~ Rapport de ZHPDiag v2014.3.19.14 - Nicolas Coolman (19/03/2014) ~ Lancé par Utilisateur (19/03/2014 15:50:36) ~ Adresse du Site Web http://nicolascoolman.webs.com ~ Forums gratuits d'Assistance à la désinfection : http://nicolascoolman.webs.com/apps/links/ ~ Traduit par Nicolas Coolman ~ Etat de la version : ~ Liste blanche : Désactivée par l'utilisateur ~ Elévation des Privilèges : OK ~ User Account Control (UAC): Deactivate by program ---\\ Navigateurs Internet MSIE: Internet Explorer v10.0.9200.16844 MFIE: Mozilla Firefox 27.0.1 (Defaut) ---\\ Informations sur les produits Windows ~ Langage: Français Windows Vista (TM) Ultimate, 32-bit Service Pack 1 (Build 6000) Windows Server License Manager Script : OK ~ Windows(R) 7, OEM_COA_SLP channel Windows ID Activation : OK ~ Windows Partial Key : XB44B Windows License : OK ~ Windows Remaining Initializations Number : 3 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK ---\\ Logiciels de protection du système avast! Internet Security v9.0.2013 Malwarebytes Anti-Malware version 1.75.0.1300 Spybot - Search & Destroy v2.1.19 ---\\ Logiciels d'optimisation du système ---\\ Logiciels de partage PeerToPeer ---\\ Surveillance de Logiciels Adobe Flash Player 12 Plugin Adobe Reader XI Java 7 Update 25 ---\\ Informations sur le système ~ Processor: x86 Family 6 Model 37 Stepping 2, GenuineIntel ~ Operating System: 32 Bits Boot mode: Normal (Normal boot) Total RAM: 3063 MB (67% free) System Restore: Activé (Enable) System drive C: has 357 GB (76%) free of 466 GB ---\\ Mode de connexion au système ~ Computer Name: UTILISATEUR-PC ~ User Name: Utilisateur ~ All Users Names: Utilisateur, UpdatusUser, HomeGroupUser$, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppZHP% : C:\Users\Utilisateur\AppData\Roaming\ZHP\ ~ %AppData% : C:\Users\Utilisateur\AppData\Roaming\ ~ %Desktop% : C:\Users\Utilisateur\Desktop\ ~ %Favorites% : C:\Users\Utilisateur\Favorites\ ~ %LocalAppData% : C:\Users\Utilisateur\AppData\Local\ ~ %StartMenu% : C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumération des unités disques C: Hard drive, Flash drive, Thumb drive (Free 357 Go of 466 Go) D: CD-ROM drive (Not Inserted) E: Hard drive, Flash drive, Thumb drive (Free 272 Go of 596 Go) F: Floppy drive, Flash card reader, USB Key (Not Inserted) G: Floppy drive, Flash card reader, USB Key (Not Inserted) H: CD-ROM drive (Free 0 Go of 0 Go) I: Floppy drive, Flash card reader, USB Key (Free 2 Go of 2 Go) Q: Hard drive, Flash drive, Thumb drive (Free 0 Go of 0 Go) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified =>Hijacker.Application [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 50 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 06:30:54.) -- C:\Windows\Explorer.exe [2616320] [MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256] [MD5.9284BA6C27D360D71A5C0ECC8456E78E] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.23/02/2014 - 07:54:46.) -- C:\Windows\System32\wininet.dll [1767936] [MD5.6D13E1406F50C66E2A95D97F22C47560] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/11/2010 - 22:29:06.) -- C:\Windows\System32\Winlogon.exe [286720] [MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 22:29:24.) -- C:\Windows\System32\sppcomapi.dll [193536] [MD5.F81BB7E487EDCEAB630A7EE66CF23913] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.14/09/2013 - 01:48:58.) -- C:\Windows\system32\Drivers\AFD.sys [338944] [MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:26:15.) -- C:\Windows\system32\Drivers\atapi.sys [21584] [MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:11:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [70656] [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\Cdrom.sys [108544] [MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 22:29:07.) -- C:\Windows\system32\Drivers\DfsC.sys [78336] [MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\HDAudBus.sys [108544] [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:11:24.) -- C:\Windows\system32\Drivers\i8042prt.sys [80896] [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 00:54:29.) -- C:\Windows\system32\Drivers\IpNat.sys [101888] [MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:17:22.) -- C:\Windows\system32\Drivers\MRxSmb.sys [123904] [MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 22:29:08.) -- C:\Windows\system32\Drivers\netBT.sys [187904] [MD5.5E43D2B0EE64123D4880DFA6626DEFDE] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 14:45:29.) -- C:\Windows\system32\Drivers\ntfs.sys [1211752] [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 00:45:35.) -- C:\Windows\system32\Drivers\Parport.sys [79360] [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.14/07/2009 - 00:54:34.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [78848] [MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 00:53:41.) -- C:\Windows\system32\Drivers\smb.sys [71168] [MD5.B459575348C20E8121D6039DA063C704] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 22:29:07.) -- C:\Windows\system32\Drivers\tdx.sys [74752] [MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\volsnap.sys [245632] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 2/379 ~ Mes musiques (My Musics) : 6/74 ~ Mes Videos (My Videos) : 1/452 ~ Mes Favoris (My Favorites) : 1/25 ~ Mes Documents (My Documents) : 1/843 ~ Mon Bureau (My Desktop) : 1/3535 ~ Menu demarrer (Programs) : 1/40 ~ Hidden Files: Scanned in 00mn 06s ---\\ Processus lancés [MD5.DB7E59960FD5534458AE3D84230A0FB1] - (...) -- C:\UsbFix\UsbFix.exe [1597440] [PID.2140] [MD5.A63DC5C2EA944E6657203E0C8EDEAF61] - (.Microsoft Corporation - COM Surrogate.) -- C:\Windows\system32\DllHost.exe [7168] [PID.1996] [MD5.7BDBFD996CE815F8AB380A298F18F87B] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8360448] [PID.1908] [MD5.E6A8ED576AB1DAF196E204BCF52DDA18] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 331.6.) -- C:\Windows\system32\nvvsvc.exe [664352] [PID.780] [MD5.A9D26626BEADF5A0641BF6B5095EF309] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [414496] [PID.804] [MD5.4B47085D81383C884F46E313E4913CA8] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [932640] [PID.1280] [MD5.CC42F104172B4A62793083D380867317] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344] [PID.1484] [MD5.3B5DA02DEA6910A709F19180746FF0CE] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [113704] [PID.1680] [MD5.0796C1E47ADB9825269E64B9DAB4E741] - (.Teruten - FsUsbDevice.) -- C:\Windows\system32\FsUsbExService.exe [233472] [PID.696] [MD5.65085456FD9A74D7F1A999520C299ECB] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376] [PID.1200] [MD5.71CE3312CBFBA3C17C8FCBC569DC52D9] - (.NeoRouter Inc. - NeoRouter Client Service.) -- C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe [1898320] [PID.1624] [MD5.95AA9E165C7DE1B64A11E8B18E91E499] - (.Safer-Networking Ltd. - Spybot-S&D 2 Scanner Service.) -- C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560] [PID.1952] [MD5.19D34534176E62F35DDB7DC7B7FF2A87] - (.Microsoft Corporation - Microsoft Application Virtualization Virtua.) -- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe [207528] [PID.2848] [MD5.1AEBDC693C74EA55FE05D51FA6573EBC] - (.Microsoft Corporation - Microsoft Application Virtualization Client.) -- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe [523944] [PID.2952] [MD5.6AE8E702D1027A9627DDE2B77BB9992B] - (.Safer-Networking Ltd. - Windows Security Center integration..) -- C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928] [PID.3076] [MD5.FD557A50A65E44041CD2FCEF4BEB04DB] - (.Microsoft Corporation - Microsoft Office Client Virtualization Serv.) -- C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.exe [822504] [PID.3276] [MD5.358A9CCA612C68EB2F07DDAD4CE1D8D7] - (.Microsoft Corporation - Microsoft Office Software Protection Platfo.) -- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.exe [4640000] [PID.3364] [MD5.CF87A1DE791347E75B98885214CED2B8] - (.Microsoft Corporation - Service de la plateforme de protection logi.) -- C:\Windows\system32\sppsvc.exe [3179520] [PID.3364] [MD5.813B806949EE12980BA93771637D0315] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1364256] [PID.1344] ~ Processes Running: Scanned in 00mn 01s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [User Data\Default] None G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Google Store v.0.2 (Activé) G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé) G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] Adblock Plus v.1.7.2, (Activé) G2 - GCE: Preference [User Data\Default] [deegloljmdbfbjhlimieancmcfombgjj] Good Noows v.3.6.100 (Activé) G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [ffdcfjdljhbehggjdkdioajnknjcpbjb] Download Accelerator Plus (DAP) v.2.1.0.1, (Activé) G2 - GCE: Preference [User Data\Default] [gfdkimpbcpahaombhbimeihdjnejgicl] Feedback v.1.0 (Activé) G2 - GCE: Preference [User Data\Default] [gheikhdfflhlbemfmhcfpeblehemeklp] Planetarium v.1.1.2 (Activé) G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock v.2.6.16, (Activé) G2 - GCE: Preference [User Data\Default] [hfeonckpgplpefbagdnejdgokiihhifm] Le Petit Érudit v.1.7 (Activé) G2 - GCE: Preference [User Data\Default] [hjaooagfdhdhmbfchnkhggjmacjlacla] Tabs to the front! v.0.2.4 (Activé) G2 - GCE: Preference [User Data\Default] [jbolfgndggfhhpbnkgnpjkfhinclbigj] Freemake Video Converter v.1.0.0 (Désactivé) G2 - GCE: Preference [User Data\Default] [jfmjfhklogoienhpfnppmbcbjfjnkonk] RealPlayer HTML5Video Downloader Extension v.1.5 (Désactivé) G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [mihcahmgecmbnbcchbopgniflfhgnkff] Vérificateur de messages Google v.4.4.0 (Activé) G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Wallet v.0.0.6.0 (Activé) G2 - GCE: Preference [User Data\Default] [penkfbldfkaelnnhblmfmajlggdielfm] Greyscale v.1.0 (Activé) G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé) G2 - GCE: Preference [User Data\Default] [pmcdjmebmeoobmdghjbjhbifoocbcmaj] Learn Spanish - Qué Onda v.1.77.1 (Activé) ~ Google Browser: 21 Scanned in 00mn 02s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 11.0.06.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll =>.© P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files\Mozilla Firefox\Plugins\nppl3260.dll =>.© P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\nprjplug.dll =>.© P2 - FPN:Firefox Plugin Navigator . (.RealPlayer - RealPlayer Download Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\nprpplugin.dll =>.© P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 12.0.) -- C:\Windows\system32\Adobe\Director\np32dsw_1200112.dll P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (...) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll P2 - FPN: [HKLM] [@canon.com/EPPEX] - (.CANON INC. - CANON iMAGE GATEWAY Album Plugin Utility Module.) -- C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.dll P2 - FPN: [HKLM] [@google.com/npPicasa3,version=3.0.0] - (.Google, Inc. - Picasa plugin.) -- C:\Program Files\Google\Picasa3\npPicasa3.dll P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.25.2] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Windows\system32\npDeployJava1.