF167] - 17/02/2014 - 21:08:02 ---A- - C:\Windows\Prefetch\WISECUSTOMCALLA32.EXE-D8AB095D.pf =>Crapware.SpyHunter O45 - LFCP:[MD5.5FA0DEBD6227D039B5882C96BA0D4F9E] - 17/02/2014 - 21:08:03 ---A- - C:\Windows\Prefetch\MSI25B2.TMP-1754C4D3.pf O45 - LFCP:[MD5.EF9B6A40DAD031CE2E325FB8B3CAFC4F] - 17/02/2014 - 21:08:10 ---A- - C:\Windows\Prefetch\WISECUSTOMCALLA33.EXE-EC00C3E2.pf =>Crapware.SpyHunter O45 - LFCP:[MD5.D720AB992F1ECE3FFB559029FD84AFE8] - 17/02/2014 - 21:08:12 ---A- - C:\Windows\Prefetch\WISECUSTOMCALLA34.EXE-FF567E67.pf =>Crapware.SpyHunter O45 - LFCP:[MD5.D2B7C081EF57CDB87B6F853A3768D969] - 17/02/2014 - 21:08:24 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-0EA529FE.pf O45 - LFCP:[MD5.BA79D26352C35E89E78B6AA8CC8BCB4A] - 17/02/2014 - 21:08:26 ---A- - C:\Windows\Prefetch\WISECUSTOMCALLA37.EXE-3957ADF6.pf =>Crapware.SpyHunter O45 - LFCP:[MD5.808BD512A7031CCE8B3F285AD01DC51C] - 17/02/2014 - 21:08:31 ---A- - C:\Windows\Prefetch\ESGRKCHK.EXE-E2C5E533.pf O45 - LFCP:[MD5.DC7B275492E525B9198630923514B997] - 17/02/2014 - 21:08:45 ---A- - C:\Windows\Prefetch\IPCONFIG.EXE-912F3D5B.pf O45 - LFCP:[MD5.59F5B8A2851A3C109FB898F3218196BE] - 17/02/2014 - 21:09:54 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-E69F695A.pf O45 - LFCP:[MD5.DB4E99BE7D13C773FECA50E0DCA3669D] - 17/02/2014 - 21:11:28 ---A- - C:\Windows\Prefetch\IS-6C5A1.EXE-C3261987.pf O45 - LFCP:[MD5.105B9C01B80D57484ACBD14EB823F853] - 17/02/2014 - 21:32:55 ---A- - C:\Windows\Prefetch\MPCMDRUN.EXE-F401FBB4.pf O45 - LFCP:[MD5.193FC3054A14E65E7F53B5C341292705] - 17/02/2014 - 21:41:19 ---A- - C:\Windows\Prefetch\SPYHUNTER4.EXE-7BD5E907.pf =>Crapware.SpyHunter O45 - LFCP:[MD5.19847710A85E3F3AF78B2B88E5A5350E] - 17/02/2014 - 21:46:12 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-A2D55CB6.pf O45 - LFCP:[MD5.80FEB2E3CC4236D6EE0AB0C42D8C85B0] - 17/02/2014 - 21:46:29 ---A- - C:\Windows\Prefetch\SH4SERVICE.EXE-D49D4959.pf O45 - LFCP:[MD5.D5073683FFE764FD405CB187236B777B] - 17/02/2014 - 21:46:30 ---A- - C:\Windows\Prefetch\GRPCONV.EXE-B823222B.pf O45 - LFCP:[MD5.60D630F7B039F86D84864C4FCD9B634F] - 17/02/2014 - 21:46:30 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-E09A077A.pf O45 - LFCP:[MD5.E4462C30AD577A2D92B12F32B45A5B1A] - 17/02/2014 - 21:46:30 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-F21CC3E5.pf O45 - LFCP:[MD5.1C874392C00195D16B7F5712A17E075C] - 17/02/2014 - 21:46:30 ---A- - C:\Windows\Prefetch\RUNONCE.EXE-D0649312.pf O45 - LFCP:[MD5.D0FC266D312AC1FEE388F938971A8C2E] - 17/02/2014 - 21:46:34 ---A- - C:\Windows\Prefetch\WISECUSTOMCALLA31.EXE-C5554ED8.pf =>Crapware.SpyHunter O45 - LFCP:[MD5.4E037ED7DE7D1FD87DCDCD842436DA1A] - 17/02/2014 - 21:46:42 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-908C99F8.pf O45 - LFCP:[MD5.79CE9B1045B9F83176970E2E0378612B] - 17/02/2014 - 21:46:46 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-4B6C9213.pf O45 - LFCP:[MD5.4755D11A62EADA259381163325303B44] - 17/02/2014 - 22:46:30 ---A- - C:\Windows\Prefetch\UNINSTALER_SKIPUAC.EXE-274F644C.pf O45 - LFCP:[MD5.D09962DFE9ACF9775D142C200FE98A7E] - 17/02/2014 - 22:49:51 ---A- - C:\Windows\Prefetch\PLUGIN-CONTAINER.EXE-51F500A0.pf O45 - LFCP:[MD5.87448960D827C4DE7BDBAF81B33F7D48] - 17/02/2014 - 22:49:52 ---A- - C:\Windows\Prefetch\FLASHPLAYERPLUGIN_12_0_0_44.E-DA0E1FAF.pf O45 - LFCP:[MD5.A8BFC7BB7FCF1ADA03CC8636D0FD0CE0] - 17/02/2014 - 22:53:51 ---A- - C:\Windows\Prefetch\CCLEANER64.EXE-3099CB2A.pf =>Piriform Ltd O45 - LFCP:[MD5.87C4ECCECDE0B8967E051F286AA7386B] - 17/02/2014 - 22:54:36 ---A- - C:\Windows\Prefetch\BOOSTSPEED.EXE-4431AA5C.pf O45 - LFCP:[MD5.00417198995DC90714CFE2E1A4AC801E] - 17/02/2014 - 22:56:53 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin O45 - LFCP:[MD5.9F2A48F812FC2B690A3526A9C224183C] - 18/02/2014 - 07:04:14 ---A- - C:\Windows\Prefetch\LIVEUPDATE.EXE-FF12731E.pf O45 - LFCP:[MD5.E39483CD360045B7195B7AB68579DE3D] - 18/02/2014 - 07:05:18 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf O45 - LFCP:[MD5.07D42407BB1548D36643BD32DB32A205] - 18/02/2014 - 07:05:19 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-57D17DAF.pf O45 - LFCP:[MD5.370891F07E8F09E10E7A624ADDF6AD3E] - 18/02/2014 - 07:05:32 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-05F624AB.pf O45 - LFCP:[MD5.EB659EA84E7D29D7CBC5D1C443773473] - 18/02/2014 - 07:07:17 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf O45 - LFCP:[MD5.5E91B6CD6916790F59831940F724879D] - 18/02/2014 - 07:08:23 ---A- - C:\Windows\Prefetch\SDCLT.EXE-E10B972A.pf O45 - LFCP:[MD5.0A043CA6B3E4EB8FBFB33D30612285B4] - 18/02/2014 - 07:08:31 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-E2C2633A.pf O45 - LFCP:[MD5.86BAA0BE4EB95844BEAD2301AF14D7DD] - 18/02/2014 - 07:16:14 ---A- - C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf O45 - LFCP:[MD5.1AEFB2B2C0DE0BC8218C19782E267B49] - 18/02/2014 - 07:16:18 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-02CC9EFF.pf O45 - LFCP:[MD5.02F6F8B67AE0F2A37DFDBCAB26BBE831] - 18/02/2014 - 07:41:46 ---A- - C:\Windows\Prefetch\LADS.EXE-64FC6165.pf O45 - LFCP:[MD5.06739FF31C0D52FE55CCC588D4F9D678] - 18/02/2014 - 07:41:53 ---A- - C:\Windows\Prefetch\NSLOOKUP.EXE-8DBC12C3.pf O45 - LFCP:[MD5.4D104D22A6ADA5CC0125681622CC780E] - 18/02/2014 - 07:42:01 ---A- - C:\Windows\Prefetch\MBRCHECK.EXE-DBC3F74C.pf O45 - LFCP:[MD5.C1A355597E9DAEED5A4B360F25F086B1] - 18/02/2014 - 08:03:23 ---A- - C:\Windows\Prefetch\CIS.EXE-0735BE7C.pf O45 - LFCP:[MD5.F7C202C2E5D03E085D009EEC3F2A3442] - 18/02/2014 - 08:03:24 ---A- - C:\Windows\Prefetch\CMDUPD.EXE-B182080A.pf O45 - LFCP:[MD5.A3D567CD5528D9C9407D7BA8568F486B] - 18/02/2014 - 08:13:11 ---A- - C:\Windows\Prefetch\MBAM.EXE-FFEB4014.pf O45 - LFCP:[MD5.126F7C244651352FF00D78C1B6D3FE96] - 18/02/2014 - 08:13:15 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-D5170E12.pf O45 - LFCP:[MD5.41569764B3A27B1871F29BDF7873AEF4] - 18/02/2014 - 08:14:04 ---A- - C:\Windows\Prefetch\AgRobust.db O45 - LFCP:[MD5.07C043433D1DCF8D81585C831990479D] - 18/02/2014 - 08:14:09 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db O45 - LFCP:[MD5.C8D46F9557B5D2AA102B31ABB1991011] - 18/02/2014 - 08:14:10 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db O45 - LFCP:[MD5.4FA8FC0D0DA2124E19703550A5D9A5D5] - 18/02/2014 - 08:14:10 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db O45 - LFCP:[MD5.E52D1D97CA91367A675285F810124CC9] - 18/02/2014 - 09:04:27 ---A- - C:\Windows\Prefetch\Layout.ini O45 - LFCP:[MD5.9F74079A8A806E84D1D81AB58771E815] - 18/02/2014 - 09:07:34 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-411A328D.pf O45 - LFCP:[MD5.6F83278DE72DF44323E5376B6C7F5963] - 18/02/2014 - 09:14:33 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7CFEDEA3.pf O45 - LFCP:[MD5.6F6566ED34675587F696AA540590CF93] - 18/02/2014 - 09:14:33 ---A- - C:\Windows\Prefetch\VSSVC.EXE-B8AFC319.pf O45 - LFCP:[MD5.511F3C0AA688C4DF67A18B2E4A21115A] - 18/02/2014 - 09:15:22 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf O45 - LFCP:[MD5.1BC399212856E9C1161C94683E860295] - 18/02/2014 - 09:27:00 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-DE9673F9.pf O45 - LFCP:[MD5.D7705C318E002A5DAA0925EC45344170] - 18/02/2014 - 11:18:37 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx O45 - LFCP:[MD5.6E71D5C3E203BB39F1E17EF267CE0F39] - 18/02/2014 - 11:18:37 ---A- - C:\Windows\Prefetch\WMPNSCFG.EXE-FC0D39BF.pf O45 - LFCP:[MD5.DE25E361F4A6EE81BD1370D441A50267] - 18/02/2014 - 11:18:38 ---A- - C:\Windows\Prefetch\FLASHPLAYERUPDATESERVICE.EXE-216D9C35.pf O45 - LFCP:[MD5.8431F03B38D4B0AD94F1B03519EB01A5] - 18/02/2014 - 11:18:39 ---A- - C:\Windows\Prefetch\INSTUP.EXE-53EBBF17.pf O45 - LFCP:[MD5.8ED72ACAA6600C30B2D07153A45B104D] - 18/02/2014 - 11:18:43 ---A- - C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf O45 - LFCP:[MD5.8945EEBDBE1B8CFA1CCDC26934546B61] - 18/02/2014 - 11:18:49 ---A- - C:\Windows\Prefetch\AgCx_S1_S-1-5-21-2933401390-3258985904-939058692-1001.snp.db O45 - LFCP:[MD5.CFD96487A7CFB42B41BA39A654503658] - 18/02/2014 - 11:18:50 ---A- - C:\Windows\Prefetch\MOBSYNC.EXE-C5E2284F.pf O45 - LFCP:[MD5.35A62C46A47FD1937F1B9A2FD99A1250] - 18/02/2014 - 11:18:50 ---A- - C:\Windows\Prefetch\SMSS.EXE-E9C28FC6.pf O45 - LFCP:[MD5.8EE73349E33E7AD34128CDC30A6FA079] - 18/02/2014 - 11:18:57 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-BDFD3029.pf O45 - LFCP:[MD5.27FF5DE336C0309E1DBB0AD3421302F5] - 18/02/2014 - 11:18:59 ---A- - C:\Windows\Prefetch\CSRSS.EXE-3FE41F7E.pf O45 - LFCP:[MD5.3354B2C9F768C9F2C0107BC0971EA105] - 18/02/2014 - 11:19:01 ---A- - C:\Windows\Prefetch\WINLOGON.EXE-B020DC41.pf O45 - LFCP:[MD5.2AEB4AAB7B214F4B61F8D00274C9C14D] - 18/02/2014 - 11:19:04 ---A- - C:\Windows\Prefetch\ATIECLXX.EXE-48B31DFA.pf O45 - LFCP:[MD5.2088C2791A27DFFD5C93F6766294DD7A] - 18/02/2014 - 11:19:04 ---A- - C:\Windows\Prefetch\AVBUGREPORT.EXE-1B29CD2C.pf O45 - LFCP:[MD5.F4198E99CEF02FDB4E06577C34878DD6] - 18/02/2014 - 11:19:38 ---A- - C:\Windows\Prefetch\AgCx_SC1.db O45 - LFCP:[MD5.8E41E7F41FD5FDECD2B21ED2B0CA10AF] - 18/02/2014 - 11:20:10 ---A- - C:\Windows\Prefetch\ATBROKER.EXE-2E15A492.pf O45 - LFCP:[MD5.88C8DF0EB1323B535F311A5419520A96] - 18/02/2014 - 11:20:30 ---A- - C:\Windows\Prefetch\THUNDERBIRD.EXE-20A49934.pf O45 - LFCP:[MD5.8C0CBF5127E73BE35AFA0ED202775E35] - 18/02/2014 - 11:22:52 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-2933401390-3258985904-939058692-1001.db O45 - LFCP:[MD5.7ADC35202AE523B9E001B4DD62CB3245] - 18/02/2014 - 11:22:52 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-2933401390-3258985904-939058692-1001.db O45 - LFCP:[MD5.18C1B81FC5368A2F1604FFC11D0B92B7] - 18/02/2014 - 11:26:34 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-1605FA5B.pf O45 - LFCP:[MD5.6B74F88AA541E58B87A641EF354964A7] - 18/02/2014 - 11:27:39 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-09140401.pf O45 - LFCP:[MD5.B3DD459BA691DFC36604CE46133BA0BE] - 18/02/2014 - 11:28:00 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-80F4A784.pf O45 - LFCP:[MD5.CA2A4B80BFB4611EB426CF66C850AC32] - 18/02/2014 - 11:28:13 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-7238F31D.pf O45 - LFCP:[MD5.BBF93A44A1597C134167983D8194A3B1] - 18/02/2014 - 11:28:20 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-ECB71776.pf O45 - LFCP:[MD5.3708D85BE053E78A1CB249B4E63A377E] - 18/02/2014 - 11:29:13 ---A- - C:\Windows\Prefetch\FIREFOX.EXE-B05E2624.pf O45 - LFCP:[MD5.F47DB7B047A24D90DB883F6DE3018798] - 18/02/2014 - 11:29:20 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-A8DE6D5B.pf O45 - LFCP:[MD5.33D09C1D03CCDECF31C5DA9B6C3CD110] - 18/02/2014 - 11:29:23 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf O45 - LFCP:[MD5.ECF8BB1829ABF2A1B7DF96A225CC41E6] - 18/02/2014 - 11:31:17 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf O45 - LFCP:[MD5.31CEE5EE83F839412AAC89B648FDF12A] - 18/02/2014 - 11:31:20 ---A- - C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf O45 - LFCP:[MD5.E3BEF33B0ECEC4757D656FF176DD60B1] - 18/02/2014 - 11:31:25 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf O45 - LFCP:[MD5.DB937F1BB8BF5CAEAD918BA894206D17] - 18/02/2014 - 11:32:10 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf O45 - LFCP:[MD5.8D13F982766AEC20F67561E95081F8C0] - 18/02/2014 - 11:32:10 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf O45 - LFCP:[MD5.27D674E20ED260B49F14CDA26A1D05E1] - 18/02/2014 - 11:32:38 ---A- - C:\Windows\Prefetch\ZHPHEP.EXE-D5B37EC4.pf O45 - LFCP:[MD5.FBF8F8B2A889D8C9025E4DAFDDEAF666] - 18/02/2014 - 11:32:48 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-BABAED14.pf O45 - LFCP:[MD5.FA1A68692EBDAE5A4F440833770C4EB3] - 18/02/2014 - 11:33:08 ---A- - C:\Windows\Prefetch\CMD.EXE-AC113AA8.pf O45 - LFCP:[MD5.B1FF3E32CDE60F9C8E0FE5A3AEEA39EB] - 18/02/2014 - 11:33:08 ---A- - C:\Windows\Prefetch\CONHOST.EXE-1F3E9D7E.pf O45 - LFCP:[MD5.46FE2FEA8935E19DDF4C51FBD4EF769B] - 18/02/2014 - 11:33:08 ---A- - C:\Windows\Prefetch\CSCRIPT.EXE-0FB3F22C.pf O45 - LFCP:[MD5.FB122A68F0F14E5E5A6B828AB85E00CD] - 18/02/2014 - 11:33:12 ---A- - C:\Windows\Prefetch\PV.EXE-D38DBC0F.pf O45 - LFCP:[MD5.6565099BADB407E7247BE633CF33FA2C] - 18/02/2014 - 11:33:13 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-B0F8131B.pf O45 - LFCP:[MD5.33E4D423B778EB8CB6A8B54CB7688CDA] - 18/02/2014 - 11:33:13 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-6768A320.pf O45 - LFCP:[MD5.98BEA3541854956C083D6132E781752D] - 18/02/2014 - 11:33:15 ---A- - C:\Windows\Prefetch\SUBINACL.EXE-5A26F5F6.pf O45 - LFCP:[MD5.4AC2D72F15DC054B0500934A2B6211D9] - 18/02/2014 - 11:33:45 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-AD598958.pf O45 - LFCP:[MD5.1B00225B4B792E1F7C8D2C99FD78EDE0] - 22/01/2014 - 13:45:25 ---A- - C:\Windows\Prefetch\AgCx_SC4.db ~ Prefetcher: 143 Scanned in 00mn 01s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll ~ LSA: 8 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ CSB: 13 Scanned in 00mn 00s ---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"vidc.i420"="lvcod64.dll" . (.Logitech Inc. - Video Codec.) -- C:\Windows\System32\lvcod64.dll O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ TDSD: 3 Scanned in 00mn 00s ---\\ Enumération des clés de registre StartupReg (SMSR) (O53) O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\InnoSetupRegFile.0000000001 [Key] . (.Pas de propriétaire - Setup/Uninstall.) -- C:\Windows\is-6C5A1.exe O53 - SMSR:HKLM\...