~ Rapport de ZHPDiag v2014.3.28.35 - Nicolas Coolman (28/03/2014) ~ Lancé par Amine (29/03/2014 21:59:22) ~ Adresse du Site Web http://nicolascoolman.webs.com ~ Forums gratuits d'Assistance à la désinfection : http://nicolascoolman.webs.com/apps/links/ ~ Traduit par Nicolas Coolman ~ Etat de la version : ~ Liste blanche : Désactivée par l'utilisateur ~ Elévation des Privilèges : OK ~ User Account Control (UAC): Deactivate by program ---\\ Navigateurs Internet MSIE: Internet Explorer v10.0.9200.16844 MFIE: Mozilla Firefox 28.0 (Defaut) ---\\ Informations sur les produits Windows ~ Langage: Français Windows 7 Home Premium, 32-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK ~ Windows(R) 7, OEM_COA_SLP channel Windows ID Activation : OK ~ Windows Partial Key : XW8TX Windows License : OK ~ Windows Remaining Initializations Number : 4 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection du système Windows Defender W7 ---\\ Logiciels d'optimisation du système CCleaner v4.11 =>.Piriform Ltd ---\\ Logiciels de partage PeerToPeer ---\\ Surveillance de Logiciels Adobe Flash Player 12 Plugin Java 7 Update 51 ---\\ Informations sur le système ~ Processor: x86 Family 15 Model 47 Stepping 2, AuthenticAMD ~ Operating System: 32 Bits Boot mode: Normal (Normal boot) Total RAM: 1470 MB (47% free) System Restore: Activé (Enable) System drive C: has 11 GB (34%) free of 31 GB ---\\ Mode de connexion au système ~ Computer Name: AMINE-PC ~ User Name: Amine ~ All Users Names: HomeGroupUser$, Amine, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppZHP% : C:\Users\Amine\AppData\Roaming\ZHP\ ~ %AppData% : C:\Users\Amine\AppData\Roaming\ ~ %Desktop% : C:\Users\Amine\Desktop\ ~ %Favorites% : C:\Users\Amine\Favorites\ ~ %LocalAppData% : C:\Users\Amine\AppData\Local\ ~ %StartMenu% : C:\Users\Amine\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumération des unités disques C: Hard drive, Flash drive, Thumb drive (Free 11 Go of 31 Go) D: CD-ROM drive (Not Inserted) F: Floppy drive, Flash card reader, USB Key (Not Inserted) G: Floppy drive, Flash card reader, USB Key (Not Inserted) H: Floppy drive, Flash card reader, USB Key (Not Inserted) I: Floppy drive, Flash card reader, USB Key (Not Inserted) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 38 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 06:30:54.) -- C:\Windows\Explorer.exe [2616320] [MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256] [MD5.9284BA6C27D360D71A5C0ECC8456E78E] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.20/03/2014 - 17:28:42.) -- C:\Windows\System32\wininet.dll [1767936] [MD5.6D13E1406F50C66E2A95D97F22C47560] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/01/2011 - 20:36:30.) -- C:\Windows\System32\Winlogon.exe [286720] [MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/01/2011 - 20:36:54.) -- C:\Windows\System32\sppcomapi.dll [193536] [MD5.F81BB7E487EDCEAB630A7EE66CF23913] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.14/09/2013 - 01:48:58.) -- C:\Windows\system32\Drivers\AFD.sys [338944] [MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:26:15.) -- C:\Windows\system32\Drivers\atapi.sys [21584] [MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:11:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [70656] [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/01/2011 - 20:36:24.) -- C:\Windows\system32\Drivers\Cdrom.sys [108544] [MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/01/2011 - 20:36:31.) -- C:\Windows\system32\Drivers\DfsC.sys [78336] [MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/01/2011 - 20:36:24.) -- C:\Windows\system32\Drivers\HDAudBus.sys [108544] [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:11:24.) -- C:\Windows\system32\Drivers\i8042prt.sys [80896] [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 00:54:29.) -- C:\Windows\system32\Drivers\IpNat.sys [101888] [MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:17:22.) -- C:\Windows\system32\Drivers\MRxSmb.sys [123904] [MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) (.20/01/2011 - 20:36:32.) -- C:\Windows\system32\Drivers\netBT.sys [187904] [MD5.5E43D2B0EE64123D4880DFA6626DEFDE] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 14:45:29.) -- C:\Windows\system32\Drivers\ntfs.sys [1211752] [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 00:45:35.) -- C:\Windows\system32\Drivers\Parport.sys [79360] [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.14/07/2009 - 00:54:34.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [78848] [MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 00:53:41.) -- C:\Windows\system32\Drivers\smb.sys [71168] [MD5.B459575348C20E8121D6039DA063C704] - (.Microsoft Corporation - TDI Translation Driver.) (.20/01/2011 - 20:36:30.) -- C:\Windows\system32\Drivers\tdx.sys [74752] [MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/01/2011 - 20:36:24.) -- C:\Windows\system32\Drivers\volsnap.sys [245632] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes Favoris (My Favorites) : 1/25 ~ Mes Documents (My Documents) : 1/13 ~ Mon Bureau (My Desktop) : 1/1088 ~ Menu demarrer (Programs) : 1/33 ~ Hidden Files: Scanned in 00mn 01s ---\\ Processus lancés [MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336] [PID.2496] [MD5.6B87742F27B087AF7FD4ADC2DB685DE0] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [49152] [PID.2528] [MD5.4C08FB7ACB28689B586D986D3F5826CF] - (.ATI Technologies Inc. - Catalyst Control Centre: Host application.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [49152] [PID.2796] [MD5.2E0B0A051FFAA86E358465BB0880D453] - (.Microsoft Corporation - Windows Update.) -- C:\Windows\system32\wuauclt.exe [53784] [PID.2788] [MD5.9D4A0ECBF734E2EECDD5B473A2D705FE] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe [20922016] [PID.2600] [MD5.8E556A72D54F7E3B7844AB9217F02DD7] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [275568] [PID.220] [MD5.B978AE0D4FB1AFDFDEDBF45A2B3B6183] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8178176] [PID.3840] ~ Processes Running: Scanned in 00mn 01s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Users\Amine\AppData\Roaming\Mozilla\Firefox\Profiles\6fhzegzq.default\prefs.js M3 - MFPP: Plugins - [Amine] -- C:\Users\Amine\AppData\Roaming\Mozilla\Firefox\Profiles\6fhzegzq.default\searchplugins\Google.xml M0 - MFSP: prefs.js [Amine - 6fhzegzq.default] http://www.sweet-page.com =>PUP.SweetPage P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.51.2] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.51.2] - (.Oracle Corporation - Next Generation Java Plug-in 10.51.2 for Mozilla browsers.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll ~ Firefox Browser: 5 Scanned in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com =>PUP.SweetPage R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com =>PUP.SweetPage R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.bing.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.bing.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Oracle Corporation - Next Generation Java Plug-in 10.51.2 for Mozilla browsers.) (No version) -- (.not file.) R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ~ IE Browser: 16 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 32 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: (no name) - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} Clé orpheline O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll ~ BHO: 6 Scanned in 00mn 00s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: (no name) - [HKLM]{ae07101b-46d4-4a98-af68-0333ea26e113} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline ~ Toolbar: Scanned in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - GS\Desktop [Public]: Camtasia Studio 8.lnk . (.TechSmith Corporation - Camtasia Studio.) -- C:\Program Files\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe O4 - GS\Desktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd O4 - GS\Desktop [Public]: Gameforge Live.lnk . (...) -- C:\Program Files\GameforgeLive\GameforgeLive.exe O4 - GS\Desktop [Public]: LogMeIn Hamachi.lnk . (.LogMeIn Inc. - Hamachi Client Application.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe O4 - GS\Desktop [Public]: Ma-Config.com - Démarrer la détection.lnk . (.CybelSoft - Ma-Config.com start detection.) -- C:\Program Files\ma-config.com\MCDetection.exe O4 - GS\Desktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O4 - GS\Desktop [Public]: Navicat for MySQL.lnk . (.PremiumSoft CyberTech Ltd. - Navicat.) -- C:\Program Files\PremiumSoft\Navicat 8.2 MySQL\navicat.exe O4 - GS\Desktop [Public]: NosTale.lnk . (...) -- C:\Program Files\GameforgeLive\GameforgeLive.exe O4 - GS\Desktop [Public]: Skype.lnk . (...) -- C:\Windows\Installer\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}\SkypeIcon.exe O4 - GS\Program [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O4 - GS\Program [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) -- C:\Windows\system32\WindowsAnytimeUpgradeUI.exe O4 - GS\Program [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Création de DVD Windows.) -- C:\Program Files\DVD Maker\DVDMaker.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Program [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) -- C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) -- C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) -- C:\Windows\system32\mblctr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Mise en route.) -- C:\Windows\system32\OobeFldr.dll =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) -- C:\Windows\system32\perfmon.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) -- C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\system32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\system32\taskschd.msc O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) -- C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) -- C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\QuickLaunch [Amine]: HxD.lnk . (.Maël Hörz - HxD Hex Editor.) -- C:\Program Files\HxD\HxD.exe O4 - GS\QuickLaunch [Amine]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\QuickLaunch [Amine]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Amine\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent O4 - GS\TaskBar [Amine]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd O4 - GS\TaskBar [Amine]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\TaskBar [Amine]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O4 - GS\TaskBar [Amine]: Skype.lnk . (...) -- C:\Windows\Installer\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}\SkypeIcon.exe O4 - GS\TaskBar [Amine]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [Amine]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Program [Amine]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\Program [Amine]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O4 - GS\Accessories [Amine]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Amine]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Amine]: Run.lnk - Clé orpheline O4 - GS\Accessories [Amine]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Amine]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\SystemTools [Amine]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\SendTo [Amine]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O4 - GS\Desktop [Amine]: Enemy Territory.lnk . (...) -- C:\Program Files\Wolfenstein - Enemy Territory\et.exe O4 - GS\Desktop [Amine]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) -- C:\Program Files\PhotoFiltre 7\PhotoFiltre7.exe O4 - GS\Desktop [Amine]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman O4 - GS\Desktop [Amine]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman O4 - GS\Desktop [Amine]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Amine\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent ~ Global Startup: 61 Scanned in 00mn 02s ---\\ Applications lancées au démarrage du sytème (O4) O4 - HKLM\..\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe =>.Advanced Micro Devices, Inc O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] . (.LogMeIn Inc. - Hamachi Client Application.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation O4 - HKLM\..\Run: [SoundMan] . (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- C:\Windows\SOUNDMAN.exe O4 - HKLM\..\Run: [ClockGen] C:\Users\Amine\AppData\Local\Temp\Rar$EXa0.601\ClockGen.exe (.not file.) O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation ~ Application: Scanned in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ IE Control Panel: 1 Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll ~ Winsock: 6 Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{AD316A5B-17E2-4D47-9162-9211F25FB7B3}: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS1\Services\Tcpip\..\{AD316A5B-17E2-4D47-9162-9211F25FB7B3}: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS2\Services\Tcpip\..\{AD316A5B-17E2-4D47-9162-9211F25FB7B3}: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 ~ Domain: Scanned in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - AppInit_DLLs: . (...) - C:\Program Files\SupTab\SEARCH~1.dll (.not file.) =>PUP.SupTab ~ AppInit DLL: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ SSODL: 1 Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\System32\Ati2evxx.exe O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) . (.LogMeIn Inc. - Hamachi Client Tunneling Engine.) - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe O23 - Service: IePlugin Service (IePluginService) . (.Cherished Technololgy LIMITED - IePlugin Service.) - C:\ProgramData\IePluginService\PluginService.exe =>Trojan.SProtector O23 - Service: Level Quality Watcher (Level Quality Watcher) . (...) - C:\Program Files\Level Quality Watcher\v1.01\levelqualitywatcher32.exe =>PUP.LevelQualityWatcher O23 - Service: LMIGuardianSvc (LMIGuardianSvc) . (.LogMeIn, Inc. - LMIGuardianSvc.) - C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe O23 - Service: MySQL56 (MySQL56) . (...) - C:\ProgramData\MySQL\MySQL Server 5.6\my.ini O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe O23 - Service: PnkBstrB (PnkBstrB) . (...) - C:\Windows\system32\PnkBstrB.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe ~ Services: 10 Scanned in 00mn 27s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ Enumère les données de BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] [MD5.9D96B0D5855FD1B98023B3EEC9F06786] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [257928] [MD5.04505C46F9CB7D8F8769B566EDC42282] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [4505368] =>.Piriform Ltd [MD5.00000000000000000000000000000000] [APT] [{EB0B75B4-C1FC-4BEC-8F5C-174DFC6D6301}] (...) -- C:\Users\Amine\Downloads\dxwebsetup(1).exe (.not file.) [0] ~ Scheduled Task: 4 Scanned in 00mn 13s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll ~ Active Setup: 9 Scanned in 00mn 00s ---\\ Pilotes lancés au démarrage du système (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\System32\DRIVERS\mssmbios.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys ~ Drivers: 57 Scanned in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: Adobe Flash Player 12 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 12 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd O42 - Logiciel: Camtasia Studio 8 - (.TechSmith Corporation.) [HKLM] -- {5303CFB5-D635-44F0-A94B-9611E81F07C4} O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM] -- {8D7133DE-27D2-47E5-B248-4180278D32AA} O42 - Logiciel: Gameforge Live 1.10.1 "Legend" - (.Gameforge.) [HKLM] -- {9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1 O42 - Logiciel: HxD Hex Editor version 1.7.7.0 - (.Maël Hörz.) [HKLM] -- HxD Hex Editor_is1 O42 - Logiciel: Java 7 Update 51 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217051FF} O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM] -- LogMeIn Hamachi O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM] -- {91BA5476-8B26-49E4-84B2-9EFE10917B33} O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM] -- {7B6780CE-CADD-48DE-8CC2-CB168E07885A} O42 - Logiciel: Mozilla Firefox 28.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 28.0 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService O42 - Logiciel: Nostale(FR) - (.Gameforge 4D GmbH.) [HKLM] -- NosTale(FR)_is1 O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU] -- PhotoFiltre 7 O42 - Logiciel: PremiumSoft Navicat 8.2 for MySQL - (.PremiumSoft CyberTech Ltd..) [HKLM] -- PremiumSoft Navicat 8.2 for MySQL_is1 O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM] -- PunkBusterSvc O42 - Logiciel: Realtek AC'97 Audio - (.Realtek Semiconductor Corp..) [HKLM] -- {FB08F381-6533-4108-B7DD-039E11FBC27E} O42 - Logiciel: Realtek PCI Fast Ethernet Controller Driver For Vista and Win7 - (.Realtek.) [HKLM] -- {AE46ABD3-D625-467F-B5A7-8D3FFF077F0D} O42 - Logiciel: SavingsBull - (.SavingsBull.) [HKLM] -- Level Quality Watcher =>PUP.SavingsBull O42 - Logiciel: Skype™ 6.14 - (.Skype Technologies S.A..) [HKLM] -- {7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7} O42 - Logiciel: WampServer 2.4 - (.Hervé Leclerc (HeL).) [HKLM] -- WampServer 2_is1 O42 - Logiciel: WinRAR 5.01 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver O42 - Logiciel: Wolfenstein - Enemy Territory - (.ACTIVISION.) [HKLM] -- Wolfenstein - Enemy Territory O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent =>P2P.BitTorrent ~ Logic: 30 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\1ClickDownload] =>PUP.1ClickDownloader [HKCU\Software\ATI Technologies Inc.] [HKCU\Software\ATI] [HKCU\Software\AVAST Software] [HKCU\Software\AhnLab] [HKCU\Software\AppDataLow\Software\Crossrider] =>PUP.CrossRider [HKCU\Software\AppDataLow\Software\JavaSoft] [HKCU\Software\AppDataLow\Software\Savings Bull] =>PUP.SavingsBull [HKCU\Software\AppDataLow] [HKCU\Software\BitTorrent] =>P2P.BitTorrent [HKCU\Software\CPUID.COM] [HKCU\Software\CamStudioOpenSource for Nick] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Gameforge4d] [HKCU\Software\Google] [HKCU\Software\IM Providers] [HKCU\Software\InstallCore] =>Adware.InstallCore [HKCU\Software\JavaSoft] [HKCU\Software\Licenses] [HKCU\Software\Macromedia] [HKCU\Software\MainConcept] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mozilla] [HKCU\Software\Nosibay] [HKCU\Software\Oracle] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\PremiumSoft] [HKCU\Software\Realtek] [HKCU\Software\Skype] [HKCU\Software\Smartbar] =>Hijacker.SmartBar [HKCU\Software\System Management Bus] [HKCU\Software\TechSmith] [HKCU\Software\TeleCharger] [HKCU\Software\The Silicon Realms Toolworks] [HKCU\Software\Trolltech] [HKCU\Software\WebApp] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\ZebHelpProcess Helper] [HKLM\Software\AMD] [HKLM\Software\ATI Technologies] [HKLM\Software\ATI] [HKLM\Software\Activision] [HKLM\Software\CPUCooL] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\Even Balance] [HKLM\Software\Gameforge4d] [HKLM\Software\Gameforge] [HKLM\Software\Google] [HKLM\Software\IM Providers] [HKLM\Software\Iminent] =>Adware.IMBooster [HKLM\Software\Intel] [HKLM\Software\JavaSoft] [HKLM\Software\JreMetrics] [HKLM\Software\LevelQualityWatcher] =>PUP.LevelQualityWatcher [HKLM\Software\LogMeIn, Inc.] [HKLM\Software\Macromedia] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\MySQL AB] [HKLM\Software\NSISCrap] [HKLM\Software\Nostale_FR] [HKLM\Software\ODBC] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\RT 7 Lite] [HKLM\Software\RTLSetup] [HKLM\Software\Realtek Semiconductor Corp.] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SRS Labs] [HKLM\Software\Savings Bull] =>PUP.SavingsBull [HKLM\Software\Skype] [HKLM\Software\Sonic] [HKLM\Software\TechSmith] [HKLM\Software\Volatile] [HKLM\Software\WinRAR] [HKLM\Software\Wow6432Node] [HKLM\Software\Wpm] =>PUP.WpManager [HKLM\Software\cybelsoft] [HKLM\Software\dotNetInstaller] [HKLM\Software\mozilla.org] [HKLM\Software\supTab] =>PUP.SupTab [HKLM\Software\supWPM] =>PUP.WpManager [HKLM\Software\sweet-pageSoftware] =>PUP.SweetPage ~ Key Software: 147 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 19/02/2014 - 16:29:12 - [13,702] ----D C:\Program Files\ATI O43 - CFD: 19/02/2014 - 16:31:16 - [86,985] ----D C:\Program Files\ATI Technologies O43 - CFD: 19/03/2014 - 17:19:28 - [6,801] ----D C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 26/03/2014 - 17:37:57 - [104,072] ----D C:\Program Files\Common Files O43 - CFD: 19/03/2014 - 22:35:39 - [0] ----D C:\Program Files\Dll-Files.com Fixer O43 - CFD: 20/01/2011 - 20:41:54 - [79,371] ----D C:\Program Files\DVD Maker O43 - CFD: 19/02/2014 - 15:54:32 - [0] -SH-D C:\Program Files\Fichiers communs O43 - CFD: 19/03/2014 - 20:54:25 - [-1772,359] ----D C:\Program Files\GameforgeLive O43 - CFD: 20/03/2014 - 22:31:20 - [0] ----D C:\Program Files\Google O43 - CFD: 24/03/2014 - 21:11:40 - [2,316] ----D C:\Program Files\HxD O43 - CFD: 20/03/2014 - 21:05:02 - [8,572] --H-D C:\Program Files\InstallShield Installation Information O43 - CFD: 20/03/2014 - 21:56:46 - [5,247] ----D C:\Program Files\Internet Explorer O43 - CFD: 19/03/2014 - 17:48:00 - [121,298] ----D C:\Program Files\Java O43 - CFD: 20/03/2014 - 23:08:00 - [1,199] ----D C:\Program Files\Level Quality Watcher =>Adware.LevelQualityWatcher O43 - CFD: 19/03/2014 - 17:34:32 - [7,712] ----D C:\Program Files\LogMeIn Hamachi O43 - CFD: 19/03/2014 - 19:16:24 - [9,457] ----D C:\Program Files\ma-config.com O43 - CFD: 14/07/2009 - 10:00:58 - [140,966] ----D C:\Program Files\Microsoft Games O43 - CFD: 20/03/2014 - 00:48:06 - [0,023] ----D C:\Program Files\Microsoft.NET O43 - CFD: 20/03/2014 - 19:56:47 - [54,452] ----D C:\Program Files\Mozilla Firefox O43 - CFD: 20/03/2014 - 19:56:29 - [0,216] ----D C:\Program Files\Mozilla Maintenance Service O43 - CFD: 14/07/2009 - 05:52:30 - [0,025] ----D C:\Program Files\MSBuild O43 - CFD: 22/03/2014 - 14:00:17 - [7,939] ----D C:\Program Files\PhotoFiltre 7 O43 - CFD: 26/03/2014 - 18:45:07 - [22,248] ----D C:\Program Files\PremiumSoft O43 - CFD: 26/03/2014 - 17:38:09 - [0,164] ----D C:\Program Files\QuickTime O43 - CFD: 19/03/2014 - 19:20:27 - [0,466] ----D C:\Program Files\Realtek O43 - CFD: 20/03/2014 - 21:05:38 - [38,633] ----D C:\Program Files\Realtek AC97 O43 - CFD: 14/07/2009 - 05:52:30 - [37,357] ----D C:\Program Files\Reference Assemblies O43 - CFD: 26/03/2014 - 14:36:17 - [0,047] ----D C:\Program Files\SavingsBull =>PUP.SavingsBull O43 - CFD: 19/03/2014 - 16:52:21 - [23,259] R---D C:\Program Files\Skype O43 - CFD: 25/03/2014 - 22:15:30 - [1,688] ----D C:\Program Files\SupTab =>PUP.SupTab O43 - CFD: 26/03/2014 - 17:37:29 - [135,953] ----D C:\Program Files\TechSmith O43 - CFD: 14/07/2009 - 05:53:23 - [0] --H-D C:\Program Files\Uninstall Information O43 - CFD: 20/03/2014 - 21:56:53 - [2,909] ----D C:\Program Files\Windows Defender O43 - CFD: 20/03/2014 - 21:57:06 - [6,688] ----D C:\Program Files\Windows Journal O43 - CFD: 20/01/2011 - 20:41:55 - [5,895] ----D C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 19/03/2014 - 18:33:09 - [6,298] ----D C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 19/02/2014 - 15:54:32 - [11,632] ----D C:\Program Files\Windows NT O43 - CFD: 20/01/2011 - 20:41:52 - [4,213] ----D C:\Program Files\Windows Photo Viewer O43 - CFD: 20/01/2011 - 20:41:53 - [0,181] ----D C:\Program Files\Windows Portable Devices O43 - CFD: 20/01/2011 - 20:41:54 - [6,374] ----D C:\Program Files\Windows Sidebar O43 - CFD: 19/03/2014 - 17:10:59 - [4,848] ----D C:\Program Files\WinRAR O43 - CFD: 29/03/2014 - 12:58:56 - [459,787] ----D C:\Program Files\Wolfenstein - Enemy Territory O43 - CFD: 29/03/2014 - 21:57:30 - [17,113] ----D C:\Program Files\ZHPDiag =>.Nicolas Coolman O43 - CFD: 20/03/2014 - 20:52:54 - [1,943] ----D C:\Program Files\Common Files\InstallShield O43 - CFD: 19/03/2014 - 17:48:44 - [1,191] ----D C:\Program Files\Common Files\Java O43 - CFD: 19/02/2014 - 16:29:21 - [47,561] ----D C:\Program Files\Common Files\microsoft shared O43 - CFD: 14/07/2009 - 03:37:05 - [0,003] ----D C:\Program Files\Common Files\Services O43 - CFD: 19/03/2014 - 16:52:21 - [1,904] ----D C:\Program Files\Common Files\Skype O43 - CFD: 14/07/2009 - 03:37:05 - [39,200] ----D C:\Program Files\Common Files\SpeechEngines O43 - CFD: 21/03/2014 - 12:48:51 - [9,767] ----D C:\Program Files\Common Files\System O43 - CFD: 26/03/2014 - 17:37:57 - [2,504] ----D C:\Program Files\Common Files\TechSmith Shared O43 - CFD: 20/03/2014 - 00:22:49 - [0] ----D C:\ProgramData\APN O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Application Data O43 - CFD: 19/02/2014 - 16:33:27 - [0] ----D C:\ProgramData\ATI O43 - CFD: 20/03/2014 - 17:12:48 - [2,692] ----D C:\ProgramData\AVAST Software O43 - CFD: 19/02/2014 - 15:54:32 - [0] -SH-D C:\ProgramData\Bureau O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Documents O43 - CFD: 19/02/2014 - 15:54:32 - [0] -SH-D C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Favorites O43 - CFD: 25/03/2014 - 16:08:31 - [0,492] ----D C:\ProgramData\IePluginService =>Trojan.SProtector O43 - CFD: 19/03/2014 - 19:03:30 - [0] ----D C:\ProgramData\LogMeIn O43 - CFD: 19/03/2014 - 22:18:44 - [0,002] ----D C:\ProgramData\Logs O43 - CFD: 19/03/2014 - 19:16:07 - [1,396] ----D C:\ProgramData\ma-config.com O43 - CFD: 19/02/2014 - 15:54:32 - [0] -SH-D C:\ProgramData\Menu Démarrer O43 - CFD: 20/03/2014 - 18:54:40 - [231,110] -S--D C:\ProgramData\Microsoft O43 - CFD: 19/02/2014 - 15:54:32 - [0] -SH-D C:\ProgramData\Modèles O43 - CFD: 20/03/2014 - 19:56:24 - [0] ----D C:\ProgramData\Mozilla O43 - CFD: 21/03/2014 - 13:17:23 - [1137,481] ----D C:\ProgramData\MySQL O43 - CFD: 19/03/2014 - 17:54:09 - [0] ----D C:\ProgramData\Oracle O43 - CFD: 26/03/2014 - 17:38:10 - [0,001] ----D C:\ProgramData\regid.1995-08.com.techsmith O43 - CFD: 19/03/2014 - 16:52:26 - [24,438] ----D C:\ProgramData\Skype O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Start Menu O43 - CFD: 19/03/2014 - 17:48:45 - [0] ----D C:\ProgramData\Sun O43 - CFD: 26/03/2014 - 17:37:29 - [377,336] ----D C:\ProgramData\TechSmith O43 - CFD: 19/03/2014 - 22:18:43 - [0] ----D C:\ProgramData\TEMP O43 - CFD: 14/07/2009 - 05:53:55 - [0] -SH-D C:\ProgramData\Templates O43 - CFD: 26/03/2014 - 14:30:17 - [0] ----D C:\ProgramData\WPM =>PUP.WpManager O43 - CFD: 19/02/2014 - 16:19:38 - [0,178] ----D C:\Users\Amine\AppData\Roaming\Adobe O43 - CFD: 19/02/2014 - 16:33:27 - [0] ----D C:\Users\Amine\AppData\Roaming\ATI O43 - CFD: 19/02/2014 - 15:55:04 - [0] ----D C:\Users\Amine\AppData\Roaming\Identities O43 - CFD: 19/03/2014 - 16:55:43 - [0,007] ----D C:\Users\Amine\AppData\Roaming\Macromedia O43 - CFD: 24/03/2014 - 21:14:25 - [0,001] ----D C:\Users\Amine\AppData\Roaming\Mael O43 - CFD: 14/07/2009 - 10:00:22 - [0] ----D C:\Users\Amine\AppData\Roaming\Media Center Programs O43 - CFD: 25/03/2014 - 02:21:01 - [2,231] -S--D C:\Users\Amine\AppData\Roaming\Microsoft O43 - CFD: 20/03/2014 - 19:57:31 - [26,334] ----D C:\Users\Amine\AppData\Roaming\Mozilla O43 - CFD: 20/03/2014 - 01:11:58 - [0,093] ----D C:\Users\Amine\AppData\Roaming\MySQL O43 - CFD: 25/03/2014 - 14:55:28 - [0] ----D C:\Users\Amine\AppData\Roaming\Nosibay =>PUP.BubbleDock O43 - CFD: 22/03/2014 - 14:08:27 - [0,002] ----D C:\Users\Amine\AppData\Roaming\PhotoFiltre 7 O43 - CFD: 29/03/2014 - 21:53:37 - [14,005] ----D C:\Users\Amine\AppData\Roaming\Skype O43 - CFD: 25/03/2014 - 16:08:28 - [0,484] ----D C:\Users\Amine\AppData\Roaming\SupTab =>PUP.SupTab O43 - CFD: 25/03/2014 - 22:15:42 - [0] ----D C:\Users\Amine\AppData\Roaming\sweet-page =>PUP.SweetPage O43 - CFD: 26/03/2014 - 17:40:50 - [0] ----D C:\Users\Amine\AppData\Roaming\TechSmith O43 - CFD: 24/03/2014 - 17:47:38 - [3,779] ----D C:\Users\Amine\AppData\Roaming\uTorrent =>P2P.µTorrent O43 - CFD: 19/03/2014 - 17:23:28 - [0] ----D C:\Users\Amine\AppData\Roaming\WinRAR O43 - CFD: 29/03/2014 - 22:00:32 - [0,016] ----D C:\Users\Amine\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 19/02/2014 - 16:19:37 - [0] ----D C:\Users\Amine\AppData\Local\Adobe O43 - CFD: 19/02/2014 - 15:54:50 - [0] -SH-D C:\Users\Amine\AppData\Local\Application Data O43 - CFD: 19/02/2014 - 16:12:36 - [0] ----D C:\Users\Amine\AppData\Local\Apps O43 - CFD: 19/02/2014 - 16:33:27 - [0,061] ----D C:\Users\Amine\AppData\Local\ATI O43 - CFD: 26/03/2014 - 23:00:24 - [4,972] ----D C:\Users\Amine\AppData\Local\CrashDumps O43 - CFD: 22/03/2014 - 11:57:25 - [11,273] ----D C:\Users\Amine\AppData\Local\CrashRpt O43 - CFD: 19/02/2014 - 16:14:31 - [0] ----D C:\Users\Amine\AppData\Local\Deployment O43 - CFD: 20/03/2014 - 17:29:18 - [0,130] ----D C:\Users\Amine\AppData\Local\ElevatedDiagnostics O43 - CFD: 19/03/2014 - 20:54:44 - [0,007] ----D C:\Users\Amine\AppData\Local\Gameforge4d O43 - CFD: 20/03/2014 - 19:59:49 - [0] ----D C:\Users\Amine\AppData\Local\Google O43 - CFD: 19/02/2014 - 15:54:50 - [0] -SH-D C:\Users\Amine\AppData\Local\Historique O43 - CFD: 19/03/2014 - 19:03:30 - [0] ----D C:\Users\Amine\AppData\Local\LogMeIn O43 - CFD: 29/03/2014 - 10:55:54 - [0,045] ----D C:\Users\Amine\AppData\Local\LogMeIn Hamachi O43 - CFD: 20/03/2014 - 20:36:40 - [0] ----D C:\Users\Amine\AppData\Local\Macromedia O43 - CFD: 26/03/2014 - 17:40:25 - [74,355] ----D C:\Users\Amine\AppData\Local\Microsoft O43 - CFD: 19/03/2014 - 23:50:43 - [0] ----D C:\Users\Amine\AppData\Local\MigWiz O43 - CFD: 20/03/2014 - 19:57:32 - [152,924] ----D C:\Users\Amine\AppData\Local\Mozilla O43 - CFD: 19/03/2014 - 17:59:22 - [0] ----D C:\Users\Amine\AppData\Local\Programs O43 - CFD: 29/03/2014 - 12:50:34 - [0] ----D C:\Users\Amine\AppData\Local\Punkbuster O43 - CFD: 19/03/2014 - 16:52:37 - [4,549] ----D C:\Users\Amine\AppData\Local\Skype O43 - CFD: 26/03/2014 - 18:10:56 - [0,006] ----D C:\Users\Amine\AppData\Local\TechSmith O43 - CFD: 29/03/2014 - 21:57:32 - [551,926] ----D C:\Users\Amine\AppData\Local\Temp O43 - CFD: 19/02/2014 - 15:54:50 - [0] -SH-D C:\Users\Amine\AppData\Local\Temporary Internet Files O43 - CFD: 19/03/2014 - 22:24:14 - [60,299] ----D C:\Users\Amine\AppData\Local\VirtualStore O43 - CFD: 14/07/2009 - 05:42:04 - [0,014] R---D C:\Users\Amine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 20/03/2014 - 22:15:26 - [0] R---D C:\Users\Amine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 14/07/2009 - 05:37:42 - [0,001] R---D C:\Users\Amine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 22/03/2014 - 14:00:17 - [0] ----D C:\Users\Amine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 O43 - CFD: 21/03/2014 - 13:07:24 - [0] R---D C:\Users\Amine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 19/03/2014 - 17:10:59 - [0,004] ----D C:\Users\Amine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 29/03/2014 - 12:50:36 - [0,010] ----D C:\Users\Amine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wolfenstein - Enemy Territory ~ Program Folder: 127 Scanned in 00mn 21s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.D012CA96BA57B1FB88D397A99211B6FC] - 19/03/2014 - 17:40:49 ---A- . (...) -- C:\Windows\System32\libmysql_d.dll [1589248] O44 - LFC:[MD5.9395BBE294045909A025C9F3DC3D9025] - 19/03/2014 - 17:48:09 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\java.exe [174504] O44 - LFC:[MD5.CB3638541DCAC86EE17FA8258202E20E] - 19/03/2014 - 17:48:09 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\javaw.exe [175016] O44 - LFC:[MD5.95E15A2DE75AB48728AB8E1911C3EDB1] - 19/03/2014 - 17:48:10 ---A- . (.Oracle Corporation - Java(TM) Web Start Launcher.) -- C:\Windows\System32\javaws.exe [264616] O44 - LFC:[MD5.FD80D0AE205EC54D1A204DDBD6B766DA] - 19/03/2014 - 17:48:15 ---A- . (.Oracle Corporation - Pas de description.) -- C:\Windows\System32\WindowsAccessBridge.dll [94632] O44 - LFC:[MD5.EACFDF31921F51C097629F1F3C9129B4] - 19/03/2014 - 17:53:08 ---A- . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] O44 - LFC:[MD5.B0BC447C758FF055D53FC6831FDB0344] - 19/03/2014 - 17:53:09 ---A- . (.Microsoft Corporation - Interface utilisateur de consentement pour.) -- C:\Windows\System32\consent.exe [101720] O44 - LFC:[MD5.B37B08F2E5EEB1A37E448E09BACE1101] - 19/03/2014 - 17:53:39 ---A- . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\Drivers\tssecsrv.sys [31232] O44 - LFC:[MD5.7FA485555BF802FE3DB5598004DBDFAC] - 19/03/2014 - 18:02:58 ---A- . (.Microsoft Corporation - Client Gestion des droits Windows.) -- C:\Windows\System32\msdrm.dll [390144] O44 - LFC:[MD5.12A9F24DC9F465DA79AC2272D829A81E] - 19/03/2014 - 18:02:58 ---A- . (.Microsoft Corporation - Windows Rights Management Desktop Security.) -- C:\Windows\System32\secproc.dll [428032] O44 - LFC:[MD5.58712A48D31B40EBCB35B47205F87771] - 19/03/2014 - 18:02:58 ---A- . (.Microsoft Corporation - Windows Rights Management Services Server S.) -- C:\Windows\System32\secproc_ssp.dll [87040] O44 - LFC:[MD5.9158DBE2F8483434FC72F320690C9DB8] - 19/03/2014 - 18:02:58 ---A- . (.Microsoft Corporation - Windows Rights Management Services Server S.) -- C:\Windows\System32\secproc_ssp_isv.dll [87040] O44 - LFC:[MD5.BBCE3E9E74C7CEA47FA4115B360AC2C6] - 19/03/2014 - 18:02:59 ---A- . (.Microsoft Corporation - Windows Rights Management Desktop Security.) -- C:\Windows\System32\secproc_isv.dll [423936] O44 - LFC:[MD5.6142C5540C8D2764D59CBC11AF4A5900] - 19/03/2014 - 18:02:59 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate.exe [572416] O44 - LFC:[MD5.E01D2AC63453534DB8AD1EA97DEE9C3A] - 19/03/2014 - 18:02:59 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate_isv.exe [594944] O44 - LFC:[MD5.08D323750350A8A29611D1004C0CF319] - 19/03/2014 - 18:02:59 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate_ssp.exe [510976] O44 - LFC:[MD5.0F5FEF37588AF457E02125674F171A4F] - 19/03/2014 - 18:02:59 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate_ssp_isv.exe [508928] O44 - LFC:[MD5.D0F0D7A97C90FE72A79732812E65F822] - 19/03/2014 - 18:18:01 ---A- . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\Drivers\Diskdump.sys [27008] O44 - LFC:[MD5.20104EA66332D24D7C65BBB087C56737] - 19/03/2014 - 18:19:51 ---A- . (.Microsoft Corporation - Exécuteur de file d’attente d’opérations pr.) -- C:\Windows\System32\poqexec.exe [123904] O44 - LFC:[MD5.B53BBEB3A90030ADCD8FCEC26AB0E65B] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll [3072] O44 - LFC:[MD5.CFCD9EDB4B54653B767EBDF722BA8309] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll [3072] O44 - LFC:[MD5.4810BDB223ADBEF09C6A96153F7B9987] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll [3072] O44 - LFC:[MD5.05635E9F41C3ED112E48B06A039C0B3D] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll [3072] O44 - LFC:[MD5.CA9BF20C89804DDF90B77186E9C4053D] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll [3072] O44 - LFC:[MD5.6AB46CEEBD62287B3CAC9CABF35C0B31] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll [3072] O44 - LFC:[MD5.C1B384335B462D49D44A36EEF3D84458] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll [5120] O44 - LFC:[MD5.9BB5788E5403ADB0FBEC56C12FDF01F6] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll [3072] O44 - LFC:[MD5.E1364901E2DB1D50069B3C7D3167D788] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll [3584] O44 - LFC:[MD5.C204A714C587E5935D93818357C5F2F1] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll [3584] O44 - LFC:[MD5.AB19DC0B708CFDA06567B1428D5EBE16] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll [3072] O44 - LFC:[MD5.1F89EE12D56D833D0BF4B8070D213A27] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll [4096] O44 - LFC:[MD5.6F482E6BA305AB471D0BAF728BC75310] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll [3584] O44 - LFC:[MD5.541F08D2A39AFFBD938C76137407D286] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll [4096] O44 - LFC:[MD5.9CEBA869447B1E338631DB05493C21CE] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll [3584] O44 - LFC:[MD5.C74DF35F56CA85075060ED2A715D776A] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll [3584] O44 - LFC:[MD5.5EA6870FE09F75D92E26A2614A756659] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll [4608] O44 - LFC:[MD5.B28490AC5CAABF0BF796A49946300F67] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll [3072] O44 - LFC:[MD5.65E14C022A7E3A70C7FD2627EF75B4D6] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll [3072] O44 - LFC:[MD5.C7280F39F0E4ED5DDB97630B59C1A804] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll [3072] O44 - LFC:[MD5.46237F5C64CA4638024E341BE2AD1D19] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll [4608] O44 - LFC:[MD5.CCBA7F264A5259DF5F6915CBEFC453C9] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll [3072] O44 - LFC:[MD5.C3566123385C8FF53BFFE4D7413F6290] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll [3584] O44 - LFC:[MD5.FF41CF91302C9C12BC2ABD41989DDEB5] - 19/03/2014 - 18:20:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll [6144] O44 - LFC:[MD5.1E65CF7B26D02750544EFDD73C8118FA] - 19/03/2014 - 18:20:08 ---A- . (.Microsoft Corporation - DLL du client API BASE Windows NT.) -- C:\Windows\System32\KernelBase.dll [293376] O44 - LFC:[MD5.6933E2AFF444A7A95D5C67E98449163E] - 19/03/2014 - 18:20:08 ---A- . (.Microsoft Corporation - DLL du client API BASE Windows NT.) -- C:\Windows\System32\kernel32.dll [868352] O44 - LFC:[MD5.51BB04243DF6196C06E125898127E397] - 19/03/2014 - 18:20:08 ---A- . (.Microsoft Corporation - DLL serveur de Windows multi-utilisateurs.) -- C:\Windows\System32\winsrv.dll [169984] O44 - LFC:[MD5.2DE16A63F71D10B42ACE01E759078600] - 19/03/2014 - 18:20:08 ---A- . (.Microsoft Corporation - Hôte de la fenêtre de la console.) -- C:\Windows\System32\conhost.exe [271360] O44 - LFC:[MD5.4D338A4961C16CE062725508A43392AD] - 19/03/2014 - 18:20:08 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll [3584] O44 - LFC:[MD5.F8664C3B4A7365773312EAE6593E7525] - 19/03/2014 - 18:20:08 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll [4096] O44 - LFC:[MD5.E515B51CAA7CE378CA9419EE9B07CD2F] - 19/03/2014 - 18:20:08 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll [4096] O44 - LFC:[MD5.232E3A49A5897AFDA0881F3D2A1AD98A] - 19/03/2014 - 18:20:08 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll [4096] O44 - LFC:[MD5.25944D2CC49E0A6C581D02A74B7D6645] - 19/03/2014 - 18:24:54 ---A- . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\Windows\System32\Drivers\Wdf01000.sys [527064] O44 - LFC:[MD5.02DF0628BE8B64B84D50FBE53549AA3B] - 19/03/2014 - 18:25:54 ---A- . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.DLL [12625408] O44 - LFC:[MD5.6C4B2E1A25841077084EB9F76FF6FFA7] - 19/03/2014 - 18:25:57 ---A- . (.Microsoft Corporation - Windows Media Player.) -- C:\Windows\System32\wmp.dll [11410432] O44 - LFC:[MD5.DA1919D896DBD5895E138932AE9E398B] - 19/03/2014 - 18:26:52 ---A- . (.Microsoft Corporation - Choix de navigateur .) -- C:\Windows\System32\browserchoice.exe [293376] O44 - LFC:[MD5.3F7A8BCF37433A69CEEDE1E6AEE79784] - 19/03/2014 - 18:29:02 ---A- . (.Microsoft Corporation - Analyseur de modèles de stratégies globales.) -- C:\Windows\System32\admparse.dll [101888] O44 - LFC:[MD5.DB754FF5F6ADBA2A25EC1B6672D1C91E] - 19/03/2014 - 18:29:02 ---A- . (.Microsoft Corporation - DLL d'interface utilisateur partagée Micros.) -- C:\Windows\System32\ieakui.dll [163840] O44 - LFC:[MD5.49729570B7FD369BBDEC16D7683324A0] - 19/03/2014 - 18:29:02 ---A- . (.Microsoft Corporation - Extension de composant logiciel enfichable.) -- C:\Windows\System32\ieaksie.dll [227840] O44 - LFC:[MD5.1E7094AFAD0C369DD6D400C7047E4AB2] - 19/03/2014 - 18:29:05 ---A- . (.Microsoft Corporation - Bibliothèque de moteurs de IEAK.) -- C:\Windows\System32\ieakeng.dll [130560] O44 - LFC:[MD5.907281ED4AD35D41B29FFDC211EBAD80] - 19/03/2014 - 18:30:38 ---A- . (.Microsoft Corporation - WMI DC and DP functionality.) -- C:\Windows\System32\wmi.dll [5120] O44 - LFC:[MD5.7DAE5EBCC80E45D3253F4923DC424D05] - 19/03/2014 - 18:30:39 ---A- . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\Drivers\fs_rec.sys [19824] O44 - LFC:[MD5.8F2DA3028D5FCBD1A060A3DE64CD6506] - 19/03/2014 - 18:44:45 ---A- . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\Drivers\bowser.sys [69632] O44 - LFC:[MD5.4F8CCD3E7D9F17A7C60FA0AE2466CACF] - 19/03/2014 - 18:44:49 ---A- . (.Microsoft Corporation - DLL du rapport d’erreurs Windows.) -- C:\Windows\System32\wer.dll [381440] O44 - LFC:[MD5.DC6612A9EE015A36BA2A27BC9CC12537] - 19/03/2014 - 18:44:54 ---A- . (.Microsoft Corporation - Bibliothèque partagée MFCDLL - Version comm.) -- C:\Windows\System32\mfc42.dll [1137664] O44 - LFC:[MD5.24CAEDCD73B5B0E22226283B7B2468C7] - 19/03/2014 - 18:44:54 ---A- . (.Microsoft Corporation - Bibliothèque partagée MFCDLL - Version comm.) -- C:\Windows\System32\mfc42u.dll [1164288] O44 - LFC:[MD5.2352AB5F9F8F097BF9D41D5A4718A041] - 19/03/2014 - 18:45:07 ---A- . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\usbcir.sys [86016] O44 - LFC:[MD5.A1977C315BF5691DA99235AA4A6907AF] - 19/03/2014 - 18:45:08 ---A- . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\Windows\System32\Drivers\USBAUDIO.sys [80896] O44 - LFC:[MD5.CC09E0C9A2D89C6E71D093DC8BD121B7] - 19/03/2014 - 18:45:17 ---A- . (.Microsoft Corporation - Crypto API32.) -- C:\Windows\System32\crypt32.dll [1168384] O44 - LFC:[MD5.7B851A8018B1EA00A69707A390004884] - 19/03/2014 - 18:45:17 ---A- . (.Microsoft Corporation - Crypto Network Related API.) -- C:\Windows\System32\cryptnet.dll [103936] O44 - LFC:[MD5.7CA1BECEA5DE2643ADDAD32670E7A4C9] - 19/03/2014 - 18:45:17 ---A- . (.Microsoft Corporation - Services de chiffrement.) -- C:\Windows\System32\cryptsvc.dll [140288] O44 - LFC:[MD5.EF71BA5DF59034962B0C62314A71351A] - 19/03/2014 - 18:45:25 ---A- . (.Microsoft Corporation - Client DHCPv6.) -- C:\Windows\System32\dhcpcore6.dll [193536] O44 - LFC:[MD5.81F6C1AE23B1C493D9E996C3103915D7] - 19/03/2014 - 18:45:25 ---A- . (.Microsoft Corporation - Client DHCPv6.) -- C:\Windows\System32\dhcpcsvc6.dll [44032] O44 - LFC:[MD5.03F3B770DFBED6131653CEDA8CA780F0] - 19/03/2014 - 18:45:32 ---A- . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [442880] O44 - LFC:[MD5.74AF6AA2E8B3180AADAE5FE8813CB1CD] - 19/03/2014 - 18:45:39 ---A- . (.Microsoft Corporation - DLL de spouleur local.) -- C:\Windows\System32\localspl.dll [769024] O44 - LFC:[MD5.F0D0E883EBBDC7615DC9EDEA0FFB2817] - 19/03/2014 - 18:45:40 ---A- . (.Microsoft Corporation - API en mode utilisateur FWP/IPsec.) -- C:\Windows\System32\FWPUCLNT.DLL [216576] O44 - LFC:[MD5.CE2A48CD0D2B39FB77FA4797C6434E71] - 19/03/2014 - 18:45:40 ---A- . (.Microsoft Corporation - Application d’assistance Netsh de la platef.) -- C:\Windows\System32\nshwfp.dll [656896] O44 - LFC:[MD5.B9C54120F46392100478F58F374E5709] - 19/03/2014 - 18:45:40 ---A- . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424] O44 - LFC:[MD5.CADEFAC453040E370A1BDFF3973BE00D] - 19/03/2014 - 18:45:42 ---A- . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352] O44 - LFC:[MD5.9DC80A8AAAAAC397BDAB3C67165A824E] - 19/03/2014 - 18:45:43 ---A- . (.Microsoft Corporation - Windows NT CRT DLL.) -- C:\Windows\System32\msvcrt.dll [690688] O44 - LFC:[MD5.58D2343C32DF596FB6132B54395DE5DB] - 19/03/2014 - 18:45:46 ---A- . (.Microsoft Corporation - DLL RDPCore Terminal Server (KM).) -- C:\Windows\System32\rdpcorekmts.dll [129536] O44 - LFC:[MD5.954AAF2028CD907B7F7ED40FFFD9D27F] - 19/03/2014 - 18:45:46 ---A- . (.Microsoft Corporation - RDP Extension DLL.) -- C:\Windows\System32\rdpwsx.dll [58880] O44 - LFC:[MD5.A5661C9330E5FCFCDD53EB03D5F04822] - 19/03/2014 - 18:45:46 ---A- . (.Microsoft Corporation - RDP Listeners Correction Tool.) -- C:\Windows\System32\rdrmemptylst.exe [8192] O44 - LFC:[MD5.DDCE686D76C2B4DB435A3AF5BD0E691D] - 19/03/2014 - 18:45:55 ---A- . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\Drivers\ataport.sys [133056] O44 - LFC:[MD5.2C4A87CA8C00E98EFDCFA2E8EC9A3503] - 19/03/2014 - 18:46:03 ---A- . (.Microsoft Corporation - Bibliothèque d’objets et de contrôles de do.) -- C:\Windows\System32\shdocvw.dll [180224] O44 - LFC:[MD5.E02781D4871844DCD30DF1D69A650F78] - 19/03/2014 - 18:46:03 ---A- . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [12872704] O44 - LFC:[MD5.D23E615E0969AECC1134E372B0B295D1] - 19/03/2014 - 18:46:10 ---A- . (.Microsoft Corporation - Windows Briefcase Engine.) -- C:\Windows\System32\synceng.dll [78336] O44 - LFC:[MD5.3F34A1B4C5F6475F320C275E63AFCE9B] - 19/03/2014 - 18:46:11 ---A- . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\Drivers\partmgr.sys [56176] O44 - LFC:[MD5.AAB149EE616952BB84308C28E75ED20D] - 19/03/2014 - 18:46:12 ---A- . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\Drivers\FWPKCLNT.SYS [187752] O44 - LFC:[MD5.5DBD4F73E2A52FEED61DBAB3752E329C] - 19/03/2014 - 18:46:12 ---A- . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\Drivers\netio.sys [240576] O44 - LFC:[MD5.CA59F7C570AF70BC174F477CFE2D9EE3] - 19/03/2014 - 18:46:12 ---A- . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\Drivers\tcpip.sys [1294272] O44 - LFC:[MD5.5A775CAE7CCCAC581C05B8D2C92C0DF1] - 19/03/2014 - 18:46:13 ---A- . (.Microsoft Corporation - GDI Client DLL.) -- C:\Windows\System32\gdi32.dll [305152] O44 - LFC:[MD5.A6C29DB53ECA94FA8591C5388D604B82] - 19/03/2014 - 18:46:15 ---A- . (.Microsoft Corporation - Windows Installer.) -- C:\Windows\System32\msi.dll [2342400] O44 - LFC:[MD5.534BF06B2DEE965A1389A9312545AE03] - 19/03/2014 - 18:46:20 ---A- . (.Microsoft Corporation - ODBC Cursor Library.) -- C:\Windows\System32\odbccr32.dll [81920] O44 - LFC:[MD5.E2D83DAA6A229CFDAF129189A9245889] - 19/03/2014 - 18:46:20 ---A- . (.Microsoft Corporation - ODBC Cursor Library.) -- C:\Windows\System32\odbccu32.dll [86016] O44 - LFC:[MD5.EF37EDC20412A01DDD9A42E8D939A5A3] - 19/03/2014 - 18:46:20 ---A- . (.Microsoft Corporation - ODBC Driver Manager Trace.) -- C:\Windows\System32\odbctrac.dll [163840] O44 - LFC:[MD5.66ABBF38123D3113BB55EBAFCF37AB92] - 19/03/2014 - 18:46:20 ---A- . (.Microsoft Corporation - ODBC Installer.) -- C:\Windows\System32\odbccp32.dll [122880] O44 - LFC:[MD5.3FDB77D0BBEEB36AE35077ABC0BF80EC] - 19/03/2014 - 18:46:21 ---A- . (.Microsoft Corporation - Microsoft ODBC Desktop Driver Pack 3.5.) -- C:\Windows\System32\odbcjt32.dll [319488] O44 - LFC:[MD5.75E8EBD7040CE238684333F97014762A] - 19/03/2014 - 18:46:22 ---A- . (.Microsoft Corporation - Fichier DLL du service DAV pour le Web.) -- C:\Windows\System32\WebClnt.dll [205824] O44 - LFC:[MD5.EAF4712B706936C0B10D3B5319B37E81] - 19/03/2014 - 18:46:22 ---A- . (.Microsoft Corporation - Web DAV Client DLL.) -- C:\Windows\System32\davclnt.dll [81920] O44 - LFC:[MD5.21F4B24ACFC79A483515BD986DD9043F] - 19/03/2014 - 18:46:22 ---A- . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\Drivers\mrxdav.sys [115712] O44 - LFC:[MD5.FB19FC5951A88F3C523E35C2C98D23C0] - 19/03/2014 - 18:46:24 ---A- . (.Microsoft Corporation - API des protocoles de transfert Web.) -- C:\Windows\System32\webio.dll [314880] O44 - LFC:[MD5.7752619457598CF057C4CC02A0867029] - 19/03/2014 - 18:46:40 ---A- . (.Microsoft - Système de classement CERO.) -- C:\Windows\System32\cero.rs [55296] O44 - LFC:[MD5.DDD1C4AB9A9DAE6D4092C4C95E714650] - 19/03/2014 - 18:46:40 ---A- . (.Microsoft - Système de classement ESRB.) -- C:\Windows\System32\esrb.rs [51712] O44 - LFC:[MD5.CBC69A055EF410CBD65593E4808B6DB4] - 19/03/2014 - 18:46:40 ---A- . (.Microsoft - Système de classement OFLC.) -- C:\Windows\System32\oflc.rs [23552] O44 - LFC:[MD5.72035C97983745E742D71E9A8EF70BBB] - 19/03/2014 - 18:46:40 ---A- . (.Microsoft - Système de classement PEGI en Finlande.) -- C:\Windows\System32\pegi-fi.rs [20480] O44 - LFC:[MD5.43C9CF6825CEA58F1815B7C3DBBB385C] - 19/03/2014 - 18:46:42 ---A- . (.Microsoft Corporation - Bibliothèque des paramètres WPC.) -- C:\Windows\System32\Wpc.dll [308736] O44 - LFC:[MD5.A067A19A91C2AA0198F9BD01A5CEF5C6] - 19/03/2014 - 18:46:43 ---A- . (.Microsoft - Système de classement GRB.) -- C:\Windows\System32\grb.rs [21504] O44 - LFC:[MD5.4F5C56DBF076D5BBB1D22B37BF281396] - 19/03/2014 - 18:46:43 ---A- . (.Microsoft - Système de classement PEGI au Portugal.) -- C:\Windows\System32\pegi-pt.rs [20480] O44 - LFC:[MD5.5109C45498BC709C8A7E016D5FFCCAC2] - 19/03/2014 - 18:46:43 ---A- . (.Microsoft - Système de classement PEGI.) -- C:\Windows\System32\pegi.rs [20480] O44 - LFC:[MD5.9EDCFA23CC081E38C86CA309D0F7E3DC] - 19/03/2014 - 18:46:43 ---A- . (.Microsoft - Système de classement USK.) -- C:\Windows\System32\usk.rs [30720] O44 - LFC:[MD5.64E211E0FDFCE4D186DF58BB7D0503BC] - 19/03/2014 - 18:46:43 ---A- . (.Microsoft Corporation - Explorateur des jeux.) -- C:\Windows\System32\gameux.dll [2576384] O44 - LFC:[MD5.9B7D7F4D1F79E8B7D727BE94B1630D59] - 19/03/2014 - 18:46:44 ---A- . (.Microsoft - Système de classement PEGI/BBFC.) -- C:\Windows\System32\pegibbfc.rs [44544] O44 - LFC:[MD5.41CE7975CAD7BCF92538D2C452239523] - 19/03/2014 - 18:46:44 ---A- . (.Microsoft - Système de classification COB-AU.) -- C:\Windows\System32\cob-au.rs [40960] O44 - LFC:[MD5.27828AAA24AA46F11036954ADE355C1C] - 19/03/2014 - 18:46:44 ---A- . (.Microsoft - Système de classification DJCTQ.) -- C:\Windows\System32\djctq.rs [15360] O44 - LFC:[MD5.A704E750245D5D4EE4A23E99A00F27D5] - 19/03/2014 - 18:46:44 ---A- . (.Microsoft - Système de classification FPB.) -- C:\Windows\System32\fpb.rs [46592] O44 - LFC:[MD5.ED59143843560B5EDB543C2A48CB9E4B] - 19/03/2014 - 18:46:44 ---A- . (.Microsoft - Système de classification OFLC-NZ.) -- C:\Windows\System32\oflc-nz.rs [45568] O44 - LFC:[MD5.6EC618588447B82EA8D88719EE46F725] - 19/03/2014 - 18:46:44 ---A- . (.Microsoft - Système de notation CSRR.) -- C:\Windows\System32\csrr.rs [43520] O44 - LFC:[MD5.68783E77D401E6392EA6579EBCEF16C8] - 19/03/2014 - 18:47:20 ---A- . (.Microsoft Corporation - DirectShow DVD PlayBack Runtime..) -- C:\Windows\System32\qdvd.dll [514560] O44 - LFC:[MD5.0AE0C4955E1DE29CCDC9DA1B816FE5EE] - 19/03/2014 - 18:47:21 ---A- . (.Microsoft Corporation - Module d’exécution DirectShow..) -- C:\Windows\System32\quartz.dll [1328128] O44 - LFC:[MD5.9842041E2F5ACE1E2F5FB4EF02053DC8] - 19/03/2014 - 18:47:22 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmk.sys [81408] O44 - LFC:[MD5.EB6137D696A9B4E9718AC6F8641CB4C9] - 19/03/2014 - 18:47:23 ---A- . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\Windows\System32\Drivers\portcls.sys [177152] O44 - LFC:[MD5.246560C5B7995489F25BF9175F2B6380] - 19/03/2014 - 18:47:24 ---A- . (.Microsoft Corporation - DirectShow MPEG-2 Splitter..) -- C:\Windows\System32\mpg2splt.ax [199680] O44 - LFC:[MD5.4D05D7A79E970398D8C687712E65A9B0] - 19/03/2014 - 18:47:24 ---A- . (.Microsoft Corporation - DirectShow Stream Buffer Filter..) -- C:\Windows\System32\sbe.dll [850944] O44 - LFC:[MD5.92FB57D9D865019D26346EB13E15CD75] - 19/03/2014 - 18:47:25 ---A- . (.Microsoft Corporation - PTFilter & Encypter/Decrypter Tagger Filte.) -- C:\Windows\System32\CPFilters.dll [642048] O44 - LFC:[MD5.0805487A6036A9F9C4E7AF7FEF835529] - 19/03/2014 - 18:47:31 ---A- . (.Microsoft Corporation - Windows Media Video Decoder.) -- C:\Windows\System32\WMVDECOD.DLL [1620992] O44 - LFC:[MD5.BDA0B954A30498B5A7EDC6204CBA07ED] - 19/03/2014 - 18:47:32 ---A- . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll [542208] O44 - LFC:[MD5.72910F1DEB838E6E08A9017BFB7D4F0B] - 19/03/2014 - 18:47:49 ---A- . (.Microsoft Corporation - Browser Service Client DLL.) -- C:\Windows\System32\browcli.dll [41984] O44 - LFC:[MD5.3DAA727B5B0A45039B0E1C9A211B8400] - 19/03/2014 - 18:47:49 ---A- . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] O44 - LFC:[MD5.2FCA0D2C59A855C54BAFA22AA329DF0F] - 19/03/2014 - 18:47:49 ---A- . (.Microsoft Corporation - Net Win32 API DLL.) -- C:\Windows\System32\netapi32.dll [57344] O44 - LFC:[MD5.C245EBD6B1A5FB6E6BBE2A635032490F] - 19/03/2014 - 18:47:50 ---A- . (.Microsoft Corporation - Microsoft Fax Cover Page Editor.) -- C:\Windows\System32\FXSCOVER.exe [191488] O44 - LFC:[MD5.866004E949EB3D02C3CAE0A553231A3A] - 19/03/2014 - 18:47:52 ---A- . (.Microsoft Corporation - Bibliothèque principale de Restauration du.) -- C:\Windows\System32\srcore.dll [400896] O44 - LFC:[MD5.813845D5C5D8325CA5E8B1F547016378] - 19/03/2014 - 18:47:54 ---A- . (.Microsoft Corporation - Filtre XDS Codec & filtres de balises d’en.) -- C:\Windows\System32\EncDec.dll [534528] O44 - LFC:[MD5.3B7C1A53047FF6ACEFD9BA6E281DEBB7] - 19/03/2014 - 18:48:06 ---A- . (.Microsoft Corporation - Microsoft CDO for Windows Library.) -- C:\Windows\System32\cdosys.dll [805376] O44 - LFC:[MD5.7B90C5F0A510852036822EE860CABF26] - 19/03/2014 - 18:48:08 ---A- . (.Microsoft Corporation - Gestionnaire de liaisons d’objets2.) -- C:\Windows\System32\packager.dll [67072] O44 - LFC:[MD5.5BDF8B0B9A3EADE3A2A6F2ED8D44E36D] - 19/03/2014 - 18:48:10 ---A- . (.Microsoft Corporation - Connecteur Microsoft Search pour Outlook.) -- C:\Windows\System32\mssphtb.dll [197120] O44 - LFC:[MD5.2DC6285EC4F902BE08E7C5FA6D3FD017] - 19/03/2014 - 18:48:10 ---A- . (.Microsoft Corporation - msscntrs.dll.) -- C:\Windows\System32\msscntrs.dll [59392] O44 - LFC:[MD5.DB67C7C62038BDE813CB6486581A7611] - 19/03/2014 - 18:48:11 ---A- . (.Microsoft Corporation - Microsoft Search Protocol Handler.) -- C:\Windows\System32\mssph.dll [337408] O44 - LFC:[MD5.A6CD6B3F71E13E2E45B727FB8A47EA87] - 19/03/2014 - 18:48:11 ---A- . (.Microsoft Corporation - Microsoft Windows Search Filter Host.) -- C:\Windows\System32\SearchFilterHost.exe [86528] O44 - LFC:[MD5.E1AC89F6C5252057E6062843E36A6701] - 19/03/2014 - 18:48:11 ---A- . (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) -- C:\Windows\System32\SearchProtocolHost.exe [164352] O44 - LFC:[MD5.987323F0247D023AD1AE52195540ECE0] - 19/03/2014 - 18:48:11 ---A- . (.Microsoft Corporation - Plateforme de recherche Microsoft Vista.) -- C:\Windows\System32\mssvp.dll [666624] O44 - LFC:[MD5.236F286E103FD44BD85FDD93097FD5DD] - 19/03/2014 - 18:48:12 ---A- . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) -- C:\Windows\System32\SearchIndexer.exe [427520] O44 - LFC:[MD5.0241CB16136B9A4939CA0395768AE286] - 19/03/2014 - 18:48:13 ---A- . (.Microsoft Corporation - mssrch.dll.) -- C:\Windows\System32\mssrch.dll [1401344] O44 - LFC:[MD5.465DBF63A5049E4DB4BC5C12FFE781CB] - 19/03/2014 - 18:48:13 ---A- . (.Microsoft Corporation - tquery.dll.) -- C:\Windows\System32\tquery.dll [1549312] O44 - LFC:[MD5.23FC8068953C9BE2D63AE4EF1129112A] - 19/03/2014 - 18:48:23 ---A- . (.Microsoft Corporation - Manipulateur d’événements réseau.) -- C:\Windows\System32\netevent.dll [18944] O44 - LFC:[MD5.5078492B9CAC9CB721698DB51F039035] - 19/03/2014 - 18:48:24 ---A- . (.Microsoft Corporation - Classes d’assistance pour les diagnostics p.) -- C:\Windows\System32\netcorehc.dll [175104] O44 - LFC:[MD5.374071043F9E4231EE43BE2BB48DD36D] - 19/03/2014 - 18:48:24 ---A- . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) -- C:\Windows\System32\nlasvc.dll [242176] O44 - LFC:[MD5.50E0DD0A5B8D8BC353578F2F73926697] - 19/03/2014 - 18:48:24 ---A- . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\System32\nlaapi.dll [52224] O44 - LFC:[MD5.58F67245D041FBE7AF88F4EAF79DF0FA] - 19/03/2014 - 18:48:24 ---A- . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] O44 - LFC:[MD5.3EEBD3BD93DA46A26E89893C7AB2FF3B] - 19/03/2014 - 18:48:24 ---A- . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\Drivers\tcpipreg.sys [35328] O44 - LFC:[MD5.140D9F911182357626165EA0BEB98C4F] - 19/03/2014 - 18:48:25 ---A- . (.Microsoft Corporation - Indicateur d’état de la connectivité réseau.) -- C:\Windows\System32\ncsi.dll [156672] O44 - LFC:[MD5.204689EC38738BE7C07F79B745733747] - 19/03/2014 - 18:49:05 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [2349056] O44 - LFC:[MD5.CC917AC4D3F8756FF13174980B474791] - 19/03/2014 - 18:49:23 ---A- . (.Microsoft Corporation - Active Directory Certificate Services Encod.) -- C:\Windows\System32\certenc.dll [43008] O44 - LFC:[MD5.0D52559AEF4AA5EAC82F530617032283] - 19/03/2014 - 18:49:23 ---A- . (.Microsoft Corporation - CertUtil.exe.) -- C:\Windows\System32\certutil.exe [903168] O44 - LFC:[MD5.EAADD6E47ED2A7003ACE1793B98CF63F] - 19/03/2014 - 18:49:30 ---A- . (.Microsoft Corporation - MSXML 6.0 SP3.) -- C:\Windows\System32\msxml6.dll [1389568] O44 - LFC:[MD5.7D27E63B54DB093BB0D9E95F81094D75] - 19/03/2014 - 18:49:33 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\System32\atmlib.dll [34304] O44 - LFC:[MD5.5C6B44F9CAAC475B7B9EBBC29CB7F065] - 19/03/2014 - 18:49:33 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\System32\atmfd.dll [295424] O44 - LFC:[MD5.2342EC9254F4C60CA98441BD65C89E12] - 19/03/2014 - 18:49:33 ---A- . (.Microsoft Corporation - DCI Manager.) -- C:\Windows\System32\dciman32.dll [10240] O44 - LFC:[MD5.8CC4638FA7B5B921B9080CF962582C0B] - 19/03/2014 - 18:49:33 ---A- . (.Microsoft Corporation - Font Subsetting DLL.) -- C:\Windows\System32\fontsub.dll [70656] O44 - LFC:[MD5.F632602316001D517F4EF3B53B9A6C33] - 19/03/2014 - 18:49:33 ---A- . (.Microsoft Corporation - Language Pack.) -- C:\Windows\System32\lpk.dll [26112] O44 - LFC:[MD5.ED27D1D75BF5E683AD3EDD9E3123520A] - 19/03/2014 - 18:49:34 ---A- . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [741376] O44 - LFC:[MD5.2A6BFDEDF2C57923E78F970BB15D7E7D] - 19/03/2014 - 18:49:44 ---A- . (.Microsoft Corporation - Client de contrainte de quarantaine de la p.) -- C:\Windows\System32\tsgqec.dll [36864] O44 - LFC:[MD5.F5562EFA9E4867D30EC2330B80FCB25C] - 19/03/2014 - 18:49:45 ---A- . (.Microsoft Corporation - Client avec accès à distance.) -- C:\Windows\System32\aaclient.dll [131584] O44 - LFC:[MD5.52D33A22DE04BD9F40E1B1A28B46A95C] - 19/03/2014 - 18:49:46 ---A- . (.Microsoft Corporation - Client ActiveX des services Bureau à distan.) -- C:\Windows\System32\mstscax.dll [3217408] O44 - LFC:[MD5.FC415B303B1ECF80B5F130A1F7203D02] - 19/03/2014 - 18:49:51 ---A- . (.Microsoft Corporation - Fournisseur d’impression de rendu côté clie.) -- C:\Windows\System32\win32spl.dll [492544] O44 - LFC:[MD5.7CC38741B8F68F1E0D5D79DA6123666A] - 19/03/2014 - 18:49:52 ---A- . (.Microsoft Corporation - Service de configuration automatique WWAN.) -- C:\Windows\System32\wwansvc.dll [185344] O44 - LFC:[MD5.DA8AAF7E56F698608A89542131F74818] - 19/03/2014 - 18:49:52 ---A- . (.Microsoft Corporation - WWAN Device Interface Module.) -- C:\Windows\System32\wwanprotdim.dll [40960] O44 - LFC:[MD5.E2ED66FAF894F545EB083AC5F5763854] - 19/03/2014 - 18:49:56 ---A- . (.Microsoft Corporation - Nettoyage de la mise à jour.) -- C:\Windows\System32\scavengeui.dll [434688] O44 - LFC:[MD5.2A01B40C8334A8124001CFAC256FCA83] - 19/03/2014 - 18:49:58 ---A- . (.Microsoft Corporation - WinFX OpenType/CFF Rasterizer.) -- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll [102608] O44 - LFC:[MD5.D67472125471784DE7147946EDA25FEB] - 19/03/2014 - 18:50:01 ---A- . (.Microsoft Corporation - API avancées Windows 32.) -- C:\Windows\System32\advapi32.dll [640512] O44 - LFC:[MD5.E0B8C6B1EA1EF94747E966E9093FB968] - 19/03/2014 - 18:50:01 ---A- . (.Microsoft Corporation - DLL Couche NT.) -- C:\Windows\System32\ntdll.dll [1289096] O44 - LFC:[MD5.DE91DCC7BC55E940979097E98F743205] - 19/03/2014 - 18:50:01 ---A- . (.Microsoft Corporation - Gestionnaire de sessions Windows.) -- C:\Windows\System32\smss.exe [69632] O44 - LFC:[MD5.23AB7E36551C6BA5370EF7F05142F0EB] - 19/03/2014 - 18:50:01 ---A- . (.Microsoft Corporation - Processus d'exécution client-serveur.) -- C:\Windows\System32\csrsrv.dll [38912] O44 - LFC:[MD5.401D25136E26B237D77DA1BF1198B3BD] - 19/03/2014 - 18:50:02 ---A- . (.Microsoft Corporation - Bibliothèque de l’application auxiliaire de.) -- C:\Windows\System32\tdh.dll [619520] O44 - LFC:[MD5.813A7F5A2D6D366EB3FFB643B851BCE5] - 19/03/2014 - 18:50:02 ---A- . (.Microsoft Corporation - NT Kernel & System.) -- C:\Windows\System32\ntoskrnl.exe [3914176] O44 - LFC:[MD5.482C8CD985C727C7C78A5E9B320947F0] - 19/03/2014 - 18:50:03 ---A- . (.Microsoft Corporation - NT Kernel & System.) -- C:\Windows\System32\ntkrnlpa.exe [3969472] O44 - LFC:[MD5.8E01332CC4B68BC6B5B7EFFE374442AA] - 19/03/2014 - 18:50:09 ---A- . (.Microsoft Corporation - Active Accessibility Core Component.) -- C:\Windows\System32\oleacc.dll [233472] O44 - LFC:[MD5.6C765E82B57F2E66CE9C54AC238471D9] - 19/03/2014 - 18:50:09 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\oleaut32.dll [571904] O44 - LFC:[MD5.B81F204D146000BE76651A50670A5E9E] - 19/03/2014 - 18:50:11 ---A- . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\Drivers\mrxsmb20.sys [96768] O44 - LFC:[MD5.6D17A4791ACA19328C685D256349FEFC] - 19/03/2014 - 18:50:11 ---A- . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\Drivers\mrxsmb10.sys [223744] O44 - LFC:[MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - 19/03/2014 - 18:50:11 ---A- . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\Drivers\mrxsmb.sys [123904] O44 - LFC:[MD5.4EC2C3B15B9EC41AD0D6CD918D20376E] - 19/03/2014 - 18:50:22 ---A- . (.Microsoft Corporation - Fichier DLL de ressources des fuseaux horai.) -- C:\Windows\System32\tzres.dll [2048] O44 - LFC:[MD5.45FBAFFA68CBC29AC2563985CEE72B9C] - 19/03/2014 - 18:50:39 ---A- . (.Microsoft Corporation - Dialogues communs de certificats Microsoft.) -- C:\Windows\System32\cryptdlg.dll [24576] O44 - LFC:[MD5.71BC35067CABC02C9453AEAA42B2E43E] - 19/03/2014 - 18:51:01 ---A- . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys [729024] O44 - LFC:[MD5.E405328A0E38BF823E2361C413283F6D] - 19/03/2014 - 18:51:01 ---A- . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\Drivers\dxgmms1.sys [218984] O44 - LFC:[MD5.EC7BC28D207DA09E79B3E9FAF8B232CA] - 19/03/2014 - 18:51:03 ---A- . (.Microsoft Corporation - Service mode utilisateur de Plug-and-Play.) -- C:\Windows\System32\umpnpmgr.dll [293376] O44 - LFC:[MD5.F031683E6D1FEA157ABB2FF260B51E61] - 19/03/2014 - 18:51:06 ---A- . (.Microsoft Corporation - Pilote de pile RDP Terminal.) -- C:\Windows\System32\Drivers\rdpwd.sys [183808] O44 - LFC:[MD5.00ADF21DE55AA97297FAC65E4F3A0256] - 19/03/2014 - 18:51:17 ---A- . (.Microsoft Corporation - Microsoft SI/PSI parser for MPEG2 based net.) -- C:\Windows\System32\psisdecd.dll [465408] O44 - LFC:[MD5.68DCA1777D7224A79A9DC3D47BED6D32] - 19/03/2014 - 18:51:17 ---A- . (.Microsoft Corporation - Microsoft Transport Information Filter for.) -- C:\Windows\System32\psisrndr.ax [75776] O44 - LFC:[MD5.E4561704CBFA193761743E5AF746C669] - 19/03/2014 - 18:51:19 ---A- . (.Microsoft Corporation - MSXML 3.0 SP11.) -- C:\Windows\System32\msxml3.dll [1237504] O44 - LFC:[MD5.17B06F23237FCD731FA2E10ECD6EDFE1] - 19/03/2014 - 18:51:19 ---A- . (.Microsoft Corporation - XML Resources.) -- C:\Windows\System32\msxml3r.dll [2048] O44 - LFC:[MD5.786B9C958A4F217322C24C736263C51F] - 19/03/2014 - 18:51:26 ---A- . (.Microsoft Corporation - OXPS to XPS Converter.) -- C:\Windows\System32\OxpsConverter.exe [245760] O44 - LFC:[MD5.E7B9D5FF20FFDD4AAE2EF1D1B8C27A37] - 19/03/2014 - 18:51:29 ---A- . (.Microsoft Corporation - Windows NT Image Helper.) -- C:\Windows\System32\imagehlp.dll [159232] O44 - LFC:[MD5.A3A35EE79C64A640152B3113E6E254E2] - 19/03/2014 - 18:52:15 ---A- . (.Microsoft Corporation - Microsoft ® Console Based Script Host.) -- C:\Windows\System32\cscript.exe [126976] O44 - LFC:[MD5.A3B1D1312602280839A4A2AFBDFD066E] - 19/03/2014 - 18:52:15 ---A- . (.Microsoft Corporation - Microsoft ® Script Runtime.) -- C:\Windows\System32\scrrun.dll [163840] O44 - LFC:[MD5.979D74799EA6C8B8167869A68DF5204A] - 19/03/2014 - 18:52:15 ---A- . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe [141824] O44 - LFC:[MD5.09F65975C1C9793B923BB52A7FA83453] - 19/03/2014 - 18:52:15 ---A- . (.Microsoft Corporation - Windows Script Host Runtime Library.) -- C:\Windows\System32\wshom.ocx [121856] O44 - LFC:[MD5.7E9917D5309A90E7576653BFE39F80D8] - 19/03/2014 - 18:53:36 ---A- . (.Microsoft Corporation - Panneau de configuration Date/Heure.) -- C:\Windows\System32\timedate.cpl [478720] O44 - LFC:[MD5.EA093130471090037BB70A4AF86FAD1B] - 19/03/2014 - 18:54:15 ---A- . (...) -- C:\Windows\System32\locale.nls [420008] O44 - LFC:[MD5.E306A24D9694C724FA2491278BF50FDB] - 19/03/2014 - 18:58:13 ---A- . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\Drivers\fvevol.sys [196328] O44 - LFC:[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 19/03/2014 - 18:58:17 ---A- . (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [270336] O44 - LFC:[MD5.ACBC1FB1950AC0C41944A6C8917032EF] - 19/03/2014 - 18:58:17 ---A- . (.Microsoft Corporation - DNSCache Unattend Generic Command.) -- C:\Windows\System32\dnscacheugc.exe [28672] O44 - LFC:[MD5.33EF4861F19A0736B11314AAD9AE28D0] - 19/03/2014 - 18:58:17 ---A- . (.Microsoft Corporation - Service de résolution du cache DNS.) -- C:\Windows\System32\dnsrslvr.dll [132608] O44 - LFC:[MD5.5D1BFF0FCE80F9E2E539F436710D4A79] - 19/03/2014 - 18:58:45 ---A- . (.Microsoft Corporation - Preview Handler Surrogate Host.) -- C:\Windows\System32\prevhost.exe [31232] O44 - LFC:[MD5.310F6F492A3B4B1020ED9BF9CCBBE6B6] - 19/03/2014 - 18:58:53 ---A- . (.Microsoft Corporation - Microsoft DirectPlay.) -- C:\Windows\System32\dpnet.dll [376832] O44 - LFC:[MD5.B0BE998802DEDEE1FD8F5E5F9F207A30] - 19/03/2014 - 18:58:56 ---A- . (.Microsoft Corporation - Édition DirectShow..) -- C:\Windows\System32\qedit.dll [509440] O44 - LFC:[MD5.AFA53BD631FB0509A91A99391209BB70] - 19/03/2014 - 18:58:58 ---A- . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Inter.) -- C:\Windows\System32\msieftp.dll [301568] O44 - LFC:[MD5.EDF2A5E96BEC469DA3F64E9BDD386111] - 19/03/2014 - 18:58:58 ---A- . (.Microsoft Corporation - Microsoft XmlLite Library.) -- C:\Windows\System32\xmllite.dll [180224] O44 - LFC:[MD5.AD7FB087A238883D1618F29F7BBBD584] - 19/03/2014 - 18:59:28 ---A- . (.Microsoft Corporation - Bibliothèque de chiffrement Windows.) -- C:\Windows\System32\ncrypt.dll [220160] O44 - LFC:[MD5.EF6950D7B24AAF4E477065F5455DD4F8] - 19/03/2014 - 18:59:28 ---A- . (.Microsoft Corporation - DLL serveur LSA.) -- C:\Windows\System32\lsasrv.dll [1038848] O44 - LFC:[MD5.85449EEBE8F8EBD6481EFBF0F352B4EB] - 19/03/2014 - 18:59:28 ---A- . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\Drivers\cng.sys [369848] O44 - LFC:[MD5.F286830298323272260332D6ABC905C1] - 19/03/2014 - 18:59:28 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecdd.sys [67520] O44 - LFC:[MD5.D7C760D57B1656DD748B9E4AB6CB5A51] - 19/03/2014 - 18:59:28 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecpkg.sys [136640] O44 - LFC:[MD5.D89077E2E1C88A29C57F21FAD28DAC45] - 19/03/2014 - 18:59:28 ---A- . (.Microsoft Corporation - LSA SSPI RPC interface DLL.) -- C:\Windows\System32\sspisrv.dll [15872] O44 - LFC:[MD5.803B370865D907EA21DC0C2B6A8936B5] - 19/03/2014 - 18:59:28 ---A- . (.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\System32\lsass.exe [22016] O44 - LFC:[MD5.372948BB5E41CE42341C4398DE572E56] - 19/03/2014 - 18:59:28 ---A- . (.Microsoft Corporation - Security Support Provider Interface.) -- C:\Windows\System32\secur32.dll [22016] O44 - LFC:[MD5.BD6B9BC84D004C6BEE89CF7BDB95E1FC] - 19/03/2014 - 18:59:28 ---A- . (.Microsoft Corporation - Security Support Provider Interface.) -- C:\Windows\System32\sspicli.dll [99840] O44 - LFC:[MD5.AA6F6457116B559B76BC6A012CB4C293] - 19/03/2014 - 18:59:28 ---A- . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll [247808] O44 - LFC:[MD5.FE8A57C8E04EDD3AA8ADD8F3C8F65297] - 19/03/2014 - 18:59:32 ---A- . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\Drivers\usb8023.sys [15872] O44 - LFC:[MD5.4BCC63ED1C3D15B2635A8AE2B854B3EB] - 19/03/2014 - 18:59:49 ---A- . (.Microsoft Corporation - Fournisseur d’informations d’identification.) -- C:\Windows\System32\SmartcardCredentialProvider.dll [152576] O44 - LFC:[MD5.E9BB0CD09DA17C71FD1B9954D75AEEF7] - 19/03/2014 - 18:59:49 ---A- . (.Microsoft Corporation - Interface utilisateur du gestionnaire d’inf.) -- C:\Windows\System32\credui.dll [168960] O44 - LFC:[MD5.EE7CB55F77465CDAC4C80F587FF7C278] - 19/03/2014 - 18:59:49 ---A- . (.Microsoft Corporation - Interface utilisateur d’authentification Wi.) -- C:\Windows\System32\authui.dll [1796096] O44 - LFC:[MD5.BE6BD660CAA6F291AE06A718A4FA8ABC] - 19/03/2014 - 19:00:05 ---A- . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\Drivers\srvnet.sys [114688] O44 - LFC:[MD5.E4C2764065D66EA1D2D3EBC28FE99C46] - 19/03/2014 - 19:00:05 ---A- . (.Microsoft Corporation - Server driver.) -- C:\Windows\System32\Drivers\srv.sys [311808] O44 - LFC:[MD5.03F0545BD8D4C77FA0AE1CEEDFCC71AB] - 19/03/2014 - 19:00:05 ---A- . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\Drivers\srv2.sys [310272] O44 - LFC:[MD5.68EAAEDF0365168B804E8728368FA946] - 19/03/2014 - 19:00:13 ---A- . (.Microsoft Corporation - Microsoft Trust Verification APIs.) -- C:\Windows\System32\wintrust.dll [175104] O44 - LFC:[MD5.8C9C922D71F1CD4DEF73F186416B7896] - 19/03/2014 - 19:00:17 ---A- . (.Microsoft Corporation - Pilote NDIS 6.20.) -- C:\Windows\System32\Drivers\ndis.sys [712048] O44 - LFC:[MD5.ED80D303102A746D30C1684B387BCBF1] - 19/03/2014 - 19:00:17 ---A- . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\Drivers\RNDISMP.sys [33280] O44 - LFC:[MD5.5A043BDA3BFADD5B4C16F3BDE5EC4312] - 19/03/2014 - 19:00:18 ---A- . (.Microsoft Corporation - Runtime d’appel de procédure distante.) -- C:\Windows\System32\rpcrt4.dll [652800] O44 - LFC:[MD5.B7230010D97787AF3D25E4C82F2B06B9] - 19/03/2014 - 19:00:20 ---A- . (.Microsoft Corporation - Uniscribe Unicode script processor.) -- C:\Windows\System32\usp10.dll [626688] O44 - LFC:[MD5.75F5E1FE8D55CF8E577E0EC5F2290D3F] - 19/03/2014 - 19:00:21 ---A- . (.Microsoft Corporation - Bibliothèque de contrôles de l’expérience u.) -- C:\Windows\System32\comctl32.dll [530432] O44 - LFC:[MD5.F81BB7E487EDCEAB630A7EE66CF23913] - 19/03/2014 - 19:00:23 ---A- . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\Drivers\afd.sys [338944] O44 - LFC:[MD5.E94C583CDE2348950155F2AF2876F34D] - 19/03/2014 - 19:00:23 ---A- . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\Windows\System32\mswsock.dll [231424] O44 - LFC:[MD5.F1B27299F547D452EDAEF01FC187CB91] - 19/03/2014 - 19:00:42 ---A- . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\Drivers\hidparse.sys [25728] O44 - LFC:[MD5.50ABE682EBE752EAF62B18790D6D491C] - 19/03/2014 - 19:00:43 ---A- . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\Drivers\hidclass.sys [55808] O44 - LFC:[MD5.5E43D2B0EE64123D4880DFA6626DEFDE] - 19/03/2014 - 19:00:44 ---A- . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\Drivers\ntfs.sys [1211752] O44 - LFC:[MD5.F2C3F98F955167D65A31607952B04FCA] - 19/03/2014 - 19:09:15 ---A- . (...) -- C:\Windows\win.ini [501] O44 - LFC:[MD5.B073E39AC258E2AF10D7105DA2125CBC] - 19/03/2014 - 19:20:28 ---A- . (.Pas de propriétaire - About Page.) -- C:\Windows\System32\RtNicProp32.dll [73728] O44 - LFC:[MD5.4A9F49D1B7E67F7AB9595B61126E81FD] - 19/03/2014 - 19:20:28 ---A- . (.Realtek Semiconductor Corporation - Realtek 10/100 NDIS 5.1 Driver.) -- C:\Windows\System32\Drivers\Rtnicxp.sys [43008] O44 - LFC:[MD5.B0FE52E6AE88AE0FF5E3C6064DDB9BAA] - 19/03/2014 - 22:18:39 ---A- . (.Dll-Files.com - Dll-Files Fixer.) -- C:\Windows\System32\roboot.exe [17344] O44 - LFC:[MD5.4B1BC262B76232056F3B247C37F26940] - 19/03/2014 - 22:19:21 ---A- . (.Microsoft Corporation - MFCDLL Shared Library - Retail Version.) -- C:\Windows\System32\MFC71.DLL [1060864] O44 - LFC:[MD5.86F1895AE8C5E8B17D99ECE768A70732] - 19/03/2014 - 22:23:26 ---A- . (.Microsoft Corporation - Microsoft® C Runtime Library.) -- C:\Windows\System32\msvcr71.dll [348160] O44 - LFC:[MD5.6DE66FE7C526637E74CD066461C7C871] - 20/03/2014 - 17:22:34 ---A- . (.Microsoft Corporation - Direct3D 11 Runtime.) -- C:\Windows\System32\d3d11.dll [1505280] O44 - LFC:[MD5.4FF3EC04CD47DD62181894B71B004E40] - 20/03/2014 - 17:25:44 ---A- . (.Microsoft Corporation - Direct3D 10 to Direct3D9 Translation Runtim.) -- C:\Windows\System32\d3d10level9.dll [604160] O44 - LFC:[MD5.D4F264FE23F8953D840904418220C15E] - 20/03/2014 - 17:25:44 ---A- . (.Microsoft Corporation - DirectX Graphics Infrastructure.) -- C:\Windows\System32\dxgi.dll [293376] O44 - LFC:[MD5.8B285BDAB7735FDFB18E6F7122923B77] - 20/03/2014 - 17:25:44 ---A- . (.Microsoft Corporation - Windows Animation Manager.) -- C:\Windows\System32\UIAnimation.dll [187392] O44 - LFC:[MD5.8504944851DF6175CC489A8F3328459E] - 20/03/2014 - 17:25:45 ---A- . (.Microsoft Corporation - Direct3D 10 Runtime.) -- C:\Windows\System32\d3d10.dll [1080832] O44 - LFC:[MD5.FB3F036EF6A467F7AF46C821FF5D198D] - 20/03/2014 - 17:25:45 ---A- . (.Microsoft Corporation - Direct3D 10 Runtime.) -- C:\Windows\System32\d3d10core.dll [220160] O44 - LFC:[MD5.3C1936A12C62254F914A01BBC6A8DC69] - 20/03/2014 - 17:25:45 ---A- . (.Microsoft Corporation - Direct3D 10.1 Runtime.) -- C:\Windows\System32\d3d10_1.dll [161792] O44 - LFC:[MD5.D4212AB475A3B25EC4DF574536C3EDC5] - 20/03/2014 - 17:25:45 ---A- . (.Microsoft Corporation - Direct3D 10.1 Runtime.) -- C:\Windows\System32\d3d10_1core.dll [249856] O44 - LFC:[MD5.600A65F922CCDCBB2D11467914241556] - 20/03/2014 - 17:25:45 ---A- . (.Microsoft Corporation - Microsoft DTV-DVD Video Decoder.) -- C:\Windows\System32\msmpeg2vdec.dll [2284544] O44 - LFC:[MD5.62A6EB5771580CAE445804389F3F7432] - 20/03/2014 - 17:25:45 ---A- . (.Microsoft Corporation - Microsoft Windows Codecs Extended Library.) -- C:\Windows\System32\WindowsCodecsExt.dll [207872] O44 - LFC:[MD5.E12C4928B32ACE04610259647F072635] - 20/03/2014 - 17:25:45 ---A- . (.Microsoft Corporation - Service de cache de police Windows.) -- C:\Windows\System32\FntCache.dll [906240] O44 - LFC:[MD5.6A7B5A3EFCCDB53DA41CF6838056990F] - 20/03/2014 - 17:25:45 ---A- . (.Microsoft Corporation - XPS Printing DLL.) -- C:\Windows\System32\XpsPrint.dll [1158144] O44 - LFC:[MD5.C7A730AFB80B11F93EFC81B1D6F920D7] - 20/03/2014 - 17:25:45 ---A- . (.Microsoft Corporation - XPS to GDI Converter.) -- C:\Windows\System32\XpsGdiConverter.dll [364544] O44 - LFC:[MD5.6A13B4F3B3F575F1E24B877B9359AABA] - 20/03/2014 - 17:25:45 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll [10752] O44 - LFC:[MD5.49ACA548B2423F1C67898E6AC719A9A6] - 20/03/2014 - 17:25:45 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll [3584] O44 - LFC:[MD5.2E33DFD10F28F86C3FC40EE123CC3904] - 20/03/2014 - 17:25:45 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll [2560] O44 - LFC:[MD5.1C60E09CA1C3A045BC4D367F67C915B7] - 20/03/2014 - 17:25:45 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll [5632] O44 - LFC:[MD5.60F4AEFA103D421EA4A40E31409B4756] - 20/03/2014 - 17:25:45 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll [3072] O44 - LFC:[MD5.6951562DC4625EEFC6EACD52AD165866] - 20/03/2014 - 17:25:45 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll [9728] O44 - LFC:[MD5.007863E45F25AA47A4C30D0930BBFD85] - 20/03/2014 - 17:25:45 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll [5632] O44 - LFC:[MD5.589CBC4989F750E1DA35625AB481CF43] - 20/03/2014 - 17:25:45 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll [4096] O44 - LFC:[MD5.3BE0D923AA45A4DBE091C2D84F0B4FE7] - 20/03/2014 - 17:25:45 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll [3072] O44 - LFC:[MD5.72E953215CADE1A726C04AAFDF6B463D] - 20/03/2014 - 17:27:13 ---A- . (.Microsoft Corporation - Processus hôte pour Tâches Windows.) -- C:\Windows\System32\taskhost.exe [49152] O44 - LFC:[MD5.1FF56AC32B38A94C3C88497BD6E00C96] - 20/03/2014 - 17:28:37 ---A- . (...) -- C:\Windows\System32\ieuinit.inf [25185] O44 - LFC:[MD5.9DF7A7C74D8632CB5EBD37E3A374825E] - 20/03/2014 - 17:28:37 ---A- . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll [204800] O44 - LFC:[MD5.F0D4AE074D9BC0741DC6E91C741F2F8C] - 20/03/2014 - 17:28:37 ---A- . (.Microsoft Corporation - DLL du Gestionnaire de licences Microsoft®.) -- C:\Windows\System32\licmgr10.dll [23040] O44 - LFC:[MD5.ABB14EEA787B326975C53E7ED05B91F6] - 20/03/2014 - 17:28:37 ---A- . (.Microsoft Corporation - IOD Version Map.) -- C:\Windows\System32\iesetup.dll [61440] O44 - LFC:[MD5.E14A07B768EC49D382CABCE2F078D576] - 20/03/2014 - 17:28:37 ---A- . (.Microsoft Corporation - Internet Shortcut Shell Extension DLL.) -- C:\Windows\System32\url.dll [232960] O44 - LFC:[MD5.C28A634CF127DA67D566B5E14D0A0170] - 20/03/2014 - 17:28:37 ---A- . (.Microsoft Corporation - Microsoft (R) HTML Media DLL.) -- C:\Windows\System32\mshtmlmedia.dll [719360] O44 - LFC:[MD5.9D9AC6CE9A9D951AC40DE91CD6F0A620] - 20/03/2014 - 17:28:37 ---A- . (.Microsoft Corporation - Panneau de configuration Internet.) -- C:\Windows\System32\inetcpl.cpl [1441280] O44 - LFC:[MD5.404FAD93ABFBD86D1AAAB47D5DFA6505] - 20/03/2014 - 17:28:37 ---A- . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\System32\iedkcs32.dll [242200] O44 - LFC:[MD5.006345E0F3F4C34CFFDA6CE0DB59E2F6] - 20/03/2014 - 17:28:37 ---A- . (.Microsoft Corporation - Traitement de RunOnce complet avec interfac.) -- C:\Windows\System32\iernonce.dll [33280] O44 - LFC:[MD5.4A47CAEA8D3B82DE439A79771ECED4B1] - 20/03/2014 - 17:28:38 ---A- . (.Microsoft Corporation - Convertisseur Microsoft HTML.) -- C:\Windows\System32\html.iec [361984] O44 - LFC:[MD5.932571EFF79B93F94E84ADF4989A277F] - 20/03/2014 - 17:28:38 ---A- . (.Microsoft Corporation - Microsoft Information Card IE Helper.) -- C:\Windows\System32\icardie.dll [69120] O44 - LFC:[MD5.8C3D32A4A46326031309A43C52539D7F] - 20/03/2014 - 17:28:38 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter Data File.) -- C:\Windows\System32\ieapfltr.dat [1400416] O44 - LFC:[MD5.0F44172A5B34E8F208CD0F209EDD4A73] - 20/03/2014 - 17:28:38 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter.) -- C:\Windows\System32\ieapfltr.dll [629248] O44 - LFC:[MD5.414A3D9AAE072CDEFE0B64C2EBEE18D2] - 20/03/2014 - 17:28:38 ---A- . (.Microsoft Corporation - TDC ActiveX Control.) -- C:\Windows\System32\tdc.ocx [61952] O44 - LFC:[MD5.9C53C4CD0E1B065B1BB646833F875E43] - 20/03/2014 - 17:28:38 ---A- . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [42496] O44 - LFC:[MD5.8A45166CD9874463AB76B552C9C2D3AD] - 20/03/2014 - 17:28:39 ---A- . (.Microsoft Corporation - ADVPACK.) -- C:\Windows\System32\IEAdvpack.dll [110592] O44 - LFC:[MD5.A7E8E3A9F92D9B0D495F636A1D282883] - 20/03/2014 - 17:28:39 ---A- . (.Microsoft Corporation - DLL de ressource du composant d'édition HTM.) -- C:\Windows\System32\mshtmler.dll [48640] O44 - LFC:[MD5.BE2E9A1E68FB4EC3603037DEFEE54ACE] - 20/03/2014 - 17:28:39 ---A- . (.Microsoft Corporation - IE Sysprep Provider.) -- C:\Windows\System32\iesysprep.dll [109056] O44 - LFC:[MD5.3F2FD720B6C4EF55B25B330808121069] - 20/03/2014 - 17:28:39 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript9.dll [2877952] O44 - LFC:[MD5.56E51C26745FF7413514EA4DDF33BC6C] - 20/03/2014 - 17:28:39 ---A- . (.Microsoft Corporation - Microsoft Feeds Synchronization.) -- C:\Windows\System32\msfeedssync.exe [11776] O44 - LFC:[MD5.0CAB066DB859BC54551E94453B963359] - 20/03/2014 - 17:28:39 ---A- . (.Microsoft Corporation - Moteur de l’interface utilisateur d’Interne.) -- C:\Windows\System32\ieui.dll [391168] O44 - LFC:[MD5.67B5955F5F2F36D58993EB87101B3D2B] - 20/03/2014 - 17:28:39 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\System32\ieframe.dll [13761024] O44 - LFC:[MD5.6DF2C6438CFF6EFCBBB88AEE01795501] - 20/03/2014 - 17:28:39 ---A- . (.Microsoft Corporation - Sets the date that IE was installed.) -- C:\Windows\System32\SetIEInstalledDate.exe [73728] O44 - LFC:[MD5.2D7A29C35D0894481A69FA3AC45F18F0] - 20/03/2014 - 17:28:39 ---A- . (.Microsoft Corporation - Synchronisation en arrière-plan des flux Mi.) -- C:\Windows\System32\msfeedsbs.dll [41984] O44 - LFC:[MD5.3AB2A38F7EA9E62D176A78FB58761E24] - 20/03/2014 - 17:28:40 ---A- . (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) -- C:\Windows\System32\mshta.exe [12800] O44 - LFC:[MD5.81C4D657D37C3A5418B54BFECE821B84] - 20/03/2014 - 17:28:40 ---A- . (.Microsoft Corporation - IE PNG plugin image decoder.) -- C:\Windows\System32\pngfilt.dll [57344] O44 - LFC:[MD5.B96C13B5C85AC4240FE95DE115945D59] - 20/03/2014 - 17:28:40 ---A- . (.Microsoft Corporation - IE plugin image decoder support DLL.) -- C:\Windows\System32\imgutil.dll [38400] O44 - LFC:[MD5.CAF4F8373A49BF979F2F296966E7E2A0] - 20/03/2014 - 17:28:40 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript.dll [690688] O44 - LFC:[MD5.03430E5004CFEBAE4BC8C47A366F869A] - 20/03/2014 - 17:28:40 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2706432] O44 - LFC:[MD5.80B47F0F45C3EBF41C30E0BA367D25D3] - 20/03/2014 - 17:28:40 ---A- . (.Microsoft Corporation - Object Control Viewer.) -- C:\Windows\System32\occache.dll [125440] O44 - LFC:[MD5.828B4A41BE891A7AEC07E693422B4A3A] - 20/03/2014 - 17:28:40 ---A- . (.Microsoft Corporation - Objets homologues Internet Explorer.) -- C:\Windows\System32\iepeers.dll [117248] O44 - LFC:[MD5.A0F6EC1251551E4E794D3CE588C4FAEF] - 20/03/2014 - 17:28:40 ---A- . (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) -- C:\Windows\System32\ieUnatt.exe [137216] O44 - LFC:[MD5.52A7D73D5570F757D865DDECD087FB41] - 20/03/2014 - 17:28:41 ---A- . (.Microsoft Corporation - Auto-extracteur de fichier CAB Win32.) -- C:\Windows\System32\wextract.exe [138752] O44 - LFC:[MD5.0F3B6590824D9C61B107A4134BB13A2F] - 20/03/2014 - 17:28:41 ---A- . (.Microsoft Corporation - DLL de gestion d'utilisateur local et de co.) -- C:\Windows\System32\msrating.dll [163840] O44 - LFC:[MD5.803063FFA8F118D8F4CB9161F02B7B84] - 20/03/2014 - 17:28:41 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\System32\msfeeds.dll [493056] O44 - LFC:[MD5.AF0332E09DDBE0172237D1958A7DADB8] - 20/03/2014 - 17:28:41 ---A- . (.Microsoft Corporation - Microsoft® HTML Editing Component.) -- C:\Windows\System32\mshtmled.dll [79872] O44 - LFC:[MD5.338520304B99471BD0ED121954FE7863] - 20/03/2014 - 17:28:41 ---A- . (.Microsoft Corporation - Moteur d'installation.) -- C:\Windows\System32\inseng.dll [82432] O44 - LFC:[MD5.24E07A483C6FA35F91E9D2F84495819E] - 20/03/2014 - 17:28:41 ---A- . (.Microsoft Corporation - Run time utility for Internet Explorer.) -- C:\Windows\System32\iertutil.dll [2049024] O44 - LFC:[MD5.9F378D86F983E84A0212678C1D18D7FC] - 20/03/2014 - 17:28:41 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [14358016] O44 - LFC:[MD5.038F76279EC64878A072D988DE13C7B2] - 20/03/2014 - 17:28:41 ---A- . (.Microsoft Corporation - Wizard.) -- C:\Windows\System32\iexpress.exe [150528] O44 - LFC:[MD5.9284BA6C27D360D71A5C0ECC8456E78E] - 20/03/2014 - 17:28:42 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1767936] O44 - LFC:[MD5.D7B1721B587698D495079B28758F13B3] - 20/03/2014 - 17:28:42 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [1140736] O44 - LFC:[MD5.CA0398A7BEB5DB12594EF4ABDB078A5D] - 20/03/2014 - 17:28:42 ---A- . (.Microsoft Corporation - JScript Proxy Auto-Configuration.) -- C:\Windows\System32\jsproxy.dll [39936] O44 - LFC:[MD5.C225E5307D8D4982A1687F2702C37C78] - 20/03/2014 - 17:28:42 ---A- . (.Microsoft Corporation - Microsoft Line Services library file.) -- C:\Windows\System32\msls31.dll [158720] O44 - LFC:[MD5.31AA1C6779231BFC6F5D498363DA25F1] - 20/03/2014 - 17:28:42 ---A- . (.Microsoft Corporation - Registers custom PKEYs for IE.) -- C:\Windows\System32\RegisterIEPKEYs.exe [71680] O44 - LFC:[MD5.0402BFC25AB49E02256BC24E32829773] - 20/03/2014 - 17:28:43 ---A- . (.Microsoft Corporation - ELS Hyphenation Service.) -- C:\Windows\System32\elshyph.dll [185344] O44 - LFC:[MD5.4417377CEDABD9BD161FA7EDEDA175D4] - 20/03/2014 - 17:28:43 ---A- . (.Microsoft Corporation - Microsoft Spell Checking Facility.) -- C:\Windows\System32\MsSpellCheckingFacility.exe [745472] O44 - LFC:[MD5.48704647CD2E9DAA2EB81BDE6D029EDB] - 20/03/2014 - 18:26:32 ---A- . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\Drivers\WdfLdr.sys [47720] O44 - LFC:[MD5.2F0BC1FC6142DCB31C7D9804962A7011] - 20/03/2014 - 18:26:32 ---A- . (.Microsoft Corporation - Kernel Mode Driver Framework Resource.) -- C:\Windows\System32\Wdfres.dll [9728] O44 - LFC:[MD5.933222B19FF3E7EA5F65517EA1F7D57E] - 20/03/2014 - 18:26:34 ---A- . (...) -- C:\Windows\System32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf [3] O44 - LFC:[MD5.6C751B90F87DAE37D959AC56E14A5A80] - 20/03/2014 - 20:35:51 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerApp.exe [692616] O44 - LFC:[MD5.9057059F5030926C0DC85717291B01FB] - 20/03/2014 - 20:35:51 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [71048] O44 - LFC:[MD5.0EF88090E9E33F74C83810A63492C366] - 20/03/2014 - 20:53:39 ---A- . (.Realtek Semiconductor Corp. - RtlExUpd DLL for setup utility function.) -- C:\Windows\RtlExUpd.dll [524288] O44 - LFC:[MD5.9BD2CE6A5F3D6C82E6D11104E876FD26] - 20/03/2014 - 20:53:40 ---A- . (.Realtek Semiconductor Corp. - Hide Windows.) -- C:\Windows\HideWin.exe [319488] O44 - LFC:[MD5.A3CF502659EF4EBA42C70E832ED967ED] - 20/03/2014 - 21:05:05 ---A- . (.Realtek Semiconductor Corp. - Driver Update for Windows x64 or x86_32.) -- C:\Windows\alcupd.exe [315392] O44 - LFC:[MD5.1C0E369575F387460E2A5F28269B2CC4] - 20/03/2014 - 22:22:11 ---A- . (.Microsoft Corporation - Services de typographie Microsoft DirectX.) -- C:\Windows\System32\DWrite.dll [1247744] O44 - LFC:[MD5.AB17CA5E018F353D06C279C6965DE4E9] - 21/03/2014 - 13:21:12 ---A- . (...) -- C:\Windows\ODBCINST.INI [23] O44 - LFC:[MD5.D815DD4262E4FCC211091F7BA7A01155] - 21/03/2014 - 13:21:31 ----- . (.Microsoft Corporation - Microsoft Malware Protection Signature Upda.) -- C:\Windows\System32\MpSigStub.exe [231584] O44 - LFC:[MD5.14800BD31701A5047AC3145BB1E698AE] - 21/03/2014 - 13:25:29 ---A- . (.Microsoft Corporation - Bibliothèque Microsoft D2D.) -- C:\Windows\System32\d2d1.dll [3419136] O44 - LFC:[MD5.D96106CF60505734B14F6AE80AAA4B07] - 21/03/2014 - 13:25:29 ---A- . (.Microsoft Corporation - Direct3D 10 Rasterizer.) -- C:\Windows\System32\d3d10warp.dll [1987584] O44 - LFC:[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - 21/03/2014 - 13:25:33 ---A- . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe [2616320] O44 - LFC:[MD5.A054EA8FBE16D4D34F06D81A4F0088E2] - 21/03/2014 - 13:25:35 ---A- . (.Microsoft Corporation - Microsoft Windows Codecs Library.) -- C:\Windows\System32\WindowsCodecs.dll [1230336] O44 - LFC:[MD5.E9504E484076585F6DA3C59F0E20E122] - 21/03/2014 - 13:25:36 ---A- . (.Microsoft Corporation - Codec pour photographie Windows Media Photo.) -- C:\Windows\System32\WMPhoto.dll [417792] O44 - LFC:[MD5.D320BF87125326F996D4904FE24300FC] - 21/03/2014 - 13:25:45 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [80256] O44 - LFC:[MD5.46387FB17B086D16DEA267D5BE23A2F2] - 21/03/2014 - 13:25:45 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [22400] O44 - LFC:[MD5.F991AB9CC6B908DB552166768176896A] - 21/03/2014 - 13:25:45 ---A- . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\Drivers\USBSTOR.SYS [76288] O44 - LFC:[MD5.B4834F08230A2EB7F498DE4E5B6AB814] - 21/03/2014 - 13:25:45 ---A- . (.Microsoft Corporation - fsutil.exe.) -- C:\Windows\System32\fsutil.exe [74240] O44 - LFC:[MD5.B3E25EE28883877076E0E1FF877D02E0] - 21/03/2014 - 13:25:45 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [117120] O44 - LFC:[MD5.4380E59A170D88C4F1022EFF6719A8A4] - 21/03/2014 - 13:25:45 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [143744] O44 - LFC:[MD5.5CD5F9A5444E6CDCB0AC89BD62D8B76E] - 21/03/2014 - 13:25:46 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\Drivers\iaStorV.sys [332160] O44 - LFC:[MD5.EF3D32464EBBB10449465C8CAB57CA19] - 21/03/2014 - 13:25:46 ---A- . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\Drivers\storport.sys [148864] O44 - LFC:[MD5.5C3F9DBA818CD93379D1A0F215270374] - 21/03/2014 - 13:25:46 ---A- . (.Microsoft Corporation - Moteur de stockage extensible pour Microsof.) -- C:\Windows\System32\esent.dll [1699328] O44 - LFC:[MD5.9AEA093B8F9C37CF45538382CABA2475] - 21/03/2014 - 13:25:57 ---A- . (.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\System32\spoolsv.exe [317440] O44 - LFC:[MD5.B8BF98AB4F9408C0C0AC5504E8BF4BBA] - 21/03/2014 - 23:32:37 ---A- . (.Microsoft Corporation - Microsoft ® VBScript.) -- C:\Windows\System32\vbscript.dll [523776] O44 - LFC:[MD5.F2F2C66B025967D8055C8F42018C3229] - 22/03/2014 - 10:28:34 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [268256] O44 - LFC:[MD5.3E29914113EC4B968BA5EB1F6D194A0A] - 22/03/2014 - 11:51:31 ---A- . (.Microsoft Corporation - Microsoft® C Runtime Library.) -- C:\Windows\System32\msvcp110.dll [535008] O44 - LFC:[MD5.4BA25D2CBE1587A841DCFB8C8C4A6EA6] - 22/03/2014 - 11:56:30 ---A- . (.Microsoft Corporation - Microsoft® C Runtime Library.) -- C:\Windows\System32\msvcr110.dll [875472] O44 - LFC:[MD5.77F595DEE5FFACEA72B135B1FCE1312E] - 24/03/2014 - 02:45:23 ---A- . (.Microsoft Corporation - Microsoft Common Controller API.) -- C:\Windows\System32\xinput1_3.dll [81768] O44 - LFC:[MD5.B337306DFB508A1BCEF1974BFBB8D924] - 24/03/2014 - 02:45:24 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dcsx_42.dll [5501792] O44 - LFC:[MD5.C811E70C8804CFFF719038250A43B464] - 24/03/2014 - 02:45:25 ---A- . (.Microsoft Corporation - 3D Audio Library.) -- C:\Windows\System32\X3DAudio1_7.dll [22360] O44 - LFC:[MD5.83EBA442F07AAB8D6375D2EEC945C46C] - 24/03/2014 - 02:45:25 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dcsx_43.dll [1868128] O44 - LFC:[MD5.86E39E9161C3D930D93822F1563C280D] - 24/03/2014 - 02:45:25 ---A- . (.Microsoft Corporation - Direct3D 9 Extensions.) -- C:\Windows\System32\D3DX9_43.dll [1998168] O44 - LFC:[MD5.1C9B45E87528B8BB8CFA884EA0099A85] - 24/03/2014 - 02:45:25 ---A- . (.Microsoft Corporation - Direct3D HLSL Compiler.) -- C:\Windows\System32\D3DCompiler_43.dll [2106216] O44 - LFC:[MD5.4FD7BCB9D8AF6A165E9BA0C2EB702E7C] - 24/03/2014 - 02:45:26 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_7.dll [239960] O44 - LFC:[MD5.8A4CEBF34370D689E198E6673C1F2C40] - 24/03/2014 - 02:45:28 ---A- . (.Microsoft Corporation - Audio Effect Library.) -- C:\Windows\System32\XAPOFX1_5.dll [74072] O44 - LFC:[MD5.81DFDDFB401D663BA7E6AD1C80364216] - 24/03/2014 - 02:45:28 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_7.dll [527192] O44 - LFC:[MD5.BC831661963763AC4D504C5CABB1FDD9] - 24/03/2014 - 03:16:00 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\d3dx9_24.dll [2222800] O44 - LFC:[MD5.5B48FE9D6686F0D54B26A005ACE24D1D] - 24/03/2014 - 03:16:00 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\d3dx9_25.dll [2337488] O44 - LFC:[MD5.523AB607EEF81CC4D909E7FEBD8A788E] - 24/03/2014 - 03:16:00 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\d3dx9_26.dll [2297552] O44 - LFC:[MD5.852EDC778A7A50077694F84D8E601234] - 24/03/2014 - 03:16:01 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\d3dx9_27.dll [2319568] O44 - LFC:[MD5.BE19B603DFBAA829EE5B7749B3BA97DB] - 24/03/2014 - 03:16:01 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\d3dx9_28.dll [2323664] O44 - LFC:[MD5.99F4FC172A5ACE36CF00AA7038D23F2C] - 24/03/2014 - 03:16:01 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\d3dx9_29.dll [2332368] O44 - LFC:[MD5.4E961525CC7FF0E5D7DA19E170B7C14C] - 24/03/2014 - 03:16:01 ---A- . (.Microsoft Corporation - X3DAudio.) -- C:\Windows\System32\x3daudio1_0.dll [14032] O44 - LFC:[MD5.2112FE0C46662D429347A7D7B49E3ECE] - 24/03/2014 - 03:16:01 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_0.dll [230096] O44 - LFC:[MD5.E415862612E65F10D7D888443ECD7594] - 24/03/2014 - 03:16:02 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\d3dx9_30.dll [2388176] O44 - LFC:[MD5.7C9952111F4C743B9F0D8B68B6ED93C9] - 24/03/2014 - 03:16:05 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_1.dll [229584] O44 - LFC:[MD5.F1726346E583442541FE73429F8E9C10] - 24/03/2014 - 03:16:06 ---A- . (.Microsoft Corporation - Microsoft Common Controller API.) -- C:\Windows\System32\xinput1_1.dll [62672] O44 - LFC:[MD5.33B62BE226934E1B01F5043870C70427] - 24/03/2014 - 03:16:06 ---A- . (.Microsoft Corporation - Microsoft Common Controller API.) -- C:\Windows\System32\xinput1_2.dll [62744] O44 - LFC:[MD5.5C4D3843B491C047B7A619901FBD2EC1] - 24/03/2014 - 03:16:06 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_2.dll [230168] O44 - LFC:[MD5.69D841744B2BAE38FBB2D40A230A549C] - 24/03/2014 - 03:16:07 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_3.dll [236824] O44 - LFC:[MD5.797E24743937D67D69F28F2CF5052EE8] - 24/03/2014 - 03:16:08 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\d3dx9_31.dll [2414360] O44 - LFC:[MD5.121B131EAA369D8F58DACC5C39A77D80] - 24/03/2014 - 03:16:08 ---A- . (.Microsoft Corporation - X3DAudio.) -- C:\Windows\System32\x3daudio1_1.dll [15128] O44 - LFC:[MD5.6550E1A0A7BE611592C31222FCB981FB] - 24/03/2014 - 03:16:08 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_4.dll [237848] O44 - LFC:[MD5.6F34F7405807DCBF0B9BF6811C94C6D9] - 24/03/2014 - 03:16:09 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10.dll [440080] O44 - LFC:[MD5.26AF232140C88B42D92A88F2198EDF6A] - 24/03/2014 - 03:16:09 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\d3dx9_32.dll [3426072] O44 - LFC:[MD5.86C93789E9006F1AC47ED9DD47D4C8A1] - 24/03/2014 - 03:16:09 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_5.dll [251672] O44 - LFC:[MD5.CDB1CD22BAFF21F48606B3C1A18B000B] - 24/03/2014 - 03:16:10 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\d3dx9_33.dll [3495784] O44 - LFC:[MD5.39000E033D39D19CCCE21AEAFCCE2476] - 24/03/2014 - 03:16:10 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_6.dll [255848] O44 - LFC:[MD5.FAE7E1D578C42A7C3D9D61A99D178BD5] - 24/03/2014 - 03:16:11 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_33.dll [1123696] O44 - LFC:[MD5.37A8171ACCF46A9C196054066C28827F] - 