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.25.2] - (.Oracle Corporation - Next Generation Java Plug-in 10.25.2 for Mozilla browsers.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll P2 - FPN: [HKLM] [@microsoft.com/GENUINE] - (.Microsoft Corporation - Windows Activation Technologies Plugin for Mozilla.) -- C:\Windows\system32\Wat\npWatWeb.dll P2 - FPN: [HKLM] [@microsoft.com/SharePoint,version=14.0] - (.Microsoft Corporation - The plug-in allows you to open and edit files using Microsoft Office a.) -- C:\Program Files\Microsoft Office\Office14\NPSPWRAP.dll P2 - FPN: [HKLM] [@nokia.com/EnablerPlugin] - (.Pas de propriétaire - Nokia Suite Enabler Plugin.) -- C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll P2 - FPN: [HKLM] [@nvidia.com/3DVision] - (.NVIDIA Corporation - NVIDIA 3D Vision plugin for Mozilla browsers.) -- C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll P2 - FPN: [HKLM] [@nvidia.com/3DVisionStreaming] - (.NVIDIA Corporation - NVIDIA 3D Vision Streaming plugin for Mozilla browsers.) -- C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll P2 - FPN: [HKLM] [@real.com/nppl3260;version=15.0.5.109] - (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- c:\program files\real\realplayer\Netscape6\nppl3260.dll P2 - FPN: [HKLM] [@real.com/nprjplug;version=15.0.5.109] - (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- c:\program files\real\realplayer\Netscape6\nprjplug.dll P2 - FPN: [HKLM] [@real.com/nprpchromebrowserrecordext;version=15.0.5.109] - (.RealNetworks, Inc. - RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll P2 - FPN: [HKLM] [@real.com/nprphtml5videoshim;version=15.0.5.109] - (.RealNetworks, Inc. - RealPlayer(tm) HTML5VideoShim Plug-In.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll P2 - FPN: [HKLM] [@real.com/nprpplugin;version=15.0.5.109] - (.RealPlayer - RealPlayer Download Plugin.) -- c:\program files\real\realplayer\Netscape6\nprpplugin.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.1] - (.VideoLAN - VLC media player Web Plugin 2.1.0.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll =>.VideoLAN P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.2] - (.VideoLAN - VLC media player Web Plugin 2.1.0.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll =>.VideoLAN P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 11.0.06.) -- C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll P2 - FPN: [HKCU] [egtcps.com/captures] - (...) -- C:\Program Files\EagleGet\captures.dll (.not file.) ~ Firefox Browser: 29 Scanned in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.google.com R3 - URLSearchHook: (no name) - {81fae9c9-cfbd-4cb3-8322-412e72f55f65} . (...) (No version) -- (.not file.) R3 - URLSearchHook: (no name) - {ef79f67a-6ad7-4715-a0f8-932fca442023} . (...) (No version) -- (.not file.) R3 - URLSearchHook: (no name) - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} . (...) (No version) -- (.not file.) R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (...) (No version) -- (.not file.) R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ~ IE Browser: 17 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = localhost:21320 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 19 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealPlayer - RealPlayer Download and Record Plugin.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll =>.© O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} . (.pdfforge GbR - PDF Architect Helper.) -- C:\Program Files\PDF Architect\PDFIEHelper.dll =>.© O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll =>.© O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.© O2 - BHO: FlashGetBHO - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} . (.Trend Media Group - FlashGet Browser Helper Object.) -- C:\Users\Utilisateur\AppData\Roaming\FlashGetBHO\FlashGetBHO.dll =>.© O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll =>.© ~ BHO: 12 Scanned in 00mn 00s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: avast! Online Security - [HKLM]{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O3 - Toolbar\WebBrowser: (no name) - [HKCU]{05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{C55BBCD6-41AD-48AD-9953-3609C48EACC7} Clé orpheline ~ Toolbar: Scanned in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - GS\Desktop [Public]: Aurora.lnk . (.Mozilla Corporation - Aurora.) -- C:\Program Files\Aurora\firefox.exe O4 - GS\Desktop [Public]: avast! Internet Security.lnk . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe O4 - GS\Desktop [Public]: avast! SafeZone.lnk . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe O4 - GS\Desktop [Public]: Freemake Video Converter.lnk . (.Freemake - Freemake Video Converter.) -- C:\Program Files\Freemake\Freemake Video Converter\FreemakeVideoConverter.exe O4 - GS\Desktop [Public]: Glary Utilities 4.lnk . (.Glarysoft Ltd - Glary Utilities 4.) -- C:\Program Files\Glary Utilities 4\Integrator.exe O4 - GS\Desktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe O4 - GS\Desktop [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation O4 - GS\Desktop [Public]: Nokia Suite.lnk . (.Nokia - Nokia Suite.) -- C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe O4 - GS\Desktop [Public]: Spybot-S&D Start Center.lnk . (.Safer-Networking Ltd. - Start Center.) -- C:\Program Files\Spybot - Search & Destroy 2\SDWelcome.exe O4 - GS\Desktop [Public]: Trojan Remover.lnk . (.Simply Super Software - Trojan Remover.) -- C:\Program Files\Trojan Remover\Rmvtrjan.exe O4 - GS\Desktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player 2.1.2.) -- C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN O4 - GS\Program [Public]: Adobe Reader XI.lnk . (...) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico O4 - GS\Program [Public]: Apple Software Update.lnk . (...) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc O4 - GS\Program [Public]: Aurora.lnk . (.Mozilla Corporation - Aurora.) -- C:\Program Files\Aurora\firefox.exe O4 - GS\Program [Public]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe O4 - GS\Program [Public]: GIMP 2.lnk . (.Spencer Kimball, Peter Mattis and the GIMP - GNU Image Manipulation Program.) -- C:\Program Files\GIMP 2\bin\gimp-2.8.exe O4 - GS\Program [Public]: Glary Utilities 4.lnk . (.Glarysoft Ltd - Glary Utilities 4.) -- C:\Program Files\Glary Utilities 4\Integrator.exe O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O4 - GS\Program [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation O4 - GS\Program [Public]: Power Video Downloader.lnk . (.T4Esoft - Descarga videos desde miles de webs.) -- C:\Program Files\Power Video Downloader\Power Video Downloader.exe O4 - GS\Program [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Spybot-S&D Start Center.lnk . (.Safer-Networking Ltd. - Start Center.) -- C:\Program Files\Spybot - Search & Destroy 2\SDWelcome.exe O4 - GS\Program [Public]: Visionneuse Microsoft PowerPoint .lnk . (...) -- C:\Windows\Installer\{95140000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe O4 - GS\Program [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) -- C:\Windows\system32\WindowsAnytimeUpgradeUI.exe O4 - GS\Program [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Création de DVD Windows.) -- C:\Program Files\DVD Maker\DVDMaker.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Program [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) -- C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) -- C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) -- C:\Windows\system32\mblctr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Mise en route.) -- C:\Windows\system32\OobeFldr.dll =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) -- C:\Windows\system32\perfmon.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) -- C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\system32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\system32\taskschd.msc O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) -- C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) -- C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\QuickLaunch [Utilisateur]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe O4 - GS\QuickLaunch [Utilisateur]: Glary Utilities 4.lnk . (.Glarysoft Ltd - Glary Utilities 4.) -- C:\Program Files\Glary Utilities 4\Integrator.exe O4 - GS\QuickLaunch [Utilisateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\QuickLaunch [Utilisateur]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation O4 - GS\QuickLaunch [Utilisateur]: Picasa 3.lnk . (.Google Inc. - Picasa.) -- C:\Program Files\Google\Picasa3\Picasa3.exe O4 - GS\QuickLaunch [Utilisateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent O4 - GS\TaskBar [Utilisateur]: Aurora.lnk . (.Mozilla Corporation - Aurora.) -- C:\Program Files\Aurora\firefox.exe O4 - GS\TaskBar [Utilisateur]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\TaskBar [Utilisateur]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe O4 - GS\TaskBar [Utilisateur]: Chameleon Shutdown.lnk . (.NeoSoft Tools - It allows you to switch off, restart, hiber.) -- C:\Program Files\Chameleon Shutdown\shutdown.exe O4 - GS\TaskBar [Utilisateur]: Freemake Video Converter.lnk . (.Freemake - Freemake Video Converter.) -- C:\Program Files\Freemake\Freemake Video Converter\FreemakeVideoConverter.exe O4 - GS\TaskBar [Utilisateur]: gimp-2.8 - Raccourci.lnk . (.Spencer Kimball, Peter Mattis and the GIMP - GNU Image Manipulation Program.) -- C:\Program Files\GIMP 2\bin\gimp-2.8.exe O4 - GS\TaskBar [Utilisateur]: Microsoft Excel Starter 2010.lnk . (.Microsoft Corporation - Microsoft Office Client Virtualization Hand.) -- C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVH.exe O4 - GS\TaskBar [Utilisateur]: Microsoft Word Starter 2010.lnk . (.Microsoft Corporation - Microsoft Office Client Virtualization Hand.) -- C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVH.exe O4 - GS\TaskBar [Utilisateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O4 - GS\TaskBar [Utilisateur]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\TaskBar [Utilisateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [Utilisateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent O4 - GS\Program [Utilisateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\Accessories [Utilisateur]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Utilisateur]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Utilisateur]: Run.lnk - Clé orpheline O4 - GS\Accessories [Utilisateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Utilisateur]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\SystemTools [Utilisateur]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\SendTo [Utilisateur]: Disque de données .lnk . (...) -- C:\Program Files\Complex\JetBee\jetbee.exe (.not file.) O4 - GS\SendTo [Utilisateur]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe O4 - GS\SendTo [Utilisateur]: Freemake Video Converter.lnk . (.Freemake - Freemake Video Converter.) -- C:\Program Files\Freemake\Freemake Video Converter\FreemakeVideoConverter.exe O4 - GS\SendTo [Utilisateur]: Media Center (2).lnk . (.