\startupreg\MyTomTomSA.exe [Key] . (.TomTom - MyTomTom.) -- C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Logiciels\Steam\Steam.exe ~ SMSR Keys: 4 Scanned in 00mn 00s ---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ MSCP: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=2 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ MWPS: 16 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 ~ MWPE Keys: 3 Scanned in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:[MD5.64EDD3F59DB321947969FDF1DD747323] - 14/07/2009 - 01:06:38 ---A- . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\Drivers\1394bus.sys [68096] O58 - SDL:[MD5.A87D604AEA360176311474C87A63BB88] - 20/11/2010 - 11:44:56 ---A- . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\Drivers\1394ohci.sys [229888] O58 - SDL:[MD5.D81D9E70B8A6DD14D42D7B4EFA65D5F2] - 20/11/2010 - 14:32:46 ---A- . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\Drivers\acpi.sys [334208] O58 - SDL:[MD5.99F8E788246D495CE3794D7E7821D2CA] - 20/11/2010 - 10:30:42 ---A- . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\Drivers\acpipmi.sys [12800] O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088] O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [339536] O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\Drivers\adpu320.sys [182864] O58 - SDL:[MD5.79059559E89D06E8B80CE2944BE20228] - 28/09/2013 - 02:09:10 ---A- . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\Drivers\afd.sys [497152] O58 - SDL:[MD5.7ECFF9B22276B73F43A99A15A6094E90] - 14/07/2009 - 01:10:24 ---A- . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\Drivers\agilevpn.sys [60416] O58 - SDL:[MD5.608C14DBA7299D8CB6ED035A68A15799] - 14/07/2009 - 02:52:21 ---A- . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\Drivers\AGP440.sys [61008] O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\Drivers\aliide.sys [15440] O58 - SDL:[MD5.1FF8B4431C353CE385C875F194924C0C] - 14/07/2009 - 02:52:21 ---A- . (.Microsoft Corporation - Pilote IDE AMD.) -- C:\Windows\System32\Drivers\amdide.sys [15440] O58 - SDL:[MD5.7024F087CFF1833A806193EF9D22CDA9] - 14/07/2009 - 00:19:25 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdk8.sys [64512] O58 - SDL:[MD5.1E56388B3FE0D031C44144EB8C4D6217] - 14/07/2009 - 00:19:25 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdppm.sys [60928] O58 - SDL:[MD5.D4121AE6D0C0E7E13AA221AA57EF2D49] - 11/03/2011 - 07:41:12 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [107904] O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\System32\Drivers\amdsbs.sys [194128] O58 - SDL:[MD5.540DAF1CEA6094886D72126FD7C33048] - 11/03/2011 - 07:41:12 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [27008] O58 - SDL:[MD5.89A69C3F2F319B43379399547526D952] - 20/11/2010 - 11:14:37 ---A- . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\Drivers\appid.sys [61440] O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [87632] O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [97856] O58 - SDL:[MD5.57483E691D635510533E081EC4CB81EC] - 13/01/2014 - 17:36:12 ---A- . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\Drivers\aswKbd.sys [28184] O58 - SDL:[MD5.0ACC3F49015E628590CA4372322EB46B] - 15/02/2014 - 16:57:42 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\System32\Drivers\aswMonFlt.sys [78648] O58 - SDL:[MD5.0E27000220635C2D831B0A4689AFF6E9] - 14/01/2014 - 06:22:09 ---A- . (.AVAST Software - avast! Filtering NDIS driver.) -- C:\Windows\System32\Drivers\aswndisflt.sys [439648] O58 - SDL:[MD5.794DF4B6F3B300270CEEE55C42B951C6] - 13/01/2014 - 17:36:11 ---A- . (.AVAST Software - avast! Filtering NDIS driver.) -- C:\Windows\System32\Drivers\aswndisflt.sys.1389676929 [447888] O58 - SDL:[MD5.679712B7A353EE665B9301592164A172] - 13/01/2014 - 17:36:14 ---A- . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\Drivers\aswRdr2.sys [92544] O58 - SDL:[MD5.C04F7B373881009D7994D9BF55D24AB4] - 13/01/2014 - 17:36:14 ---A- . (...) -- C:\Windows\System32\Drivers\aswRvrt.sys [65776] O58 - SDL:[MD5.43599E630DFC30AD4E6A2B4B269EB1C0] - 15/02/2014 - 16:57:42 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\Drivers\aswSnx.sys [1038072] O58 - SDL:[MD5.F22DE5F5BA8ADA0A861441B624B51EB5] - 15/02/2014 - 16:57:42 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\Drivers\aswsp.sys [421704] O58 - SDL:[MD5.511595FFE2E06D6E1947E0A0C8C7AD27] - 13/01/2014 - 17:36:14 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\Drivers\aswsp.sys.1389631011 [409832] O58 - SDL:[MD5.FD3EA14ADF6216BDF4030DB2EFD43D96] - 15/02/2014 - 16:57:42 ---A- . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\Drivers\aswstm.sys [80184] O58 - SDL:[MD5.90399625F341AB76BA4B85A5E860EB1F] - 13/01/2014 - 17:42:56 ---A- . (...) -- C:\Windows\System32\Drivers\aswVmm.sys [207904] O58 - SDL:[MD5.769765CE2CC62867468CEA93969B2242] - 14/07/2009 - 01:10:13 ---A- . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\Drivers\asyncmac.sys [23040] O58 - SDL:[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - 02:52:21 ---A- . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\Drivers\atapi.sys [24128] O58 - SDL:[MD5.059F00DEF82BF41E433B7ED465847726] - 05/08/2013 - 03:25:45 ---A- . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\Drivers\ataport.sys [155584] O58 - SDL:[MD5.52BD95CAA9CAE8977FE043E9AD6D2D0E] - 18/08/2009 - 03:48:48 ---A- . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\Drivers\atikmdag.sys [6037504] O58 - SDL:[MD5.8E2A3479CF4E871F37D0F023692E6694] - 30/04/2013 - 03:48:14 ---A- . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\Drivers\atikmpag.sys [359936] O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\System32\Drivers\b57nd60a.sys [270848] O58 - SDL:[MD5.F4DE2AE7A9E1BADAC70BC71EA2C17612] - 14/07/2009 - 02:52:21 ---A- . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\Drivers\battc.sys [28240] O58 - SDL:[MD5.16A47CE2DECC9B099349A5F840654746] - 14/07/2009 - 01:00:13 ---A- . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\Drivers\beep.sys [6656] O58 - SDL:[MD5.61583EE3C3A17003C4ACD0475646B4D3] - 14/07/2009 - 00:35:59 ---A- . (.Microsoft Corporation - BLB Drive Driver.) -- C:\Windows\System32\Drivers\blbdrive.sys [45056] O58 - SDL:[MD5.6C02A83164F5CC0A262F4199F0871CF5] - 23/02/2011 - 05:55:04 ---A- . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\Drivers\bowser.sys [90624] O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltLo.sys [18432] O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [8704] O58 - SDL:[MD5.5C2F352A4E961D72518261257AAE204B] - 14/07/2009 - 02:01:48 ---A- . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\Drivers\bridge.sys [95232] O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\BrSerId.sys [286720] O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\Drivers\BrSerWdm.sys [47104] O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\Drivers\BrUsbMdm.sys [14976] O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\Drivers\BrUsbSer.sys [14720] O58 - SDL:[MD5.9DA669F11D1F894AB4EB69BF546A42E8] - 14/07/2009 - 01:06:52 ---A- . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\Drivers\bthmodem.sys [72192] O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbda.sys [468480] O58 - SDL:[MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - 00:19:47 ---A- . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\Drivers\cdfs.sys [92160] O58 - SDL:[MD5.F036CE71586E93D94DAB220D7BDF4416] - 20/11/2010 - 10:19:21 ---A- . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\Drivers\cdrom.sys [147456] O58 - SDL:[MD5.D7CD5C4E1B71FA62050515314CFB52CF] - 14/07/2009 - 01:06:34 ---A- . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\Drivers\circlass.sys [45568] O58 - SDL:[MD5.ACFAD0B512226C7A83C7CB09FD55A9AD] - 20/11/2010 - 14:32:57 ---A- . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\Drivers\Classpnp.sys [179072] O58 - SDL:[MD5.0840155D0BDDF1190F84A663C284BD33] - 14/07/2009 - 00:31:03 ---A- . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\Drivers\CmBatt.sys [17664] O58 - SDL:[MD5.E34DF9613C8D24C5CB6F8DF8D74E5586] - 24/09/2013 - 10:54:12 ---A- . (.COMODO - COMODO Internet Security Eradication Driver.) -- C:\Windows\System32\Drivers\cmderd.sys [23168] O58 - SDL:[MD5.D8E4A9A691BBA24EE242A1FDDF6EBAA1] - 14/11/2013 - 11:38:18 ---A- . (.COMODO - COMODO Internet Security Sandbox Driver.) -- C:\Windows\System32\Drivers\cmdguard.sys [709144] O58 - SDL:[MD5.F6B424B925B67C306BAA85AC79F7A5CC] - 24/09/2013 - 10:54:12 ---A- . (.COMODO - COMODO Internet Security Helper Driver.) -- C:\Windows\System32\Drivers\cmdhlp.sys [48872] O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\cmdide.sys [17488] O58 - SDL:[MD5.EBF28856F69CF094A902F884CF989706] - 04/07/2013 - 13:18:29 ---A- . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\Drivers\cng.sys [458712] O58 - SDL:[MD5.102DE219C3F61415F964C88E9085AD14] - 14/07/2009 - 02:52:31 ---A- . (.Microsoft Corporation - Composite Battery Driver.) -- C:\Windows\System32\Drivers\compbatt.sys [21584] O58 - SDL:[MD5.03EDB043586CCEBA243D689BDDA370A8] - 20/11/2010 - 11:33:17 ---A- . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\Drivers\CompositeBus.sys [38912] O58 - SDL:[MD5.3E588B60EC061686BA05D33574A344C6] - 14/07/2009 - 02:47:48 ---A- . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\Drivers\crashdmp.sys [39504] O58 - SDL:[MD5.1C827878A998C18847245FE1F34EE597] - 14/07/2009 - 02:47:48 ---A- . (.Microsoft Corporation - Disk Block Verification Filter Driver.) -- C:\Windows\System32\Drivers\crcdisk.sys [24144] O58 - SDL:[MD5.54DA3DFD29ED9F1619B6F53F3CE55E49] - 20/11/2010 - 10:27:13 ---A- . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\Windows\System32\Drivers\csc.sys [514560] O58 - SDL:[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 20/11/2010 - 10:26:32 ---A- . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\Drivers\dfsc.sys [102400] O58 - SDL:[MD5.13096B05847EC78F0977F2C0F79E9AB3] - 14/07/2009 - 00:37:18 ---A- . (.Microsoft Corporation - System Indexer/Cache Driver.) -- C:\Windows\System32\Drivers\discache.sys [40448] O58 - SDL:[MD5.9819EEE8B5EA3784EC4AF3B137A5244C] - 14/07/2009 - 02:47:48 ---A- . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\Drivers\disk.sys [73280] O58 - SDL:[MD5.9BBD8B5855BC6578957F82341F9CDE5A] - 22/04/2011 - 23:15:29 ---A- . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\Drivers\Diskdump.sys [27520] O58 - SDL:[MD5.E0D3CD5841E5C7BE7B94BA946AF1E498] - 04/10/2013 - 03:16:30 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmk.sys [116736] O58 - SDL:[MD5.9B19F34400D24DF84C858A421C205754] - 14/07/2009 - 01:06:16 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmkaud.sys [5632] O58 - SDL:[MD5.839B5FE3D48E9F35B22C21A3D5103F6C] - 14/07/2009 - 02:47:48 ---A- . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\Drivers\Dumpata.sys [28736] O58 - SDL:[MD5.814DB88F2641691575A455CF25354098] - 14/07/2009 - 02:43:14 ---A- . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\Drivers\dumpfve.sys [55128] O58 - SDL:[MD5.BF24D6F2ED97FE830BFD52B246F98E67] - 14/07/2009 - 00:38:28 ---A- . (.Microsoft Corporation - DirectX API Driver.) -- C:\Windows\System32\Drivers\dxapi.sys [16896] O58 - SDL:[MD5.FEDE0629ECB23650D48989517D4914DA] - 14/07/2009 - 00:38:28 ---A- . (.Microsoft Corporation - DirectX Graphics Driver.) -- C:\Windows\System32\Drivers\dxg.sys [98816] O58 - SDL:[MD5.88612F1CE3BF42256913BF6E61C70D52] - 01/08/2013 - 13:09:36 ---A- . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys [983488] O58 - SDL:[MD5.1F04CFB79DD5FB7694468CE3FB3DCC31] - 10/04/2013 - 07:01:54 ---A- . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\Drivers\dxgmms1.sys [265064] O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496] O58 - SDL:[MD5.34A3C54752046E79A126E15C51DB409B] - 14/07/2009 - 00:31:04 ---A- . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\Drivers\errdev.sys [9728] O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbda.sys [3286016] O58 - SDL:[MD5.A510C654EC00C1E9BDD91EEB3A59823B] - 14/07/2009 - 00:23:29 ---A- . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\Drivers\exfat.sys [195072] O58 - SDL:[MD5.0ADC83218B66A6DB380C330836F3E36D] - 14/07/2009 - 00:23:29 ---A- . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\Drivers\fastfat.sys [204800] O58 - SDL:[MD5.D765D19CD8EF61F650C384F62FAC00AB] - 14/07/2009 - 01:00:54 ---A- . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\Drivers\fdc.sys [29696] O58 - SDL:[MD5.655661BE46B5F5F3FD454E2C3095B930] - 14/07/2009 - 02:47:48 ---A- . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\Drivers\fileinfo.sys [70224] O58 - SDL:[MD5.5F671AB5BC87EEA04EC38A6CD5962A47] - 14/07/2009 - 00:25:40 ---A- . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\Drivers\filetrace.sys [34304] O58 - SDL:[MD5.C172A0F53008EAEB8EA33FE10E177AF5] - 14/07/2009 - 01:00:54 ---A- . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\Drivers\flpydisk.sys [24576] O58 - SDL:[MD5.DA6B67270FD9DB3697B20FCE94950741] - 20/11/2010 - 14:33:34 ---A- . (.Microsoft Corporation - Gestionnaire de filtres de système de fichiers Microsoft.) -- C:\Windows\System32\Drivers\fltMgr.sys [289664] O58 - SDL:[MD5.D43703496149971890703B4B1B723EAC] - 14/07/2009 - 02:47:49 ---A- . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\fsdepends.sys [55376] O58 - SDL:[MD5.6BD9295CC032DD3077C671FCCF579A7B] - 01/03/2012 - 07:46:16 ---A- . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\Drivers\fs_rec.sys [23408] O58 - SDL:[MD5.8F6322049018354F45F05A2FD2D4E5E0] - 24/01/2013 - 07:01:01 ---A- . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\Drivers\fvevol.sys [223752] O58 - SDL:[MD5.41C67E4205C606A103DEC8651D0B6FE6] - 03/01/2013 - 07:00:42 ---A- . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\Drivers\FWPKCLNT.SYS [288088] O58 - SDL:[MD5.8C778D335C9D272CFD3298AB02ABE3B6] - 14/07/2009 - 02:47:48 ---A- . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour plateformes de processe.) -- C:\Windows\System32\Drivers\GAGP30KX.SYS [65088] O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232] O58 - SDL:[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 20/11/2010 - 11:43:43 ---A- . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\Drivers\hdaudbus.sys [122368] O58 - SDL:[MD5.975761C778E33CD22498059B91E7373A] - 20/11/2010 - 11:44:23 ---A- . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\HdAudio.sys [350208] O58 - SDL:[MD5.78E86380454A7B10A5EB255DC44A355F] - 14/07/2009 - 00:31:06 ---A- . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\Drivers\hidbatt.sys [26624] O58 - SDL:[MD5.7FD2A313F7AFE5C4DAB14798C48DD104] - 14/07/2009 - 01:06:52 ---A- . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périphériques HID.) -- C:\Windows\System32\Drivers\hidbth.sys [100864] O58 - SDL:[MD5.597C3699384E53CC59587ED50CCE5CA2] - 03/07/2013 - 05:05:05 ---A- . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\Drivers\hidclass.sys [76800] O58 - SDL:[MD5.0A77D29F311B88CFAE3B13F9C1A73825] - 14/07/2009 - 01:06:23 ---A- . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidir.sys [46592] O58 - SDL:[MD5.856E76B3641746ABBC2946BED1372098] - 03/07/2013 - 05:05:04 ---A- . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\Drivers\hidparse.sys [32896] O58 - SDL:[MD5.9592090A7E2B61CD582B612B6DF70536] - 20/11/2010 - 11:43:49 ---A- . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidusb.sys [30208] O58 - SDL:[MD5.39D2ABCD392F3D8A6DCE7B60AE7B8EFC] - 20/11/2010 - 14:33:35 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [78720] O58 - SDL:[MD5.0EA7DE1ACB728DD5A369FD742D6EEE28] - 20/11/2010 - 10:25:14 ---A- . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\Drivers\http.sys [753664] O58 - SDL:[MD5.A5462BD6884960C9DC85ED49D34FF392] - 20/11/2010 - 14:33:36 ---A- . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\Drivers\hwpolicy.sys [14720] O58 - SDL:[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - 00:19:57 ---A- . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\Drivers\i8042prt.sys [105472] O58 - SDL:[MD5.AAAF44DB3BD0B9D1FB6969B23ECC8366] - 11/03/2011 - 07:41:26 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\Drivers\iaStorV.sys [410496] O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [44112] O58 - SDL:[MD5.7D3B8880385ACFA47174847983C4A7FA] - 24/09/2013 - 10:54:14 ---A- . (.COMODO - COMODO Internet Security Firewall Driver.) -- C:\Windows\System32\Drivers\inspect.sys [96800] O58 - SDL:[MD5.F00F20E70C6EC3AA366910083A0518AA] - 14/07/2009 - 02:48:04 ---A- . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\Drivers\intelide.sys [16960] O58 - SDL:[MD5.ADA036632C664CAA754079041CF1F8C1] - 14/07/2009 - 00:19:25 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\intelppm.sys [62464] O58 - SDL:[MD5.C9F0E1BD74365A8771590E9008D22AB6] - 20/11/2010 - 11:52:19 ---A- . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\Drivers\ipfltdrv.sys [82944] O58 - SDL:[MD5.0FC1AEA580957AA8817B8F305D18CA3A] - 20/11/2010 - 11:04:53 ---A- . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\Drivers\IPMIDrv.sys [78848] O58 - SDL:[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - 01:10:03 ---A- . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys [116224] O58 - SDL:[MD5.05360B1EA5A2ABF620D1D96EBD8BD8F1] - 14/07/2009 - 01:09:02 ---A- . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\Drivers\irda.sys [120320] O58 - SDL:[MD5.3ABF5E7213EB28966D55D58B515D5CE9] - 14/07/2009 - 01:08:59 ---A- . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\Drivers\irenum.sys [17920] O58 - SDL:[MD5.2F7B28DC3E1183E5EB418DF55C204F38] - 14/07/2009 - 02:48:04 ---A- . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\Drivers\isapnp.sys [20544] O58 - SDL:[MD5.BC02336F1CBA7DCC7D1213BB588A68A5] - 14/07/2009 - 02:48:04 ---A- . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\Drivers\kbdclass.sys [50768] O58 - SDL:[MD5.0705EFF5B42A9DB58548EEC3B26BB484] - 20/11/2010 - 11:33:25 ---A- . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\Drivers\kbdhid.sys [33280] O58 - SDL:[MD5.783BEB99743BACB9586CCB70356449C5] - 31/05/2013 - 15:53:12 ---A- . (.QFX Software Corporation - KeyScrambler Keyboard Encryption Driver.) -- C:\Windows\System32\Drivers\keyscrambler.sys [222200] O58 - SDL:[MD5.24FBF5CC5C04150073C315A7C83521EE] - 20/11/2010 - 11:33:25 ---A- . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\Drivers\ks.sys [243712] O58 - SDL:[MD5.8F489706472F7E9A06BAAA198703FA64] - 25/09/2013 - 03:26:40 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecdd.sys [95680] O58 - SDL:[MD5.868A2CAAB12EFC7A021682BCA0EEC54C] - 25/09/2013 - 03:26:40 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface Packages.) -- C:\Windows\System32\Drivers\ksecpkg.sys [154560] O58 - SDL:[MD5.6869281E78CB31A43E969F06B57347C4] - 14/07/2009 - 01:00:19 ---A- . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\Windows\System32\Drivers\ksthunk.sys [20992] O58 - SDL:[MD5.94B29CE153765E768F004FB3440BE2B0] - 24/11/2009 - 02:38:00 ---A- . (.Logitech Inc. - Logitech GamePanel Virtual Hid Device Driver.) -- C:\Windows\System32\Drivers\LGVirHid.sys [16008] O58 - SDL:[MD5.1538831CF8AD2979A04C423779465827] - 14/07/2009 - 01:08:51 ---A- . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\Drivers\lltdio.sys [60928] O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_fc.sys [114752] O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [106560] O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [65600] O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [115776] O58 - SDL:[MD5.43D0F98E1D56CCDDB0D5254CFF7B356E] - 14/07/2009 - 00:26:13 ---A- . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichier LUA.) -- C:\Windows\System32\Drivers\luafv.sys [113152] O58 - SDL:[MD5.07389F6925E490D2DB7882110E99921C] - 26/07/2008 - 15:22:22 ---A- . (.Logitech Inc. - Audio filter for Express Plus.) -- C:\Windows\System32\Drivers\lv302a64.sys [15768] O58 - SDL:[MD5.087A343DFC337F37723DD7912DE6B6CD] - 26/07/2008 - 15:22:34 ---A- . (.Logitech Inc. - Logitech QuickCam Driver.) -- C:\Windows\System32\Drivers\LV302V64.SYS [2624408] O58 - SDL:[MD5.7F0BA3A6E8996F15693C6B7D81DA049E] - 26/07/2008 - 15:25:48 ---A- . (.Logitech Inc. - Logitech Kernel Audio Improvement Filter Driver.) -- C:\Windows\System32\Drivers\lvrs64.sys [790424] O58 - SDL:[MD5.5C3FF68267A5D242EE79EE01B993D6CE] - 26/07/2008 - 15:26:34 ---A- . (.Logitech Inc. - USB Statistic Driver.) -- C:\Windows\System32\Drivers\LVUSBS64.sys [50072] O58 - SDL:[MD5.0BB97D43299910CBFBA59C461B99B910] - 04/04/2013 - 14:50:32 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25928] O58 - SDL:[MD5.3C9F072F9DCA856B9FB7A20CBD4281AC] - 14/07/2009 - 01:01:06 ---A- . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\Drivers\mcd.sys [22016] O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\System32\Drivers\megasas.sys [35392] O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [284736] O58 - SDL:[MD5.800BA92F7010378B09F9ED9270F07137] - 14/07/2009 - 01:10:48 ---A- . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\Drivers\modem.sys [40448] O58 - SDL:[MD5.B03D591DC7DA45ECE20B3B467E6AADAA] - 14/07/2009 - 00:38:52 ---A- . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\Drivers\monitor.sys [30208] O58 - SDL:[MD5.7D27EA49F3C1F687D357E77A470AEA99] - 14/07/2009 - 02:48:27 ---A- . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\Drivers\mouclass.sys [49216] O58 - SDL:[MD5.D3BF052C40B0C4166D9FD86A4288C1E6] - 14/07/2009 - 01:00:20 ---A- . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\Drivers\mouhid.sys [31232] O58 - SDL:[MD5.32E7A3D591D671A6DF2DB515A5CBE0FA] - 20/11/2010 - 14:33:43 ---A- . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\Drivers\mountmgr.sys [94592] O58 - SDL:[MD5.A44B420D30BD56E145D6A2BC8768EC58] - 20/11/2010 - 14:33:44 ---A- . (.Microsoft Corporation - Pilote du bus de prise en charge des chemins d’accès multiples.) -- C:\Windows\System32\Drivers\mpio.sys [155008] O58 - SDL:[MD5.6C38C9E45AE0EA2FA5E551F2ED5E978F] - 14/07/2009 - 01:08:25 ---A- . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\Drivers\mpsdrv.sys [77312] O58 - SDL:[MD5.1A4F75E63C9FB84B85DFFC6B63FD5404] - 04/07/2013 - 11:11:35 ---A- . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\Drivers\mrxdav.sys [140800] O58 - SDL:[MD5.A5D9106A73DC88564C825D317CAC68AC] - 27/04/2011 - 03:40:40 ---A- . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\Drivers\mrxsmb.sys [158208] O58 - SDL:[MD5.D711B3C1D5F42C0C2415687BE09FC163] - 09/07/2011 - 03:46:28 ---A- . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\Drivers\mrxsmb10.sys [288768] O58 - SDL:[MD5.9423E9D355C8D303E76B8CFBD8A5C30C] - 27/04/2011 - 03:39:37 ---A- . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\Drivers\mrxsmb20.sys [128000] O58 - SDL:[MD5.C25F0BAFA182CBCA2DD3C851C2E75796] - 20/11/2010 - 14:33:44 ---A- . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) -- C:\Windows\System32\Drivers\msahci.sys [31104] O58 - SDL:[MD5.DB801A638D011B9633829EB6F663C900] - 20/11/2010 - 14:33:44 ---A- . (.Microsoft Corporation - Module spécifique de périphériques Microsoft.) -- C:\Windows\System32\Drivers\msdsm.sys [140672] O58 - SDL:[MD5.AA3FB40E17CE1388FA1BEDAB50EA8F96] - 14/07/2009 - 00:19:47 ---A- . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\Drivers\msfs.sys [26112] O58 - SDL:[MD5.F9D215A46A8B9753F61767FA72A20326] - 14/07/2009 - 01:06:24 ---A- . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\Drivers\mshidkmdf.sys [8192] O58 - SDL:[MD5.D916874BBD4F8B07BFB7FA9B3CCAE29D] - 14/07/2009 - 02:48:27 ---A- . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\Drivers\msisadrv.sys [15424] O58 - SDL:[MD5.D931D7309DEB2317035B07C9F9E6B0BD] - 20/11/2010 - 14:33:45 ---A- . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\Drivers\msiscsi.sys [273792] O58 - SDL:[MD5.49CCF2C4FEA34FFAD8B1B59D49439366] - 14/07/2009 - 01:00:18 ---A- . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\Drivers\mskssrv.sys [11136] O58 - SDL:[MD5.BDD71ACE35A232104DDD349EE70E1AB3] - 14/07/2009 - 01:00:17 ---A- . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\Drivers\mspclock.sys [7168] O58 - SDL:[MD5.4ED981241DB27C3383D72092B618A1D0] - 14/07/2009 - 01:00:17 ---A- . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\Drivers\mspqm.sys [6784] O58 - SDL:[MD5.759A9EEB0FA9ED79DA1FB7D4EF78866D] - 20/11/2010 - 14:33:45 ---A- . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\Drivers\msrpc.sys [366976] O58 - SDL:[MD5.0EED230E37515A0EAEE3C2E1BC97B288] - 14/07/2009 - 02:48:27 ---A- . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\Drivers\mssmbios.sys [32320] O58 - SDL:[MD5.2E66F9ECB30B4221A318C92AC2250779] - 14/07/2009 - 01:00:17 ---A- . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\Drivers\mstee.sys [8064] O58 - SDL:[MD5.7EA404308934E675BFFDE8EDF0757BCD] - 14/07/2009 - 01:02:08 ---A- . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\Windows\System32\Drivers\MTConfig.sys [15360] O58 - SDL:[MD5.F9A18612FD3526FE473C1BDA678D61C8] - 14/07/2009 - 02:48:27 ---A- . (.Microsoft Corporation - Multiple UNC Provider Driver.) -- C:\Windows\System32\Drivers\mup.sys [60496] O58 - SDL:[MD5.760E38053BF56E501D562B70AD796B88] - 22/08/2012 - 19:12:40 ---A- . (.Microsoft Corporation - Pilote NDIS 6.20.) -- C:\Windows\System32\Drivers\ndis.sys [950128] O58 - SDL:[MD5.9F9A1F53AAD7DA4D6FEF5BB73AB811AC] - 14/07/2009 - 01:08:13 ---A- . (.Microsoft Corporation - NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\Drivers\ndiscap.sys [35328] O58 - SDL:[MD5.30639C932D9FEF22B31268FE25A1B6E5] - 14/07/2009 - 01:10:00 ---A- . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\Drivers\ndistapi.sys [24064] O58 - SDL:[MD5.136185F9FB2CC61E573E676AA5402356] - 20/11/2010 - 11:50:08 ---A- . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\Windows\System32\Drivers\ndisuio.sys [56832] O58 - SDL:[MD5.53F7305169863F0A2BDDC49E116C2E11] - 20/11/2010 - 11:52:34 ---A- . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\Drivers\ndiswan.sys [164352] O58 - SDL:[MD5.015C0D8E0E0421B4CFD48CFFE2825879] - 20/11/2010 - 11:52:20 ---A- . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\Drivers\ndproxy.sys [57856] O58 - SDL:[MD5.86743D9F5D2B1048062B14B1D84501C4] - 14/07/2009 - 01:09:26 ---A- . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\Drivers\netbios.sys [44544] O58 - SDL:[MD5.09594D1089C523423B32A4229263F068] - 20/11/2010 - 10:23:20 ---A- . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\Drivers\netbt.sys [261632] O58 - SDL:[MD5.3555BA97171CD153118F73FDCCC8BFDE] - 26/11/2013 - 12:40:00 ---A- . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\Drivers\netio.sys [376768] O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [51264] O58 - SDL:[MD5.1E4C4AB5C9B8DD13179BBDC75A2A01F7] - 14/07/2009 - 00:19:48 ---A- . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\Drivers\npfs.sys [44032] O58 - SDL:[MD5.E7F5AE18AF4168178A642A9247C63001] - 14/07/2009 - 00:21:02 ---A- . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys [24576] O58 - SDL:[MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - 12/04/2013 - 15:45:08 ---A- . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\Drivers\ntfs.sys [1656680] O58 - SDL:[MD5.9899284589F75FA8724FF3D16AED75C1] - 14/07/2009 - 00:19:38 ---A- . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\Drivers\null.sys [6144] O58 - SDL:[MD5.0A92CB65770442ED0DC44834632F66AD] - 11/03/2011 - 07:41:34 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [148352] O58 - SDL:[MD5.DAB0E87525C10052BF65F06152F37E4A] - 11/03/2011 - 07:41:34 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [166272] O58 - SDL:[MD5.270D7CD42D6E3979F6DD0146650F0E05] - 14/07/2009 - 02:48:26 ---A- . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\Windows\System32\Drivers\NV_AGP.SYS [122960] O58 - SDL:[MD5.1EA3749C4114DB3E3161156FFFFA6B33] - 14/07/2009 - 01:07:23 ---A- . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\Windows\System32\Drivers\nwifi.sys [318976] O58 - SDL:[MD5.3589478E4B22CE21B41FA1BFC0B8B8A0] - 14/07/2009 - 01:06:45 ---A- . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\Drivers\ohci1394.sys [72832] O58 - SDL:[MD5.0557CF5A2556BD58E26384169D72438D] - 20/11/2010 - 11:52:20 ---A- . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\Windows\System32\Drivers\pacer.sys [131584] O58 - SDL:[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - 01:00:41 ---A- . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\Drivers\parport.sys [97280] O58 - SDL:[MD5.E9766131EEADE40A27DC27D2D68FBA9C] - 17/03/2012 - 08:58:57 ---A- . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\Drivers\partmgr.sys [75120] O58 - SDL:[MD5.94575C0571D1462A0F70BDE6BD6EE6B3] - 20/11/2010 - 14:33:48 ---A- . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\Drivers\pci.sys [184704] O58 - SDL:[MD5.B5B8B5EF2E5CB34DF8DCF8831E3534FA] - 14/07/2009 - 02:45:45 ---A- . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\pciide.sys [12352] O58 - SDL:[MD5.144497DAA145BA0F7BE896064146C058] - 14/07/2009 - 02:45:46 ---A- . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\Drivers\pciidex.sys [48720] O58 - SDL:[MD5.B2E81D4E87CE48589F98CB8C05B01F2F] - 14/07/2009 - 02:45:45 ---A- . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\Windows\System32\Drivers\pcmcia.sys [220752] O58 - SDL:[MD5.D6B9C2E1A11A3A4B26A182FFEF18F603] - 14/07/2009 - 02:45:45 ---A- . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\Drivers\pcw.sys [50768] O58 - SDL:[MD5.68769C3356B3BE5D1C732C97B9A80D6E] - 14/07/2009 - 02:01:19 ---A- . (.Microsoft Corporation - Protected Environment Authentication and Authorization Export D.) -- C:\Windows\System32\Drivers\PEAuth.sys [651264] O58 - SDL:[MD5.1E0B4CBBA91C6B041A14ECC2186F7E24] - 04/10/2013 - 02:36:04 ---A- . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport Devices).) -- C:\Windows\System32\Drivers\portcls.sys [230400] O58 - SDL:[MD5.0D922E23C041EFB1C3FAC2A6F943C9BF] - 14/07/2009 - 00:19:25 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\processr.sys [60416] O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\Drivers\ql2300.sys [1524816] O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\ql40xx.sys [128592] O58 - SDL:[MD5.76707BB36430888D9CE9D705398ADB6C] - 14/07/2009 - 01:09:48 ---A- . (.Microsoft Corporation - Pilote du support de Microsoft Quality Windows Audio Video Expe.) -- C:\Windows\System32\Drivers\qwavedrv.sys [46592] O58 - SDL:[MD5.5A0DA8AD5762FA2D91678A8A01311704] - 14/07/2009 - 01:10:09 ---A- . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\Drivers\rasacd.sys [14848] O58 - SDL:[MD5.471815800AE33E6F1C32FB1B97C490CA] - 20/11/2010 - 11:52:35 ---A- . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\Drivers\rasl2tp.sys [129536] O58 - SDL:[MD5.855C9B1CD4756C5E9A2AA58A15F58C25] - 14/07/2009 - 01:10:17 ---A- . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\Drivers\raspppoe.sys [92672] O58 - SDL:[MD5.F92A2C41117A11A00BE01CA01A7FCDE9] - 20/11/2010 - 11:52:32 ---A- . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\Drivers\raspptp.sys [111104] O58 - SDL:[MD5.E8B1E447B008D07FF47D016C2B0EEECB] - 14/07/2009 - 01:10:25 ---A- . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\Drivers\rassstp.sys [83968] O58 - SDL:[MD5.77F665941019A1594D887A74F301FA2F] - 20/11/2010 - 10:27:54 ---A- . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire tampon de lecteur red.) -- C:\Windows\System32\Drivers\rdbss.sys [309248] O58 - SDL:[MD5.302DA2A0539F2CF54D7C6CC30C1F2D8D] - 14/07/2009 - 01:17:46 ---A- . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\Drivers\rdpbus.sys [24064] O58 - SDL:[MD5.CEA6CC257FC9B7715F1C2B4849286D24] - 14/07/2009 - 01:16:34 ---A- . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\RDPCDD.sys [7680] O58 - SDL:[MD5.1B6163C503398B23FF8B939C67747683] - 20/11/2010 - 12:06:41 ---A- . (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\Drivers\rdpdr.sys [165888] O58 - SDL:[MD5.BB5971A4F00659529A5C44831AF22365] - 14/07/2009 - 01:16:34 ---A- . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\RDPENCDD.sys [7680] O58 - SDL:[MD5.216F3FA57533D98E1F74DED70113177A] - 14/07/2009 - 01:16:35 ---A- . (.Microsoft Corporation - RDP Reflector Driver Miniport.) -- C:\Windows\System32\Drivers\RDPREFMP.sys [8192] O58 - SDL:[MD5.313F68E1A3E6345A4F47A36B07062F34] - 23/08/2012 - 15:10:20 ---A- . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\Windows\System32\Drivers\rdpvideominiport.sys [19456] O58 - SDL:[MD5.E61608AA35E98999AF9AAEEEA6114B0A] - 28/04/2012 - 04:55:21 ---A- . (.Microsoft Corporation - Pilote de pile RDP Terminal.) -- C:\Windows\System32\Drivers\rdpwd.sys [210944] O58 - SDL:[MD5.34ED295FA0121C241BFEF24764FC4520] - 20/11/2010 - 14:33:53 ---A- . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\Drivers\rdyboost.sys [213888] O58 - SDL:[MD5.CAF88D6573D21CD2AA27001DDBFDC74D] - 20/11/2010 - 11:49:51 ---A- . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\Drivers\rmcast.sys [146432] O58 - SDL:[MD5.0E01641D96889BDEB22DE12D30575B08] - 04/07/2012 - 21:26:03 ---A- . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\Drivers\RNDISMP.sys [41472] O58 - SDL:[MD5.388D3DD1A6457280F3BADBA9F3ACD6B1] - 14/07/2009 - 01:10:47 ---A- . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\Drivers\rootmdm.sys [11264] O58 - SDL:[MD5.2ABD2B3BA2EF0C3BA82284C2A5E28675] - 19/08/2013 - 20:30:50 ---A- . (.RapidSolution Software AG - Intermediate Filter Driver.) -- C:\Windows\System32\Drivers\rrnetcap.sys [37480] O58 - SDL:[MD5.C76BA99AA5DAAE0FB24CB3D39F231783] - 18/12/2013 - 14:34:59 ---A- . (.Audials AG - Filter Driver.) -- C:\Windows\System32\Drivers\RrNetCapFilterDriver.sys [24744] O58 - SDL:[MD5.DDC86E4F8E7456261E637E3552E804FF] - 14/07/2009 - 01:08:51 ---A- . (.Microsoft Corporation - Link-Layer Topology Responder Driver for NDIS 6.) -- C:\Windows\System32\Drivers\rspndr.sys [76800] O58 - SDL:[MD5.F307F1C796C0886490839FDE5ED5728C] - 01/01/2000 - 01:00:00 ---A- . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver.) -- C:\Windows\System32\Drivers\Rt64win7.sys [685672] O58 - SDL:[MD5.BA97BCF2138C7667FCFEF10DFF2ABECF] - 01/01/2000 - 01:00:00 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\RTKVHD64.sys [3801176] O58 - SDL:[MD5.AC03AF3329579FFFB455AA2DAABBE22B] - 20/11/2010 - 14:33:54 ---A- . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\Drivers\sbp2port.sys [103808] O58 - SDL:[MD5.253F38D0D7074C02FF8DEB9836C97D2B] - 20/11/2010 - 11:09:59 ---A- . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce Microsoft.) -- C:\Windows\System32\Drivers\scfilter.sys [29696] O58 - SDL:[MD5.1B1E264203D4EF9D3DA1987AD70355AB] - 20/11/2010 - 14:33:54 ---A- . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\Drivers\scsiport.sys [171392] O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 10/06/2009 - 21:37:19 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [23040] O58 - SDL:[MD5.CB624C0035412AF0DEBEC78C41F5CA1B] - 14/07/2009 - 01:00:33 ---A- . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\Drivers\serenum.sys [23552] O58 - SDL:[MD5.C1D8E28B2C2ADFAEC4BA89E9FDA69BD6] - 14/07/2009 - 01:00:40 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\serial.sys [94208] O58 - SDL:[MD5.1C545A7D0691CC4A027396535691C3E3] - 14/07/2009 - 01:00:20 ---A- . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys [26624] O58 - SDL:[MD5.A554811BCD09279536440C964AE35BBF] - 14/07/2009 - 01:01:01 ---A- . (.Microsoft Corporation - Small Form Factor Disk Driver.) -- C:\Windows\System32\Drivers\sffdisk.sys [14336] O58 - SDL:[MD5.FF414F0BAEFEBA59BC6C04B3DB0B87BF] - 14/07/2009 - 01:01:03 ---A- . (.Microsoft Corporation - Small Form Factor MMC Protocol Driver.) -- C:\Windows\System32\Drivers\sffp_mmc.sys [13824] O58 - SDL:[MD5.DD85B78243A19B59F0637DCF284DA63C] - 20/11/2010 - 11:34:00 ---A- . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) -- C:\Windows\System32\Drivers\sffp_sd.sys [14336] O58 - SDL:[MD5.A9D601643A1647211A1EE2EC4E433FF4] - 14/07/2009 - 01:01:02 ---A- . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\Drivers\sfloppy.sys [16896] O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 14/07/2009 - 02:45:45 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [43584] O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 14/07/2009 - 02:45:46 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [80464] O58 - SDL:[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - 01:09:09 ---A- . (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\Drivers\smb.sys [93184] O58 - SDL:[MD5.A80348BA03E96C70852959655CA3E084] - 14/07/2009 - 01:00:35 ---A- . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\Drivers\smclib.sys [20992] O58 - SDL:[MD5.B9E31E5CACDFE584F34F730A677803F9] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - loader for security processor.) -- C:\Windows\System32\Drivers\spldr.sys [19008] O58 - SDL:[MD5.FFF95479C7AB1550F0750A5D01744211] - 10/06/2009 - 21:48:43 ---A- . (.Microsoft Corporation - security processor.) -- C:\Windows\System32\Drivers\spsys.sys [426496] O58 - SDL:[MD5.441FBA48BFF01FDB9D5969EBC1838F0B] - 29/04/2011 - 04:06:10 ---A- . (.Microsoft Corporation - Server driver.) -- C:\Windows\System32\Drivers\srv.sys [467456] O58 - SDL:[MD5.B4ADEBBF5E3677CCE9651E0F01F7CC28] - 29/04/2011 - 04:05:49 ---A- . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\Drivers\srv2.sys [410112] O58 - SDL:[MD5.27E461F0BE5BFF5FC737328F749538C3] - 29/04/2011 - 04:05:37 ---A- . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\Drivers\srvnet.sys [168448] O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 14/07/2009 - 02:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656] O58 - SDL:[MD5.19CB37AC38B802BE9C441D094521A29A] - 11/03/2011 - 07:41:37 ---A- . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\Drivers\storport.sys [189824] O58 - SDL:[MD5.D34E4943D5AC096C8EDEEBFD80D76E23] - 20/11/2010 - 14:34:01 ---A- . (.Microsoft Corporation - Storage VSC Driver.) -- C:\Windows\System32\Drivers\storvsc.sys [34688] O58 - SDL:[MD5.001CC10FA5E71AE1119115E126C8750D] - 14/07/2009 - 01:06:18 ---A- . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\Drivers\stream.sys [68864] O58 - SDL:[MD5.9CFEFD62D86DABFAC12D1C5ED72BA6A4] - 08/02/2014 - 10:00:14 ---A- . (...) -- C:\Windows\System32\Drivers\SWDUMon.sys [16152] O58 - SDL:[MD5.D01EC09B6711A5F8E7E6564A4D0FBC90] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\Drivers\swenum.sys [12496] O58 - SDL:[MD5.6E316C01CBA8B785FE495F5CC4F48C6F] - 14/07/2009 - 01:01:04 ---A- . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\Drivers\tape.sys [29184] O58 - SDL:[MD5.048CFE7569D6ADCAB9349BB1A566A79E] - 18/12/2013 - 14:35:07 ---A- . (.RapidSolution Software AG - Audials Sound Capturing.) -- C:\Windows\System32\Drivers\tbhsd.sys [47240] O58 - SDL:[MD5.40AF23633D197905F03AB5628C558C51] - 08/09/2013 - 03:30:37 ---A- . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\Drivers\tcpip.sys [1903552] O58 - SDL:[MD5.1B16D0BD9841794A6E0CDE0CEF744ABC] - 03/10/2012 - 17:07:26 ---A- . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\Drivers\tcpipreg.sys [45568] O58 - SDL:[MD5.6F020A220388ECA0AB6062DC27BD16B6] - 20/11/2010 - 10:22:07 ---A- . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\Drivers\tdi.sys [26624] O58 - SDL:[MD5.3371D21011695B16333A3934340C4E7C] - 14/07/2009 - 01:16:32 ---A- . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\Windows\System32\Drivers\tdpipe.sys [15872] O58 - SDL:[MD5.51C5ECEB1CDEE2468A1748BE550CFBC8] - 17/02/2012 - 05:57:32 ---A- . (.Microsoft Corporation - TCP Transport Driver.) -- C:\Windows\System32\Drivers\tdtcp.sys [23552] O58 - SDL:[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - 20/11/2010 - 10:21:56 ---A- . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\Drivers\tdx.sys [119296] O58 - SDL:[MD5.561E7E1F06895D78DE991E01DD0FB6E5] - 20/11/2010 - 14:33:57 ---A- . (.Microsoft Corporation - Remote Desktop Server Driver.) -- C:\Windows\System32\Drivers\termdd.sys [63360] O58 - SDL:[MD5.4CE278FC9671BA81A138D70823FCAA09] - 15/06/2013 - 05:32:16 ---A- . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\Drivers\tssecsrv.sys [39936] O58 - SDL:[MD5.E9981ECE8D894CEF7038FD1D040EB426] - 02/10/2013 - 03:22:20 ---A- . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du Bureau à distance.) -- C:\Windows\System32\Drivers\TsUsbFlt.sys [56832] O58 - SDL:[MD5.3566A8DAAFA27AF944F5D705EAA64894] - 20/11/2010 - 11:51:50 ---A- . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\Windows\System32\Drivers\tunnel.sys [125440] O58 - SDL:[MD5.B4DD609BD7E282BFC683CEC7EAAAAD67] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\Windows\System32\Drivers\UAGP35.SYS [64080] O58 - SDL:[MD5.FF4232A1A64012BAA1FD97C7B67DF593] - 20/11/2010 - 10:26:11 ---A- . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\Drivers\udfs.sys [328192] O58 - SDL:[MD5.4BFE1BC28391222894CBF1E7D0E42320] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à processeur K8/9.) -- C:\Windows\System32\Drivers\ULIAGPKX.SYS [64592] O58 - SDL:[MD5.DC54A574663A895C8763AF0FA1FF7561] - 20/11/2010 - 11:44:37 ---A- . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\Drivers\umbus.sys [48640] O58 - SDL:[MD5.B2E8E8CB557B156DA5493BBDDCC1474D] - 14/07/2009 - 01:06:52 ---A- . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\Drivers\umpass.sys [9728] O58 - SDL:[MD5.92B3172E8C14C1444682F510843A9988] - 12/02/2013 - 05:12:05 ---A- . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\Drivers\usb8023.sys [19968] O58 - SDL:[MD5.B0435098C81D04CAFFF80DDB746CD3A2] - 12/07/2013 - 11:40:58 ---A- . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\Windows\System32\Drivers\USBAUDIO.sys [109824] O58 - SDL:[MD5.292A8E03B3FCE04E39B5BE9B14132030] - 20/11/2010 - 11:44:05 ---A- . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\Drivers\USBCAMD2.sys [32896] O58 - SDL:[MD5.DCA68B0943D6FA415F0C56C92158A83A] - 27/11/2013 - 02:41:15 ---A- . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\Drivers\usbccgp.sys [99840] O58 - SDL:[MD5.80B0F7D5CCF86CEB5D402EAAF61FEC31] - 12/07/2013 - 11:41:12 ---A- . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\usbcir.sys [100864] O58 - SDL:[MD5.FFA06EF43987ED0DD42AD59B260C0C78] - 27/11/2013 - 02:41:03 ---A- . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\Drivers\usbd.sys [7808] O58 - SDL:[MD5.18A85013A3E0F7E1755365D287443965] - 27/11/2013 - 02:41:11 ---A- . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\Drivers\usbehci.sys [53248] O58 - SDL:[MD5.8D1196CFBB223621F2C67D45710F25BA] - 27/11/2013 - 02:41:37 ---A- . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\Drivers\usbhub.sys [343040] O58 - SDL:[MD5.765A92D428A8DB88B960DA5A8D6089DC] - 27/11/2013 - 02:41:09 ---A- . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbohci.sys [25600] O58 - SDL:[MD5.12FEB33791920678F8433701C822BCFD] - 27/11/2013 - 02:41:11 ---A- . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\Drivers\usbport.sys [325120] O58 - SDL:[MD5.73188F58FB384E75C4063D29413CEE3D] - 14/07/2009 - 01:38:18 ---A- . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\Drivers\usbprint.sys [25088] O58 - SDL:[MD5.C3EC945DEC43C00E2AD4C98DDDD064C7] - 20/11/2010 - 12:37:20 ---A- . (.Microsoft Corporation - Gestionnaire de stratégie de redirection USB Windows.) -- C:\Windows\System32\Drivers\usbrpm.sys [31744] O58 - SDL:[MD5.9661DA76B4531B2DA272ECCE25A8AF24] - 03/07/2013 - 05:40:12 ---A- . (.Microsoft Corporation - USB Scanner Driver.) -- C:\Windows\System32\Drivers\usbscan.sys [42496] O58 - SDL:[MD5.FED648B01349A3C8395A5169DB5FB7D6] - 11/03/2011 - 05:37:16 ---A- . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\Drivers\USBSTOR.SYS [91648] O58 - SDL:[MD5.DD253AFC3BC6CBA412342DE60C3647F3] - 27/11/2013 - 02:41:06 ---A- . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbuhci.sys [30720] O58 - SDL:[MD5.C5C876CCFC083FF3B128F933823E87BD] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - Énumérateur racine de lecteur virtuel.) -- C:\Windows\System32\Drivers\vdrvroot.sys [36432] O58 - SDL:[MD5.53E92A310193CB3C03BEA963DE7D9CFC] - 14/07/2009 - 00:38:47 ---A- . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys [29184] O58 - SDL:[MD5.DA4DA3F5E02943C2DC8C6ED875DE68DD] - 14/07/2009 - 00:38:47 ---A- . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vgapnp.sys [29184] O58 - SDL:[MD5.2CE2DF28C83AEAF30084E1B1EB253CBB] - 20/11/2010 - 14:34:00 ---A- . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\Drivers\vhdmp.sys [215936] O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [17488] O58 - SDL:[MD5.E7353D59C9842BC7299FAEB7E7E09340] - 14/07/2009 - 00:38:51 ---A- . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\Drivers\videoprt.sys [129024] O58 - SDL:[MD5.86EA3E79AE350FEA5331A1303054005F] - 20/11/2010 - 14:34:01 ---A- . (.Microsoft Corporation - Virtual Machine Bus.) -- C:\Windows\System32\Drivers\vmbus.sys [199552] O58 - SDL:[MD5.7DE90B48F210D29649380545DB45A187] - 20/11/2010 - 10:57:13 ---A- . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\Windows\System32\Drivers\VMBusHID.sys [21760] O58 - SDL:[MD5.E60C0A09F997826C7627B244195AB581] - 20/11/2010 - 10:57:33 ---A- . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\Windows\System32\Drivers\vms3cap.sys [6656] O58 - SDL:[MD5.7785DC213270D2FC066538DAF94087E7] - 20/11/2010 - 14:34:01 ---A- . (.Microsoft Corporation - Virtual Storage Filter Driver.) -- C:\Windows\System32\Drivers\vmstorfl.sys [46464] O58 - SDL:[MD5.D2AAFD421940F640B407AEFAAEBD91B0] - 20/11/2010 - 14:34:01 ---A- . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys [71552] O58 - SDL:[MD5.A255814907C89BE58B79EF2F189B843B] - 20/11/2010 - 14:34:01 ---A- . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys [363392] O58 - SDL:[MD5.0D08D2F3B3FF84E433346669B5E0F639] - 20/11/2010 - 14:34:02 ---A- . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\Drivers\volsnap.sys [295808] O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [161872] O58 - SDL:[MD5.36D4720B72B5C5D9CB2B9C29E9DF67A1] - 14/07/2009 - 01:07:21 ---A- . (.Microsoft Corporation - Pilote de bus WiFi virtuel.) -- C:\Windows\System32\Drivers\vwifibus.sys [24576] O58 - SDL:[MD5.6A3D66263414FF0D6FA754C646612F3F] - 14/07/2009 - 01:07:22 ---A- . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\Drivers\vwififlt.sys [59904] O58 - SDL:[MD5.6A638FC4BFDDC4D9B186C28C91BD1A01] - 14/07/2009 - 01:07:28 ---A- . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\Drivers\vwifimp.sys [17920] O58 - SDL:[MD5.4E9440F4F152A7B944CB1663D3935A3E] - 14/07/2009 - 01:02:07 ---A- . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\Drivers\wacompen.sys [27776] O58 - SDL:[MD5.356AFD78A6ED4457169241AC3965230C] - 20/11/2010 - 11:52:37 ---A- . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\Drivers\wanarp.sys [88576] O58 - SDL:[MD5.FC438D1430B28618E2D0C7C332A710AD] - 14/07/2009 - 00:37:35 ---A- . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\Drivers\watchdog.sys [42496] O58 - SDL:[MD5.72889E16FF12BA0F235467D6091B17DC] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - Microsoft Watchdog Timer Driver.) -- C:\Windows\System32\Drivers\wd.sys [21056] O58 - SDL:[MD5.E2C933EDBC389386EBE6D2BA953F43D8] - 25/06/2013 - 23:55:52 ---A- . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en mode noyau.) -- C:\Windows\System32\Drivers\Wdf01000.sys [785624] O58 - SDL:[MD5.AEA0A67275CFBA0E463E00C6E9A1DDAE] - 26/07/2012 - 05:55:47 ---A- . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\Drivers\WdfLdr.sys [54376] O58 - SDL:[MD5.611B23304BF067451A9FDEE01FBDD725] - 14/07/2009 - 01:09:26 ---A- . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) -- C:\Windows\System32\Drivers\wfplwf.sys [12800] O58 - SDL:[MD5.05ECAEC3E4529A7153B3136CEB49F0EC] - 14/07/2009 - 02:45:56 ---A- . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\Drivers\wimmount.sys [22096] O58 - SDL:[MD5.B4A1002206F6810EABC027DBBCE3B737] - 20/11/2010 - 14:33:38 ---A- . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\Windows\System32\Drivers\winhv.sys [52096] O58 - SDL:[MD5.F6FF8944478594D0E414D3F048F0D778] - 14/07/2009 - 00:31:02 ---A- . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\Drivers\wmiacpi.sys [14336] O58 - SDL:[MD5.FC146F46872D4C5B529B89A5131FD1E6] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\Drivers\wmilib.sys [16464] O58 - SDL:[MD5.6BCC1D7D2FD2453957C5479A32364E52] - 14/07/2009 - 01:10:33 ---A- . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\Windows\System32\Drivers\ws2ifsl.sys [21504] O58 - SDL:[MD5.AB886378EEB55C6C75B4F2D14B6C869F] - 26/07/2012 - 03:26:45 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Platform.) -- C:\Windows\System32\Drivers\WUDFPf.sys [87040] O58 - SDL:[MD5.DDA4CAF29D8C0A297F886BFE561E6659] - 26/07/2012 - 03:26:06 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Reflecto.) -- C:\Windows\System32\Drivers\WUDFRd.sys [198656] O58 - SDL:[MD5.4A5CE13408945E525503B5F73D29B9C5] - 14/07/2009 - 01:01:09 ---A- . (.Microsoft Corporation - XNA Common Controller Driver.) -- C:\Windows\System32\Drivers\xnacc.sys [679936] O58 - SDL:[MD5.FE1EC06F2253F691FE36217C592A0206] - 14/07/2009 - 02:52:31 ---A- . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\clfs.sys [367696] O58 - SDL:[MD5.F2BF71FCEAB8FB8A691408C478E2FF4C] - 26/11/2013 - 11:32:56 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [3156480] O58 - SDL:[MD5.2D0AB9D29E6B0C42CCE955B5A8E0D62D] - 26/06/2006 - 10:33:28 ---A- . (.Logitech Inc. - Logitech Kernel Audio Processing Filter Driver.) -- C:\Windows\SysWOW64\drivers\Lvckap.sys [1587632] O58 - SDL:[MD5.A3963E3D997C3646E1D3338EB88A48E9] - 26/06/2006 - 10:33:36 ---A- . (.Logitech Inc. - Logitech Machine Vision Engine Loader.) -- C:\Windows\SysWOW64\drivers\LVMVdrv.sys [1952816] O58 - SDL:[MD5.39C767BD6D99C23D28E71B6E0CBA3129] - 26/06/2006 - 10:33:40 ---A- . (...) -- C:\Windows\SysWOW64\drivers\LVPr2Mon.sys [23472] O58 - SDL:[MD5.5CF95B35E59E2A38023836FFF31BE64C] - 14/07/2009 - 02:19:10 ---A- . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\SysWOW64\drivers\wimmount.sys [19008] ~ Drivers: 16 Scanned in 00mn 04s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\albumdata_category.pmp [352] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\albumdata_date.pmp [684] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\albumdata_description.pmp [144] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\albumdata_filename.pmp [2589] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\albumdata_hascollage.pmp [103] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\albumdata_location.pmp [103] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\albumdata_name.pmp [1033] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\albumdata_token.pmp [2870] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\albumdata_uid.pmp [2599] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\albumdata_unread.pmp [100] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\albums_0.db [872804] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\albums_index.db [1004] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\bigthumbs_0.db [68001168] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\bigthumbs_index.db [58484] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\catdata_catpri.pmp [29] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\facetags.txt [0] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\facetemplatesV2_0.db [1137964] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\facetemplatesV2_index.db [58484] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\imagedata_avgcolor.pmp [19392] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\imagedata_crop64.pmp [38996] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\imagedata_edit_height.pmp [19392] O61 - LFC: 15/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\imagedata_edit_width.pmp [19392] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2Albums\frexcludefolders.txt [33] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2Albums\watchedfolders.txt [102] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\imagedata_facequality.pmp [19508] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\imagedata_facerect.pmp [38996] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\imagedata_facerectdata.pmp [93685] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\imagedata_filetype.pmp [19508] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\imagedata_height.pmp [19508] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\imagedata_originfast.pmp [38764] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\imagedata_width.pmp [19508] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\previews_0.db [247366130] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\previews_index.db [58136] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\repository.dat [140] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\saverlist.txt [0] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\scanlist.txt [12] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\starlist.txt [0] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\tags.txt [0] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\thumbindex.db [223156] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\thumbs2_0.db [16555176] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\thumbs2_index.db [58484] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\thumbs_0.db [51741391] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\thumbs_index.db [58484] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\usernames.dat [8] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\db3\wordhash.dat [421936] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\ioqueue\albumsafe.ioq [0] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\ioqueue\filesafe.ioq [0] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Google\Picasa2\ioqueue\slingshot.ioq [0] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Mozilla\updates\8CD848453EA43B34\active-update.xml [57] O61 - LFC: 15/02/2014 - 11:34:06 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Mozilla\updates\8CD848453EA43B34\updates.xml [4325] O61 - LFC: 15/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\DialogAPI.txt.1 [6235] O61 - LFC: 15/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\DialogAPI.txt.2 [6955] O61 - LFC: 15/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\FingerPrint\Common_20140215_143926.txt [2] O61 - LFC: 15/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\FingerPrint\Common_20140215_223806.txt [2] O61 - LFC: 15/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\FingerPrint\Error_20140215_143926.txt [2] O61 - LFC: 15/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\FingerPrint\Error_20140215_223806.txt [2] O61 - LFC: 15/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\FingerPrint\Warning_20140215_143926.txt [2] O61 - LFC: 15/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\FingerPrint\Warning_20140215_223806.txt [2] O61 - LFC: 15/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\errors.txt.1 [3301] O61 - LFC: 15/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\log.txt.1 [126586] O61 - LFC: 15/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\log.txt.2 [182116] O61 - LFC: 15/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\profile.txt.1 [287034] O61 - LFC: 15/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\profile.txt.2 [301367] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Ubisoft Game Launcher\settings.yml [2906] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Ubisoft Game Launcher\users.dat [1082] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVAST Software\Avast\Cache\Cookies [8192] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVAST Software\Avast\Cache\Cookies-journal [6704] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVAST Software\Avast\Cache\data_0 [45056] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVAST Software\Avast\Cache\data_1 [270336] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVAST Software\Avast\Cache\data_2 [1056768] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVAST Software\Avast\Cache\data_3 [4202496] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVAST Software\Avast\Cache\f_00002d [195087] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVAST Software\Avast\Cache\f_00002e [39598] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVAST Software\Avast\Cache\f_00002f [93100] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVAST Software\Avast\Cache\f_000030 [26496] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVAST Software\Avast\Cache\f_000031 [28900] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVAST Software\Avast\Cache\f_000032 [25939] O61 - LFC: 15/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\ArcSoft\PhotoStudio\5.5\pstudio5.5.mcr [550] O61 - LFC: 15/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Canon\CNQL60\SCGRL60U.PV0 [2083557] O61 - LFC: 15/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Canon\CNQL60\SCGRL60U.PVR [1682290] O61 - LFC: 15/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Canon\CNQL60\SCGRL60U.T00 [403205] O61 - LFC: 15/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Canon\CNQL60\SCGRL60U.TIN [7396] O61 - LFC: 15/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Microsoft\Office\Word12.pip [1688] O61 - LFC: 15/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Skype\alfamike37\chatsync\c8\c8928fe0425cec2b.dat [1523] O61 - LFC: 15/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\Might & Magic Heroes VI\Aimé\ProfileData [12289] O61 - LFC: 15/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\Might & Magic Heroes VI\Last.h6r [1278] O61 - LFC: 15/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\Might & Magic Heroes VI\rtgf.txt [7] O61 - LFC: 15/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Company of Heroes\Cache\global_cache.bin [52] O61 - LFC: 15/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Company of Heroes\Cache\login_cache.bin [238] O61 - LFC: 15/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Company of Heroes\Cache\ping_cache.bin [28] O61 - LFC: 15/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Company of Heroes\LogFiles\datacrc.2014-02-15.21-45-54.txt [295] O61 - LFC: 15/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Company of Heroes\configuration.lua [2923] O61 - LFC: 15/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Company of Heroes\playercfg.lua [465] O61 - LFC: 15/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\RelicDownloader\config.txt [109] O61 - LFC: 15/02/2014 - 11:34:14 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\Sauvegarder 67 - Amador Blancherive 162.38.44.ess [12724415] O61 - LFC: 15/02/2014 - 11:34:14 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\Sauvegarder 67 - Amador Blancherive 162.38.44.skse [2651] O61 - LFC: 15/02/2014 - 11:34:14 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\Sauvegarder 68 - Amador Bordeciel 163.06.03.ess [12780230] O61 - LFC: 15/02/2014 - 11:34:14 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\Sauvegarder 68 - Amador Bordeciel 163.06.03.skse [2659] O61 - LFC: 15/02/2014 - 11:34:14 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\Sauvegarder 69 - Amador C te de la Terreur 163.27.11.ess [12751436] O61 - LFC: 15/02/2014 - 11:34:14 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\Sauvegarder 69 - Amador C te de la Terreur 163.27.11.skse [2667] O61 - LFC: 15/02/2014 - 11:34:15 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1039042\BANJO - Rascal Flatts15_50_34_095.mp3 [6109518] O61 - LFC: 15/02/2014 - 11:34:15 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1039042\FRIDAY NIGHT - Eric Pasley15_53_21_385.mp3 [4836833] O61 - LFC: 15/02/2014 - 11:34:15 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1039042\HOW COUNTRY ARE YA - Kevin Fowler15_46_55_633.mp3 [4339043] O61 - LFC: 15/02/2014 - 11:34:15 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1039042\I DON'T DANCE - Lee Brice15_40_24_452.mp3 [5974099] O61 - LFC: 15/02/2014 - 11:34:15 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1039042\I WANNA DO IT ALL - Terri Clark15_56_04_915.mp3 [4833071] O61 - LFC: 15/02/2014 - 11:34:15 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1039042\JUST BECAUSE SHE LIVES T - Chalee Tennison15_44_07_692.mp3 [6160301] O61 - LFC: 15/02/2014 - 11:34:15 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1039042\Nashville FM == 24-7 Nonstop Country Music (www.nashvillefm.nl)15_44_25_072.mp3 [1220649] O61 - LFC: 15/02/2014 - 11:34:15 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1039042\SHE USED TO LOVE ME A LOT - Johnny Cash15_33_34_101.mp3 [5007987] O61 - LFC: 15/02/2014 - 11:34:16 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1039042\STAY - Florida Georgia Line15_59_25_958.mp3 [5607967] O61 - LFC: 15/02/2014 - 11:34:16 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1039042\YOU'VE GOT A WAY - Shania Twain15_36_54_132.mp3 [5579128] O61 - LFC: 15/02/2014 - 11:34:16 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1275159\Fischer dieskau D. - Salbung in Bethanien Chor22_41_48_830.mp3 [1155239] O61 - LFC: 15/02/2014 - 11:34:16 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1275159\Fischer dieskau D. - Verhör von Kaiphas Choral22_43_20_790.mp3 [2010384] O61 - LFC: 15/02/2014 - 11:34:16 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1275862\Cross Canadian Ragweed - Cry Lonely14_44_24_482.mp3 [4285336] O61 - LFC: 15/02/2014 - 11:34:16 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1276171\Johnny Hallyday - Né pour vivre sans amour16_14_05_433.mp3 [3036473] O61 - LFC: 15/02/2014 - 11:34:16 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1276171\Johnny Hallyday - O Carole16_11_31_411.mp3 [3269277] O61 - LFC: 15/02/2014 - 11:34:16 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1276171\Johnny Hallyday - Partie de cartes16_18_19_274.mp3 [4625972] O61 - LFC: 15/02/2014 - 11:34:16 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1276171\Johnny Hallyday - Personne d'autre16_08_42_280.mp3 [4627227] O61 - LFC: 15/02/2014 - 11:34:16 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1276171\Johnny Hallyday Le Web - Vous écoutez Johnny Hallyday Le Web16_18_27_284.mp3 [691722] O61 - LFC: 16/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Free Download Manager\Update\proupd2.lst [1692] O61 - LFC: 16/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Microsoft\HTML Help\hh.dat [8854] O61 - LFC: 16/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Skype\alfamike37\bistats.db [86016] O61 - LFC: 16/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Skype\alfamike37\config.xml [13004] O61 - LFC: 16/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Skype\alfamike37\eas.db [53248] O61 - LFC: 16/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Skype\alfamike37\httpfe\cookies.dat [2] O61 - LFC: 16/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Skype\alfamike37\keyval.db [65536] O61 - LFC: 16/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Skype\alfamike37\main.db [450560] O61 - LFC: 16/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Skype\alfamike37\msn.db [49152] O61 - LFC: 16/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Skype\alfamike37\qikdb\qik_main.db [32768] O61 - LFC: 16/02/2014 - 11:34:10 --HA- . (...) -- C:\Users\Aimé\AppData\Roaming\Free Download Manager\groups.sav [292] O61 - LFC: 16/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Skype\alfamike37\statistics.db [53248] O61 - LFC: 16/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Skype\dns.ldb [192] O61 - LFC: 16/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Skype\shared.xml [91376] O61 - LFC: 16/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Skype\shared_dynco\dc.db [2551808] O61 - LFC: 16/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\AA-Instances\Windows7Fonctionnalits.pdf [17656602] O61 - LFC: 16/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\AA-Instances\adwcleaner.exe [1166132] O61 - LFC: 16/02/2014 - 11:34:11 ---A- . (.FreeDownloadManager.ORG.) -- C:\Users\Aimé\Documents\AA-Instances\fdminst.exe [7752311] O61 - LFC: 16/02/2014 - 11:34:14 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\Sauvegarder 70 - Amador Bordeciel 165.06.43.ess [12990172] O61 - LFC: 16/02/2014 - 11:34:14 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\Sauvegarder 70 - Amador Bordeciel 165.06.43.skse [2651] O61 - LFC: 17/02/2014 - 11:34:04 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Black_Tree_Gaming\NexusClient.exe_Url_hmzp4zoysjzks14hrhprzvc1fxpyppfo\0.47.3.0\user.config [12819] O61 - LFC: 17/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Diagnostics\460911090\2014021716.000\8523726B-87FA-4EF3-83A9-8748A1EF5731.Diagnose.0.etl [327680] O61 - LFC: 17/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Diagnostics\460911090\2014021716.000\NetworkDiagnostics.0.debugreport.xml [9498] O61 - LFC: 17/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Diagnostics\460911090\2014021716.000\ResultReport.xml [40143] O61 - LFC: 17/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Diagnostics\460911090\2014021716.000\results.xml [256] O61 - LFC: 17/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Diagnostics\460911090\2014021716.000\results.xsl [49097] O61 - LFC: 17/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Diagnostics\460911090\2014021716.001\8BEADF09-31AC-47F1-BE13-202A267A1184.Diagnose.0.etl [262144] O61 - LFC: 17/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Diagnostics\460911090\2014021716.001\NetworkDiagnostics.0.debugreport.xml [9498] O61 - LFC: 17/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Diagnostics\460911090\2014021716.001\ResultReport.xml [40143] O61 - LFC: 17/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Diagnostics\460911090\2014021716.001\results.xml [256] O61 - LFC: 17/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Diagnostics\460911090\2014021716.001\results.xsl [49097] O61 - LFC: 17/02/2014 - 11:34:05 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Diagnostics\460911090\latest.cab [23543] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\AudialsSync\c4ca7afe-c3bb-4cb3-8656-5ff724755d24_devices.txt [2839] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\AudialsSync\c4ca7afe-c3bb-4cb3-8656-5ff724755d24_favourites.txt [4465] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\AudialsSync\c4ca7afe-c3bb-4cb3-8656-5ff724755d24_lrupodcasts.txt [5] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\AudialsSync\c4ca7afe-c3bb-4cb3-8656-5ff724755d24_lrustations.txt [5850] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\AudialsSync\c4ca7afe-c3bb-4cb3-8656-5ff724755d24_namingrules.txt [25721] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\AudialsSync\c4ca7afe-c3bb-4cb3-8656-5ff724755d24_pinnedpodcasts.txt [5] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\AudialsSync\c4ca7afe-c3bb-4cb3-8656-5ff724755d24_pinnedradio.txt [5] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\AudialsSync\c4ca7afe-c3bb-4cb3-8656-5ff724755d24_playlistentries.txt [5] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\AudialsSync\c4ca7afe-c3bb-4cb3-8656-5ff724755d24_playlists.txt [5] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\AudialsSync\c4ca7afe-c3bb-4cb3-8656-5ff724755d24_podcasts.txt [5] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\DialogAPI.txt [9835] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\FingerPrint\Common_20140217_153814.txt [798] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\FingerPrint\Error_20140217_153814.txt [798] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\FingerPrint\Warning_20140217_153814.txt [798] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\errors.txt [43037] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\log.txt [146738] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\profile.txt [263215] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Log\sql_log.txt [26932] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\MetaWeb\cache.xml [17] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\MusicOrganizer\modb [149504] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\MusicTelevision\favList.xml [2061] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Podspider\RecordedEpisodes.txt [2] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\PostProcessing\Autotag\Sources.xml [1766] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\Wishlists\Ma liste de demandes.A1wish [328] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\audials_modules.txt [15598] O61 - LFC: 17/02/2014 - 11:34:07 ---A- . (...) -- C:\Users\Aimé\AppData\Local\RapidSolution\Audials_2013\recordingtimer.xml [25] O61 - LFC: 17/02/2014 - 11:34:09 ---A- . (...) -- C:\Users\Aimé\AppData\Local\Temp\Quarantine.exe [360071] O61 - LFC: 17/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVG\Rescue\PC Tuneup 2011\140217225501432.rsc [1206] O61 - LFC: 17/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\AVG\Rescue\PC Tuneup 2011\140217225501478.rsc [78273984] O61 - LFC: 17/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\RendererInfo.txt [662] O61 - LFC: 17/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\autosave1.ess [13036538] O61 - LFC: 17/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\autosave1.ess.bak [12976411] O61 - LFC: 17/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\autosave1.skse [2659] O61 - LFC: 17/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\autosave2.ess [13015820] O61 - LFC: 17/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\autosave2.ess.bak [12905371] O61 - LFC: 17/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\autosave2.skse [2667] O61 - LFC: 17/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\autosave3.ess [12992890] O61 - LFC: 17/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\autosave3.ess.bak [12898776] O61 - LFC: 17/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\autosave3.skse [2659] O61 - LFC: 17/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\quicksave.ess [12908050] O61 - LFC: 17/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\quicksave.ess.bak [12939721] O61 - LFC: 17/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\quicksave.skse [2667] O61 - LFC: 17/02/2014 - 11:34:14 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\Sauvegarder 71 - Amador Faillaise 165.13.23.ess [12970780] O61 - LFC: 17/02/2014 - 11:34:14 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\Sauvegarder 71 - Amador Faillaise 165.13.23.skse [2667] O61 - LFC: 17/02/2014 - 11:34:14 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\Sauvegarder 72 - Amador Comt de Falskaar 166.04.15.ess [13029017] O61 - LFC: 17/02/2014 - 11:34:14 ---A- . (...) -- C:\Users\Aimé\Documents\My Games\Skyrim\Saves\Sauvegarder 72 - Amador Comt de Falskaar 166.04.15.skse [2659] O61 - LFC: 17/02/2014 - 11:34:15 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Fingerprint\CurrentlyDecompressedLUT\songpacket.tmp.enc [859548] O61 - LFC: 17/02/2014 - 11:34:16 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1275159\Johann Sebastian Bach - Concerto En Ré Majeur Bwv1053a Allegro15_48_28_371.mp3 [6575752] O61 - LFC: 17/02/2014 - 11:34:16 ---A- . (...) -- C:\Users\Aimé\Music\AUDIAL ONE TEMPORAIRES\Ripper\Temp\Incomplete1275159\USB - Back to Music15_42_01_465.mp3 [698410] O61 - LFC: 18/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-02-18 (06-18-35).txt [2160] O61 - LFC: 18/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-02-18 (08-13-44).txt [2124] O61 - LFC: 18/02/2014 - 11:34:10 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\ProductData\update.spt [4173] O61 - LFC: 18/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\ZHP\Log.txt [725309] =>.Nicolas Coolman O61 - LFC: 18/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\ZHP\TestsZHPDiag.txt [2822] =>.Nicolas Coolman O61 - LFC: 18/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\ZHP\ZHPADSReport.txt [351] =>.Nicolas Coolman O61 - LFC: 18/02/2014 - 11:34:11 ---A- . (...) -- C:\Users\Aimé\AppData\Roaming\ZHP\ZHPDiag.txt [266106] =>.Nicolas Coolman O61 - LFC: 18/02/2014 - 11:34:15 ---A- . (...) -- C:\Users\Aimé\Documents\ZHPDiag.txt [266106] =>.Nicolas Coolman O61 - LFC: 18/02/2014 - 11:34:15 ---A- . (.Nicolas Coolman.) -- C:\Users\Aimé\Downloads\ZHPDiag2.exe [6866750] =>.Nicolas Coolman ~ 1 Fichiers temporaires (Temporary files) ~ Files: 208 Scanned in 00mn 15s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman ~ ADS: Scanned in 00mn 00s ---\\ Liste les services legacy du registre (LALS) (O64) O64 - Services: CurCS - 28/09/2013 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD O64 - Services: CurCS - 15/02/2014 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT O64 - Services: CurCS - 13/01/2014 - C:\Windows\system32\drivers\aswRdr2.sys (aswRdr) .(.AVAST Software - avast! WFP Redirect Driver.) - LEGACY_ASWRDR O64 - Services: CurCS - 13/01/2014 - C:\Windows\System32\Drivers\aswRvrt.sys (aswRvrt) .(...) - LEGACY_ASWRVRT O64 - Services: CurCS - 15/02/2014 - C:\Windows\system32\drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX O64 - Services: CurCS - 15/02/2014 - C:\Windows\system32\drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP O64 - Services: CurCS - 15/02/2014 - C:\Windows\system32\drivers\aswStm.sys (aswStm) .(.AVAST Software - Stream Filter.) - LEGACY_ASWSTM O64 - Services: CurCS - 13/01/2014 - C:\Windows\System32\Drivers\aswVmm.sys (aswVmm) .(...) - LEGACY_ASWVMM O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\Beep.sys (Beep) .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP O64 - Services: CurCS - 04/07/2012 - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS O64 - Services: CurCS - 24/09/2013 - C:\Windows\System32\DRIVERS\cmderd.sys (cmderd) .(.COMODO - COMODO Internet Security Eradication Driver.) - LEGACY_CMDERD O64 - Services: CurCS - 14/11/2013 - C:\Windows\System32\DRIVERS\cmdguard.sys (cmdGuard) .(.COMODO - COMODO Internet Security Sandbox Driver.) - LEGACY_CMDGUARD O64 - Services: CurCS - 24/09/2013 - C:\Windows\System32\DRIVERS\cmdhlp.sys (cmdHlp) .(.COMODO - COMODO Internet Security Helper Driver.) - LEGACY_CMDHLP O64 - Services: CurCS - 04/07/2013 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\cscsvc.dll (CSC) .(.Microsoft Corporation - DLL du service CSC.) - LEGACY_CSC O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE O64 - Services: CurCS - 01/08/2013 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR O64 - Services: CurCS - 24/01/2013 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY O64 - Services: CurCS - 24/09/2013 - C:\Windows\System32\DRIVERS\inspect.sys (inspect) .(.COMODO - COMODO Internet Security Firewall Driver.) - LEGACY_INSPECT O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecpkg.sys (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10 O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\msisadrv.sys (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pcw.sys (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\peauth.sys (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR O64 - Services: CurCS - 10/06/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\spldr.sys (spldr) .(.Microsoft Corporation - loader for security processor.) - LEGACY_SPLDR O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2 O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\vmstorfltres.dll (storflt) .(.Microsoft Corporation - Fichier DLL de ressources du filtre de stoc.) - LEGACY_STORFLT O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP O64 - Services: CurCS - 03/10/2012 - C:\Windows\System32\drivers\tcpipreg.sys (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\vmbusres.dll (vmbus) .