24/03/2014 - 03:16:11 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_33.dll [443752] O44 - LFC:[MD5.7FEBB8CE2233CBAE738B16D42ED29674] - 24/03/2014 - 03:16:11 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_7.dll [261480] O44 - LFC:[MD5.75F206C195BBACA6EF28565B1C0CD75C] - 24/03/2014 - 03:16:12 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_34.dll [1124720] O44 - LFC:[MD5.5AA9987F2E62B56D7661B6901901F927] - 24/03/2014 - 03:16:12 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_34.dll [443752] O44 - LFC:[MD5.1CA939918ED1B930059B3A882DE6F648] - 24/03/2014 - 03:16:12 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\d3dx9_34.dll [3497832] O44 - LFC:[MD5.F6A9FC2AD2F9111372B5AB3BBA3707EC] - 24/03/2014 - 03:16:12 ---A- . (.Microsoft Corporation - X3DAudio.) -- C:\Windows\System32\X3DAudio1_2.dll [17928] O44 - LFC:[MD5.499210C45AFEAADEE8CF4DCF7D5E570B] - 24/03/2014 - 03:16:12 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_8.dll [266088] O44 - LFC:[MD5.5B441670A4F5F8BCCE76741902B8AF56] - 24/03/2014 - 03:16:13 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_35.dll [1358192] O44 - LFC:[MD5.F3764552E45880DC49B82F38699AA87C] - 24/03/2014 - 03:16:13 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_35.dll [444776] O44 - LFC:[MD5.3EF18B78D17C962F2B71AC1CB7757684] - 24/03/2014 - 03:16:13 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\d3dx9_35.dll [3727720] O44 - LFC:[MD5.46EE68F04A75A1CCF40235EA6F1CBA05] - 24/03/2014 - 03:16:13 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_9.dll [267112] O44 - LFC:[MD5.FB4299688A0D3A37687C015AC2B9922D] - 24/03/2014 - 03:16:14 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_36.dll [1374232] O44 - LFC:[MD5.D9158E78A368B08D9133043EB3058C12] - 24/03/2014 - 03:16:14 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_36.dll [444776] O44 - LFC:[MD5.44BFEC5C9C82A2EE9871D88FD3B9A0E2] - 24/03/2014 - 03:16:14 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\d3dx9_36.dll [3734536] O44 - LFC:[MD5.73E055AF78A64F9B2779D44407CA2AB6] - 24/03/2014 - 03:16:14 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_10.dll [267272] O44 - LFC:[MD5.EA752DBCE35045D3C830DC16578CC8AB] - 24/03/2014 - 03:16:15 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_37.dll [1420824] O44 - LFC:[MD5.4A43E9A2B17E4CAFA9CB5FEC0B5B686B] - 24/03/2014 - 03:16:15 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_37.dll [462864] O44 - LFC:[MD5.AC3C517FB0FBBE45FE44007BCD3625A7] - 24/03/2014 - 03:16:15 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\D3DX9_37.dll [3786760] O44 - LFC:[MD5.C593FD0A96EE4B6390B653C4C641313F] - 24/03/2014 - 03:16:15 ---A- . (.Microsoft Corporation - X3DAudio.) -- C:\Windows\System32\X3DAudio1_3.dll [25608] O44 - LFC:[MD5.8A83673F0AB001870583FDE2B004FA59] - 24/03/2014 - 03:16:15 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_0.dll [238088] O44 - LFC:[MD5.A2650B27472C21CDD817EEEDE65648E1] - 24/03/2014 - 03:16:16 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_38.dll [467984] O44 - LFC:[MD5.8F3EB548AC4ED90252394F60C77E3196] - 24/03/2014 - 03:16:16 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\D3DX9_38.dll [3850760] O44 - LFC:[MD5.418CDC57E55EE79C3F86C13A19B3D5E3] - 24/03/2014 - 03:16:16 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_0.dll [479752] O44 - LFC:[MD5.103CBFC5591008AD33046E20E8E1EEBE] - 24/03/2014 - 03:16:17 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_38.dll [1491992] O44 - LFC:[MD5.E3832514BD21236067B7227F6165EF95] - 24/03/2014 - 03:16:17 ---A- . (.Microsoft Corporation - X3DAudio.) -- C:\Windows\System32\X3DAudio1_4.dll [25608] O44 - LFC:[MD5.2E0E25252E1D41752876E9FE12ADE175] - 24/03/2014 - 03:16:17 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_1.dll [238088] O44 - LFC:[MD5.E34FF0115B1EE3B4E03D22AE9840EE03] - 24/03/2014 - 03:16:17 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_1.dll [507400] O44 - LFC:[MD5.C4F1972497FE2CEB7D900938C97FCF91] - 24/03/2014 - 03:16:18 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_39.dll [1493528] O44 - LFC:[MD5.E6C2F1D8B667DDC04CB55B9F0159EF97] - 24/03/2014 - 03:16:18 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_39.dll [467984] O44 - LFC:[MD5.8CB3DEFB8887C4F0846DB1FC1304D6D2] - 24/03/2014 - 03:16:18 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\D3DX9_39.dll [3851784] O44 - LFC:[MD5.F3C6BE26949CAADB11DBF0086082FAC9] - 24/03/2014 - 03:16:18 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_2.dll [238088] O44 - LFC:[MD5.DD165760F1B95200A3DA2D9DFDB84234] - 24/03/2014 - 03:16:18 ---A- . (.Microsoft Corporation - XAPOFX.) -- C:\Windows\System32\XAPOFX1_0.dll [65032] O44 - LFC:[MD5.350FEFE18B86BD4D9AB2A96D00215A49] - 24/03/2014 - 03:16:19 ---A- . (.Microsoft Corporation - X3DAudio.) -- C:\Windows\System32\X3DAudio1_5.dll [23376] O44 - LFC:[MD5.8BA296419AF3417D1E9806B83166E472] - 24/03/2014 - 03:16:19 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_3.dll [235856] O44 - LFC:[MD5.D95EAABF5D277EF91D9CA70151209E56] - 24/03/2014 - 03:16:19 ---A- . (.Microsoft Corporation - XAPOFX.) -- C:\Windows\System32\XAPOFX1_1.dll [68616] O44 - LFC:[MD5.295E47A75F278580F9441041EAAEA3D2] - 24/03/2014 - 03:16:19 ---A- . (.Microsoft Corporation - XAPOFX.) -- C:\Windows\System32\XAPOFX1_2.dll [70992] O44 - LFC:[MD5.50F4A0D5E6A0BAFEFA78F353533B8E06] - 24/03/2014 - 03:16:19 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_2.dll [509448] O44 - LFC:[MD5.47ED15DC87AE334C13C4DACD1BE2CCED] - 24/03/2014 - 03:16:19 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_3.dll [514384] O44 - LFC:[MD5.91B4AAD4412BB223B466F3DFB43E86DA] - 24/03/2014 - 03:16:20 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dx10_40.dll [452440] O44 - LFC:[MD5.EEA5E428CE63804F9B12D21C97B5968F] - 24/03/2014 - 03:16:20 ---A- . (.Microsoft Corporation - Direct3D 9 Extensions.) -- C:\Windows\System32\D3DX9_40.dll [4379984] O44 - LFC:[MD5.3384134EEB8F223178C2EB8323003EC0] - 24/03/2014 - 03:16:20 ---A- . (.Microsoft Corporation - Direct3D HLSL Compiler.) -- C:\Windows\System32\D3DCompiler_40.dll [2036576] O44 - LFC:[MD5.E763798CAD2A90B6AB61854F50CD47DD] - 24/03/2014 - 03:16:21 ---A- . (.Microsoft Corporation - 3D Audio Library.) -- C:\Windows\System32\X3DAudio1_6.dll [22360] O44 - LFC:[MD5.30686ECE80545E06D78D156EB9F7D463] - 24/03/2014 - 03:16:21 ---A- . (.Microsoft Corporation - Audio Effect Library.) -- C:\Windows\System32\XAPOFX1_3.dll [69464] O44 - LFC:[MD5.3FA06CF5079B84155D18B05C08F7131B] - 24/03/2014 - 03:16:21 ---A- . (.Microsoft Corporation - Direct3D 9 Extensions.) -- C:\Windows\System32\D3DX9_41.dll [4178264] O44 - LFC:[MD5.686F8D1B4926D48227A06ACD4D41CD1E] - 24/03/2014 - 03:16:21 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_4.dll [235352] O44 - LFC:[MD5.E684C5FA18ADF9EA14737757413BF727] - 24/03/2014 - 03:16:21 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_4.dll [517448] O44 - LFC:[MD5.1AA571774936717EE776DBED51E9EDF4] - 24/03/2014 - 03:16:22 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dx10_41.dll [453456] O44 - LFC:[MD5.501AC862517C5445742BEE8A2B88414E] - 24/03/2014 - 03:16:22 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dx10_42.dll [453456] O44 - LFC:[MD5.D09AC80A4B5312239852836C84DF3392] - 24/03/2014 - 03:16:22 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dx11_42.dll [235344] O44 - LFC:[MD5.C6A44FC3CF2F5801561804272217B14D] - 24/03/2014 - 03:16:22 ---A- . (.Microsoft Corporation - Direct3D 9 Extensions.) -- C:\Windows\System32\D3DX9_42.dll [1892184] O44 - LFC:[MD5.781E8B5B6FDB3C9B4E4A4A9FB019960D] - 24/03/2014 - 03:16:22 ---A- . (.Microsoft Corporation - Direct3D HLSL Compiler.) -- C:\Windows\System32\D3DCompiler_41.dll [1846632] O44 - LFC:[MD5.B33B21DB610116262D906305CE65C354] - 24/03/2014 - 03:16:22 ---A- . (.Microsoft Corporation - Direct3D HLSL Compiler.) -- C:\Windows\System32\D3DCompiler_42.dll [1974616] O44 - LFC:[MD5.DB3C93E87452B8DAB4F58ED1FD2B1998] - 24/03/2014 - 03:16:23 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_5.dll [238936] O44 - LFC:[MD5.F81C4678A55FFEE585AC75825FAF5582] - 24/03/2014 - 03:16:23 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_6.dll [238936] O44 - LFC:[MD5.8B01FB723F3B30AB3DEBDDBF97CFE577] - 24/03/2014 - 03:16:23 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_5.dll [515416] O44 - LFC:[MD5.E4CE2AF32F501A7F7DDDD908704A0EE6] - 24/03/2014 - 03:16:24 ---A- . (.Microsoft Corporation - Audio Effect Library.) -- C:\Windows\System32\XAPOFX1_4.dll [74072] O44 - LFC:[MD5.20C835843FCEC4DEDFCD7BFFA3B91641] - 24/03/2014 - 03:16:24 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dx10_43.dll [470880] O44 - LFC:[MD5.8E0BB968FF41D80E5F2C747C04DB79AE] - 24/03/2014 - 03:16:24 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dx11_43.dll [248672] O44 - LFC:[MD5.4976243BD70FAE3D1D24E49739AB2710] - 24/03/2014 - 03:16:24 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_6.dll [528216] O44 - LFC:[MD5.CF13E92D2DBA966F6B32AE130F0956EA] - 24/03/2014 - 03:32:07 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [87350280] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 24/03/2014 - 17:55:37 ---A- . (...) -- C:\Windows\setuperr.log [0] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 25/03/2014 - 02:22:07 RSHA- . (...) -- C:\IO.SYS [0] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 25/03/2014 - 02:22:07 RSHA- . (...) -- C:\MSDOS.SYS [0] O44 - LFC:[MD5.99E6F126327A071803B0247E85B4AB07] - 25/03/2014 - 14:55:31 ---A- . (...) -- C:\Windows\System32\${LOGFILE} [1635] O44 - LFC:[MD5.8351B0E75D806F9BC9619BAEAD4E4BAF] - 26/03/2014 - 14:35:59 ---A- . (...) -- C:\Windows\PFRO.log [1056] O44 - LFC:[MD5.EB7824B4A3F84E137DEC1FFE144749BE] - 26/03/2014 - 15:11:24 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1667292] O44 - LFC:[MD5.A5D68EF83F4734673D91472AE9D07158] - 26/03/2014 - 15:11:24 ---A- . (...) -- C:\Windows\System32\perfc009.dat [121398] O44 - LFC:[MD5.0C0B6EBBF8F98055AC88765C5C90F87D] - 26/03/2014 - 15:11:24 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [149440] O44 - LFC:[MD5.DDB9DC70257EDFBFB09DFA4C923F2617] - 26/03/2014 - 15:11:24 ---A- . (...) -- C:\Windows\System32\perfh009.dat [653526] O44 - LFC:[MD5.4B2F1963A87FAB9695EDCCA1523AC32A] - 26/03/2014 - 15:11:24 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [746916] O44 - LFC:[MD5.550029BB1414AE873D921EE16E01A36B] - 26/03/2014 - 23:19:21 ---A- . (...) -- C:\Windows\IE11_main.log [16928] O44 - LFC:[MD5.5357B04801910D908C4019FACEF36C74] - 29/03/2014 - 10:55:07 ---A- . (...) -- C:\Windows\setupact.log [1391] O44 - LFC:[MD5.9069F12A8D7B7ED3ED7346712016141D] - 29/03/2014 - 12:47:22 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.FCB6980C5B046FBF0648BBD6ECCFDC69] - 29/03/2014 - 12:47:23 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1841818] O44 - LFC:[MD5.34CBACE217893F8EAB3225620B30F530] - 29/03/2014 - 12:50:37 ---A- . (...) -- C:\Windows\System32\pbsvc.exe [682280] O44 - LFC:[MD5.831883B107684301F48ACE752C963984] - 29/03/2014 - 12:50:44 ---A- . (...) -- C:\Windows\System32\PnkBstrA.exe [66872] O44 - LFC:[MD5.E24106A5EAECDDFF00B25497049DD65F] - 29/03/2014 - 12:50:50 ---A- . (...) -- C:\Windows\System32\PnkBstrB.exe [107832] O44 - LFC:[MD5.C3E33580A3A85BE28612B83D0C321E20] - 29/03/2014 - 12:51:01 ---A- . (...) -- C:\Windows\System32\Drivers\PnkBstrK.sys [22328] ~ Files: 453 Scanned in 00mn 37s ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.BA4F03CFC8D05BA9ADAE2C2F50CC26F0] - 26/03/2014 - 16:41:26 ---A- - C:\Windows\Prefetch\PLAYERPLUS.EXE-107B2926.pf O45 - LFCP:[MD5.336EE950CBB52EFB33E6D3C62FED6845] - 26/03/2014 - 17:01:23 ---A- - C:\Windows\Prefetch\NAVICAT.EXE-076C975E.pf O45 - LFCP:[MD5.AB655769950E550D5AC391053494106C] - 26/03/2014 - 17:12:55 ---A- - C:\Windows\Prefetch\WAAT-LOGINSERVER.EXE-2A9C9770.pf O45 - LFCP:[MD5.8FB28A6440DB57170671B1CB82EAF520] - 26/03/2014 - 17:16:13 ---A- - C:\Windows\Prefetch\CRASHSENDER1402.EXE-98478A88.pf O45 - LFCP:[MD5.1B1DD5117EB35D6780B123808910BDE4] - 26/03/2014 - 17:16:13 ---A- - C:\Windows\Prefetch\WAAT-LOGINSERVER.EXE-2DF32FDD.pf O45 - LFCP:[MD5.EFE1F2020CD79B04DDDBE85F1AE76DB8] - 26/03/2014 - 17:16:15 ---A- - C:\Windows\Prefetch\WAAT-WORLDSERVER.EXE-B326AEF0.pf O45 - LFCP:[MD5.0057DEE2A1ABBCC3E9620F94FCD49028] - 26/03/2014 - 17:16:49 ---A- - C:\Windows\Prefetch\LAUNCHER NOSTALE.EXE-85656782.pf O45 - LFCP:[MD5.5B105C0999898D0A53ECF741993C73A5] - 26/03/2014 - 17:34:40 ---A- - C:\Windows\Prefetch\CAMTASIA.EXE-24F2A070.pf O45 - LFCP:[MD5.FAAA7BE8817392629558F60698D66A95] - 26/03/2014 - 17:34:40 ---A- - C:\Windows\Prefetch\GLBEDF1.TMP-1FA1BDA2.pf O45 - LFCP:[MD5.1D5C0ACE21A4BFD3DB27664C51BC2041] - 26/03/2014 - 17:57:16 ---A- - C:\Windows\Prefetch\WAMPSERVER2.4-X86.TMP-60120A3B.pf O45 - LFCP:[MD5.8AFAD0055B709366BF1CC28072BBF417] - 26/03/2014 - 17:57:25 ---A- - C:\Windows\Prefetch\WAMPSERVER2.4-X86.EXE-526D55C0.pf O45 - LFCP:[MD5.65D0044BEAA9554E8111F69494AD63EE] - 26/03/2014 - 17:57:25 ---A- - C:\Windows\Prefetch\WAMPSERVER2.4-X86.TMP-A3F7AAD7.pf O45 - LFCP:[MD5.4DF7B6BBAF7D4C37B8253A43C670AD92] - 26/03/2014 - 18:09:47 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-100A180F.pf O45 - LFCP:[MD5.E6C716AE2FC646CA91A71710345529DF] - 26/03/2014 - 18:10:25 ---A- - C:\Windows\Prefetch\CAMTASIASTUDIO.EXE-E2CFFAB0.pf O45 - LFCP:[MD5.56E623BC5B43380A3A4F26AAEC71173F] - 26/03/2014 - 18:11:15 ---A- - C:\Windows\Prefetch\CAMRECORDER.EXE-773C5A94.pf O45 - LFCP:[MD5.C0EB5DA90FBD3D4F4CB24A2B969D3AEF] - 26/03/2014 - 18:40:26 ---A- - C:\Windows\Prefetch\WAMPSERVER2.4-X86(1).TMP-9FEC4754.pf O45 - LFCP:[MD5.AE04240BBB0E2C08C49718A64E6BD787] - 26/03/2014 - 18:40:48 ---A- - C:\Windows\Prefetch\WAMPSERVER2.4-X86(1).EXE-04A7EE82.pf O45 - LFCP:[MD5.A194E2FF31CCC752D83DC07FE9B99C6A] - 26/03/2014 - 18:40:49 ---A- - C:\Windows\Prefetch\WAMPSERVER2.4-X86(1).TMP-64C6179C.pf O45 - LFCP:[MD5.EBBFB879DAF088D05D6D1FDA51C845C0] - 26/03/2014 - 18:44:57 ---A- - C:\Windows\Prefetch\NAVICAT8_MYSQL_EN(1).TMP-BD7F1223.pf O45 - LFCP:[MD5.C4E1F4974871B0B86D29C251607080C0] - 26/03/2014 - 18:44:59 ---A- - C:\Windows\Prefetch\NAVICAT8_MYSQL_EN(1).EXE-76757DA4.pf O45 - LFCP:[MD5.16FF5747B84495A9E348C8612B15EEED] - 26/03/2014 - 18:45:00 ---A- - C:\Windows\Prefetch\NAVICAT8_MYSQL_EN(1).TMP-9B1C2E0B.pf O45 - LFCP:[MD5.B37681787100AEACEC798CAF2E5149DB] - 26/03/2014 - 22:37:32 ---A- - C:\Windows\Prefetch\PHP-WIN.EXE-33AFDAAB.pf O45 - LFCP:[MD5.2ACDC17316FFA0C9DCADE533FFD46181] - 26/03/2014 - 22:37:40 ---A- - C:\Windows\Prefetch\WAMPMANAGER.EXE-A0ECC2C7.pf O45 - LFCP:[MD5.3D1FA76BD56B0BA36BA15C246F2D8ED2] - 26/03/2014 - 22:37:43 ---A- - C:\Windows\Prefetch\HTTPD.EXE-07104B07.pf O45 - LFCP:[MD5.F9F1B38F6EB9139FD32105DDB2A97D66] - 26/03/2014 - 22:37:43 ---A- - C:\Windows\Prefetch\MYSQLD.EXE-FECB6319.pf O45 - LFCP:[MD5.A0ABF178E60D9E69066CFDEF0B99579A] - 26/03/2014 - 22:59:41 ---A- - C:\Windows\Prefetch\DRAKENSANGONLINE.EXE-5F39B7E2.pf O45 - LFCP:[MD5.CA630D14277CD2064209D3EAE5D0D47D] - 29/03/2014 - 12:50:15 ---A- - C:\Windows\Prefetch\WOLFET_2_60B_CUSTOM.EXE-2192A178.pf O45 - LFCP:[MD5.60B45B1216E5A75035D2A6AC279EE17A] - 29/03/2014 - 12:50:45 ---A- - C:\Windows\Prefetch\PBSVC.EXE-38A45B0E.pf O45 - LFCP:[MD5.E1702358559B65F36904FFDE44B64BA8] - 29/03/2014 - 20:39:40 ---A- - C:\Windows\Prefetch\ET.EXE-C108CB77.pf ~ Prefetcher: 29 Scanned in 00mn 01s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll ~ LSA: 8 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ CSB: 13 Scanned in 00mn 00s ---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll O52 - TDSD: \Drivers32\"vidc.tscc"="C:\Windows\system32\tsccvid.dll" . (.TechSmith Corporation - TechSmith Screen Capture Codec.) -- C:\Windows\system32\tsccvid.dll O52 - TDSD: \Drivers32\"vidc.tsc2"="C:\Windows\system32\tsc2_codec32.dll" . (.TechSmith Corporation - TechSmith Screen Codec 2.) -- C:\Windows\system32\tsc2_codec32.dll O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"tsccvid.dll"="TechSmith Screen Capture Codec" . (.TechSmith Corporation - TechSmith Screen Capture Codec.) -- C:\Windows\System32\tsccvid.dll O52 - TDSD: \drivers.desc\"tsc2_codec32.dll"="TechSmith Screen Codec 2" . (.TechSmith Corporation - TechSmith Screen Codec 2.) -- C:\Windows\System32\tsc2_codec32.dll ~ TDSD: 7 Scanned in 00mn 00s ---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ MSCP: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ MWPS: 16 Scanned in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:[MD5.FBCE2F43185104AE8BF4D32571B19203] - 14/07/2009 - 00:51:21 ---A- . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\Drivers\1394bus.sys [54784] O58 - SDL:[MD5.1B133875B8AA8AC48969BD3458AFE9F5] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\Windows\System32\Drivers\1394ohci.sys [164864] O58 - SDL:[MD5.CEA80C80BED809AA0DA6FEBC04733349] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\Drivers\acpi.sys [274304] O58 - SDL:[MD5.1EFBC664ABFF416D1D07DB115DCB264F] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\Drivers\acpipmi.sys [10240] O58 - SDL:[MD5.21E785EBD7DC90A06391141AAC7892FB] - 14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [422976] O58 - SDL:[MD5.0C676BC278D5B59FF5ABD57BBE9123F2] - 14/07/2009 - 02:26:17 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [297552] O58 - SDL:[MD5.7C7B5EE4B7B822EC85321FE23A27DB33] - 14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\Drivers\adpu320.sys [146512] O58 - SDL:[MD5.F81BB7E487EDCEAB630A7EE66CF23913] - 14/09/2013 - 01:48:58 ---A- . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\Drivers\afd.sys [338944] O58 - SDL:[MD5.57EC4AEF73660166074D8F7F31C0D4FD] - 14/07/2009 - 00:55:00 ---A- . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\Drivers\agilevpn.sys [49152] O58 - SDL:[MD5.507812C3054C21CEF746B6EE3D04DD6E] - 14/07/2009 - 02:26:15 ---A- . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\Drivers\AGP440.sys [53312] O58 - SDL:[MD5.0D40BCF52EA90FC7DF2AEAB6503DEA44] - 14/07/2009 - 02:26:15 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\Drivers\aliide.sys [14400] O58 - SDL:[MD5.3C6600A0696E90A463771C7422E23AB5] - 14/07/2009 - 02:26:15 ---A- . (.Microsoft Corporation - Filtre AGP AMD NT.) -- C:\Windows\System32\Drivers\AMDAGP.SYS [53312] O58 - SDL:[MD5.CD5914170297126B6266860198D1D4F0] - 14/07/2009 - 02:26:15 ---A- . (.Microsoft Corporation - Pilote IDE AMD.) -- C:\Windows\System32\Drivers\amdide.sys [14912] O58 - SDL:[MD5.00DDA200D71BAC534BF56A9DB5DFD666] - 14/07/2009 - 00:11:04 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdk8.sys [55296] O58 - SDL:[MD5.3CBF30F5370FDA40DD3E87DF38EA53B6] - 14/07/2009 - 00:11:04 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdppm.sys [52736] O58 - SDL:[MD5.D320BF87125326F996D4904FE24300FC] - 11/03/2011 - 06:38:37 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [80256] O58 - SDL:[MD5.EA43AF0C423FF267355F74E7A53BDABA] - 14/07/2009 - 02:26:15 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows fa.) -- C:\Windows\System32\Drivers\amdsbs.sys [159312] O58 - SDL:[MD5.46387FB17B086D16DEA267D5BE23A2F2] - 11/03/2011 - 06:38:37 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [22400] O58 - SDL:[MD5.AEA177F783E20150ACE5383EE368DA19] - 20/01/2011 - 20:36:26 ---A- . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\Drivers\appid.sys [50176] O58 - SDL:[MD5.2932004F49677BD84DBC72EDB754FFB3] - 14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [76368] O58 - SDL:[MD5.5D6F36C46FD283AE1B57BD2E9FEB0BC7] - 14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [86608] O58 - SDL:[MD5.ADD2ADE1C2B285AB8378D2DAAF991481] - 14/07/2009 - 00:54:46 ---A- . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\Drivers\asyncmac.sys [17920] O58 - SDL:[MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - 02:26:15 ---A- . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\Drivers\atapi.sys [21584] O58 - SDL:[MD5.DDCE686D76C2B4DB435A3AF5BD0E691D] - 05/08/2013 - 02:56:47 ---A- . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\Drivers\ataport.sys [133056] O58 - SDL:[MD5.7DB96C2801A78513BDC133C25D07929E] - 11/02/2010 - 08:42:22 ---A- . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\Drivers\atikmdag.sys [4450816] O58 - SDL:[MD5.BD8869EB9CDE6BBE4508D869929869EE] - 13/07/2009 - 23:02:49 ---A- . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gigabit Ethernet..) -- C:\Windows\System32\Drivers\b57nd60x.sys [229888] O58 - SDL:[MD5.2B8EE031FD700AB942EBE60665440E83] - 14/07/2009 - 02:26:15 ---A- . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\Drivers\battc.sys [25168] O58 - SDL:[MD5.505506526A9D467307B3C393DEDAF858] - 14/07/2009 - 00:45:01 ---A- . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\Drivers\beep.sys [6144] O58 - SDL:[MD5.2287078ED48FCFC477B05B20CF38F36F] - 14/07/2009 - 00:23:04 ---A- . (.Microsoft Corporation - BLB Drive Driver.) -- C:\Windows\System32\Drivers\blbdrive.sys [35328] O58 - SDL:[MD5.8F2DA3028D5FCBD1A060A3DE64CD6506] - 23/02/2011 - 05:47:33 ---A- . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\Drivers\bowser.sys [69632] O58 - SDL:[MD5.9F9ACC7F7CCDE8A15C282D3F88B43309] - 13/07/2009 - 23:53:28 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltLo.sys [13568] O58 - SDL:[MD5.56801AD62213A41F6497F96DEE83755A] - 13/07/2009 - 23:53:28 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [5248] O58 - SDL:[MD5.77361D72A04F18809D0EFB6CCEB74D4B] - 14/07/2009 - 01:41:26 ---A- . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\Drivers\bridge.sys [78336] O58 - SDL:[MD5.845B8CE732E67F3B4133164868C666EA] - 14/07/2009 - 01:57:25 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\BrSerId.sys [272128] O58 - SDL:[MD5.203F0B1E73ADADBBB7B7B1FABD901F6B] - 13/07/2009 - 23:53:32 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\Drivers\BrSerWdm.sys [62336] O58 - SDL:[MD5.BD456606156BA17E60A04E18016AE54B] - 13/07/2009 - 23:53:33 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\Drivers\BrUsbMdm.sys [12160] O58 - SDL:[MD5.AF72ED54503F717A43268B3CC5FAEC2E] - 13/07/2009 - 23:53:33 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\Drivers\BrUsbSer.sys [11904] O58 - SDL:[MD5.ED3DF7C56CE0084EB2034432FC56565A] - 14/07/2009 - 00:51:34 ---A- . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\Drivers\bthmodem.sys [56320] O58 - SDL:[MD5.1A231ABEC60FD316EC54C66715543CEC] - 13/07/2009 - 23:02:48 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbdx.sys [430080] O58 - SDL:[MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - 00:11:15 ---A- . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\Drivers\cdfs.sys [70656] O58 - SDL:[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\Drivers\cdrom.sys [108544] O58 - SDL:[MD5.3FE3FE94A34DF6FB06E6418D0F6A0060] - 14/07/2009 - 00:51:17 ---A- . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\Drivers\circlass.sys [37888] O58 - SDL:[MD5.A6388A5ABF92C7927C085DB0A958125F] - 14/07/2009 - 02:26:15 ---A- . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\Drivers\Classpnp.sys [140864] O58 - SDL:[MD5.DEA805815E587DAD1DD2C502220B5616] - 14/07/2009 - 00:19:18 ---A- . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\Drivers\CmBatt.sys [14080] O58 - SDL:[MD5.C537B1DB64D495B9B4717B4D6D9EDBF2] - 14/07/2009 - 02:26:21 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\cmdide.sys [15952] O58 - SDL:[MD5.85449EEBE8F8EBD6481EFBF0F352B4EB] - 04/07/2013 - 13:16:47 ---A- . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\Drivers\cng.sys [369848] O58 - SDL:[MD5.A6023D3823C37043986713F118A89BEE] - 14/07/2009 - 02:26:21 ---A- . (.Microsoft Corporation - Composite Battery Driver.) -- C:\Windows\System32\Drivers\compbatt.sys [19024] O58 - SDL:[MD5.CBE8C58A8579CFE5FCCF809E6F114E89] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\Drivers\CompositeBus.sys [31232] O58 - SDL:[MD5.B7EFEF22FF426EC4158A177CB3B558D3] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\Drivers\crashdmp.sys [35408] O58 - SDL:[MD5.2C4EBCFC84A9B44F209DFF6C6E6C61D1] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - Disk Block Verification Filter Driver.) -- C:\Windows\System32\Drivers\crcdisk.sys [22096] O58 - SDL:[MD5.F024449C97EC1E464AAFFDA18593DB88] - 20/01/2011 - 20:36:31 ---A- . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\Drivers\dfsc.sys [78336] O58 - SDL:[MD5.1A050B0274BFB3890703D490F330C0DA] - 14/07/2009 - 00:24:05 ---A- . (.Microsoft Corporation - System Indexer/Cache Driver.) -- C:\Windows\System32\Drivers\discache.sys [32256] O58 - SDL:[MD5.565003F326F99802E68CA78F2A68E9FF] - 14/07/2009 - 02:20:27 ---A- . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\Drivers\disk.sys [57424] O58 - SDL:[MD5.D0F0D7A97C90FE72A79732812E65F822] - 22/04/2011 - 20:14:16 ---A- . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\Drivers\Diskdump.sys [27008] O58 - SDL:[MD5.8B30250D573A8F6B4BD23195160D8707] - 14/07/2009 - 02:20:28 ---A- . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\Drivers\djsvs.sys [70720] O58 - SDL:[MD5.9842041E2F5ACE1E2F5FB4EF02053DC8] - 04/10/2013 - 02:49:41 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmk.sys [81408] O58 - SDL:[MD5.B918E7C5F9BF77202F89E1A9539F2EB4] - 14/07/2009 - 00:50:57 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmkaud.sys [5120] O58 - SDL:[MD5.5428227D4730EBDFC842E9FB593F8C8A] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\Drivers\Dumpata.sys [26704] O58 - SDL:[MD5.62A63EF2F3053B461CB327E4D69AAA74] - 14/07/2009 - 02:17:54 ---A- . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\Drivers\dumpfve.sys [55584] O58 - SDL:[MD5.5FCD3320AAE71506B43F9E12E4E72172] - 14/07/2009 - 00:25:26 ---A- . (.Microsoft Corporation - DirectX API Driver.) -- C:\Windows\System32\Drivers\dxapi.sys [13312] O58 - SDL:[MD5.1B6242B20CB56F85A158E67F09EE84FE] - 14/07/2009 - 00:25:25 ---A- . (.Microsoft Corporation - DirectX Graphics Driver.) -- C:\Windows\System32\Drivers\dxg.sys [76288] O58 - SDL:[MD5.71BC35067CABC02C9453AEAA42B2E43E] - 01/08/2013 - 12:03:36 ---A- . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys [729024] O58 - SDL:[MD5.E405328A0E38BF823E2361C413283F6D] - 10/04/2013 - 06:18:40 ---A- . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\Drivers\dxgmms1.sys [218984] O58 - SDL:[MD5.0ED67910C8C326796FAA00B2BF6D9D3C] - 14/07/2009 - 02:20:28 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [453712] O58 - SDL:[MD5.8FC3208352DD3912C94367A206AB3F11] - 14/07/2009 - 00:19:19 ---A- . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\Drivers\errdev.sys [7168] O58 - SDL:[MD5.024E1B5CAC09731E4D868E64DBFB4AB0] - 13/07/2009 - 23:02:48 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbdx.sys [3100160] O58 - SDL:[MD5.2DC9108D74081149CC8B651D3A26207F] - 14/07/2009 - 00:14:03 ---A- . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\Drivers\exfat.sys [142336] O58 - SDL:[MD5.7E0AB74553476622FB6AE36F73D97D35] - 14/07/2009 - 00:14:02 ---A- . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\Drivers\fastfat.sys [148480] O58 - SDL:[MD5.E817A017F82DF2A1F8CFDBDA29388B29] - 14/07/2009 - 00:45:45 ---A- . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\Drivers\fdc.sys [25088] O58 - SDL:[MD5.6CF00369C97F3CF563BE99BE983D13D8] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\Drivers\fileinfo.sys [58448] O58 - SDL:[MD5.42C51DC94C91DA21CB9196EB64C45DB9] - 14/07/2009 - 00:15:29 ---A- . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\Drivers\filetrace.sys [28160] O58 - SDL:[MD5.87907AA70CB3C56600F1C2FB8841579B] - 14/07/2009 - 00:45:45 ---A- . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\Drivers\flpydisk.sys [19968] O58 - SDL:[MD5.7520EC808E0C35E0EE6F841294316653] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - Gestionnaire de filtres de système de fichiers Microsoft.) -- C:\Windows\System32\Drivers\fltMgr.sys [198208] O58 - SDL:[MD5.1A16B57943853E598CFF37FE2B8CBF1D] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\fsdepends.sys [46160] O58 - SDL:[MD5.7DAE5EBCC80E45D3253F4923DC424D05] - 01/03/2012 - 06:46:57 ---A- . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\Drivers\fs_rec.sys [19824] O58 - SDL:[MD5.E306A24D9694C724FA2491278BF50FDB] - 24/01/2013 - 05:47:07 ---A- . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\Drivers\fvevol.sys [196328] O58 - SDL:[MD5.AAB149EE616952BB84308C28E75ED20D] - 03/01/2013 - 06:04:43 ---A- . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\Drivers\FWPKCLNT.SYS [187752] O58 - SDL:[MD5.65EE0C7A58B65E74AE05637418153938] - 14/07/2009 - 02:20:28 ---A- . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour plateformes de processe.) -- C:\Windows\System32\Drivers\GAGP30KX.SYS [57936] O58 - SDL:[MD5.833051C6C6C42117191935F734CFBD97] - 18/03/2009 - 17:35:40 --HA- . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\Drivers\hamachi.sys [26176] O58 - SDL:[MD5.C44E3C2BAB6837DB337DDEE7544736DB] - 13/07/2009 - 23:54:14 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [26624] O58 - SDL:[MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\Drivers\hdaudbus.sys [108544] O58 - SDL:[MD5.1D58A7F3E11A9731D0EAAAA8405ACC36] - 14/07/2009 - 00:19:21 ---A- . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\Drivers\hidbatt.sys [21504] O58 - SDL:[MD5.89448F40E6DF260C206A193A4683BA78] - 14/07/2009 - 00:51:33 ---A- . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périphériques HID.) -- C:\Windows\System32\Drivers\hidbth.sys [91136] O58 - SDL:[MD5.50ABE682EBE752EAF62B18790D6D491C] - 03/07/2013 - 04:36:24 ---A- . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\Drivers\hidclass.sys [55808] O58 - SDL:[MD5.CF50B4CF4A4F229B9F3C08351F99CA5E] - 14/07/2009 - 00:51:05 ---A- . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidir.sys [37888] O58 - SDL:[MD5.F1B27299F547D452EDAEF01FC187CB91] - 03/07/2013 - 04:36:22 ---A- . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\Drivers\hidparse.sys [25728] O58 - SDL:[MD5.10C19F8290891AF023EAEC0832E1EB4D] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidusb.sys [24064] O58 - SDL:[MD5.295FDC419039090EB8B49FFDBB374549] - 14/07/2009 - 02:20:28 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [67152] O58 - SDL:[MD5.871917B07A141BFF43D76D8844D48106] - 20/01/2011 - 20:36:37 ---A- . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\Drivers\http.sys [513536] O58 - SDL:[MD5.0C4E035C7F105F1299258C90886C64C5] - 20/01/2011 - 20:36:25 ---A- . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\Drivers\hwpolicy.sys [14208] O58 - SDL:[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - 00:11:24 ---A- . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\Drivers\i8042prt.sys [80896] O58 - SDL:[MD5.5CD5F9A5444E6CDCB0AC89BD62D8B76E] - 11/03/2011 - 06:38:51 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\Drivers\iaStorV.sys [332160] O58 - SDL:[MD5.4173FF5708F3236CF25195FECD742915] - 14/07/2009 - 02:20:36 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [41040] O58 - SDL:[MD5.A0F12F2C9BA6C72F3987CE780E77C130] - 14/07/2009 - 02:20:36 ---A- . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\Drivers\intelide.sys [15424] O58 - SDL:[MD5.3B514D27BFC4ACCB4037BC6685F766E0] - 14/07/2009 - 00:11:04 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\intelppm.sys [53760] O58 - SDL:[MD5.709D1761D3B19A932FF0238EA6D50200] - 14/07/2009 - 00:54:29 ---A- . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\Drivers\ipfltdrv.sys [58880] O58 - SDL:[MD5.4BD7134618C1D2A27466A099062547BF] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\Drivers\IPMIDrv.sys [65536] O58 - SDL:[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - 00:54:29 ---A- . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys [101888] O58 - SDL:[MD5.9F7E491FB0BA0F9E370163834FC1FE31] - 14/07/2009 - 00:53:32 ---A- . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\Drivers\irda.sys [96768] O58 - SDL:[MD5.42996CFF20A3084A56017B7902307E9F] - 14/07/2009 - 00:53:27 ---A- . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\Drivers\irenum.sys [13824] O58 - SDL:[MD5.1F32BB6B38F62F7DF1A7AB7292638A35] - 14/07/2009 - 02:20:36 ---A- . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\Drivers\isapnp.sys [46656] O58 - SDL:[MD5.ADEF52CA1AEAE82B50DF86B56413107E] - 14/07/2009 - 02:20:36 ---A- . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\Drivers\kbdclass.sys [42576] O58 - SDL:[MD5.9E3CED91863E6EE98C24794D05E27A71] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\Drivers\kbdhid.sys [28160] O58 - SDL:[MD5.5DCEF0C32BE0F33277326586FA503689] - 20/01/2011 - 20:36:49 ---A- . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\Drivers\ks.sys [190976] O58 - SDL:[MD5.F286830298323272260332D6ABC905C1] - 25/09/2013 - 03:01:06 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecdd.sys [67520] O58 - SDL:[MD5.D7C760D57B1656DD748B9E4AB6CB5A51] - 25/09/2013 - 03:01:08 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface Packages.) -- C:\Windows\System32\Drivers\ksecpkg.sys [136640] O58 - SDL:[MD5.F7611EC07349979DA9B0AE1F18CCC7A6] - 14/07/2009 - 00:53:19 ---A- . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\Drivers\lltdio.sys [48128] O58 - SDL:[MD5.EB119A53CCF2ACC000AC71B065B78FEF] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_fc.sys [95824] O58 - SDL:[MD5.8ADE1C877256A22E49B75D1CC9161F9C] - 14/07/2009 - 02:20:37 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [89168] O58 - SDL:[MD5.DC9DC3D3DAA0E276FD2EC262E38B11E9] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [54864] O58 - SDL:[MD5.0A036C7D7CAB643A7F07135AC47E0524] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [96848] O58 - SDL:[MD5.6703E366CC18D3B6E534F5CF7DF39CEE] - 14/07/2009 - 00:15:45 ---A- . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichier LUA.) -- C:\Windows\System32\Drivers\luafv.sys [86528] O58 - SDL:[MD5.EF08D2EBE3EABBA43CC57EEE001027B6] - 14/07/2009 - 00:45:57 ---A- . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\Drivers\mcd.sys [18432] O58 - SDL:[MD5.0FFF5B045293002AB38EB1FD1FC2FB74] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7 for x86.) -- C:\Windows\System32\Drivers\megasas.sys [30800] O58 - SDL:[MD5.DCBAB2920C75F390CAF1D29F675D03D6] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [235584] O58 - SDL:[MD5.F001861E5700EE84E2D4E52C712F4964] - 14/07/2009 - 00:55:24 ---A- . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\Drivers\modem.sys [31744] O58 - SDL:[MD5.79D10964DE86B292320E9DFE02282A23] - 14/07/2009 - 00:25:59 ---A- . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\Drivers\monitor.sys [23552] O58 - SDL:[MD5.FB18CC1D4C2E716B6B903B0AC0CC0609] - 14/07/2009 - 02:20:44 ---A- . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\Drivers\mouclass.sys [41552] O58 - SDL:[MD5.2C388D2CD01C9042596CF3C8F3C7B24D] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\Drivers\mouhid.sys [26112] O58 - SDL:[MD5.FC8771F45ECCCFD89684E38842539B9B] - 20/01/2011 - 20:36:36 ---A- . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\Drivers\mountmgr.sys [78208] O58 - SDL:[MD5.2D699FB6E89CE0D8DA14ECC03B3EDFE0] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Pilote du bus de prise en charge des chemins d’accès multiples.) -- C:\Windows\System32\Drivers\mpio.sys [130432] O58 - SDL:[MD5.AD2723A7B53DD1AACAE6AD8C0BFBF4D0] - 14/07/2009 - 00:52:53 ---A- . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\Drivers\mpsdrv.sys [60416] O58 - SDL:[MD5.21F4B24ACFC79A483515BD986DD9043F] - 04/07/2013 - 10:48:52 ---A- . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\Drivers\mrxdav.sys [115712] O58 - SDL:[MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - 27/04/2011 - 03:17:22 ---A- . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\Drivers\mrxsmb.sys [123904] O58 - SDL:[MD5.6D17A4791ACA19328C685D256349FEFC] - 09/07/2011 - 03:30:00 ---A- . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\Drivers\mrxsmb10.sys [223744] O58 - SDL:[MD5.B81F204D146000BE76651A50670A5E9E] - 27/04/2011 - 03:17:28 ---A- . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\Drivers\mrxsmb20.sys [96768] O58 - SDL:[MD5.012C5F4E9349E711E11E0F19A8589F0A] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) -- C:\Windows\System32\Drivers\msahci.sys [28032] O58 - SDL:[MD5.55055F8AD8BE27A64C831322A780A228] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Module spécifique de périphériques Microsoft.) -- C:\Windows\System32\Drivers\msdsm.sys [116096] O58 - SDL:[MD5.DAEFB28E3AF5A76ABCC2C3078C07327F] - 14/07/2009 - 00:11:26 ---A- . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\Drivers\msfs.sys [22528] O58 - SDL:[MD5.3E1E5767043C5AF9367F0056295E9F84] - 14/07/2009 - 00:51:08 ---A- . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\Drivers\mshidkmdf.sys [4096] O58 - SDL:[MD5.0A4E5757AE09FA9622E3158CC1AEF114] - 14/07/2009 - 02:20:43 ---A- . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\Drivers\msisadrv.sys [13888] O58 - SDL:[MD5.CB7A9ABB12B8415BCE5D74994C7BA3AE] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\Drivers\msiscsi.sys [233344] O58 - SDL:[MD5.8C0860D6366AAFFB6C5BB9DF9448E631] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\Drivers\mskssrv.sys [8320] O58 - SDL:[MD5.3EA8B949F963562CEDBB549EAC0C11CE] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\Drivers\mspclock.sys [5888] O58 - SDL:[MD5.F456E973590D663B1073E9C463B40932] - 14/07/2009 - 00:45:07 ---A- . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\Drivers\mspqm.sys [5504] O58 - SDL:[MD5.0E008FC4819D238C51D7C93E7B41E560] - 14/07/2009 - 02:20:44 ---A- . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\Drivers\msrpc.sys [162896] O58 - SDL:[MD5.FC6B9FF600CC585EA38B12589BD4E246] - 14/07/2009 - 02:20:44 ---A- . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\Drivers\mssmbios.sys [28240] O58 - SDL:[MD5.B42C6B921F61A6E55159B8BE6CD54A36] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\Drivers\mstee.sys [6144] O58 - SDL:[MD5.33599130F44E1F34631CEA241DE8AC84] - 14/07/2009 - 00:46:55 ---A- . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\Windows\System32\Drivers\MTConfig.sys [12288] O58 - SDL:[MD5.159FAD02F64E6381758C990F753BCC80] - 14/07/2009 - 02:20:44 ---A- . (.Microsoft Corporation - Multiple UNC Provider Driver.) -- C:\Windows\System32\Drivers\mup.sys [49728] O58 - SDL:[MD5.8C9C922D71F1CD4DEF73F186416B7896] - 22/08/2012 - 18:16:46 ---A- . (.Microsoft Corporation - Pilote NDIS 6.20.) -- C:\Windows\System32\Drivers\ndis.sys [712048] O58 - SDL:[MD5.0E1787AA6C9191D3D319E8BAFE86F80C] - 14/07/2009 - 00:52:44 ---A- . (.Microsoft Corporation - NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\Drivers\ndiscap.sys [27136] O58 - SDL:[MD5.E4A8AEC125A2E43A9E32AFEEA7C9C888] - 14/07/2009 - 00:54:24 ---A- . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\Drivers\ndistapi.sys [20992] O58 - SDL:[MD5.D8A65DAFB3EB41CBB622745676FCD072] - 20/01/2011 - 20:36:31 ---A- . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\Windows\System32\Drivers\ndisuio.sys [46080] O58 - SDL:[MD5.38FBE267E7E6983311179230FACB1017] - 20/01/2011 - 20:36:44 ---A- . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\Drivers\ndiswan.sys [118784] O58 - SDL:[MD5.A4BDC541E69674FBFF1A8FF00BE913F2] - 20/01/2011 - 20:36:46 ---A- . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\Drivers\ndproxy.sys [48640] O58 - SDL:[MD5.80B275B1CE3B0E79909DB7B39AF74D51] - 14/07/2009 - 00:53:54 ---A- . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\Drivers\netbios.sys [36352] O58 - SDL:[MD5.280122DDCF04B378EDD1AD54D71C1E54] - 20/01/2011 - 20:36:32 ---A- . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\Drivers\netbt.sys [187904] O58 - SDL:[MD5.5DBD4F73E2A52FEED61DBAB3752E329C] - 26/11/2013 - 12:11:29 ---A- . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\Drivers\netio.sys [240576] O58 - SDL:[MD5.1D85C4B390B0EE09C7A46B91EFB2C097] - 14/07/2009 - 02:20:44 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [44624] O58 - SDL:[MD5.1DB262A9F8C087E8153D89BEF3D2235F] - 14/07/2009 - 00:11:32 ---A- . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\Drivers\npfs.sys [35328] O58 - SDL:[MD5.E9A0A4D07E53D8FEA2BB8387A3293C58] - 14/07/2009 - 00:12:08 ---A- . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys [16896] O58 - SDL:[MD5.5E43D2B0EE64123D4880DFA6626DEFDE] - 12/04/2013 - 14:45:29 ---A- . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\Drivers\ntfs.sys [1211752] O58 - SDL:[MD5.F9756A98D69098DCA8945D62858A812C] - 14/07/2009 - 00:11:12 ---A- . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\Drivers\null.sys [4608] O58 - SDL:[MD5.B3E25EE28883877076E0E1FF877D02E0] - 11/03/2011 - 06:39:00 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [117120] O58 - SDL:[MD5.4380E59A170D88C4F1022EFF6719A8A4] - 11/03/2011 - 06:39:00 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [143744] O58 - SDL:[MD5.5A0983915F02BAE73267CC2A041F717D] - 14/07/2009 - 02:20:44 ---A- . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\Windows\System32\Drivers\NV_AGP.SYS [105024] O58 - SDL:[MD5.26384429FCD85D83746F63E798AB1480] - 14/07/2009 - 00:52:03 ---A- . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\Windows\System32\Drivers\nwifi.sys [267264] O58 - SDL:[MD5.08A70A1F2CDDE9BB49B885CB817A66EB] - 14/07/2009 - 00:51:29 ---A- . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\Drivers\ohci1394.sys [62464] O58 - SDL:[MD5.6270CCAE2A86DE6D146529FE55B3246A] - 14/07/2009 - 00:53:58 ---A- . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\Windows\System32\Drivers\pacer.sys [104448] O58 - SDL:[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - 00:45:35 ---A- . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\Drivers\parport.sys [79360] O58 - SDL:[MD5.3F34A1B4C5F6475F320C275E63AFCE9B] - 17/03/2012 - 08:27:18 ---A- . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\Drivers\partmgr.sys [56176] O58 - SDL:[MD5.EB0A59F29C19B86479D36B35983DAADC] - 14/07/2009 - 00:45:29 ---A- . (.Microsoft Corporation - Pilote parallèle VDM.) -- C:\Windows\System32\Drivers\parvdm.sys [8704] O58 - SDL:[MD5.673E55C3498EB970088E812EA820AA8F] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\Drivers\pci.sys [153984] O58 - SDL:[MD5.AFE86F419014DB4E5593F69FFE26CE0A] - 14/07/2009 - 02:20:45 ---A- . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\pciide.sys [12368] O58 - SDL:[MD5.EDE040D666FF81BF1978D0F19F799E7A] - 14/07/2009 - 02:19:03 ---A- . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\Drivers\pciidex.sys [42560] O58 - SDL:[MD5.F396431B31693E71E8A80687EF523506] - 14/07/2009 - 02:19:03 ---A- . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\Windows\System32\Drivers\pcmcia.sys [180288] O58 - SDL:[MD5.250F6B43D2B613172035C6747AEEB19F] - 14/07/2009 - 02:19:04 ---A- . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\Drivers\pcw.sys [43088] O58 - SDL:[MD5.9E0104BA49F4E6973749A02BF41344ED] - 14/07/2009 - 01:41:15 ---A- . (.Microsoft Corporation - Protected Environment Authentication and Authorization Export D.) -- C:\Windows\System32\Drivers\PEAuth.sys [586752] O58 - SDL:[MD5.C3E33580A3A85BE28612B83D0C321E20] - 29/03/2014 - 12:51:01 ---A- . (...) -- C:\Windows\System32\Drivers\PnkBstrK.sys [22328] O58 - SDL:[MD5.EB6137D696A9B4E9718AC6F8641CB4C9] - 04/10/2013 - 02:17:08 ---A- . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport Devices).) -- C:\Windows\System32\Drivers\portcls.sys [177152] O58 - SDL:[MD5.85B1E3A0C7585BC4AAE6899EC6FCF011] - 14/07/2009 - 00:11:04 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\processr.sys [52224] O58 - SDL:[MD5.AB95ECF1F6659A60DDC166D8315B0751] - 14/07/2009 - 02:19:04 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\Drivers\ql2300.sys [1383488] O58 - SDL:[MD5.B4DD51DD25182244B86737DC51AF2270] - 14/07/2009 - 02:19:04 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\ql40xx.sys [106064] O58 - SDL:[MD5.584078CA1B95CA72DF2A27C336F9719D] - 14/07/2009 - 00:54:13 ---A- . (.Microsoft Corporation - Pilote du support de Microsoft Quality Windows Audio Video Expe.) -- C:\Windows\System32\Drivers\qwavedrv.sys [31744] O58 - SDL:[MD5.30A81B53C766D0133BB86D234E5556AB] - 14/07/2009 - 00:54:40 ---A- . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\Drivers\rasacd.sys [11776] O58 - SDL:[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - 00:54:34 ---A- . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\Drivers\rasl2tp.sys [78848] O58 - SDL:[MD5.0FE8B15916307A6AC12BFB6A63E45507] - 14/07/2009 - 00:54:53 ---A- . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\Drivers\raspppoe.sys [77824] O58 - SDL:[MD5.631E3E205AD6D86F2AED6A4A8E69F2DB] - 14/07/2009 - 00:54:48 ---A- . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\Drivers\raspptp.sys [73728] O58 - SDL:[MD5.44101F495A83EA6401D886E7FD70096B] - 14/07/2009 - 00:54:58 ---A- . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\Drivers\rassstp.sys [75264] O58 - SDL:[MD5.D528BC58A489409BA40334EBF96A311B] - 20/01/2011 - 20:36:44 ---A- . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire tampon de lecteur red.) -- C:\Windows\System32\Drivers\rdbss.sys [242688] O58 - SDL:[MD5.0D8F05481CB76E70E1DA06EE9F0DA9DF] - 14/07/2009 - 01:02:41 ---A- . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\Drivers\rdpbus.sys [18944] O58 - SDL:[MD5.23DAE03F29D253AE74C44F99E515F9A1] - 20/01/2011 - 20:36:40 ---A- . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\RDPCDD.sys [6656] O58 - SDL:[MD5.5A53CA1598DD4156D44196D200C94B8A] - 14/07/2009 - 01:01:39 ---A- . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\RDPENCDD.sys [6656] O58 - SDL:[MD5.44B0A53CD4F27D50ED461DAE0C0B4E1F] - 14/07/2009 - 01:01:41 ---A- . (.Microsoft Corporation - RDP Reflector Driver Miniport.) -- C:\Windows\System32\Drivers\RDPREFMP.sys [7168] O58 - SDL:[MD5.F031683E6D1FEA157ABB2FF260B51E61] - 28/04/2012 - 04:17:07 ---A- . (.Microsoft Corporation - Pilote de pile RDP Terminal.) -- C:\Windows\System32\Drivers\rdpwd.sys [183808] O58 - SDL:[MD5.518395321DC96FE2C9F0E96AC743B656] - 20/01/2011 - 20:36:54 ---A- . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\Drivers\rdyboost.sys [173440] O58 - SDL:[MD5.906DCFC5EBF4EC0433F8D4FFFB0BA334] - 20/01/2011 - 20:36:47 ---A- . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\Drivers\rmcast.sys [117760] O58 - SDL:[MD5.ED80D303102A746D30C1684B387BCBF1] - 04/07/2012 - 20:45:31 ---A- . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\Drivers\RNDISMP.sys [33280] O58 - SDL:[MD5.564297827D213F52C7A3A2FF749568CA] - 14/07/2009 - 00:55:21 ---A- . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\Drivers\rootmdm.sys [8192] O58 - SDL:[MD5.032B0D36AD92B582D869879F5AF5B928] - 14/07/2009 - 00:53:20 ---A- . (.Microsoft Corporation - Link-Layer Topology Responder Driver for NDIS 6.) -- C:\Windows\System32\Drivers\rspndr.sys [60928] O58 - SDL:[MD5.7997B6F02CBDA0E31FA18CC85871B938] - 18/06/2009 - 19:45:02 ---A- . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\Windows\System32\Drivers\RTKVAC.SYS [4172832] O58 - SDL:[MD5.4A9F49D1B7E67F7AB9595B61126E81FD] - 23/07/2009 - 22:02:56 ---A- . (.Realtek Semiconductor Corporation - Realtek 10/100 NDIS 5.1 Driver.) -- C:\Windows\System32\Drivers\Rtnicxp.sys [43008] O58 - SDL:[MD5.05D860DA1040F111503AC416CCEF2BCA] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\Drivers\sbp2port.sys [85376] O58 - SDL:[MD5.0693B5EC673E34DC147E195779A4DCF6] - 20/01/2011 - 20:36:45 ---A- . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce Microsoft.) -- C:\Windows\System32\Drivers\scfilter.sys [26624] O58 - SDL:[MD5.099972E1FAF4950D3994FBAB9DD21253] - 20/01/2011 - 20:36:38 ---A- . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\Drivers\scsiport.sys [140160] O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 13/07/2009 - 21:50:20 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [20480] O58 - SDL:[MD5.9AD8B8B515E3DF6ACD4212EF465DE2D1] - 14/07/2009 - 00:45:28 ---A- . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\Drivers\serenum.sys [17920] O58 - SDL:[MD5.5FB7FCEA0490D821F26F39CC5EA3D1E2] - 14/07/2009 - 00:45:33 ---A- . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\Windows\System32\Drivers\serial.sys [83456] O58 - SDL:[MD5.79BFFB520327FF916A582DFEA17AA813] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys [19968] O58 - SDL:[MD5.9F976E1EB233DF46FCE808D9DEA3EB9C] - 14/07/2009 - 00:45:52 ---A- . (.Microsoft Corporation - Small Form Factor Disk Driver.) -- C:\Windows\System32\Drivers\sffdisk.sys [11264] O58 - SDL:[MD5.932A68EE27833CFD57C1639D375F2731] - 14/07/2009 - 00:45:52 ---A- . (.Microsoft Corporation - Small Form Factor MMC Protocol Driver.) -- C:\Windows\System32\Drivers\sffp_mmc.sys [12288] O58 - SDL:[MD5.6D4CCAEDC018F1CF52866BBBAA235982] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) -- C:\Windows\System32\Drivers\sffp_sd.sys [12800] O58 - SDL:[MD5.DB96666CC8312EBC45032F30B007A547] - 14/07/2009 - 00:45:52 ---A- . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\Drivers\sfloppy.sys [13824] O58 - SDL:[MD5.2565CAC0DC9FE0371BDCE60832582B2E] - 14/07/2009 - 02:19:03 ---A- . (.Microsoft Corporation - Filtre SIS NT AGP.) -- C:\Windows\System32\Drivers\SISAGP.SYS [52304] O58 - SDL:[MD5.A9F0486851BECB6DDA1D89D381E71055] - 14/07/2009 - 02:19:04 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [40016] O58 - SDL:[MD5.3727097B55738E2F554972C3BE5BC1AA] - 14/07/2009 - 02:19:04 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [77888] O58 - SDL:[MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - 00:53:41 ---A- . (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\Drivers\smb.sys [71168] O58 - SDL:[MD5.2E467E6CA8E0A140C08011844C0D3936] - 14/07/2009 - 00:45:28 ---A- . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\Drivers\smclib.sys [17408] O58 - SDL:[MD5.95CF1AE7527FB70F7816563CBC09D942] - 14/07/2009 - 02:19:03 ---A- . (.Microsoft Corporation - loader for security processor.) -- C:\Windows\System32\Drivers\spldr.sys [17472] O58 - SDL:[MD5.D16D818E9930A6E5B4F6476DD0998D1A] - 13/07/2009 - 21:34:43 ---A- . (.Microsoft Corporation - security processor.) -- C:\Windows\System32\Drivers\spsys.sys [405504] O58 - SDL:[MD5.E4C2764065D66EA1D2D3EBC28FE99C46] - 29/04/2011 - 03:46:33 ---A- . (.Microsoft Corporation - Server driver.) -- C:\Windows\System32\Drivers\srv.sys [311808] O58 - SDL:[MD5.03F0545BD8D4C77FA0AE1CEEDFCC71AB] - 29/04/2011 - 03:46:15 ---A- . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\Drivers\srv2.sys [310272] O58 - SDL:[MD5.BE6BD660CAA6F291AE06A718A4FA8ABC] - 29/04/2011 - 03:46:10 ---A- . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\Drivers\srvnet.sys [114688] O58 - SDL:[MD5.DB32D325C192B801DF274BFD12A7E72B] - 14/07/2009 - 02:19:04 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [21072] O58 - SDL:[MD5.EF3D32464EBBB10449465C8CAB57CA19] - 11/03/2011 - 06:39:05 ---A- . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\Drivers\storport.sys [148864] O58 - SDL:[MD5.45B44FC9E5AC0DB02B19D515EE809DE5] - 14/07/2009 - 00:50:57 ---A- . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\Drivers\stream.sys [53632] O58 - SDL:[MD5.E58C78A848ADD9610A4DB6D214AF5224] - 14/07/2009 - 02:19:10 ---A- . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\Drivers\swenum.sys [12240] O58 - SDL:[MD5.949C35BF4AE6C110A924AB5E2175DDA7] - 14/07/2009 - 00:45:53 ---A- . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\Drivers\tape.sys [24576] O58 - SDL:[MD5.CA59F7C570AF70BC174F477CFE2D9EE3] - 08/09/2013 - 03:07:12 ---A- . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\Drivers\tcpip.sys [1294272] O58 - SDL:[MD5.3EEBD3BD93DA46A26E89893C7AB2FF3B] - 03/10/2012 - 16:21:38 ---A- . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\Drivers\tcpipreg.sys [35328] O58 - SDL:[MD5.2F885864D5BC8A16C86BEE595969A48A] - 20/01/2011 - 20:36:39 ---A- . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\Drivers\tdi.sys [21504] O58 - SDL:[MD5.1CB91B2BD8F6DD367DFC2EF26FD751B2] - 20/01/2011 - 20:36:40 ---A- . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\Windows\System32\Drivers\tdpipe.sys [18432] O58 - SDL:[MD5.2C2C5AFE7EE4F620D69C23C0617651A8] - 17/02/2012 - 05:13:22 ---A- . (.Microsoft Corporation - TCP Transport Driver.) -- C:\Windows\System32\Drivers\tdtcp.sys [24576] O58 - SDL:[MD5.B459575348C20E8121D6039DA063C704] - 20/01/2011 - 20:36:30 ---A- . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\Drivers\tdx.sys [74752] O58 - SDL:[MD5.04DBF4B01EA4BF25A9A3E84AFFAC9B20] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Remote Desktop Server Driver.) -- C:\Windows\System32\Drivers\termdd.sys [53120] O58 - SDL:[MD5.B37B08F2E5EEB1A37E448E09BACE1101] - 15/06/2013 - 04:38:43 ---A- . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\Drivers\tssecsrv.sys [31232] O58 - SDL:[MD5.FD1D6C73E6333BE727CBCC6054247654] - 20/01/2011 - 20:36:54 ---A- . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du Bureau à distance.) -- C:\Windows\System32\Drivers\TsUsbFlt.sys [52224] O58 - SDL:[MD5.01246F0BAAD7B68EC0F472AA41E33282] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\Windows\System32\Drivers\TsUsbGD.sys [27264] O58 - SDL:[MD5.B2FA25D9B17A68BB93D58B0556E8C90D] - 20/01/2011 - 20:36:47 ---A- . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\Windows\System32\Drivers\tunnel.sys [108544] O58 - SDL:[MD5.750FBCB269F4D7DD2E420C56B795DB6D] - 14/07/2009 - 02:19:10 ---A- . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\Windows\System32\Drivers\UAGP35.SYS [55888] O58 - SDL:[MD5.EE43346C7E4B5E63E54F927BABBB32FF] - 20/01/2011 - 20:36:37 ---A- . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\Drivers\udfs.sys [246784] O58 - SDL:[MD5.44E8048ACE47BEFBFDC2E9BE4CBC8880] - 14/07/2009 - 02:19:11 ---A- . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à processeur K8/9.) -- C:\Windows\System32\Drivers\ULIAGPKX.SYS [57424] O58 - SDL:[MD5.D295BED4B898F0FD999FCFA9B32B071B] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\Drivers\umbus.sys [39936] O58 - SDL:[MD5.7550AD0C6998BA1CB4843E920EE0FEAC] - 14/07/2009 - 00:51:35 ---A- . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\Drivers\umpass.sys [8192] O58 - SDL:[MD5.FE8A57C8E04EDD3AA8ADD8F3C8F65297] - 12/02/2013 - 04:32:45 ---A- . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\Drivers\usb8023.sys [15872] O58 - SDL:[MD5.A1977C315BF5691DA99235AA4A6907AF] - 12/07/2013 - 11:07:52 ---A- . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\Windows\System32\Drivers\USBAUDIO.sys [80896] O58 - SDL:[MD5.FD82D2B38C465A55C527E339BA1201B1] - 20/01/2011 - 20:36:46 ---A- . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\Drivers\USBCAMD.sys [25856] O58 - SDL:[MD5.E071E5BE621FEC4590117C488A78AE32] - 20/01/2011 - 20:36:46 ---A- . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\Drivers\USBCAMD2.sys [25856] O58 - SDL:[MD5.7E72E7D7E0757D59481D530FD2B0BFAE] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\Drivers\usbccgp.sys [75776] O58 - SDL:[MD5.2352AB5F9F8F097BF9D41D5A4718A041] - 12/07/2013 - 11:07:54 ---A- . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\usbcir.sys [86016] O58 - SDL:[MD5.18E71EA0E063037A5C3C8272A5262B7C] - 14/07/2009 - 00:51:05 ---A- . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\Drivers\usbd.sys [5888] O58 - SDL:[MD5.CFBCE999C057D78979A181C9C60F208E] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\Drivers\usbehci.sys [42496] O58 - SDL:[MD5.9D22AAD9AC6A07C691A1113E5F860868] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\Drivers\usbhub.sys [258560] O58 - SDL:[MD5.A6FB7957EA7AFB1165991E54CE934B74] - 14/07/2009 - 00:51:14 ---A- . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbohci.sys [20480] O58 - SDL:[MD5.F3ADCFB2F0BA791A26AC8E9C33D7E20E] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\Drivers\usbport.sys [284672] O58 - SDL:[MD5.797D862FE0875E75C7CC4C1AD7B30252] - 14/07/2009 - 01:17:06 ---A- . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\Drivers\usbprint.sys [19968] O58 - SDL:[MD5.1A078C3FE1C1F9C8561CD600C69AD300] - 20/01/2011 - 20:37:01 ---A- . (.Microsoft Corporation - Gestionnaire de stratégie de redirection USB Windows.) -- C:\Windows\System32\Drivers\usbrpm.sys [26112] O58 - SDL:[MD5.F991AB9CC6B908DB552166768176896A] - 11/03/2011 - 05:01:12 ---A- . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\Drivers\USBSTOR.SYS [76288] O58 - SDL:[MD5.78780C3EBCE17405B1CCD07A3A8A7D72] - 14/07/2009 - 00:51:10 ---A- . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbuhci.sys [24064] O58 - SDL:[MD5.A059C4C3EDB09E07D21A8E5C0AABD3CB] - 14/07/2009 - 02:19:10 ---A- . (.Microsoft Corporation - Énumérateur racine de lecteur virtuel.) -- C:\Windows\System32\Drivers\vdrvroot.sys [32832] O58 - SDL:[MD5.8E38096AD5C8570A6F1570A61E251561] - 14/07/2009 - 00:25:51 ---A- . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys [25088] O58 - SDL:[MD5.17C408214EA61696CEC9C66E388B14F3] - 14/07/2009 - 00:25:49 ---A- . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vgapnp.sys [26112] O58 - SDL:[MD5.5461686CCA2FDA57B024547733AB42E3] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\Drivers\vhdmp.sys [160128] O58 - SDL:[MD5.C829317A37B4BEA8F39735D4B076E923] - 14/07/2009 - 02:19:10 ---A- . (.Microsoft Corporation - Filtre VIA NT AGP.) -- C:\Windows\System32\Drivers\VIAAGP.SYS [53328] O58 - SDL:[MD5.E02F079A6AA107F06B16549C6E5C7B74] - 14/07/2009 - 00:11:04 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\viac7.sys [52736] O58 - SDL:[MD5.E43574F6A56A0EE11809B48C09E4FD3C] - 14/07/2009 - 02:19:10 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [16976] O58 - SDL:[MD5.15C126D1B55814B9E5CAB10A9C1F4C67] - 14/07/2009 - 00:25:51 ---A- . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\Drivers\videoprt.sys [111616] O58 - SDL:[MD5.4C63E00F2F4B5F86AB48A58CD990F212] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys [53120] O58 - SDL:[MD5.B5BB72067DDDDBBFB04B2F89FF8C3C87] - 14/07/2009 - 02:19:11 ---A- . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys [297040] O58 - SDL:[MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/01/2011 - 20:36:24 ---A- . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\Drivers\volsnap.sys [245632] O58 - SDL:[MD5.9DFA0CC2F8855A04816729651175B631] - 14/07/2009 - 02:19:11 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [141904] O58 - SDL:[MD5.90567B1E658001E79D7C8BBD3DDE5AA6] - 14/07/2009 - 00:52:02 ---A- . (.Microsoft Corporation - Pilote de bus WiFi virtuel.) -- C:\Windows\System32\Drivers\vwifibus.sys [19968] O58 - SDL:[MD5.7090D3436EEB4E7DA3373090A23448F7] - 14/07/2009 - 00:52:04 ---A- . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\Drivers\vwififlt.sys [48128] O58 - SDL:[MD5.A3F04CBEA6C2A10E6CB01F8B47611882] - 14/07/2009 - 00:52:10 ---A- . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\Drivers\vwifimp.sys [14336] O58 - SDL:[MD5.DE3721E89C653AA281428C8A69745D90] - 14/07/2009 - 00:46:53 ---A- . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\Drivers\wacompen.sys [21632] O58 - SDL:[MD5.3C3C78515F5AB448B022BDF5B8FFDD2E] - 20/01/2011 - 20:36:46 ---A- . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\Drivers\wanarp.sys [63488] O58 - SDL:[MD5.CB45A417C8EF7BA6BAC67EDCDDED8700] - 14/07/2009 - 00:24:11 ---A- . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\Drivers\watchdog.sys [35328] O58 - SDL:[MD5.1112A9BADACB47B7C0BB0392E3158DFF] - 14/07/2009 - 02:19:11 ---A- . (.Microsoft Corporation - Microsoft Watchdog Timer Driver.) -- C:\Windows\System32\Drivers\wd.sys [19024] O58 - SDL:[MD5.25944D2CC49E0A6C581D02A74B7D6645] - 25/06/2013 - 23:56:40 ---A- . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en mode noyau.) -- C:\Windows\System32\Drivers\Wdf01000.sys [527064] O58 - SDL:[MD5.48704647CD2E9DAA2EB81BDE6D029EDB] - 26/07/2012 - 04:39:21 ---A- . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\Drivers\WdfLdr.sys [47720] O58 - SDL:[MD5.8B9A943F3B53861F2BFAF6C186168F79] - 14/07/2009 - 00:53:51 ---A- . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) -- C:\Windows\System32\Drivers\wfplwf.sys [9728] O58 - SDL:[MD5.5CF95B35E59E2A38023836FFF31BE64C] - 14/07/2009 - 02:19:10 ---A- . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\Drivers\wimmount.sys [19008] O58 - SDL:[MD5.0217679B8FCA58714C3BF2726D2CA84E] - 14/07/2009 - 00:19:17 ---A- . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\Drivers\wmiacpi.sys [11264] O58 - SDL:[MD5.9A5B1059FE015DB5269FBB25ACBF841D] - 14/07/2009 - 02:19:10 ---A- . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\Drivers\wmilib.sys [14912] O58 - SDL:[MD5.6DB3276587B853BF886B69528FDB048C] - 14/07/2009 - 00:55:02 ---A- . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\Windows\System32\Drivers\ws2ifsl.sys [16384] O58 - SDL:[MD5.E714A1C0354636837E20CCBF00888EE7] - 20/01/2011 - 20:36:31 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Platform.) -- C:\Windows\System32\Drivers\WUDFPf.sys [92672] O58 - SDL:[MD5.1023EE888C9B47178C5293ED5336AB69] - 20/01/2011 - 20:36:31 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Reflecto.) -- C:\Windows\System32\Drivers\WUDFRd.sys [132224] O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 13/07/2009 - 22:40:41 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:[MD5.635181E0E9BBF16871BF5380D71DB02D] - 14/07/2009 - 02:26:21 ---A- . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\clfs.sys [249408] O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 13/07/2009 - 22:40:44 ---A- . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 13/07/2009 - 22:40:40 ---A- . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 13/07/2009 - 22:40:43 ---A- . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 13/07/2009 - 22:40:43 ---A- . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 13/07/2009 - 22:40:23 ---A- . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 13/07/2009 - 22:40:31 ---A- . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 13/07/2009 - 22:40:35 ---A- . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 13/07/2009 - 22:40:39 ---A- . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 13/07/2009 - 22:40:27 ---A- . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 13/07/2009 - 22:40:11 ---A- . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 13/07/2009 - 22:40:15 ---A- . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 13/07/2009 - 22:40:17 ---A- . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 13/07/2009 - 22:40:19 ---A- . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 13/07/2009 - 22:40:13 ---A- . (...) -- C:\Windows\System32\NTIO804.SYS [34672] O58 - SDL:[MD5.204689EC38738BE7C07F79B745733747] - 07/02/2014 - 02:07:56 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [2349056] ~ Drivers: 16 Scanned in 00mn 06s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 26/03/2014 - 22:01:57 ---A- . (...) -- C:\Users\Amine\AppData\Local\CrashDumps\drakensangonline.exe.6056.dmp [5214021] O61 - LFC: 26/03/2014 - 22:01:57 --HA- . (...) -- C:\Users\Amine\AppData\Local\IconCache.db [2462334] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\TechSmith\Camtasia Studio\manifest.xml [5912] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\CamRec1\screen_sysaudioraw.wav [176400046] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\DSOClient\crashlog [170] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\DSOClient\drakensangonline.exe [11945280] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\DSOClient\drakensangonline_2014-03-26_23-00-15.dmp [91480] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\WER2157.tmp.WERInternalMetadata.xml [2940] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\WERBE70.tmp.WERInternalMetadata.xml [3402] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\WERE57D.tmp.WERInternalMetadata.xml [3000] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\wmplog00.sqm [1472] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\wmplog01.sqm [1440] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\wmplog02.sqm [1524] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\wmplog03.sqm [1440] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\wmplog04.sqm [1440] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\wmplog05.sqm [2524] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\wmplog06.sqm [1440] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\wmplog07.sqm [1440] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (.Firelight Technologies.) -- C:\Users\Amine\AppData\Local\Temp\DSOClient\fmod_event.dll [307200] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (.Firelight Technologies.) -- C:\Users\Amine\AppData\Local\Temp\DSOClient\fmodex.dll [843776] O61 - LFC: 26/03/2014 - 22:02:01 ---A- . (.Microsoft Corporation.) -- C:\Users\Amine\AppData\Local\Temp\DSOClient\D3DX9_43.dll [1998168] O61 - LFC: 26/03/2014 - 22:02:01 --HA- . (...) -- C:\Users\Amine\AppData\Local\Temp\etilqs_XDXjfFLaiSiGLqz [512] O61 - LFC: 26/03/2014 - 22:02:01 --HA- . (...) -- C:\Users\Amine\AppData\Local\Temp\etilqs_kGjd2LbXzuIvkbQ [0] O61 - LFC: 26/03/2014 - 22:02:01 --HA- . (...) -- C:\Users\Amine\AppData\Local\Temp\etilqs_ou2mGrKtuR9QwBy [512] O61 - LFC: 26/03/2014 - 22:02:01 --HA- . (...) -- C:\Users\Amine\AppData\Local\Temp\etilqs_zK0tyuxMHc5A1wI [0] O61 - LFC: 26/03/2014 - 22:02:02 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\CamStudio.cfg [4549] O61 - LFC: 26/03/2014 - 22:02:02 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Microsoft\Speech\Files\UserLexicons\SP_D89EB0F02CF143E3ACF9FCEA378A224E.dat [940] O61 - LFC: 26/03/2014 - 22:02:02 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Microsoft\Speech\Files\UserShortcuts\SP_2CC20ED823A94A9CB74272A74FEF7FE4.dat [940] O61 - LFC: 26/03/2014 - 22:02:02 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\36\36ff820765e317ee.dat [3004] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\4d\4d08806a1468a4dd.dat [7102] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\90\90b79e5ffea90da6.dat [114109] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\98\9808772bc0c25da2.dat [72879] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\e8\e882a70c52031407.dat [11630] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\f2\f20bcf453a400c24.dat [11507] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\ZHP\HOSTS.txt [1094] =>.Nicolas Coolman O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\version2.xml [96] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\Documents\Camtasia Studio\Custom Production Presets 8.0\MP4 only (up to 480p).xml [14680] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\Documents\Camtasia Studio\Custom Production Presets 8.0\MP4 only (up to 720p).xml [15022] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\Documents\Camtasia Studio\Custom Production Presets 8.0\MP4 with video player (up to 480p).xml [14850] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\Documents\Camtasia Studio\Custom Production Presets 8.0\MP4 with video player (up to 720p).xml [15216] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\Documents\My CamStudio Temp Files\~temp-20140326_1431_33.avi [122326528] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\Documents\My CamStudio Temp Files\~temp-20140326_1431_33.wav [15652016] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\Documents\My CamStudio Temp Files\~temp-20140326_1632_47.avi [427209728] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\Documents\My CamStudio Temp Files\~temp-20140326_1646_28.wav [94342292] O61 - LFC: 26/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\Documents\Navicat\MySQL\logs\LogHistory.txt [3216] O61 - LFC: 29/03/2014 - 22:01:57 ---A- . (...) -- C:\Users\Amine\AppData\Local\ATI\ACE\Manifest.Bin [29528] O61 - LFC: 29/03/2014 - 22:01:57 ---A- . (...) -- C:\Users\Amine\AppData\Local\ATI\ACE\Manifest.xml [23574] O61 - LFC: 29/03/2014 - 22:01:57 ---A- . (...) -- C:\Users\Amine\AppData\Local\ATI\ACE\Profiles.xml [10550] O61 - LFC: 29/03/2014 - 22:01:57 ---A- . (...) -- C:\Users\Amine\AppData\Local\LogMeIn Hamachi\h2-ui-peers.cfg [4] O61 - LFC: 29/03/2014 - 22:01:57 ---A- . (...) -- C:\Users\Amine\AppData\Local\LogMeIn Hamachi\h2-ui.cfg [1375] O61 - LFC: 29/03/2014 - 22:01:57 ---A- . (...) -- C:\Users\Amine\AppData\Local\LogMeIn Hamachi\h2-ui.cfg.bak [1375] O61 - LFC: 29/03/2014 - 22:01:57 ---A- . (...) -- C:\Users\Amine\AppData\Local\LogMeIn Hamachi\h2-ui.ini.bak [266] O61 - LFC: 29/03/2014 - 22:02:00 ---A- . (...) -- C:\Users\Amine\AppData\Local\Punkbuster\ET\etmain\etkey [28] O61 - LFC: 29/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\Skype\DbTemp\temp-5qopgEAT0kQYGahHhtvJ1hlc [0] O61 - LFC: 29/03/2014 - 22:02:01 ---A- . (...) -- C:\Users\Amine\AppData\Local\Temp\Skype\DbTemp\temp-At5VN1zH8udUwlIEkOWlvmqQ [0] O61 - LFC: 29/03/2014 - 22:02:02 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\PnkBstrK.sys [22328] O61 - LFC: 29/03/2014 - 22:02:02 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\shared.xml [93971] O61 - LFC: 29/03/2014 - 22:02:02 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\shared_dynco\dc.db [2641920] O61 - LFC: 29/03/2014 - 22:02:02 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\shared_dynco\dc.db-journal [8720] O61 - LFC: 29/03/2014 - 22:02:02 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\bistats.db [77824] O61 - LFC: 29/03/2014 - 22:02:02 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\bistats.db-journal [37448] O61 - LFC: 29/03/2014 - 22:02:02 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\02\024cebb4aa10034f.dat [2912] O61 - LFC: 29/03/2014 - 22:02:02 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\0b\0b1379194857a948.dat [6002] O61 - LFC: 29/03/2014 - 22:02:02 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\28\281479b0590d2d3b.dat [2855] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\3d\3de267391bf92fe8.dat [44141] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\70\703cb0e0a636912b.dat [3201] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\84\8459ba49f79d3f38.dat [6990] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\91\91c1160a0cdef0fd.dat [5774] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\ab\ab0326197be10a48.dat [5232] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\bc\bc64c2e859d22353.dat [3144] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\c4\c4c9930949b1baf8.dat [2236] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\d7\d7b8f78b57b37f82.dat [152975] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\e5\e52cc3171256cd3e.dat [3957] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\chatsync\e8\e8ef33019ab8a2d0.dat [22474] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\config.xml [15045] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\dc.db [49152] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\eas.db [57344] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\httpfe\cookies.dat [2] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\keyval.db [81920] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\keyval.db-journal [53864] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\main.db [4079616] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\main.db-journal [858248] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\mmanager\mediacache.ldb [40] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\msn.db [114688] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\msn.db-journal [37448] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\qikdb\qik_main.db [32768] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\simcache\streamlist [44] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\statistics.db [1589248] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\statistics.db-journal [78488] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\Skype\sowebull\thmanager\thumbcache.ldb [40] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\ZHP\Log.txt [16868] =>.Nicolas Coolman O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\AppData\Roaming\ZHP\TestsZHPDiag.txt [2810] =>.Nicolas Coolman O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (...) -- C:\Users\Amine\Downloads\WolfET_2_60b_custom.exe [270898013] O61 - LFC: 29/03/2014 - 22:02:03 ---A- . (.Nicolas Coolman.) -- C:\Users\Amine\Downloads\ZHPDiag2.exe [6858467] =>.Nicolas Coolman ~ 24 Fichiers temporaires (Temporary files) ~ Files: 94 Scanned in 00mn 07s ---\\ Fichiers Alternate Data Stream (ADS) (O62) O62 - ADS:Alternate Data Stream File - C:\Windows\System32\msvcp110.dll:Zone.Identifier O62 - ADS:Alternate Data Stream File - C:\Windows\System32\msvcr110.dll:Zone.Identifier O62 - ADS:Alternate Data Stream File - C:\Windows\System32\msvcr71.dll:Zone.Identifier ~ ADS: Scanned in 00mn 04s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman ~ ADS: Scanned in 00mn 00s ---\\ Liste les services legacy du registre (LALS) (O64) O64 - Services: CurCS - 14/09/2013 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\Beep.sys (Beep) .