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O4 - GS\Desktop [Utilisateur]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe O4 - GS\Desktop [Utilisateur]: FreeOCR.lnk . (...) -- C:\FreeOCR\FreeOCR.exe O4 - GS\Desktop [Utilisateur]: HideIPVPN.lnk . (.HideIPVPN Team - Starter.) -- C:\Program Files\HideIPVPN\HideIPVPN.exe O4 - GS\Desktop [Utilisateur]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) -- C:\Program Files\VS Revo Group\Revo Uninstaller\Revouninstaller.exe O4 - GS\Desktop [Utilisateur]: UsbFix.lnk . (...) -- C:\UsbFix\UsbFix.exe O4 - GS\Desktop [Utilisateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman O4 - GS\Desktop [Utilisateur]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman O4 - GS\QuickLaunch [UpdatusUser]: FlashGet3.lnk . (...) -- C:\Program Files\FlashGet Network\FlashGet 3\Flashget3.exe (.not file.) O4 - GS\QuickLaunch [UpdatusUser]: Picasa 3.lnk . (.Google Inc. - Picasa.) -- C:\Program Files\Google\Picasa3\Picasa3.exe O4 - GS\QuickLaunch [UpdatusUser]: Power Video Downloader.lnk . (.T4Esoft - Descarga videos desde miles de webs.) -- C:\Program Files\Power Video Downloader\Power Video Downloader.exe O4 - GS\Accessories [UpdatusUser]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [UpdatusUser]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [UpdatusUser]: Run.lnk - Clé orpheline O4 - GS\Accessories [UpdatusUser]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [UpdatusUser]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\SendTo [UpdatusUser]: Freemake Video Converter.lnk . (.Freemake - Freemake Video Converter.) -- C:\Program Files\Freemake\Freemake Video Converter\FreemakeVideoConverter.exe O4 - GS\Desktop [UpdatusUser]: Download Accelerator Plus (DAP).lnk . (...) -- C:\Program Files\DAP\DAP.exe (.not file.) O4 - GS\Desktop [UpdatusUser]: FlashGet3.lnk . (...) -- C:\Program Files\FlashGet Network\FlashGet 3\Flashget3.exe (.not file.) O4 - GS\Desktop [UpdatusUser]: HideIPVPN.lnk . (.HideIPVPN Team - Starter.) -- C:\Program Files\HideIPVPN\HideIPVPN.exe O4 - GS\Desktop [UpdatusUser]: HijackThis.lnk . (...) -- C:\Program Files\Trend Micro\HijackThis\HijackThis.exe (.not file.) O4 - GS\Desktop [UpdatusUser]: My DAP Downloads.lnk - Clé orpheline O4 - GS\Desktop [UpdatusUser]: PhotoFiltre 7.lnk . (...) -- C:\Program Files\PhotoFiltre 7\PhotoFiltre7.exe (.not file.) O4 - GS\Desktop [UpdatusUser]: Power Video Downloader.lnk . (.T4Esoft - Descarga videos desde miles de webs.) -- C:\Program Files\Power Video Downloader\Power Video Downloader.exe O4 - GS\Desktop [UpdatusUser]: Proxifier.lnk . (...) -- C:\Program Files\Proxifier\Proxifier.exe (.not file.) ~ Global Startup: 102 Scanned in 00mn 02s ---\\ Applications lancées au démarrage du sytème (O4) O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation ~ Application: Scanned in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ IE Control Panel: 1 Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll =>.© O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll =>.© O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll =>.© O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll =>.© O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.© O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll =>.© O10 - Broken Internet access because of LSP provider (.not file.) -- PrxerNsp.dll =>.© ~ Winsock: 7 Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{0C6E323A-9703-4A6B-B133-37CE1FF2BABB}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{5C78625B-7A44-48B9-A492-6168C644B542}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{7201D4FE-DA97-4D8C-8BBB-01E7320E1741}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{F9A3B3F2-8917-4F62-8D7B-4909944DA5A4}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{0C6E323A-9703-4A6B-B133-37CE1FF2BABB}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{5C78625B-7A44-48B9-A492-6168C644B542}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{7201D4FE-DA97-4D8C-8BBB-01E7320E1741}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{F9A3B3F2-8917-4F62-8D7B-4909944DA5A4}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{0C6E323A-9703-4A6B-B133-37CE1FF2BABB}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{5C78625B-7A44-48B9-A492-6168C644B542}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{7201D4FE-DA97-4D8C-8BBB-01E7320E1741}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{F9A3B3F2-8917-4F62-8D7B-4909944DA5A4}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 ~ Domain: Scanned in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: SDWinLogon . (...) -- SDWinLogon.dll ~ Winlogon: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ SSODL: 1 Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.© O23 - Service: avast! Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe =>.© O23 - Service: FsUsbExService (FsUsbExService) . (.Teruten - FsUsbDevice.) - C:\Windows\system32\FsUsbExService.exe =>.© O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe =>.© O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe =>.© O23 - Service: NeoRouter Client Service (NRClientService) . (.NeoRouter Inc. - NeoRouter Client Service.) - C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 331.6.) - C:\Windows\system32\nvvsvc.exe =>.© O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe =>.© O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) . (.Safer-Networking Ltd. - Spybot-S&D 2 Scanner Service.) - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe =>.© O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) . (.Safer-Networking Ltd. - Spybot-S&D 2 Background update service.) - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe =>.© O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) . (.Safer-Networking Ltd. - Windows Security Center integration..) - C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.© ~ Services: 12 Scanned in 00mn 05s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) =>.© ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ Enumère les données de BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk * ) - File not found O34 - HKLM BootExecute: (BootDefrag.exe) - File not found ~ BEX: 2 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GlaryInitialize 4.job [332] [MD5.00000000000000000000000000000000] [APT] [Ad-Aware Antivirus Scheduled Scan] (...) -- C:\Program Files\AD-AWA~1\AdAwareLauncher.exe (.not file.) [0] [MD5.9D96B0D5855FD1B98023B3EEC9F06786] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [257928] =>.© [MD5.D4F602B1F775B5827932D3C5B04A3FD2] [APT] [AutoKMS] (...) -- C:\Windows\AutoKMS\AutoKMS.exe [3372032] =>Trojan.Trojan.Keygen [MD5.F82F374417148CF545221DD88876219F] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [783728] =>.© [MD5.00000000000000000000000000000000] [APT] [Express Files Updater] (...) -- C:\Program Files\ExpressFiles\EFupdater.exe (.not file.) [0] =>Adware.ExpressFiles [MD5.754D5DFC05107382F06F225BEC270A47] [APT] [GlaryInitialize 4] (.Glarysoft Ltd.) -- C:\Program Files\Glary Utilities 4\Initialize.exe [99616] =>.© [MD5.D0983CEA470D273370492D358D69E61B] [APT] [GU4SkipUAC] (.Glarysoft Ltd.) -- C:\Program Files\Glary Utilities 4\Integrator.exe [783648] =>.© [MD5.00000000000000000000000000000000] [APT] [HostsGuard] (...) -- C:\Program Files\Hosts_Anti_Adwares_PUPs\HOSTS_Anti-Adware.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [Jaksta Media Recorder 97ad876a-c852-413f-8426-b8081ef72af6] (...) -- C:\Program Files\Jaksta Technologies\Jaksta Media Recorder\jmrp.exe (.not file.) [0] [MD5.F6CC2FD47787F6E7045D544E1B568458] [APT] [RealUpgradeLogonTaskS-1-5-21-494048827-1650175510-1422529119-1000] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [178840] =>.© [MD5.F6CC2FD47787F6E7045D544E1B568458] [APT] [RealUpgradeScheduledTaskS-1-5-21-494048827-1650175510-1422529119-1000] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [178840] =>.© [MD5.00000000000000000000000000000000] [APT] [YourFile DownloaderUpdate] (...) -- C:\Program Files\YourFileDownloader\YourFileUpdater.exe (.not file.) [0] =>PUP.YourFileDownloader [MD5.00000000000000000000000000000000] [APT] [{0A267822-6323-4C92-9B13-E814BD3809F2}] (...) -- C:\Users\Utilisateur\Downloads\nero-burning-rom_nero_burning_rom_12.0.02900_francais_402162.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{0CB10F2F-9759-4C59-B5F9-24C606BAF180}] (...) -- C:\Users\Utilisateur\Downloads\Acer eRecovery 2.5.4012\eRecovery_v2.5.4012.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{14920D6D-2EF8-4273-BC2E-C5FF1A02413A}] (...) -- C:\Users\Utilisateur\Videos\u torrent films t‚l‚charg‚s\Suburban Mysteries - Le Passe Enfoui.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{2439B3CA-B49D-4A55-92D2-2626E9B122D3}] (...) -- C:\Users\Utilisateur\AppData\Local\Temp\Temp1_General-CleanTool.zip\General-CleanTool.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{46D6E613-4FBA-442D-A646-CAC485045C80}] (...) -- C:\Program Files\MyTorrentClient\Halite.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{48308566-4638-495B-ADA3-2B35FC8F6F63}] (...) -- C:\Program Files\MyTorrentClient\Halite.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{499B9A51-CAF4-4428-BA1E-DB08704CA9B9}] (...) -- C:\USERS\Utilisateur\APPDATA\LOCAL\TEMP\wz4c31\auxsetup.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{49FC6E54-1ABF-49CB-8353-0C434E0AE578}] (...) -- C:\Program Files\Mystery Case Files - 13th Skull\Uninstall.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{51446945-8B5E-43FD-83CB-BFE5B7F394B1}] (...) -- C:\USERS\Utilisateur\APPDATA\LOCAL\TEMP\wz6a1d\auxsetup.exe (.not file.) [0] [MD5.DE76D8D3E89686D2842520CC0D55AF44] [APT] [{5195697E-4A74-4A76-A00D-2858CF1D90D4}] (.VS Revo Group.) -- C:\Program Files\VS Revo Group\Revo Uninstaller\Revouninstaller.exe [3161648] =>.© [MD5.00000000000000000000000000000000] [APT] [{563356CA-0045-4EEE-AD15-C5EC87397BA8}] (...) -- C:\Users\Utilisateur\Desktop\Power_Video_Downloader.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{5BDB177C-A995-4841-8A5C-93B6EF990D61}] (...) -- C:\Users\Utilisateur\Downloads\Elcomsoft Advanced Archive Password Recovery Professional v4.53\setup.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{749D2F9D-8C07-474D-81D9-8D6A16F82EE0}] (...) -- C:\Users\Utilisateur\Downloads\Nero_KwikMedia-12.0.02100_free.