(.Microsoft Corporation - Fichier DLL de ressources de bus VMBus.) - LEGACY_VMBUS O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6 O64 - Services: CurCS - 25/06/2013 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\wfplwf.sys (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF O64 - Services: CurCS - 26/07/2012 - C:\Windows\System32\drivers\WudfPf.sys (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF ~ Legacy: 84 Scanned in 00mn 00s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Logiciels\Mozilla Firefox\firefox.exe ~ FASS Keys: 11 Scanned in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Logiciels\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) O69 - SBI: SearchScopes [HKCU] ${searchCLSID} - (@ieframe.dll,-12512) - http://search.live.com O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {86CACE21-A54F-4138-9246-024B2E697B2E} - (Bing) - http://www.bing.com ~ Keys: Scanned in 00mn 00s ---\\ Enumère les service demarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] ~ Services: 33 Scanned in 00mn 00s ---\\ Recherche particulière à la racine du système (SPRF) (O84) [MD5.0840EB50F38B3A9BBA2D24780AEB07A6] [SPRF][17/02/2014] (...) -- C:\Users\Aimé\Desktop\adwcleaner.exe [1241834] ~ Files: 1 Scanned in 00mn 00s ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "WMP-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-P2PHost-In-TCP" | In - None - P6 - TRUE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-PeerDist-WSD-In" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-PeerDist-WSD-Out" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NetPres-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation O87 - FAEL: "NetPres-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation O87 - FAEL: "NetPres-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation O87 - FAEL: "NetPres-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation O87 - FAEL: "NetPres-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation O87 - FAEL: "NetPres-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation O87 - FAEL: "SPPSVC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de la plateforme de protection logicielle Microsoft.) -- C:\Windows\system32\sppsvc.exe O87 - FAEL: "SPPSVC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de la plateforme de protection logicielle Microsoft.) -- C:\Windows\system32\sppsvc.exe O87 - FAEL: "{B28511A6-C048-46D9-8AA7-5DDE411E1BE7}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{244EB377-7F6C-4216-900D-1B296D78EB66}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{8CE53AA4-B01D-4707-B3D6-153D5E9A423E}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{F9CF6C80-5D55-4549-9981-86033FE90BB2}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{3DC70744-C3F0-4F8D-A52F-07234DC98FBA}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{C281FE5C-4626-4F7D-920F-39E5B76127A5}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{C9247F18-BAC4-42B8-8EB3-2C914105C133}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{BAA44B23-16EC-4560-B808-95BC94BED245}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{084DD355-86DE-4DBD-B863-50BC10785934}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{179D0221-D19B-468F-B6AD-B91BF27FAE98}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{CE554DE3-E4BA-4E48-9652-17A6FBAD7597}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{5411C17A-0E95-44BC-BCD9-FA9DE9F4674E}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{A52358A4-6F43-4F5A-8D02-1AF0953CB5AA}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{A36BA6B4-C4A5-4DEB-A798-EB7F36EB692D}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{D474005D-F6C1-42EA-8A02-F918171F2375}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{B791D2D3-1221-452F-AA74-2CA979B6CE5A}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{B1D86914-6BC7-4A0B-91F2-13BEC8F01276}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{DB3CCEB3-157C-4856-B5E2-CA0868236525}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{D0FA22E2-C387-4E88-9ABA-86475E81FD45}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{50F711AE-0E02-4F15-8B2E-13C4D622DFCF}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "{A319D12D-8665-43BC-B435-5FE0874F634C}" | In - None - P6 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Logiciels\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O87 - FAEL: "{782B2C3F-7E06-462C-8A17-57202F5A27D0}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{31189BD8-F4A9-4DA5-B28F-5C074C10DAAA}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteDesktop-UserMode-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "TCP Query User{E1059DAB-5343-4C66-B3EF-2E441944CB62}C:\jeux\milestone\wrc 4 fia world rally championship\wrc4.exe" | In - Private - P6 - TRUE | .(.Milestone S.r.l. - WRC 4.) -- C:\jeux\milestone\wrc 4 fia world rally championship\wrc4.exe O87 - FAEL: "UDP Query User{626A2F1C-3CBD-4D98-90E1-5C883B42FB58}C:\jeux\milestone\wrc 4 fia world rally championship\wrc4.exe" | In - Private - P17 - TRUE | .(.Milestone S.r.l. - WRC 4.) -- C:\jeux\milestone\wrc 4 fia world rally championship\wrc4.exe O87 - FAEL: "{3C9395F4-8F06-45EA-BA23-6FABE2974658}" | In - Private - P6 - TRUE | .(.Virtuos - Might & Magic® Heroes VI Shades of Darkness.) -- C:\Jeux\Ubisoft\Might & Magic Heroes VI\Might & Magic Heroes VI.exe O87 - FAEL: "{B97998D1-8C13-4621-B3BE-4D82B46C3350}" | In - Private - P17 - TRUE | .(.Virtuos - Might & Magic® Heroes VI Shades of Darkness.) -- C:\Jeux\Ubisoft\Might & Magic Heroes VI\Might & Magic Heroes VI.exe O87 - FAEL: "{09B0154C-3BAB-472D-B83D-0C23F0F2E03F}" | In - None - P6 - FALSE | .(.Microsoft Corporation - SMSvcHost.exe.) -- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe O87 - FAEL: "RemoteDesktop-UserMode-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "TCP Query User{7FAB2779-836B-468D-85E9-1C4713033A31}C:\jeux\thqcompany of heroes\reliccoh.exe" | In - Private - P6 - TRUE | .(.THQ Canada Inc. - RelicCOH.) -- C:\jeux\thqcompany of heroes\reliccoh.exe O87 - FAEL: "UDP Query User{F59BF855-84AF-4EC8-A792-465BB14C99E0}C:\jeux\thqcompany of heroes\reliccoh.exe" | In - Private - P17 - TRUE | .(.THQ Canada Inc. - RelicCOH.) -- C:\jeux\thqcompany of heroes\reliccoh.exe O87 - FAEL: "TCP Query User{DE4C2495-8120-453C-97F5-163BE8298D3E}C:\jeux\thqcompany of heroes\relicdownloader\relicdownloader.exe" | In - Private - P6 - TRUE | .(.THQ Canada Inc. - Relic Patch Download Manager.) -- C:\jeux\thqcompany of heroes\relicdownloader\relicdownloader.exe O87 - FAEL: "UDP Query User{0FEB3953-1B23-4500-9008-F3199CD78308}C:\jeux\thqcompany of heroes\relicdownloader\relicdownloader.exe" | In - Private - P17 - TRUE | .(.THQ Canada Inc. - Relic Patch Download Manager.) -- C:\jeux\thqcompany of heroes\relicdownloader\relicdownloader.exe O87 - FAEL: "{CD97CDC1-4E55-4AA8-B475-14512746BAA2}" | In - Private - P6 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe O87 - FAEL: "{99908C93-C316-43A6-BE1C-2107DAF8D66D}" | In - Private - P17 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe O87 - FAEL: "{F2CD35BC-6ECD-457A-BDCA-844C269C4863}" | In - Domain - P6 - TRUE | .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Logiciels\Steam\Steam.exe O87 - FAEL: "{AD5119E5-7C9A-4897-80DD-CB8FACCE009B}" | In - Domain - P17 - TRUE | .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Logiciels\Steam\Steam.exe O87 - FAEL: "{601217E7-F9DD-49F8-B461-D8989A972BA2}" | In - Domain - P6 - TRUE | .(.Bethesda Softworks - Skyrim Launcher.) -- C:\Logiciels\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe O87 - FAEL: "{24A66121-75F3-4AC0-882C-0802CD9BB943}" | In - Domain - P17 - TRUE | .(.Bethesda Softworks - Skyrim Launcher.) -- C:\Logiciels\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe O87 - FAEL: "{46B47B93-0D1D-45F6-9D0A-C0AC3244D6B9}" | In - Domain - P17 - TRUE | .(.Audials AG - Audials.) -- C:\Logiciels\Audials\Audials 10\Audials.exe ~ Firewall: 206 Scanned in 00mn 01s ---\\ Enumère les codes produits des logiciels (PUC) (O90) O90 - PUC: "36F42FFC386A20245862F3A9773A0B8E" . (.Ma-Config.com (64 bits).) -- C:\Windows\Installer\{CFF24F63-A683-4202-8526-3F9A77A3B0E8}\maconfico O90 - PUC: "451ECF7395F70F47A353FB05C3BE32B0" . (.AMD Catalyst Install Manager.) -- C:\Windows\Installer\{37FCE154-7F59-74F0-3A35-BF503CEB230B}\ARPPRODUCTICON.exe O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.06) - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico O90 - PUC: "7B92C793F88F43A4BBD876B7D933B686" . (.CyberPower PowerPanel Personal Edition 1.3.3.) -- C:\Windows\Installer\{397C29B7-F88F-4A34-BB8D-677B9D336B68}\pppeuser.exe O90 - PUC: "8DB46182AE18A936589E6E953EEED67A" . (.Catalyst Control Center InstallProxy.) -- C:\Windows\Installer\{28164BD8-81EA-639A-85E9-E659E3EE6DA7}\ARPPRODUCTICON.exe O90 - PUC: "9F2FDFE0D6387BE43AD230B83D1FBFA2" . (.Security Update for CAPICOM (KB931906).) -- C:\Windows\Installer\{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}\folder.ico O90 - PUC: "A6DE24CED1570C544A9FC80DE06409CF" . (.Logitech QuickCam.) -- C:\Windows\Installer\{EC42ED6A-751D-45C0-A4F9-8CD00E4690FC}\ARPPRODUCTICON.exe O90 - PUC: "B5C394A67CD49754B92EC092E2DEFE65" . (.Audials.) -- C:\Windows\Installer\{6A493C5B-4DC7-4579-9BE2-0C292EEDEF56}\AudialsOne_installer.exe O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- c:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype™ 6.11.) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe ~ Update Products: 46 Scanned in 00mn 00s ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) [MD5.53293ED98118638A3785C3ABFB8D0F6D] [WIS][25/01/2014] (.Cyber Power Systems, Inc. - CyberPower PowerPanel Personal Edition 1.3.3.) -- C:\Windows\Installer\106328.msi [1908736] [MD5.8E34497F8C9220B4026D02CC3D757110] [WIS][01/10/2013] (.Milestone - Blank Project Template.) -- C:\Windows\Installer\10f01fc.msi [1944064] [MD5.914C41D0C4FE82AF0F442923C76BE51C] [WIS][21/11/2013] (.COMODO Security Solutions Inc. - COMODO Internet Security Installer.) -- C:\Windows\Installer\2174b7.msi [54515200] [MD5.D2F34AF196CCAF29A124324392FC3DFF] [WIS][13/02/2013] (.Valve Corporation - Steam.) -- C:\Windows\Installer\691856.msi [8532992] [MD5.A3AEEC9A9B6984F2E22B90FDC9A23AB8] [WIS][13/01/2014] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\6bbdf8.msi [24993792] [MD5.43FB6BF88E97DFD592943120F5B85899] [WIS][19/08/2013] (.Audials AG - Audials.) -- C:\Windows\Installer\86645.msi [2724352] [MD5.3BD366B1545E54565ED5ADEE52ADD5D7] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b7554d.msi [22528] [MD5.957A683AE2A249799EBF85693A0855E0] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b75552.msi [22528] [MD5.4EEB085C6CC15C1D4B1893742A17F7DB] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b75557.msi [22528] [MD5.D02CA6D0912C0CF41885A8601188108F] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b7555c.msi [22528] [MD5.21B917FD3DA8A8E385FB663C1E6ADA51] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b75561.msi [22528] [MD5.5D8F7D0A15316320882959CE29517EAD] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b75566.msi [22528] [MD5.492086FD9EE8C6428A33B38C12C363F6] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b7556b.msi [22528] [MD5.2FE643F4636C4805AD6261E2ECDAF7B9] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b75570.msi [22528] [MD5.152695AC788DDAFE06CC033A66560A8C] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b75575.msi [22528] [MD5.30DDB4625A36C0D00D462C5843D11100] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b7557a.msi [22528] [MD5.FC59E7BD183059EC80303D5B17A6C10E] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b7557f.msi [22528] [MD5.52C0AAD394BD55077BA504E7F6FE90D3] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b75584.msi [22528] [MD5.AC294FD2DCB61A3F3FFF86B1E18DBDAA] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b75589.msi [22528] [MD5.847192E6BBA44DDB2965DC3B394123AF] [WIS][16/01/2014] (.THQ Inc. - Company of Heroes - FAKEMSI Installer.) -- C:\Windows\Installer\b7558e.msi [22528] [MD5.39988793C0BE26963F7C8228E7F04E23] [WIS][06/01/2014] (.Google - Google+ Auto Backup.) -- C:\Windows\Installer\e457be.msi [3088384] ~ WIS: 61 Scanned in 00mn 04s ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SS - | Demand 04/02/2014 257928 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SS - | Demand 24/09/2013 164056 | (cmdvirth) . (.COMODO.) - C:\Logiciels\COMODO\COMODO Internet Security\cmdvirth.exe SS - | Demand 09/05/2011 136120 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe SS - | Auto 03/02/2014 2151744 | (LiveUpdateSvc) . (.IObit.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe SS - | Auto 26/06/2006 91696 | (LVSrvLauncher) . (.Logitech Inc..) - C:\Program Files (x86)\Common Files\Logitech\SrvLnch\SrvLnch.exe SS - | Demand 05/12/2013 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Logiciels\Skype\Updater\Updater.exe SS - | Demand 27/01/2014 571816 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe SR - | Auto 21/12/2013 65432 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SR - | Auto 18/08/2009 203264 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe SR - | Auto 15/02/2014 50344 | (avast! Antivirus) . (.AVAST Software.) - C:\Logiciels\AVAST Software\Avast\AvastSvc.exe SR - | Auto 20/10/2013 6254152 | (cmdAgent) . (.COMODO.) - C:\Logiciels\COMODO\COMODO Internet Security\cmdagent.exe SR - | Auto 20/01/2014 2818896 | (MaConfigAgent) . (.CybelSoft.) - C:\Program Files\ma-config.com\MaConfigAgent.exe SR - | Auto 27/03/2012 1013696 | (ppped) . (.Cyber Power Systems, Inc..) - C:\Logiciels\CyberPower PowerPanelPersonal\ppped.exe SR - | Auto 22/11/2013 105448 | (RzKLService) . (.Razer Inc..) - C:\Logiciels\Razer Game Booster\RzKLService.exe SR - | Auto 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 04s ---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80) Run by Aimé at 18/02/2014 11:34:37 ~ OS 64 not supported by MBR tool ~ MBR: 0 Scanned in 00mn 00s ---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by Aimé at 18/02/2014 11:34:39 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 02s ---\\ Scan Additionnel (O88) Database Version : 13031 - (17/02/2014) Clés trouvées (Keys found) : 0 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 0 Fichiers trouvés (Files found) : 1 [HKLM\Software\Wow6432Node\iSafe] =>Trojan.Trojan.Staser^ ~ Additionnel Scan: 169832 Items scanned in 00mn 32s ---\\ Récapitulatif des détections trouvées sur votre station ~ http://nicolascoolman.webs.com/apps/blog/show/32771797-trojan-staser =>Trojan.Staser ~ http://nicolascoolman.webs.com/apps/blog/show/26609241-crapware-spyhunter =>Crapware.SpyHunter ~ MSI: 2 link(s) detected in 00mn 32s End of the scan (2127 lines in 02mn 13s)(0)