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP O64 - Services: CurCS - 04/07/2012 - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS O64 - Services: CurCS - 04/07/2013 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE O64 - Services: CurCS - 01/08/2013 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR O64 - Services: CurCS - 24/01/2013 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecpkg.sys (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10 O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\msisadrv.sys (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\parvdm.sys (Parvdm) .(.Microsoft Corporation - Pilote parallèle VDM.) - LEGACY_PARVDM O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pcw.sys (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\peauth.sys (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\spldr.sys (spldr) .(.Microsoft Corporation - loader for security processor.) - LEGACY_SPLDR O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2 O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP O64 - Services: CurCS - 03/10/2012 - C:\Windows\System32\drivers\tcpipreg.sys (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG O64 - Services: CurCS - 20/01/2011 - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX O64 - Services: CurCS - 20/01/2011 - C:\Windows\System32\DRIVERS\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6 O64 - Services: CurCS - 25/06/2013 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\wfplwf.sys (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF O64 - Services: CurCS - 20/01/2011 - C:\Windows\System32\drivers\WudfPf.sys (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF ~ Legacy: 114 Scanned in 00mn 00s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe ~ FASS Keys: 11 Scanned in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) O69 - SBI: prefs.js [Amine - 6fhzegzq.default] user_pref("extensions.crossrider.bic", "144e189f8d153db62de1ce7c0d221fdd"); =>PUP.CrossRider O69 - SBI: SearchScopes [HKCU] {006ee092-9658-4fd6-bd8e-a21a348e59f5} - (Bing) - http://www.bing.com ~ Keys: Scanned in 00mn 00s ---\\ Enumère les service demarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [67584] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [67584] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [679424] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [473600] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [90624] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [49664] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [300544] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [242176] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [521216] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [1933848] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [585728] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [499712] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [21504] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [49664] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [71168] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [113664] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] ~ Services: 32 Scanned in 00mn 02s ---\\ Recherche particulière à la racine du système (SPRF) (O84) [MD5.C3E33580A3A85BE28612B83D0C321E20] [SPRF][29/03/2014] (...) -- C:\Users\Amine\AppData\Roaming\PnkBstrK.sys [22328] ~ Files: 1 Scanned in 00mn 00s ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "WMP-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-P2PHost-In-TCP" | In - None - P6 - TRUE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{0960E555-5EFE-4290-A51B-1132DC02143B}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{EA129DC4-BC27-46E7-8EF1-12039FBE8603}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{259DFC45-6E9C-45D5-81B2-732EDC7B5C50}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{D0754B51-5764-46B2-B7FE-A3084E3E14EE}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{CD114DAC-95DE-418C-930E-320817CF6AAA}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "{0FF58BCB-12EB-4FCD-AB2C-3F121FD11E11}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "{2D40B58B-B957-4A7D-BBD8-22A6FDC0F79E}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "{3919B581-ECFA-47CB-AFEF-B02A37DE94C6}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "{C3926E3E-89BA-42F5-844F-86361E778F4E}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{FF4B6928-06AE-4A03-8B2E-C2A8BACF161C}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{A32F7898-3BD3-4728-A21F-20C99AC3425E}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{D92A5081-8B53-45C6-9FED-D6AEEAA25D4F}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{03E70C17-5DAF-4491-9008-7B861A353C77}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{1AE41665-1F57-4D96-B6BB-B2D14717A5B0}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{877A02B8-D31D-4061-9CDD-7E9275874D87}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{8BDB300D-AFE8-4A78-8780-B927E5A364B9}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{EFA7BFF3-D741-4786-96C1-4F5760E23B1F}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{23684C3B-1FFB-480A-A5D1-BFCCF04F63D1}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{4EA911F8-6B4D-4634-930E-010F8AF9DAA4}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{7AD749EF-3042-4FDC-9B51-8A175FB793E2}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "{44EDA17B-0E2F-4775-A9B1-5CE6448D34E5}" | In - None - P6 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O87 - FAEL: "{9B6A5F6B-7F46-4C48-9171-39BFE58844DC}" | In - Private - P6 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe O87 - FAEL: "{407D5CAC-4838-49E5-9D12-CDB35365632E}" | In - Private - P17 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe O87 - FAEL: "TCP Query User{8D7820C8-E8F3-47E7-ABBC-D10CDF48B4F2}C:\wamp\bin\apache\apache2.4.4\bin\httpd.exe" | In - Private - P6 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\wamp\bin\apache\apache2.4.4\bin\httpd.exe O87 - FAEL: "UDP Query User{0AB1CB7D-72A6-4B88-AB4E-DF41C1D07A5B}C:\wamp\bin\apache\apache2.4.4\bin\httpd.exe" | In - Private - P17 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\wamp\bin\apache\apache2.4.4\bin\httpd.exe O87 - FAEL: "{0384F60B-F7D8-42D9-B3FE-0F0F7FD18C04}" | In - None - P6 - TRUE | .(...) -- C:\Program Files\GameforgeLive\gfl_client.exe O87 - FAEL: "{11298D2D-B55E-4649-ABA5-0B8D1E2B743F}" | In - None - P6 - FALSE | .(.Microsoft Corporation - SMSvcHost.exe.) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe O87 - FAEL: "{6A5B94C6-4E30-4E00-ABDF-ADAB1AFFD960}" | In - None - P6 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Amine\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent O87 - FAEL: "{42381152-49DE-43B2-98CF-C212435FF189}" | In - None - P17 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Amine\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent O87 - FAEL: "{181CF9F1-52DB-44E8-885A-257253EDF0DC}" | In - Public - P6 - TRUE | .(...) -- C:\Windows\System32\PnkBstrA.exe O87 - FAEL: "{112A4442-7933-422E-B83E-FDFF24B2FA97}" | In - Public - P17 - TRUE | .(...) -- C:\Windows\System32\PnkBstrA.exe O87 - FAEL: "{670D4821-2524-4EA7-9098-127B616955DA}" | In - Public - P6 - TRUE | .(...) -- C:\Windows\System32\PnkBstrB.exe O87 - FAEL: "{0B570782-2AE0-4052-BA76-223D758018B9}" | In - Public - P17 - TRUE | .(...) -- C:\Windows\System32\PnkBstrB.exe ~ Firewall: 194 Scanned in 00mn 03s ---\\ Enumère les codes produits des logiciels (PUC) (O90) O90 - PUC: "2E0E373E5F02FD093B5116E56A5E1210" . (.Catalyst Control Center Graphics Full Existing.) -- C:\Windows\Installer\{E373E0E2-20F5-90DF-B315-615EA6E52101}\ARPPRODUCTICON.exe O90 - PUC: "2F73C006B890561A1CBDA62E8BD9D894" . (.Catalyst Control Center Graphics Previews Common.) -- C:\Windows\Installer\{600C37F2-098B-A165-C1DB-6AE2B89D8D49}\ARPPRODUCTICON.exe O90 - PUC: "380208C197D6DE87FBC106D1FD09D81D" . (.Catalyst Control Center Core Implementation.) -- C:\Windows\Installer\{1C802083-6D79-78ED-BF1C-601DDF908DD1}\ARPPRODUCTICON.exe O90 - PUC: "45E72DD68952CEF0C71EEB0029C45007" . (.Catalyst Control Center Graphics Previews Vista.) -- C:\Windows\Installer\{6DD27E54-2598-0FEC-7CE1-BE00924C0570}\ARPPRODUCTICON.exe O90 - PUC: "50E7C3A773EE6D74991EE20BA5D33A7F" . (.Skype™ 6.14.) -- C:\Windows\Installer\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}\SkypeIcon.exe O90 - PUC: "5201582364E13A38310274619152E493" . (.Catalyst Control Center Localization All.) -- C:\Windows\Installer\{32851025-1E46-83A3-1320-471619254E39}\ARPPRODUCTICON.exe O90 - PUC: "5AD5D40BAD11C038586CF09F8175787E" . (.Skins.) -- C:\Windows\Installer\{B04D5DA5-11DA-830C-85C6-0FF9185787E7}\ARPPRODUCTICON.exe O90 - PUC: "5BFC3035536D0F449AB469118EF1704C" . (.Camtasia Studio 8.) -- C:\Windows\Installer\{5303CFB5-D635-44F0-A94B-9611E81F07C4}\CamStudio.ico O90 - PUC: "7CFEDF746EFB57DF141D82DD75B22D9D" . (.ATI Catalyst Install Manager.) -- C:\Windows\Installer\{47FDEFC7-BFE6-FD75-41D1-28DD572BD2D9}\ARPPRODUCTICON.exe O90 - PUC: "AAE4C282261FF25FB7FA7C5BD0AA0AA0" . (.ccc-utility.) -- C:\Windows\Installer\{282C4EAA-F162-F52F-7BAF-C7B50DAAA00A}\ARPPRODUCTICON.exe O90 - PUC: "B99B286982BB73DAAC051CBCB5FFF06A" . (.Catalyst Control Center Graphics Full New.) -- C:\Windows\Installer\{9682B99B-BB28-AD37-CA50-C1CB5BFF0FA6}\ARPPRODUCTICON.exe O90 - PUC: "D31DC90E3EC7C1536152D87C2FA1990C" . (.ccc-core-static.) -- C:\Windows\Installer\{E09CD13D-7CE3-351C-1625-8DC7F21A99C0}\ARPPRODUCTICON.exe O90 - PUC: "D704B4761BAE6B6B9FFB3CC4EEC48DF3" . (.Catalyst Control Center Graphics Light.) -- C:\Windows\Installer\{674B407D-EAB1-B6B6-F9BF-C34CEE4CD83F}\ARPPRODUCTICON.exe O90 - PUC: "EC0876B7DDACED84C82CBC61E87088A5" . (.Ma-Config.com.) -- C:\Windows\Installer\{7B6780CE-CADD-48DE-8CC2-CB168E07885A}\maconfico O90 - PUC: "ED3317D82D725E742B84140872D823AA" . (.Catalyst Control Center - Branding.) -- C:\Windows\Installer\{8D7133DE-27D2-47E5-B248-4180278D32AA}\ARPPRODUCTICON.exe O90 - PUC: "F9E306BB8ECE31770BCAE760418E0C85" . (.Catalyst Control Center HydraVision Full.) -- C:\Windows\Installer\{BB603E9F-ECE8-7713-B0AC-7E0614E8C058}\ARPPRODUCTICON.exe ~ Update Products: 46 Scanned in 00mn 00s ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) [MD5.1E1E0D988157DDB6C0630BE5BC202E28] [WIS][19/03/2014] (.LogMeIn, Inc. - LogMeIn Hamachi Installer.) -- C:\Windows\Installer\357bb9.msi [8216576] [MD5.28262BADED829FE90856E097135C8802] [WIS][24/11/2009] (.ATI - Branding.) -- C:\Windows\Installer\9e5b8.msi [549888] [MD5.F12F8A313565F255BA11367676E73BD4] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5bd.msi [2805760] [MD5.17D7B9ECDFB1C3E11133DD2F9DC4B8D0] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5c2.msi [7217152] [MD5.568160A8BDA28C1DB32D51093CC20C2F] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5c7.msi [422912] [MD5.D0F9A059C6AB2132A716421D244FCDAD] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5cc.msi [930816] [MD5.A54C434B84BEA1835AE57569BBE1F1BD] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5d1.msi [1902592] [MD5.8F090D1F8B3679AFC42A5269201B04EB] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5d6.msi [5762560] [MD5.9FBCA9C95B6C0E6194DADD63CF7DD826] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5dc.msi [1263616] [MD5.85E75A9C175944DB5C284EF2C53207C4] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5e1.msi [1247744] [MD5.C5A0D8C77F204A92C861D1B9F6C15ABD] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5e6.msi [1231360] [MD5.0D2C36EE5429A416A38F4A5F90527413] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5eb.msi [1302528] [MD5.C425B6739EF049D67A25DB8922332CE5] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5f0.msi [679424] [MD5.8CCF88D27C38BA86A0E6E378CA092D4A] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5f5.msi [1249792] [MD5.B92DCF1BC8A718C5DE71E74AE38D1AF5] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5fa.msi [1252864] [MD5.BE68F3C2AAFB4B7282F9E121026C4F6D] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e5ff.msi [1257472] [MD5.A577018772D3288E221DA48EDEB586AD] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e604.msi [1268736] [MD5.BB913E3757ABD1AD17E94555AD967970] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e609.msi [1249792] [MD5.E405FADE92DFFB59749A02105735363A] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e60e.msi [1275904] [MD5.8E2291F3930439BEF958486EAC02B666] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e613.msi [1260544] [MD5.DA4AF9BBEB0F3047320B3AEC1B5FCDB9] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e618.msi [1254400] [MD5.FE2AECA6D5399AF2D090DFD0FD34D1FA] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e61d.msi [1242624] [MD5.AC56B3252B20DC68FBD57E9FEDC33BCB] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e622.msi [1256960] [MD5.F55EB9CA7329A44EB8CFFDBB87EADCD2] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e627.msi [1254400] [MD5.778327D2A67C18725B392C6E9AAA5F35] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e62c.msi [1286656] [MD5.08EB51E234B33EFAF3355785AB5FA5D3] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e631.msi [1244160] [MD5.3C78A5A3C9497361891B8CE19D95DB6A] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e636.msi [1274368] [MD5.0D6172F52C8EA26000DA0E72CD1C317C] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e63b.msi [1253376] [MD5.BC008929D9F620ADA5D19369B6C79B4A] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e641.msi [939008] [MD5.43FCB922E9FD58130641D541D40B8811] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e64c.msi [1241600] [MD5.7E607D64180381DEA72D2FBDC3567C95] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e651.msi [622592] [MD5.0B00A913E38504D66BFE44CAEA7E2600] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e656.msi [1790464] [MD5.BD0DCBB672A940AA7D9831858169F018] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e65b.msi [431104] [MD5.AE975523B47149A70120AB0EC1E8261B] [WIS][18/02/2010] (.ATI - Catalyst Control Center Utility Package.) -- C:\Windows\Installer\9e660.msi [213504] [MD5.3333A861D1404469D57A0A3002BF9365] [WIS][18/02/2010] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\9e666.msi [2325504] [MD5.6FE0477F96C1720179A9135FB8151926] [WIS][10/01/2014] (.TechSmith Corporation - Camtasia Studio 8.3.0.1471.) -- C:\Windows\Installer\a60357.msi [261730816] [MD5.28E25F4A41FF7F65F57435ABD858C7BA] [WIS][19/03/2014] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\b76d6.msi [25624576] ~ WIS: 47 Scanned in 00mn 24s ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SS - | Demand 20/03/2014 257928 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe SS - | Demand 15/03/2014 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe SS - | Auto 20/03/2014 14239 | (MySQL56) . (...) - C:\ProgramData\MySQL\MySQL Server 5.6\my.ini SS - | Auto 29/03/2014 107832 | (PnkBstrB) . (...) - C:\Windows\system32\PnkBstrB.exe SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe SS - | Demand 23/06/2013 22016 | (wampapache) . (.Apache Software Foundation.) - c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe SS - | Demand 23/06/2013 10923520 | (wampmysqld) . (...) - c:\wamp\bin\mysql\mysql5.6.12\bin\mysqld.exe SR - | Auto 11/02/2010 733184 | (Ati External Event Utility) . (.ATI Technologies Inc..) - C:\Windows\System32\Ati2evxx.exe SR - | Auto 26/02/2014 1678672 | (Hamachi2Svc) . (.LogMeIn Inc..) - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe SR - | Auto 17/03/2014 515584 | (IePluginService) . (.Cherished Technololgy LIMITED.) - C:\ProgramData\IePluginService\PluginService.exe =>Trojan.SProtector SR - | Auto 27/01/2014 546112 | (Level Quality Watcher) . (...) - C:\Program Files\Level Quality Watcher\v1.01\levelqualitywatcher32.exe =>PUP.LevelQualityWatcher SR - | Auto 26/02/2014 375056 | (LMIGuardianSvc) . (.LogMeIn, Inc..) - C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe SR - | Auto 25/02/2014 2117960 | (MaConfigAgent) . (.CybelSoft.) - C:\Program Files\ma-config.com\MaConfigAgent.exe SR - | Auto 29/03/2014 66872 | (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe SR - | Auto 14/07/2009 20992 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 14/07/2009 20992 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 27s ---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80) Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net ~ MBR: 1 Scanned in 00mn 02s ---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by Amine at 29/03/2014 22:03:03 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 04s ---\\ Scan Additionnel (O88) Database Version : 13031 - (28/03/2014) Clés trouvées (Keys found) : 20 Valeurs trouvées (Values found) : 2 Dossiers trouvés (Folders found) : 9 Fichiers trouvés (Files found) : 9 [HKLM\SYSTEM\CurrentControlSet\Services\IePluginService] =>Trojan.SProtector^ [HKLM\SYSTEM\CurrentControlSet\Services\Level Quality Watcher] =>PUP.LevelQualityWatcher^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Level Quality Watcher] =>PUP.SavingsBull^ [HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\uTorrent] =>P2P.BitTorrent^ [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}] =>Hijacker.SmartBar [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}] =>Hijacker.SmartBar [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}] =>PUP.V9Software [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}] =>Adware.IMBooster [HKLM\Software\Microsoft\Tracing\SnapDo_RASAPI32] =>Hijacker.SmartBar [HKLM\Software\Microsoft\Tracing\SnapDo_RASMANCS] =>Hijacker.SmartBar [HKLM\Software\Classes\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113}] =>Adware.Agent [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}] =>Adware.IMBooster [HKCU\Software\1ClickDownload] =>PUP.1ClickDownloader [HKLM\Software\Iminent] =>Adware.IMBooster [HKCU\Software\InstallCore] =>Adware.InstallCore [HKCU\Software\AppDataLow\Software\Crossrider] =>PUP.CrossRider [HKLM\Software\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}] =>Adware.BrowseFox [HKLM\Software\Classes\Iminent] =>Adware.IMBooster [HKLM\Software\Classes\esrv.mysearchdialESrvc] =>Adware.MyWebSearch [HKLM\Software\Classes\esrv.mysearchdialESrvc.1] =>Adware.MyWebSearch C:\Program Files\Level Quality Watcher =>Adware.LevelQualityWatcher^ C:\Program Files\SavingsBull =>PUP.SavingsBull^ C:\Program Files\SupTab =>PUP.SupTab^ C:\ProgramData\IePluginService =>Trojan.SProtector^ C:\ProgramData\WPM =>PUP.WpManager^ C:\Users\Amine\AppData\Roaming\Nosibay =>PUP.BubbleDock^ C:\Users\Amine\AppData\Roaming\SupTab =>PUP.SupTab^ C:\Users\Amine\AppData\Roaming\sweet-page =>PUP.SweetPage^ C:\Users\Amine\AppData\Roaming\uTorrent =>P2P.µTorrent^ [HKCU\Software\AppDataLow\Software\Savings Bull] =>PUP.SavingsBull^ [HKCU\Software\BitTorrent] =>P2P.BitTorrent^ [HKCU\Software\Smartbar] =>Hijacker.SmartBar^ [HKLM\Software\LevelQualityWatcher] =>PUP.LevelQualityWatcher^ [HKLM\Software\Savings Bull] =>PUP.SavingsBull^ [HKLM\Software\Wpm] =>PUP.WpManager^ [HKLM\Software\supTab] =>PUP.SupTab^ [HKLM\Software\supWPM] =>PUP.WpManager^ [HKLM\Software\sweet-pageSoftware] =>PUP.SweetPage^ ~ Additionnel Scan: 150269 Items scanned in 01mn 37s ---\\ Récapitulatif des détections trouvées sur votre station http://nicolascoolman.webs.com/apps/blog/show/40584589-pup-sweetpage =>PUP.SweetPage http://nicolascoolman.webs.com/apps/blog/show/41133513-pup-suptab =>PUP.SupTab http://nicolascoolman.webs.com/apps/blog/show/40789592-trojan-sprotector =>Trojan.SProtector http://nicolascoolman.webs.com/apps/blog/show/41823682-pup-savingsbull =>PUP.SavingsBull http://nicolascoolman.webs.com/apps/blog/show/26607014-pup-1clickdownloader =>PUP.1ClickDownloader http://nicolascoolman.webs.com/apps/blog/show/27583526-pup-crossrider =>PUP.CrossRider http://nicolascoolman.webs.com/apps/blog/show/29790567-adware-installcore =>Adware.InstallCore http://nicolascoolman.webs.com/apps/blog/show/26990375-hijacker-smartbar =>Hijacker.SmartBar http://nicolascoolman.webs.com/apps/blog/show/26684723-adware-imbooster =>Adware.IMBooster http://nicolascoolman.webs.com/apps/blog/show/38737316-pup-wpmanager =>PUP.WpManager http://nicolascoolman.webs.com/apps/blog/show/31746142-toolbar-bubbledock =>PUP.BubbleDock http://nicolascoolman.webs.com/apps/blog/show/27672211-pup-v9software =>PUP.V9Software http://nicolascoolman.webs.com/apps/blog/show/32363262-adware-browsefox =>Adware.BrowseFox http://nicolascoolman.webs.com/apps/blog/show/27146838-adware-mywebsearch =>Adware.MyWebSearch ~ MSI: 14 link(s) detected in 00mn 00s End of the scan (2141 lines in 05mn 52s)(0)