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{8C779E7A-022C-41AF-AF07-651898956E69}] (...) -- C:\USERS\Utilisateur\APPDATA\LOCAL\TEMP\wzc5f9\Surface - Le Jumeau de l'Autre Monde Edition Collector\Uninstall.exe (.not file.) [0] [MD5.C155A13687144076286989EF078112C2] [APT] [{9C1FA848-303B-4790-9D41-6A10E78CB4EF}] (.Nicolas Coolman.) -- C:\Program Files\ZHPDiag\ZHPFix\ZHPhep.exe [1917440] =>.© [MD5.00000000000000000000000000000000] [APT] [{9E0A9923-F6D7-49BB-886B-44C3B6C90AC7}] (...) -- C:\Users\Utilisateur\Downloads\windows_8_transformation_pack_3_0_by_dncube-d4ohwa5\Win8TP3\Win8TP3setup.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{A381394E-D6F2-42FE-B758-E1788459364F}] (...) -- C:\Users\Utilisateur\Desktop\Nero_KwikMedia-12.0.01300_free.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{A7277E11-F1C7-4812-B168-65C55A2A0894}] (...) -- C:\Users\Utilisateur\Videos\u torrent films t‚l‚charg‚s\Nero Burning ROM 12.0.00300 + Key\Nero_BurningROM-12.0.00300_trial.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{B818ACEC-2E5C-4A03-AFD0-DF19C4F361FB}] (...) -- C:\Users\Utilisateur\Downloads\windows_8_transformation_pack_3_0_by_dncube-d4ohwa5\Win8TP3\Win8TP3setup.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{C9052A9B-D1DB-470A-839F-19738813C9B6}] (...) -- C:\Users\Utilisateur\Downloads\windows_8_transformation_pack_3_0_by_dncube-d4ohwa5\Win8TP3\Win8TP3setup.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{DA55B9C2-3B5F-4486-83C7-E71BEA0C921B}] (...) -- C:\Program Files\VS Revo Group\Revo Uninstaller Pro\x86\RevoUninPro.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{E065BC0E-E5E0-4C49-8E8F-1C1CBB63DB35}] (...) -- C:\Users\Utilisateur\Downloads\startuplite-setup-1.07.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{E86A3A13-67E6-4C5D-9F63-E0BFC1FD229D}] (...) -- C:\Program Files\Mystery Case Files - 13th Skull\Uninstall.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{EBD696FE-6414-4E6C-8E9A-054D8D74B96A}] (...) -- C:\Users\Utilisateur\Downloads\StealthBastard-1.08.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{EE0FFCD4-A4ED-4119-8642-319462753307}] (...) -- C:\Users\Utilisateur\Downloads\3d_chess_unlimited_share.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{F06995CC-8B50-47AD-993C-3DE440D763A2}] (...) -- C:\USERS\Utilisateur\APPDATA\LOCAL\TEMP\wz42eb\auxsetup.exe (.not file.) [0] [MD5.C155A13687144076286989EF078112C2] [APT] [{F2B90ABB-A9CF-43BD-A4CA-A629D4982C4D}] (.Nicolas Coolman.) -- C:\Program Files\ZHPDiag\ZHPhep.exe [1917440] =>.© [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984] =>.© [MD5.01F441F655D8CC4214BDF411D39D04AF] [APT] [Check for updates] (.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe [3881928] =>.© [MD5.A58EAD767EAE964ED463FEDF25E750A2] [APT] [Refresh immunization] (.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe [3609552] =>.© [MD5.03250DB0886A23B1F6C077C5D9F152B0] [APT] [Scan the system] (.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe [3859928] =>.© ~ Scheduled Task: 48 Scanned in 00mn 04s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.© O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.© O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll =>.© O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.© O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll =>.© O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.© O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.© O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe =>.© O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll =>.© ~ Active Setup: 9 Scanned in 00mn 00s ---\\ Pilotes lancés au démarrage du système (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys =>.© O41 - Driver: (aswKbd) . (.AVAST Software - avast! Keyboard Filter Driver.) - C:\Windows\system32\drivers\aswKbd.sys =>.© O41 - Driver: (aswNdisFlt) . (.AVAST Software - avast! Filtering NDIS driver.) - C:\Windows\System32\DRIVERS\aswNdisFlt.sys =>.© O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\drivers\aswRdr2.sys =>.© O41 - Driver: (aswSnx) . (.AVAST Software - avast! Virtualization Driver.) - C:\Windows\system32\drivers\aswSnx.sys =>.© O41 - Driver: (aswSP) . (.AVAST Software - avast! self protection module.) - C:\Windows\system32\drivers\aswSP.sys =>.© O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys =>.© O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys =>.© O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys =>.© O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys =>.© O41 - Driver: (HssDRV6) . (.AnchorFree Inc. - Hotspot Shield Routing Driver.) - C:\Windows\System32\DRIVERS\hssdrv6.sys =>.© O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\System32\DRIVERS\mssmbios.sys =>.© O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys =>.© O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys =>.© O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys =>.© O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys =>.© O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys =>.© O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys =>.© O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys =>.© O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys =>.© O41 - Driver: (Serial) . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) - C:\Windows\System32\DRIVERS\serial.sys =>.© O41 - Driver: (StarPortLite) . (.Rocket Division Software - StarPort Storage Controller Lite.) - C:\Windows\System32\DRIVERS\StarPortLite.sys =>.© O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys =>.© O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys =>.© O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys =>.© O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys =>.© O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys =>.© ~ Drivers: 81 Scanned in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: 54M Wireless USB Adapter - (.USB.) [HKLM] -- {59061D20-CFC3-4C2E-8B41-9243678ACE8D} =>.© O42 - Logiciel: 7-Zip 9.20 - (...) [HKLM] -- 7-Zip =>.© O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR =>.© O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {52E225FC-FCB4-41F7-837B-6E37FB05BD7B} =>.© O42 - Logiciel: Adobe Flash Player 12 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.© O42 - Logiciel: Adobe Flash Player 12 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin =>.© O42 - Logiciel: Adobe Reader XI (11.0.06) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} =>.© O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player =>.© O42 - Logiciel: Angry Birds Star Wars - (.Rovio Entertainment Ltd..) [HKLM] -- {C336AA55-BBA3-4908-886F-25CF6D302D13} =>.© O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {5D09C772-ECB3-442B-9CC6-B4341C78FDC2} =>.© O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {E14ADE0E-75F3-4A46-87E5-26692DD626EC} =>.© O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.© O42 - Logiciel: Aurora 29.0a2 (x86 fr) - (.Mozilla.) [HKLM] -- Aurora 29.0a2 (x86 fr) =>.© O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 =>.© O42 - Logiciel: Canon Easy-PhotoPrint EX - (...) [HKLM] -- Easy-PhotoPrint EX =>.© O42 - Logiciel: Canon MG5100 series MP Drivers - (...) [HKLM] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5100_series =>.© O42 - Logiciel: Canon MP Navigator EX 4.0 - (...) [HKLM] -- MP Navigator EX 4.0 =>.© O42 - Logiciel: Canon My Printer - (...) [HKLM] -- CanonMyPrinter =>.© O42 - Logiciel: Chameleon Shutdown 1.2.2.40 - (.NeoSoft Tools.) [HKLM] -- Chameleon Shutdown =>.© O42 - Logiciel: Clavier+ 10.6.3 - (.Guillaume Ryder.) [HKLM] -- Clavier+_is1 =>.© O42 - Logiciel: FreeOCR v4.2 - (...) [HKLM] -- freeocr_is1 =>.© O42 - Logiciel: Freemake Video Converter version 4.1.3 - (.Ellora Assets Corporation.) [HKLM] -- Freemake Video Converter_is1 =>.© O42 - Logiciel: GIMP 2.8.4 - (.The GIMP Team.) [HKLM] -- GIMP-2_is1 =>.© O42 - Logiciel: GemPcCCID - (.Gemalto.) [HKLM] -- {8BD3AFAF-636E-4516-A7E8-D57CCDBE28B8} =>.© O42 - Logiciel: Glary Utilities PRO 4.7 - (.Glarysoft Ltd.) [HKLM] -- Glary Utilities 4 =>.© O42 - Logiciel: HideIPVPN 3.0.0.2 - (...) [HKLM] -- HideIPVPN O42 - Logiciel: Java 7 Update 25 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217025FF} =>.© O42 - Logiciel: JavaFX 2.1.1 - (.Oracle Corporation.) [HKLM] -- {1111706F-666A-4037-7777-211328764D10} =>.© O42 - Logiciel: MSVC80_x86_v2 - (.Nokia.) [HKLM] -- {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6} =>.© O42 - Logiciel: MSVC90_x86 - (.Nokia.) [HKLM] -- {AF111648-99A1-453E-81DD-80DBBF6DAD0D} =>.© O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.© O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.© O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1 =>.© O42 - Logiciel: Mises à jour NVIDIA 1.15.2 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.© O42 - Logiciel: Mozilla Firefox 27.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 27.0.1 (x86 fr) =>.© O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.© O42 - Logiciel: Mozilla Thunderbird 24.3.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird 24.3.0 (x86 fr) =>.© O42 - Logiciel: NVIDIA Logiciel système PhysX 9.12.1031 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.© O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {8B922CF8-8A6C-41CE-A858-F1755D7F5D29} =>.© O42 - Logiciel: NVIDIA Pilote 3D Vision 331.65 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision =>.© O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 314.07 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB =>.© O42 - Logiciel: NVIDIA Pilote graphique 331.65 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.© O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM] -- NVIDIAStereo =>.© O42 - Logiciel: NeoRouter - (...) [HKLM] -- NeoRouter O42 - Logiciel: Nokia Connectivity Cable Driver - (.Nokia.) [HKLM] -- {29373274-977E-413C-A4DE-DC0F8E80C429} =>.© O42 - Logiciel: Nokia Suite - (.Nokia.) [HKLM] -- Nokia Suite =>.© O42 - Logiciel: Nokia Suite - (.Nokia.) [HKLM] -- {EDB188F5-D8E8-42EE-89E0-F212DA48CB81} =>.© O42 - Logiciel: PC Connectivity Solution - (.Nokia.) [HKLM] -- {6D01D1B1-17BD-4F10-BB11-F08F0C47D42B} =>.© O42 - Logiciel: PDF Architect - (.pdfforge.) [HKLM] -- {30B41B7A-3C9D-44DE-A7A1-949011F33CC3} =>.© O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} =>.© O42 - Logiciel: Package de pilotes Windows - Nokia pccsmcfd “LegacyDriver” (05/31/2012 7.1 - (.Nokia.) [HKLM] -- 17D063A0A9F5D5A225B76B1D9BCB5ADBE85C8382 =>.© O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3 =>.© O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM] -- RealPlayer 15.0 =>.© O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB} =>.© O42 - Logiciel: Realtek Ethernet Controller Driver For Windows 7 - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.© O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM] -- Revo Uninstaller =>.© O42 - Logiciel: Spybot - Search & Destroy - (.Safer-Networking Ltd..) [HKLM] -- {B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1 =>.© O42 - Logiciel: Telecharger et Installer Packages - (...) [HKCU] -- Telecharger et Installer Packages =>.© O42 - Logiciel: Trojan Remover 6.9.1 - (.Simply Super Software.) [HKLM] -- Trojan Remover_is1 =>.© O42 - Logiciel: VLC media player 2.1.2 - (.VideoLAN.) [HKLM] -- VLC media player =>.© O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM] -- {95140000-00AF-040C-0000-0000000FF1CE} =>.© O42 - Logiciel: WinPcap 4.1.3 - (.Riverbed Technology, Inc..) [HKLM] -- WinPcapInst =>.© O42 - Logiciel: WinRAR 5.00 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.© O42 - Logiciel: Windows Mobile Device Updater Component - (.Microsoft Corporation.) [HKLM] -- {F2CB8C3C-9C9E-4FAB-9067-655601C5F748} =>.© O42 - Logiciel: Zune - (.Microsoft Corporation.) [HKLM] -- Zune =>.© O42 - Logiciel: Zune - (.Microsoft Corporation.) [HKLM] -- {9B75648B-6C30-4A0D-9DE6-0D09D20AF5A5} =>.© O42 - Logiciel: Zune Language Pack (CHS) - (.Microsoft Corporation.) [HKLM] -- {2A9DFFD8-4E09-4B91-B957-454805B0D7C4} =>.© O42 - Logiciel: Zune Language Pack (CHT) - (.Microsoft Corporation.) [HKLM] -- {A5A53EA8-A11E-49F0-BDF5-AE536426A31A} =>.© O42 - Logiciel: Zune Language Pack (CSY) - (.Microsoft Corporation.) [HKLM] -- {A8F2E50B-86E2-4D96-9BD2-9758BCC6F9B3} =>.© O42 - Logiciel: Zune Language Pack (DAN) - (.Microsoft Corporation.) [HKLM] -- {8B112338-2B08-4851-AF84-E7CAD74CEB32} =>.© O42 - Logiciel: Zune Language Pack (DEU) - (.Microsoft Corporation.) [HKLM] -- {BE236D9A-52EC-4A17-82DA-84B5EAD31E3E} =>.© O42 - Logiciel: Zune Language Pack (ELL) - (.Microsoft Corporation.) [HKLM] -- {3589A659-F732-4E65-A89A-5438C332E59D} =>.© O42 - Logiciel: Zune Language Pack (ESP) - (.Microsoft Corporation.) [HKLM] -- {6B33492E-FBBC-4EC3-8738-09E16E395A10} =>.© O42 - Logiciel: Zune Language Pack (FIN) - (.Microsoft Corporation.) [HKLM] -- {B4870774-5F3A-46D9-9DFE-06FB5599E26B} =>.© O42 - Logiciel: Zune Language Pack (FRA) - (.Microsoft Corporation.) [HKLM] -- {C68D33B1-0204-4EBE-BC45-A6E432B1D13A} =>.© O42 - Logiciel: Zune Language Pack (HUN) - (.Microsoft Corporation.) [HKLM] -- {C6BE19C6-B102-4038-B2A6-1C313872DBB4} =>.© O42 - Logiciel: Zune Language Pack (IND) - (.Microsoft Corporation.) [HKLM] -- {92ECE3F9-591E-4C12-8A62-B9FCE38BF646} =>.© O42 - Logiciel: Zune Language Pack (ITA) - (.Microsoft Corporation.) [HKLM] -- {C5D37FFA-7483-410B-982B-91E93FD3B7DA} =>.© O42 - Logiciel: Zune Language Pack (JPN) - (.Microsoft Corporation.) [HKLM] -- {D8A781C9-3892-4E2E-9320-480CF896CFBB} =>.© O42 - Logiciel: Zune Language Pack (KOR) - (.Microsoft Corporation.) [HKLM] -- {51C839E1-2BE4-4E77-A1BA-CCEA5DAFA741} =>.© O42 - Logiciel: Zune Language Pack (MSL) - (.Microsoft Corporation.) [HKLM] -- {76BA306B-2AA0-47C0-AB6B-F313AB56C136} =>.© O42 - Logiciel: Zune Language Pack (NLD) - (.Microsoft Corporation.) [HKLM] -- {6740BCB0-5863-47F4-80F4-44F394DE4FE2} =>.© O42 - Logiciel: Zune Language Pack (NOR) - (.Microsoft Corporation.) [HKLM] -- {5DEFD397-4012-46C3-B6DA-E8013E660772} =>.© O42 - Logiciel: Zune Language Pack (PLK) - (.Microsoft Corporation.) [HKLM] -- {8960A0A1-BB5A-479E-92CF-65AB9D684B43} =>.© O42 - Logiciel: Zune Language Pack (PTB) - (.Microsoft Corporation.) [HKLM] -- {07EEE598-5F21-4B57-B40B-46592625B3D9} =>.© O42 - Logiciel: Zune Language Pack (PTG) - (.Microsoft Corporation.) [HKLM] -- {5C93E291-A1CC-4E51-85C6-E194209FCDB4} =>.© O42 - Logiciel: Zune Language Pack (RUS) - (.Microsoft Corporation.) [HKLM] -- {57C51D56-B287-4C11-9192-EC3C46EF76A4} =>.© O42 - Logiciel: Zune Language Pack (SVE) - (.Microsoft Corporation.) [HKLM] -- {6EB931CD-A7DA-4A44-B74A-89C8EB50086F} =>.© O42 - Logiciel: avast! Internet Security v9.0.2013 - (.Avast Software.) [HKLM] -- avast =>.© O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {91FD46D2-4FB7-4A51-8637-556E1BE1DB7C} =>.© O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.© O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent =>.© ~ Logic: 47 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\7-Zip] =>.© [HKCU\Software\AVAST Software] =>.© [HKCU\Software\AVS4YOU] =>.© [HKCU\Software\Adobe] =>.© [HKCU\Software\Alawar] =>.© [HKCU\Software\AppDataLow\RealNetworks] =>.© [HKCU\Software\AppDataLow\Software\Adobe] =>.© [HKCU\Software\AppDataLow\Software\GetGo Software] =>.© [HKCU\Software\AppDataLow\Software\JavaSoft] =>.© [HKCU\Software\AppDataLow\Software\iGraal] [HKCU\Software\AppDataLow] =>.© [HKCU\Software\Apple Computer, Inc.] =>.© [HKCU\Software\Apple Inc.] =>.© [HKCU\Software\Ashampoo] =>.© [HKCU\Software\Astonsoft] =>.© [HKCU\Software\Axmapresse] =>.© [HKCU\Software\Big Fish Games, Inc.] =>.© [HKCU\Software\Big Fish Games] =>.© [HKCU\Software\BitTorrent] =>.© [HKCU\Software\Bytescout] =>.© [HKCU\Software\Canneverbe Limited] =>.© [HKCU\Software\CanonBJ] =>.© [HKCU\Software\Canon] =>.© [HKCU\Software\Classes] =>.© [HKCU\Software\Clients] =>.© [HKCU\Software\Cocoon Software] =>.© [HKCU\Software\Commercial Research] =>.© [HKCU\Software\DSS] =>.© [HKCU\Software\DVD Decrypter] =>.© [HKCU\Software\DVDVideoSoft] =>.© [HKCU\Software\Digital River] =>.© [HKCU\Software\DivX] =>.© [HKCU\Software\DownloadManager] =>.© [HKCU\Software\EagleGet] =>.© [HKCU\Software\Extensoft] =>.© [HKCU\Software\FlashGet Network] =>.© [HKCU\Software\FreeDownloadManager.ORG] =>.© [HKCU\Software\Freemake] =>.© [HKCU\Software\Freeware] =>.© [HKCU\Software\GNU] =>.© [HKCU\Software\Gabest] =>.© [HKCU\Software\Gemalto] =>.© [HKCU\Software\GlarySoft] =>.© [HKCU\Software\Gogii] =>.© [HKCU\Software\Google] =>.© [HKCU\Software\GridinSoft] =>.© [HKCU\Software\Hamster] =>.© [HKCU\Software\Initex Software] =>.© [HKCU\Software\Intel\Indeo\4.1] =>.© [HKCU\Software\JavaSoft] =>.© [HKCU\Software\Licenses] =>.© [HKCU\Software\MCAFEE] =>.© [HKCU\Software\MPEG4E.COM] =>.© [HKCU\Software\Macromedia] =>.© [HKCU\Software\Macrovision] =>.© [HKCU\Software\Malwarebytes' Anti-Malware] =>.© [HKCU\Software\Marseillesoft] =>.© [HKCU\Software\MicroWorld] =>.© [HKCU\Software\Mirage] =>.© [HKCU\Software\MozillaPlugins] =>.© [HKCU\Software\Mozilla] =>.© [HKCU\Software\NCH Swift Sound] =>.© [HKCU\Software\NVIDIA Corporation] =>.© [HKCU\Software\Nero] =>.© [HKCU\Software\Netscape] =>.© [HKCU\Software\Nico Mak Computing] =>.© [HKCU\Software\Nokia] =>.© [HKCU\Software\ODBC] =>.© [HKCU\Software\OpenOffice.org] =>.© [HKCU\Software\Opera Software] =>.© [HKCU\Software\PC SOFT] =>.© [HKCU\Software\PDF Architect] =>.© [HKCU\Software\PDFCreator] =>.© [HKCU\Software\Policies] =>.© [HKCU\Software\ProgSense] =>.© [HKCU\Software\RagTime.de] [HKCU\Software\RealNetworks] =>.© [HKCU\Software\Ripp-it] =>.© [HKCU\Software\Rocket Division Software] =>.© [HKCU\Software\SRS Labs] =>.© [HKCU\Software\Safer Networking Limited] =>.© [HKCU\Software\Samsung] =>.© [HKCU\Software\Screentime Media] =>.© [HKCU\Software\Simply Super Software] =>.© [HKCU\Software\Smart Soft] =>.© [HKCU\Software\SoftVTU] =>.© [HKCU\Software\SpeedBit] [HKCU\Software\Swisscom] =>.© [HKCU\Software\TeleCharger] =>.© [HKCU\Software\TeleCharger_v2] =>.© [HKCU\Software\The Silicon Realms Toolworks] =>.© [HKCU\Software\Trolltech] =>.© [HKCU\Software\Usbfix] =>.© [HKCU\Software\VB and VBA Program Settings] =>.© [HKCU\Software\VOS] =>.© [HKCU\Software\VSO] =>.© [HKCU\Software\VSRevoGroup] =>.© [HKCU\Software\VirtualDub.org] =>.© [HKCU\Software\WLAN Optimizer .NET] =>.© [HKCU\Software\WinRAR SFX] =>.© [HKCU\Software\WinRAR] =>.© [HKCU\Software\WinZip Computing] =>.© [HKCU\Software\ZebHelpProcess Helper] =>.© [HKCU\Software\ZebraNetworkSystems] =>.© [HKCU\Software\Zyrax Software] =>.© [HKCU\Software\brizsoft] =>.© [HKCU\Software\ej-technologies] =>.© [HKCU\Software\mixidj LTD] =>Toolbar.MixiDJ [HKCU\Software\mquadr.at] =>.© [HKCU\Software\sysinternals] =>.© [HKCU\Software\telecharger-gratuit] =>.© [HKCU\Software\yahoo] =>.© [HKLM\Software\7-Zip] =>.© [HKLM\Software\AGEIA Technologies] =>.© [HKLM\Software\ATI Technologies] =>.© [HKLM\Software\AVAST Software] =>.© [HKLM\Software\AVS4YOU] =>.© [HKLM\Software\Acer] =>.© [HKLM\Software\Adobe] =>.© [HKLM\Software\AdwCleaner] =>.© [HKLM\Software\Aimersoft] =>.© [HKLM\Software\Alawar] =>.© [HKLM\Software\AppDataLow] =>.© [HKLM\Software\Apple Computer, Inc.] =>.© [HKLM\Software\Apple Inc.] =>.© [HKLM\Software\Big Fish Games] =>.© [HKLM\Software\Bunndle] =>.© [HKLM\Software\CBSTEST] =>.© [HKLM\Software\CDDB] =>.© [HKLM\Software\Canneverbe Limited] =>.© [HKLM\Software\Canon] =>.© [HKLM\Software\Classes] =>.© [HKLM\Software\Clients] =>.© [HKLM\Software\DVDVideoSoft] =>.© [HKLM\Software\DivXNetworks] =>.© [HKLM\Software\DivX] =>.© [HKLM\Software\Extensoft] =>.© [HKLM\Software\FlashGet Network] =>.© [HKLM\Software\Freemake] =>.© [HKLM\Software\GEAR Software] =>.© [HKLM\Software\GlarySoft] =>.© [HKLM\Software\Glorylogic] =>.© [HKLM\Software\Google] =>.© [HKLM\Software\HamsterSoft] =>.© [HKLM\Software\IncrediMail] [HKLM\Software\Initex Software] =>.© [HKLM\Software\InstallShield] =>.© [HKLM\Software\Intel] =>.© [HKLM\Software\InterVideo] =>.© [HKLM\Software\JavaSoft] =>.© [HKLM\Software\JreMetrics] =>.© [HKLM\Software\KasperskyLab] =>.© [HKLM\Software\Khronos] =>.© [HKLM\Software\Licenses] =>.© [HKLM\Software\Lidan] =>.© [HKLM\Software\Macromedia] =>.© [HKLM\Software\Macrovision] =>.© [HKLM\Software\Malwarebytes' Anti-Malware (Trial)] =>.© [HKLM\Software\Malwarebytes' Anti-Malware] =>.© [HKLM\Software\McAfee.com] =>.© [HKLM\Software\MicroWorld] =>.© [HKLM\Software\MozillaPlugins] =>.© [HKLM\Software\Mozilla] =>.© [HKLM\Software\NCH Swift Sound] =>.© [HKLM\Software\NVIDIA Corporation] =>.© [HKLM\Software\NeoSoftTools] =>.© [HKLM\Software\Nero] =>.© [HKLM\Software\Nico Mak Computing] =>.© [HKLM\Software\Nokia Mobile Phones] =>.© [HKLM\Software\Nokia] =>.© [HKLM\Software\ODBC] =>.© [HKLM\Software\Oracle] =>.© [HKLM\Software\PC Connectivity Solution] =>.© [HKLM\Software\PCSuite] =>.© [HKLM\Software\PCTools] [HKLM\Software\PDF Architect] =>.© [HKLM\Software\PDFCreator] =>.© [HKLM\Software\Policies] =>.© [HKLM\Software\RTLSetup] =>.© [HKLM\Software\RagTime.de] [HKLM\Software\RealNetworks] =>.© [HKLM\Software\Realtek] =>.© [HKLM\Software\RegisteredApplications] =>.© [HKLM\Software\RichFX] =>.© [HKLM\Software\Rocket Division Software] =>.© [HKLM\Software\Rovio Entertainment Ltd.] =>.© [HKLM\Software\SBAMSvc] =>.© [HKLM\Software\Safer Networking Limited] =>.© [HKLM\Software\Simply Super Software] =>.© [HKLM\Software\SoftVTU] =>.© [HKLM\Software\Sonic] =>.© [HKLM\Software\SpeedBit] [HKLM\Software\Symantec] =>.© [HKLM\Software\SysCodecID] =>.© [HKLM\Software\VSO] =>.© [HKLM\Software\VideoLAN] =>.© [HKLM\Software\Volatile] =>.© [HKLM\Software\WOW6432Node] =>.© [HKLM\Software\WebSupergoo] =>.© [HKLM\Software\WinPcap] =>.© [HKLM\Software\WinRAR] =>.© [HKLM\Software\Xing Technology Corp.] =>.© [HKLM\Software\ZebraNetworkSystems] =>.© [HKLM\Software\instinno] =>.© [HKLM\Software\mozilla.org] =>.© [HKLM\Software\mquadr.at] =>.© [HKLM\Software\oxxogames] =>.© [HKLM\Software\tpfmon] =>.© ~ Key Software: 350 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 30/08/2012 - 08:15:00 - [3,348] ----D C:\Program Files\7-Zip =>.© O43 - CFD: 16/09/2012 - 06:12:38 - [603,686] ----D C:\Program Files\Ad-Aware Antivirus =>.© O43 - CFD: 06/03/2013 - 18:03:25 - [120,822] ----D C:\Program Files\Adobe =>.© O43 - CFD: 27/01/2013 - 12:49:16 - [0] ----D C:\Program Files\Anuman Interactive =>.© O43 - CFD: 19/05/2013 - 15:13:45 - [2,316] ----D C:\Program Files\Apple Software Update =>.© O43 - CFD: 27/03/2013 - 15:47:13 - [6,312] ----D C:\Program Files\Appnimi O43 - CFD: 13/03/2014 - 04:14:16 - [70,140] ----D C:\Program Files\Aurora =>.© O43 - CFD: 16/10/2013 - 10:21:10 - [8,322] ----D C:\Program Files\Auto Shutdown Pro O43 - CFD: 26/11/2011 - 14:43:03 - [625,968] ----D C:\Program Files\AVAST Software =>.© O43 - CFD: 30/08/2012 - 05:12:50 - [0,009] ----D C:\Program Files\BoontyGames =>.© O43 - CFD: 26/11/2011 - 15:47:26 - [326,379] ----D C:\Program Files\Canon =>.© O43 - CFD: 11/03/2014 - 04:26:49 - [12,027] ----D C:\Program Files\CDBurnerXP =>.© O43 - CFD: 02/09/2013 - 14:06:41 - [5,293] ----D C:\Program Files\Chameleon Shutdown =>.© O43 - CFD: 25/02/2014 - 16:47:39 - [445,972] ----D C:\Program Files\Common Files =>.© O43 - CFD: 25/12/2013 - 12:25:29 - [0,764] ----D C:\Program Files\DIFX =>.© O43 - CFD: 21/11/2010 - 01:39:40 - [79,371] ----D C:\Program Files\DVD Maker =>.© O43 - CFD: 28/03/2013 - 11:54:27 - [0] ----D C:\Program Files\ElcomSoft =>.© O43 - CFD: 15/06/2013 - 10:26:49 - [13,543] ----D C:\Program Files\Emoticon O43 - CFD: 24/11/2013 - 05:33:38 - [0,253] ----D C:\Program Files\Free Easy CD DVD Burner =>.© O43 - CFD: 17/11/2013 - 06:34:31 - [0,116] ----D C:\Program Files\Free Video Converter =>.© O43 - CFD: 14/07/2012 - 12:15:41 - [111,841] ----D C:\Program Files\Freemake =>.© O43 - CFD: 31/01/2014 - 06:26:00 - [0,105] ----D C:\Program Files\Gemalto =>.© O43 - CFD: 02/07/2012 - 07:09:24 - [221,143] ----D C:\Program Files\GIMP 2 =>.© O43 - CFD: 24/11/2013 - 06:07:40 - [0,062] ----D C:\Program Files\Glary Utilities 3 =>.© O43 - CFD: 13/03/2014 - 12:46:17 - [26,153] ----D C:\Program Files\Glary Utilities 4 =>.© O43 - CFD: 04/01/2014 - 18:10:32 - [76,996] ----D C:\Program Files\Google =>.© O43 - CFD: 26/02/2014 - 17:56:13 - [0,004] ----D C:\Program Files\GridinSoft Trojan Killer =>.© O43 - CFD: 09/07/2012 - 11:57:31 - [38,067] ----D C:\Program Files\Hamster Soft =>.© O43 - CFD: 28/02/2014 - 19:01:03 - [3,699] ----D C:\Program Files\HideIPVPN O43 - CFD: 22/01/2014 - 17:39:51 - [7,611] --H-D C:\Program Files\InstallShield Installation Information =>.© O43 - CFD: 02/09/2013 - 18:00:07 - [1,143] ----D C:\Program Files\Internet Download Manager =>.© O43 - CFD: 15/03/2014 - 03:37:55 - [6,013] ----D C:\Program Files\Internet Explorer =>.© O43 - CFD: 08/07/2012 - 03:58:54 - [0,787] ----D C:\Program Files\iNTERNET Turbo O43 - CFD: 02/07/2013 - 02:09:48 - [1,765] ----D C:\Program Files\iPod =>.© O43 - CFD: 02/07/2013 - 02:10:03 - [156,219] ----D C:\Program Files\iTunes =>.© O43 - CFD: 02/07/2013 - 02:05:06 - [122,152] ----D C:\Program Files\Java =>.© O43 - CFD: 30/08/2012 - 05:15:52 - [0,283] ----D C:\Program Files\Jeux.fr =>.© O43 - CFD: 26/02/2014 - 17:56:02 - [0] ----D C:\Program Files\Malware Eraser =>.© O43 - CFD: 27/02/2014 - 05:19:32 - [13,277] ----D C:\Program Files\Malwarebytes' Anti-Malware =>.© O43 - CFD: 23/12/2011 - 04:56:10 - [2,414] ----D C:\Program Files\MarkAny =>.© O43 - CFD: 11/09/2013 - 17:11:59 - [10,025] ----D C:\Program Files\Microsoft Application Virtualization Client =>.© O43 - CFD: 21/11/2010 - 01:39:35 - [140,966] ----D C:\Program Files\Microsoft Games =>.© O43 - CFD: 12/12/2012 - 16:59:23 - [34,128] ----D C:\Program Files\Microsoft Office =>.© O43 - CFD: 12/12/2012 - 16:46:01 - [0,023] ----D C:\Program Files\Microsoft.NET =>.© O43 - CFD: 27/03/2013 - 13:31:45 - [0,062] ----D C:\Program Files\mixiedj O43 - CFD: 13/03/2014 - 17:39:26 - [52,506] ----D C:\Program Files\Mozilla Firefox =>.© O43 - CFD: 15/03/2014 - 03:30:35 - [0,216] ----D C:\Program Files\Mozilla Maintenance Service =>.© O43 - CFD: 02/03/2014 - 10:47:06 - [49,039] ----D C:\Program Files\Mozilla Thunderbird =>.© O43 - CFD: 14/07/2009 - 05:52:30 - [0,025] ----D C:\Program Files\MSBuild =>.© O43 - CFD: 26/02/2014 - 16:57:47 - [66,358] ----D C:\Program Files\MSECache =>.© O43 - CFD: 25/12/2013 - 12:26:26 - [132,247] ----D C:\Program Files\Nokia =>.© O43 - CFD: 22/01/2014 - 17:53:47 - [1787,547] ----D C:\Program Files\NVIDIA Corporation =>.© O43 - CFD: 03/07/2012 - 14:52:12 - [23,946] ----D C:\Program Files\Opera =>.© O43 - CFD: 30/11/2012 - 03:18:51 - [33,205] ----D C:\Program Files\Oracle =>.© O43 - CFD: 25/12/2013 - 12:25:17 - [15,194] ----D C:\Program Files\PC Connectivity Solution =>.© O43 - CFD: 30/01/2013 - 16:31:45 - [92,727] ----D C:\Program Files\PDF Architect =>.© O43 - CFD: 14/09/2013 - 16:01:06 - [24,848] ----D C:\Program Files\PDFCreator =>.© O43 - CFD: 03/01/2014 - 18:09:02 - [7,244] ----D C:\Program Files\Power Video Downloader =>.© O43 - CFD: 04/07/2012 - 15:21:16 - [191,752] ----D C:\Program Files\Real =>.© O43 - CFD: 26/11/2011 - 01:12:10 - [1,955] ----D C:\Program Files\Realtek =>.© O43 - CFD: 14/07/2009 - 05:52:30 - [37,357] ----D C:\Program Files\Reference Assemblies =>.© O43 - CFD: 17/12/2012 - 07:14:12 - [2,502] ----D C:\Program Files\RiccoVPN O43 - CFD: 15/07/2013 - 03:10:54 - [64,021] ----D C:\Program Files\Rovio =>.© O43 - CFD: 26/01/2014 - 07:18:49 - [24,904] ----D C:\Program Files\Samsung =>.© O43 - CFD: 31/12/2011 - 07:03:11 - [0,002] ----D C:\Program Files\Seagate =>.© O43 - CFD: 04/07/2012 - 15:23:23 - [6,827] ----D C:\Program Files\SpeedBit Video Accelerator O43 - CFD: 24/11/2013 - 06:27:39 - [2,214] ----D C:\Program Files\Spybot - Search & Destroy =>.© O43 - CFD: 28/02/2014 - 19:04:03 - [179,453] ----D C:\Program Files\Spybot - Search & Destroy 2 =>.© O43 - CFD: 03/12/2011 - 16:41:22 - [3,567] ----D C:\Program Files\TLKGAMES =>.© O43 - CFD: 26/02/2014 - 17:46:20 - [19,251] ----D C:\Program Files\Trojan Remover =>.© O43 - CFD: 24/11/2013 - 05:29:03 - [0,282] ----D C:\Program Files\Ubisoft =>.© O43 - CFD: 02/07/2012 - 19:23:25 - [1,104] --H-D C:\Program Files\Uninstall Information =>.© O43 - CFD: 26/11/2011 - 14:29:10 - [0,243] ----D C:\Program Files\USB O43 - CFD: 04/07/2012 - 08:41:34 - [13,520] ----D C:\Program Files\VideoConverter =>.© O43 - CFD: 21/11/2013 - 19:43:24 - [98,613] ----D C:\Program Files\VideoLAN =>.© O43 - CFD: 05/01/2014 - 07:00:02 - [0] ----D C:\Program Files\ViDown O43 - CFD: 26/02/2014 - 04:56:07 - [6,523] ----D C:\Program Files\VS Revo Group =>.© O43 - CFD: 04/01/2014 - 18:22:14 - [2,783] ----D C:\Program Files\vso =>.© O43 - CFD: 10/07/2013 - 15:58:27 - [2,909] ----D C:\Program Files\Windows Defender =>.© O43 - CFD: 10/07/2013 - 15:58:27 - [6,688] ----D C:\Program Files\Windows Journal =>.© O43 - CFD: 21/11/2010 - 01:30:45 - [5,895] ----D C:\Program Files\Windows Mail =>.© O43 - CFD: 13/12/2013 - 04:52:30 - [6,298] ----D C:\Program Files\Windows Media Player =>.© O43 - CFD: 28/08/2013 - 09:24:15 - [11,632] ----D C:\Program Files\Windows NT =>.© O43 - CFD: 21/11/2010 - 01:30:45 - [4,213] ----D C:\Program Files\Windows Photo Viewer =>.© O43 - CFD: 20/11/2010 - 22:33:48 - [0,181] ----D C:\Program Files\Windows Portable Devices =>.© O43 - CFD: 21/11/2010 - 01:30:45 - [6,575] ----D C:\Program Files\Windows Sidebar =>.© O43 - CFD: 08/01/2014 - 15:53:03 - [0,229] ----D C:\Program Files\WinPcap =>.© O43 - CFD: 25/11/2013 - 04:12:59 - [4,604] ----D C:\Program Files\WinRAR =>.© O43 - CFD: 22/08/2012 - 17:08:25 - [0,016] ----D C:\Program Files\WinZip =>.© O43 - CFD: 28/02/2014 - 15:56:53 - [16,667] ----D C:\Program Files\ZebraNetworkSystems =>.© O43 - CFD: 19/03/2014 - 15:50:29 - [23,839] ----D C:\Program Files\ZHPDiag =>.© O43 - CFD: 19/05/2013 - 14:01:18 - [96,209] ----D C:\Program Files\Zune =>.© O43 - CFD: 06/03/2013 - 18:03:26 - [6,301] ----D C:\Program Files\Common Files\Adobe =>.© O43 - CFD: 23/10/2013 - 07:59:48 - [45,972] ----D C:\Program Files\Common Files\Adobe AIR =>.© O43 - CFD: 18/11/2013 - 14:36:13 - [2,617] ----D C:\Program Files\Common Files\Aimersoft =>.© O43 - CFD: 02/07/2013 - 02:09:48 - [107,230] ----D C:\Program Files\Common Files\Apple =>.© O43 - CFD: 24/11/2013 - 05:17:58 - [0,171] ----D C:\Program Files\Common Files\AVSMedia =>.© O43 - CFD: 26/11/2011 - 15:22:11 - [0,001] ----D C:\Program Files\Common Files\CANON =>.© O43 - CFD: 12/12/2012 - 16:59:24 - [0,095] ----D C:\Program Files\Common Files\DESIGNER =>.© O43 - CFD: 01/09/2013 - 06:15:04 - [0,561] ----D C:\Program Files\Common Files\EagleGet =>.© O43 - CFD: 11/07/2012 - 16:31:36 - [2,262] ----D C:\Program Files\Common Files\InstallShield =>.© O43 - CFD: 02/07/2013 - 02:05:29 - [1,189] ----D C:\Program Files\Common Files\Java =>.© O43 - CFD: 15/12/2012 - 17:19:37 - [178,288] ----D C:\Program Files\Common Files\microsoft shared =>.© O43 - CFD: 25/02/2014 - 16:47:39 - [0] ----D C:\Program Files\Common Files\MicroWorld =>.© O43 - CFD: 22/01/2014 - 17:38:16 - [11,747] ----D C:\Program Files\Common Files\nero =>.© O43 - CFD: 25/12/2013 - 12:26:31 - [11,540] ----D C:\Program Files\Common Files\Nokia =>.© O43 - CFD: 01/02/2013 - 06:35:48 - [0] ----D C:\Program Files\Common Files\PC Tools =>.© O43 - CFD: 04/07/2012 - 15:28:52 - [4,145] ----D C:\Program Files\Common Files\PX Storage Engine =>.© O43 - CFD: 14/07/2009 - 03:37:05 - [0,003] ----D C:\Program Files\Common Files\Services =>.© O43 - CFD: 14/07/2009 - 03:37:05 - [39,200] ----D C:\Program Files\Common Files\SpeechEngines =>.© O43 - CFD: 01/09/2013 - 05:16:09 - [2,414] ----D C:\Program Files\Common Files\SpeedBit O43 - CFD: 19/09/2012 - 07:08:25 - [15,805] ----D C:\Program Files\Common Files\System =>.© O43 - CFD: 31/12/2011 - 06:54:21 - [16,097] ----D C:\Program Files\Common Files\Wise Installation Wizard =>.© O43 - CFD: 04/07/2012 - 15:21:14 - [0,336] ----D C:\Program Files\Common Files\xing shared =>.© O43 - CFD: 02/07/2013 - 02:10:03 - [2,446] ----D C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1 =>.© O43 - CFD: 22/04/2013 - 05:11:04 - [177,286] ----D C:\ProgramData\Adobe =>.© O43 - CFD: 14/09/2013 - 04:28:55 - [2,176] ----D C:\ProgramData\albumphoto =>.© O43 - CFD: 19/05/2013 - 15:13:38 - [32,861] ----D C:\ProgramData\Apple =>.© O43 - CFD: 19/05/2013 - 15:14:02 - [58,094] ----D C:\ProgramData\Apple Computer =>.© O43 - CFD: 21/10/2013 - 16:16:51 - [323,849] ----D C:\ProgramData\AVAST Software =>.© O43 - CFD: 26/02/2014 - 18:51:25 - [0] ----D C:\ProgramData\Canneverbe Limited =>.© O43 - CFD: 26/11/2011 - 15:15:24 - [23,776] --H-D C:\ProgramData\CanonBJ =>.© O43 - CFD: 03/02/2012 - 15:47:18 - [0] ----D C:\ProgramData\CanonIJ =>.© O43 - CFD: 03/09/2012 - 06:47:33 - [0] --H-D C:\ProgramData\CanonIJEGV =>.© O43 - CFD: 02/12/2011 - 05:12:31 - [0] --H-D C:\ProgramData\CanonIJEPPEX =>.© O43 - CFD: 26/11/2011 - 16:17:32 - [0] --H-D C:\ProgramData\CanonIJMyPrinter =>.© O43 - CFD: 05/03/2014 - 17:53:17 - [0,055] ----D C:\ProgramData\CanonIJPLM =>.© O43 - CFD: 03/02/2012 - 15:46:32 - [0,002] --H-D C:\ProgramData\CanonIJScan =>.© O43 - CFD: 26/11/2011 - 16:17:39 - [0,002] --H-D C:\ProgramData\CanonIJSolutionMenuEX =>.© O43 - CFD: 26/11/2011 - 15:22:02 - [0,065] ----D C:\ProgramData\CanonIJWSpt =>.© O43 - CFD: 05/07/2013 - 02:56:27 - [0,016] ----D C:\ProgramData\ClubSanDisk =>.© O43 - CFD: 12/07/2012 - 15:41:04 - [0,002] ----D C:\ProgramData\DAEMON Tools Lite =>.© O43 - CFD: 04/12/2012 - 10:56:35 - [0,106] ----D C:\ProgramData\DivX =>.© O43 - CFD: 30/06/2012 - 14:33:19 - [0,164] ----D C:\ProgramData\Fenomen Games =>.© O43 - CFD: 09/12/2011 - 17:34:39 - [0,001] ----D C:\ProgramData\FLEXnet =>.© O43 - CFD: 27/08/2013 - 13:06:22 - [0,589] ----D C:\ProgramData\Free Download Manager =>.© O43 - CFD: 02/02/2013 - 11:14:24 - [11,253] ----D C:\ProgramData\Freemake =>.© O43 - CFD: 16/09/2012 - 06:12:33 - [0,006] ----D C:\ProgramData\GFI Software =>.© O43 - CFD: 24/11/2013 - 06:09:11 - [2,517] ----D C:\ProgramData\GlarySoft =>.© O43 - CFD: 06/09/2012 - 11:39:47 - [12,539] ----D C:\ProgramData\Lavasoft =>.© O43 - CFD: 26/02/2014 - 09:09:48 - [0] ----D C:\ProgramData\Licenses =>.© O43 - CFD: 26/11/2011 - 14:46:11 - [16,932] ----D C:\ProgramData\Malwarebytes =>.© O43 - CFD: 14/02/2013 - 15:42:26 - [0,093] ----D C:\ProgramData\McAfee =>.© O43 - CFD: 28/02/2014 - 19:04:02 - [1592,992] -S--D C:\ProgramData\Microsoft =>.© O43 - CFD: 12/12/2012 - 16:46:24 - [0,054] ----D C:\ProgramData\Microsoft Help =>.© O43 - CFD: 05/03/2014 - 12:38:02 - [0,002] ----D C:\ProgramData\Microsoft Toolkit =>.© O43 - CFD: 26/02/2014 - 17:58:09 - [129,285] ----D C:\ProgramData\MicroWorld =>.© O43 - CFD: 27/04/2012 - 13:53:47 - [0,035] ----D C:\ProgramData\Mozilla =>.© O43 - CFD: 24/11/2013 - 05:47:37 - [0,003] ----D C:\ProgramData\Nero =>.© O43 - CFD: 25/12/2013 - 12:27:05 - [69,553] ----D C:\ProgramData\Nokia =>.© O43 - CFD: 25/12/2013 - 12:23:41 - [447,151] ----D C:\ProgramData\NokiaInstallerCache =>.© O43 - CFD: 19/03/2014 - 15:46:33 - [5,115] ----D C:\ProgramData\NVIDIA =>.© O43 - CFD: 12/11/2013 - 18:22:35 - [3,323] ----D C:\ProgramData\NVIDIA Corporation =>.© O43 - CFD: 22/01/2014 - 17:56:03 - [0,009] ----D C:\ProgramData\PC Suite =>.© O43 - CFD: 07/01/2013 - 12:04:54 - [0] ----D C:\ProgramData\PDF Architect =>.© O43 - CFD: 03/09/2013 - 17:20:39 - [67,179] ----D C:\ProgramData\RagTime O43 - CFD: 06/10/2013 - 09:56:34 - [2,473] ----D C:\ProgramData\Real =>.© O43 - CFD: 03/01/2014 - 18:20:50 - [0,556] ----D C:\ProgramData\Samsung =>.© O43 - CFD: 26/02/2014 - 09:08:50 - [20,144] ----D C:\ProgramData\Simply Super Software =>.© O43 - CFD: 01/09/2013 - 05:16:10 - [12,523] ----D C:\ProgramData\SpeedBit O43 - CFD: 01/03/2014 - 05:35:10 - [1231,580] ----D C:\ProgramData\Spybot - Search & Destroy =>.© O43 - CFD: 25/12/2011 - 03:45:27 - [0] ----D C:\ProgramData\Sun =>.© O43 - CFD: 28/02/2014 - 18:51:30 - [0] ---AD C:\ProgramData\TEMP =>.© O43 - CFD: 07/07/2012 - 16:29:57 - [0,027] ----D C:\ProgramData\VideoConverter =>.© O43 - CFD: 27/02/2014 - 04:44:08 - [0] ----D C:\ProgramData\VirtualizedApplications =>.© O43 - CFD: 26/01/2014 - 07:12:39 - [16,220] ----D C:\ProgramData\VS Revo Group =>.© O43 - CFD: 03/01/2014 - 17:27:01 - [1,565] ----D C:\ProgramData\VSO =>.© O43 - CFD: 12/12/2012 - 08:50:59 - [0] ----D C:\ProgramData\vsosdk =>.© O43 - CFD: 30/01/2013 - 16:31:46 - [0] ----D C:\ProgramData\WinZip =>.© O43 - CFD: 28/02/2014 - 15:56:00 - [0,001] ----D C:\ProgramData\ZebraNetworkSystems =>.© O43 - CFD: 26/02/2014 - 05:18:15 - [1,063] ----D C:\Users\Utilisateur\AppData\Roaming\0T1N1C1T1Q2Y1L2Z O43 - CFD: 02/09/2013 - 17:47:43 - [0,064] ----D C:\Users\Utilisateur\AppData\Roaming\Absolute Uninstaller =>.© O43 - CFD: 13/09/2012 - 06:34:14 - [0,092] ----D C:\Users\Utilisateur\AppData\Roaming\Ad-Aware Antivirus =>.© O43 - CFD: 27/02/2014 - 05:11:57 - [21,600] ----D C:\Users\Utilisateur\AppData\Roaming\Adobe =>.© O43 - CFD: 12/09/2013 - 15:27:31 - [1,664] ----D C:\Users\Utilisateur\AppData\Roaming\AlawarEntertainment =>.© O43 - CFD: 21/11/2013 - 19:50:40 - [0,025] ----D C:\Users\Utilisateur\AppData\Roaming\AnvSoft =>.© O43 - CFD: 19/05/2013 - 15:20:01 - [1024,090] ----D C:\Users\Utilisateur\AppData\Roaming\Apple Computer =>.© O43 - CFD: 07/01/2013 - 11:58:56 - [6,631] ----D C:\Users\Utilisateur\AppData\Roaming\APP_NAME_NON_STRING =>.© O43 - CFD: 17/02/2013 - 07:51:36 - [14,114] ----D C:\Users\Utilisateur\AppData\Roaming\Artifex Mundi =>.© O43 - CFD: 08/05/2012 - 10:01:31 - [0,124] ----D C:\Users\Utilisateur\AppData\Roaming\Artogon =>.© O43 - CFD: 12/07/2012 - 06:58:35 - [0,968] ----D C:\Users\Utilisateur\AppData\Roaming\Ashampoo =>.© O43 - CFD: 22/10/2013 - 04:03:23 - [5,948] ----D C:\Users\Utilisateur\AppData\Roaming\AVAST Software =>.© O43 - CFD: 28/08/2013 - 09:24:23 - [0,017] ----D C:\Users\Utilisateur\AppData\Roaming\avidemux =>.© O43 - CFD: 23/10/2013 - 16:29:50 - [3,216] ----D C:\Users\Utilisateur\AppData\Roaming\AVS4YOU =>.© O43 - CFD: 28/08/2013 - 09:24:21 - [40,647] ----D C:\Users\Utilisateur\AppData\Roaming\Azureus =>.© O43 - CFD: 19/02/2013 - 09:39:00 - [0,349] ----D C:\Users\Utilisateur\AppData\Roaming\Big Fish Games =>.© O43 - CFD: 16/02/2014 - 06:53:29 - [0,060] ----D C:\Users\Utilisateur\AppData\Roaming\BITS =>.© O43 - CFD: 04/03/2013 - 10:21:07 - [6,519] ----D C:\Users\Utilisateur\AppData\Roaming\BlamGames =>.© O43 - CFD: 16/12/2012 - 18:35:18 - [0,013] ----D C:\Users\Utilisateur\AppData\Roaming\Blue Tea Games =>.© O43 - CFD: 18/02/2013 - 16:31:13 - [5,400] ----D C:\Users\Utilisateur\AppData\Roaming\Boomzap =>.© O43 - CFD: 02/07/2012 - 13:57:28 - [0,002] ----D C:\Users\Utilisateur\AppData\Roaming\Canneverbe Limited =>.© O43 - CFD: 19/06/2013 - 10:06:59 - [0,080] ----D C:\Users\Utilisateur\AppData\Roaming\Canon =>.© O43 - CFD: 02/07/2012 - 06:49:18 - [0,018] ----D C:\Users\Utilisateur\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant =>.© O43 - CFD: 30/10/2013 - 05:17:22 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\Creevity Mp3 Cover Downloader O43 - CFD: 28/08/2013 - 09:24:21 - [0,876] ----D C:\Users\Utilisateur\AppData\Roaming\DAEMON Tools Lite =>.© O43 - CFD: 27/02/2013 - 17:01:05 - [33,970] ----D C:\Users\Utilisateur\AppData\Roaming\DailyMagic =>.© O43 - CFD: 19/05/2012 - 04:53:29 - [0,316] ----D C:\Users\Utilisateur\AppData\Roaming\DarkParablesBriarRose_BFG_SE =>.© O43 - CFD: 12/09/2012 - 10:12:15 - [0,082] ----D C:\Users\Utilisateur\AppData\Roaming\Deep Shadows =>.© O43 - CFD: 07/12/2012 - 14:13:35 - [0,001] ----D C:\Users\Utilisateur\AppData\Roaming\DeepBurner =>.© O43 - CFD: 02/09/2013 - 18:17:17 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\DMCache =>.© O43 - CFD: 22/01/2014 - 17:56:06 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\dvdcss =>.© O43 - CFD: 01/07/2013 - 18:01:01 - [0,001] ----D C:\Users\Utilisateur\AppData\Roaming\dvdisaster O43 - CFD: 24/11/2013 - 06:12:30 - [2,486] ----D C:\Users\Utilisateur\AppData\Roaming\DVDVideoSoft =>.© O43 - CFD: 23/11/2013 - 16:58:18 - [1,606] ----D C:\Users\Utilisateur\AppData\Roaming\Eipix =>.© O43 - CFD: 13/02/2013 - 16:32:41 - [4,338] ----D C:\Users\Utilisateur\AppData\Roaming\EleFun Games =>.© O43 - CFD: 15/12/2012 - 17:22:43 - [26,465] ----D C:\Users\Utilisateur\AppData\Roaming\Elephant Games =>.© O43 - CFD: 19/01/2013 - 17:48:14 - [0,001] ----D C:\Users\Utilisateur\AppData\Roaming\EQATEC Analytics =>.© O43 - CFD: 16/04/2012 - 11:02:14 - [0,285] ----D C:\Users\Utilisateur\AppData\Roaming\ERS G-Studio =>.© O43 - CFD: 16/11/2012 - 09:22:02 - [8,763] ----D C:\Users\Utilisateur\AppData\Roaming\ERS Game Studios =>.© O43 - CFD: 16/02/2014 - 06:53:06 - [0,279] ----D C:\Users\Utilisateur\AppData\Roaming\FlashGet =>.© O43 - CFD: 16/02/2014 - 06:53:11 - [0,538] ----D C:\Users\Utilisateur\AppData\Roaming\FlashGetBHO =>.© O43 - CFD: 16/02/2014 - 06:53:14 - [0,237] ----D C:\Users\Utilisateur\AppData\Roaming\FlashgetSetup =>.© O43 - CFD: 13/04/2012 - 14:56:10 - [4,097] ----D C:\Users\Utilisateur\AppData\Roaming\flashInstallFR =>.© O43 - CFD: 18/12/2012 - 16:27:28 - [0,002] ----D C:\Users\Utilisateur\AppData\Roaming\Free PDF to Word Converter =>.© O43 - CFD: 27/10/2013 - 12:16:25 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\FreeBurner =>.© O43 - CFD: 06/07/2012 - 08:08:37 - [0,050] ----D C:\Users\Utilisateur\AppData\Roaming\FreeFLVConverter =>.© O43 - CFD: 28/08/2013 - 09:24:21 - [0,001] ----D C:\Users\Utilisateur\AppData\Roaming\FreeVideoConverter =>.© O43 - CFD: 21/05/2012 - 13:13:35 - [0,713] ----D C:\Users\Utilisateur\AppData\Roaming\Friday's games =>.© O43 - CFD: 17/03/2012 - 18:10:40 - [3,118] ----D C:\Users\Utilisateur\AppData\Roaming\Frogwares =>.© O43 - CFD: 20/05/2012 - 13:42:08 - [9,271] ----D C:\Users\Utilisateur\AppData\Roaming\GameInvest =>.© O43 - CFD: 24/02/2013 - 14:45:39 - [0,306] ----D C:\Users\Utilisateur\AppData\Roaming\Games =>.© O43 - CFD: 31/08/2013 - 18:13:01 - [0,049] ----D C:\Users\Utilisateur\AppData\Roaming\GetGo Software =>.© O43 - CFD: 24/11/2013 - 06:07:40 - [50,817] ----D C:\Users\Utilisateur\AppData\Roaming\GlarySoft =>.© O43 - CFD: 07/10/2013 - 15:40:03 - [0,043] ----D C:\Users\Utilisateur\AppData\Roaming\Gogii =>.© O43 - CFD: 06/07/2012 - 16:34:31 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\HamsterSoft =>.© O43 - CFD: 02/07/2012 - 14:05:07 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\Hitivi =>.© O43 - CFD: 22/03/2012 - 16:24:08 - [0,551] ----D C:\Users\Utilisateur\AppData\Roaming\HitPoint Studios =>.© O43 - CFD: 14/09/2013 - 16:04:48 - [0,003] ----D C:\Users\Utilisateur\AppData\Roaming\IDM =>.© O43 - CFD: 27/03/2013 - 15:25:53 - [1,646] ----D C:\Users\Utilisateur\AppData\Roaming\igraal O43 - CFD: 26/02/2012 - 15:40:00 - [27,547] ----D C:\Users\Utilisateur\AppData\Roaming\Jetdogs Studios =>.© O43 - CFD: 22/01/2014 - 17:56:05 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\KastorAllVideoDownloader =>.© O43 - CFD: 27/02/2013 - 09:09:51 - [1,831] ----D C:\Users\Utilisateur\AppData\Roaming\LestaStudio =>.© O43 - CFD: 12/12/2012 - 17:55:52 - [2,241] ----D C:\Users\Utilisateur\AppData\Roaming\LibreOffice =>.© O43 - CFD: 02/07/2012 - 14:12:56 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\log =>.© O43 - CFD: 26/11/2011 - 15:02:09 - [0,073] ----D C:\Users\Utilisateur\AppData\Roaming\Macromedia =>.© O43 - CFD: 02/04/2012 - 14:40:20 - [0,079] ----D C:\Users\Utilisateur\AppData\Roaming\MagicIndie =>.© O43 - CFD: 18/01/2014 - 06:02:49 - [67,423] ----D C:\Users\Utilisateur\AppData\Roaming\Malwarebytes =>.© O43 - CFD: 06/03/2013 - 10:04:20 - [0,959] ----D C:\Users\Utilisateur\AppData\Roaming\Mariaglorum =>.© O43 - CFD: 28/02/2014 - 09:50:17 - [16,563] -S--D C:\Users\Utilisateur\AppData\Roaming\Microsoft =>.© O43 - CFD: 26/02/2014 - 18:02:30 - [110,997] ----D C:\Users\Utilisateur\AppData\Roaming\Mozilla =>.© O43 - CFD: 28/08/2013 - 09:24:22 - [0,203] ----D C:\Users\Utilisateur\AppData\Roaming\Nero =>.© O43 - CFD: 03/01/2014 - 19:59:23 - [0,269] ----D C:\Users\Utilisateur\AppData\Roaming\Nokia =>.© O43 - CFD: 26/02/2014 - 17:58:12 - [0,018] ----D C:\Users\Utilisateur\AppData\Roaming\NVIDIA =>.© O43 - CFD: 26/11/2011 - 14:49:26 - [10,063] ----D C:\Users\Utilisateur\AppData\Roaming\OpenOffice.org =>.© O43 - CFD: 03/07/2012 - 14:44:27 - [0,563] ----D C:\Users\Utilisateur\AppData\Roaming\Opera =>.© O43 - CFD: 17/01/2013 - 11:04:57 - [5,632] ----D C:\Users\Utilisateur\AppData\Roaming\Orbit =>.© O43 - CFD: 30/04/2012 - 09:56:22 - [0,007] ----D C:\Users\Utilisateur\AppData\Roaming\Orneon =>.© O43 - CFD: 25/12/2013 - 12:33:30 - [1,377] ----D C:\Users\Utilisateur\AppData\Roaming\PC Suite =>.© O43 - CFD: 16/10/2013 - 10:34:18 - [0,040] ----D C:\Users\Utilisateur\AppData\Roaming\PDF Architect =>.© O43 - CFD: 27/09/2013 - 19:16:02 - [15,740] ----D C:\Users\Utilisateur\AppData\Roaming\PlayFavoriteGames =>.© O43 - CFD: 25/02/2012 - 18:22:25 - [0,026] ----D C:\Users\Utilisateur\AppData\Roaming\PlayPond =>.© O43 - CFD: 30/01/2013 - 11:27:45 - [0,005] ----D C:\Users\Utilisateur\AppData\Roaming\Product_RM =>.© O43 - CFD: 23/12/2012 - 07:43:28 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\ProgSense =>.© O43 - CFD: 14/09/2013 - 02:44:40 - [0,301] ----D C:\Users\Utilisateur\AppData\Roaming\RagTime O43 - CFD: 26/02/2014 - 17:58:12 - [5,668] ----D C:\Users\Utilisateur\AppData\Roaming\Real =>.© O43 - CFD: 20/03/2013 - 10:43:31 - [0,001] ----D C:\Users\Utilisateur\AppData\Roaming\Red Dot =>.© O43 - CFD: 12/02/2012 - 17:05:07 - [0,018] ----D C:\Users\Utilisateur\AppData\Roaming\RobinsonCrusoe =>.© O43 - CFD: 28/08/2013 - 09:24:23 - [0,007] ----D C:\Users\Utilisateur\AppData\Roaming\Rovio =>.© O43 - CFD: 15/07/2013 - 03:11:43 - [28,804] ----D C:\Users\Utilisateur\AppData\Roaming\Rovio Entertainment Ltd =>.© O43 - CFD: 03/01/2014 - 18:20:45 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\Samsung =>.© O43 - CFD: 14/09/2013 - 16:04:48 - [0,094] ----D C:\Users\Utilisateur\AppData\Roaming\Scribus =>.© O43 - CFD: 25/02/2012 - 16:40:07 - [0,009] ----D C:\Users\Utilisateur\AppData\Roaming\SerpentOfIsis =>.© O43 - CFD: 12/11/2012 - 12:28:55 - [0,010] ----D C:\Users\Utilisateur\AppData\Roaming\Skunk Studios =>.© O43 - CFD: 28/05/2012 - 05:45:36 - [0,338] ----D C:\Users\Utilisateur\AppData\Roaming\SMIGames =>.© O43 - CFD: 18/03/2014 - 18:37:59 - [6,533] ----D C:\Users\Utilisateur\AppData\Roaming\SoftGrid Client =>.© O43 - CFD: 22/11/2012 - 07:04:53 - [0,377] ----D C:\Users\Utilisateur\AppData\Roaming\Specialbit =>.© O43 - CFD: 19/06/2013 - 16:23:05 - [7,430] ----D C:\Users\Utilisateur\AppData\Roaming\Sunward Games =>.© O43 - CFD: 16/04/2012 - 16:12:19 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\SunwardGames =>.© O43 - CFD: 11/09/2012 - 11:17:06 - [0,005] ----D C:\Users\Utilisateur\AppData\Roaming\TestApp =>.© O43 - CFD: 02/03/2014 - 10:47:14 - [14,914] ----D C:\Users\Utilisateur\AppData\Roaming\Thunderbird =>.© O43 - CFD: 30/08/2012 - 05:48:52 - [0,207] ----D C:\Users\Utilisateur\AppData\Roaming\TikisLab =>.© O43 - CFD: 18/03/2012 - 16:53:31 - [2,784] ----D C:\Users\Utilisateur\AppData\Roaming\Top Evidence =>.© O43 - CFD: 04/06/2013 - 09:52:35 - [12,649] ----D C:\Users\Utilisateur\AppData\Roaming\U3 =>.© O43 - CFD: 18/03/2014 - 18:37:56 - [8,524] ----D C:\Users\Utilisateur\AppData\Roaming\uTorrent =>.© O43 - CFD: 17/03/2014 - 15:55:02 - [0,083] ----D C:\Users\Utilisateur\AppData\Roaming\vlc =>.© O43 - CFD: 04/01/2014 - 18:22:12 - [0,006] ----D C:\Users\Utilisateur\AppData\Roaming\Vso =>.© O43 - CFD: 06/07/2012 - 20:17:33 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\WinRAR =>.© O43 - CFD: 26/02/2013 - 10:42:46 - [11,458] ----D C:\Users\Utilisateur\AppData\Roaming\World-LooM =>.© O43 - CFD: 28/02/2014 - 15:55:58 - [13,245] ----D C:\Users\Utilisateur\AppData\Roaming\ZebraNetworkSystems =>.© O43 - CFD: 19/03/2014 - 15:51:07 - [0,417] ----D C:\Users\Utilisateur\AppData\Roaming\ZHP =>.© O43 - CFD: 17/01/2014 - 04:04:43 - [32,593] ----D C:\Users\Utilisateur\AppData\Local\Adobe =>.© O43 - CFD: 18/11/2013 - 14:36:13 - [0] ----D C:\Users\Utilisateur\AppData\Local\Aimersoft =>.© O43 - CFD: 04/03/2014 - 05:11:28 - [0] ----D C:\Users\Utilisateur\AppData\Local\Apple =>.© O43 - CFD: 19/05/2013 - 15:14:38 - [8,532] ----D C:\Users\Utilisateur\AppData\Local\Apple Computer =>.© O43 - CFD: 28/08/2013 - 09:24:20 - [0,347] ----D C:\Users\Utilisateur\AppData\Local\ashampoo =>.© O43 - CFD: 02/12/2011 - 05:12:31 - [0,030] ----D C:\Users\Utilisateur\AppData\Local\Canon Easy-PhotoPrint EX =>.© O43 - CFD: 27/08/2013 - 09:58:39 - [1,288] ----D C:\Users\Utilisateur\AppData\Local\Clavier+ =>.© O43 - CFD: 17/03/2014 - 04:58:38 - [1,377] ----D C:\Users\Utilisateur\AppData\Local\CrashDumps =>.© O43 - CFD: 06/03/2014 - 07:37:39 - [2,307] ----D C:\Users\Utilisateur\AppData\Local\Diagnostics =>.© O43 - CFD: 05/07/2013 - 02:38:53 - [30,856] ----D C:\Users\Utilisateur\AppData\Local\Downloaded Installations =>.© O43 - CFD: 16/03/2014 - 06:56:47 - [0,176] ----D C:\Users\Utilisateur\AppData\Local\ElevatedDiagnostics =>.© O43 - CFD: 02/07/2012 - 07:25:56 - [1,262] ----D C:\Users\Utilisateur\AppData\Local\fontconfig =>.© O43 - CFD: 30/04/2013 - 16:39:53 - [0,001] ----D C:\Users\Utilisateur\AppData\Local\FreemakeVideoConverter =>.© O43 - CFD: 19/06/2013 - 14:22:27 - [0,001] ----D C:\Users\Utilisateur\AppData\Local\FreeOCR =>.© O43 - CFD: 02/07/2012 - 07:25:53 - [0,001] ----D C:\Users\Utilisateur\AppData\Local\gegl-0.2 =>.© O43 - CFD: 26/02/2014 - 17:58:09 - [51,946] ----D C:\Users\Utilisateur\AppData\Local\Google =>.© O43 - CFD: 09/07/2012 - 10:21:06 - [0,564] ----D C:\Users\Utilisateur\AppData\Local\Halite =>.© O43 - CFD: 06/07/2012 - 16:34:28 - [0,233] ----D C:\Users\Utilisateur\AppData\Local\HamsterVideoConverter =>.© O43 - CFD: 18/12/2012 - 16:42:51 - [0,003] ----D C:\Users\Utilisateur\AppData\Local\Investintech.com Inc =>.© O43 - CFD: 08/01/2014 - 15:53:10 - [0,015] ----D C:\Users\Utilisateur\AppData\Local\Jaksta_Technologies_Pty_L =>.© O43 - CFD: 27/02/2014 - 04:40:04 - [0] ----D C:\Users\Utilisateur\AppData\Local\Macromedia =>.© O43 - CFD: 06/03/2014 - 07:37:12 - [904,053] ----D C:\Users\Utilisateur\AppData\Local\Microsoft =>.© O43 - CFD: 28/12/2011 - 08:33:18 - [0,013] ----D C:\Users\Utilisateur\AppData\Local\Microsoft Corporation =>.© O43 - CFD: 13/07/2012 - 08:42:39 - [0,093] ----D C:\Users\Utilisateur\AppData\Local\Microsoft Games =>.© O43 - CFD: 15/03/2013 - 08:53:38 - [0,327] ----D C:\Users\Utilisateur\AppData\Local\Microsoft Help =>.© O43 - CFD: 02/09/2013 - 17:40:32 - [211,921] ----D C:\Users\Utilisateur\AppData\Local\Mozilla =>.© O43 - CFD: 12/10/2013 - 11:34:49 - [0,020] ----D C:\Users\Utilisateur\AppData\Local\Nero =>.© O43 - CFD: 12/10/2013 - 11:38:20 - [0,001] ----D C:\Users\Utilisateur\AppData\Local\Nero_AG =>.© O43 - CFD: 25/12/2013 - 12:27:41 - [5,104] ----D C:\Users\Utilisateur\AppData\Local\Nokia =>.© O43 - CFD: 25/12/2013 - 12:33:26 - [0,001] ----D C:\Users\Utilisateur\AppData\Local\NokiaAccount =>.© O43 - CFD: 19/06/2013 - 14:08:37 - [0,005] ----D C:\Users\Utilisateur\AppData\Local\ORPALIS =>.© O43 - CFD: 27/02/2014 - 05:14:07 - [0] ----D C:\Users\Utilisateur\AppData\Local\Programs =>.© O43 - CFD: 05/07/2013 - 02:56:33 - [0] ----D C:\Users\Utilisateur\AppData\Local\Proxure =>.© O43 - CFD: 03/01/2014 - 18:20:50 - [0] ----D C:\Users\Utilisateur\AppData\Local\Samsung =>.© O43 - CFD: 12/12/2012 - 17:01:11 - [5,648] ----D C:\Users\Utilisateur\AppData\Local\SoftGrid Client =>.© O43 - CFD: 19/03/2014 - 15:50:49 - [0,005] ----D C:\Users\Utilisateur\AppData\Local\Temp =>.© O43 - CFD: 02/03/2014 - 10:47:14 - [13,776] ----D C:\Users\Utilisateur\AppData\Local\Thunderbird =>.© O43 - CFD: 07/07/2012 - 17:06:26 - [0,021] ----D C:\Users\Utilisateur\AppData\Local\Video Converter =>.© O43 - CFD: 27/09/2012 - 10:14:36 - [382,527] ----D C:\Users\Utilisateur\AppData\Local\VirtualStore =>.© O43 - CFD: 26/01/2014 - 07:12:46 - [113,516] ----D C:\Users\Utilisateur\AppData\Local\VS Revo Group =>.© O43 - CFD: 02/07/2012 - 07:35:40 - [0,017] ----D C:\Users\Utilisateur\AppData\Local\webkit =>.© O43 - CFD: 04/07/2012 - 03:57:57 - [0,252] ----D C:\Users\Utilisateur\AppData\Local\WinZip =>.© O43 - CFD: 14/07/2009 - 05:42:04 - [0,014] R---D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.© O43 - CFD: 12/09/2013 - 02:35:34 - [0] R---D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.© O43 - CFD: 02/09/2013 - 14:06:32 - [0,002] ----D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chameleon Shutdown =>.© O43 - CFD: 15/06/2013 - 10:24:50 - [0,003] ----D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Emoticon O43 - CFD: 14/07/2012 - 12:15:41 - [0,001] ----D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake =>.© O43 - CFD: 28/02/2014 - 15:36:05 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HideIPVPN O43 - CFD: 14/07/2009 - 05:37:42 - [0,001] R---D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.© O43 - CFD: 31/08/2013 - 18:19:40 - [0,005] ----D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.© O43 - CFD: 25/02/2014 - 15:26:35 - [0] R---D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.© O43 - CFD: 24/11/2013 - 06:33:26 - [0,004] ----D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.© ~ Program Folder: 332 Scanned in 00mn 41s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 13/03/2014 - 12:59:22 ---A- . (...) -- C:\Windows\setuperr.log [0] =>.© O44 - LFC:[MD5.4E6B6131B5400C145BD6C175B7093751] - 18/03/2014 - 16:13:37 ----- . (...) -- C:\PhysicalDisk0_MBR.bin [512] =>.© O44 - LFC:[MD5.EC70F0722C39E96B334FB8EB9308AFDF] - 19/03/2014 - 09:35:20 ----- . (...) -- C:\UsbFix [Scan 1] UTILISATEUR-PC.txt [6366] O44 - LFC:[MD5.A5959E7EFB90AB149DD932ED11422ADA] - 19/03/2014 - 09:37:40 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [6544] =>.© O44 - LFC:[MD5.77DCF3E67E7D03C7C3D7C22FD0A30EF4] - 19/03/2014 - 15:46:34 ---A- . (...) -- C:\Windows\setupact.log [672] =>.© O44 - LFC:[MD5.710712E787773637810C838D93FC033E] - 19/03/2014 - 15:48:04 ---A- . (...) -- C:\UsbFix [Clean 2] UTILISATEUR-PC.txt [11503] ~ Files: 38 Scanned in 00mn 07s ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.2FF30445DAE904A957970E4528806B11] - 19/03/2014 - 08:58:41 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db O45 - LFCP:[MD5.8DCD8680C51900288FD471285E9DBF29] - 19/03/2014 - 08:58:41 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db O45 - LFCP:[MD5.29BA2283F8827BF1422D040AB40C16B2] - 19/03/2014 - 08:58:41 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db O45 - LFCP:[MD5.53CCCD53785187BB8A6F25511C7A94D3] - 19/03/2014 - 08:58:41 ---A- - C:\Windows\Prefetch\AgRobust.db O45 - LFCP:[MD5.C315AD33E66E567F137BF97982D34E99] - 19/03/2014 - 09:14:46 ---A- - C:\Windows\Prefetch\Layout.ini O45 - LFCP:[MD5.A53617979737198D6BB92428273F1F31] - 19/03/2014 - 15:39:31 ---A- - C:\Windows\Prefetch\LongTermHist.db O45 - LFCP:[MD5.EE26968C4A8A2AFD3F4495442EC1D4DF] - 19/03/2014 - 15:39:31 ---A- - C:\Windows\Prefetch\LongTermHist.db.bt O45 - LFCP:[MD5.1DA0D3CAF16EAD6E48E310A730A39356] - 19/03/2014 - 15:39:31 ---A- - C:\Windows\Prefetch\LongTermHist.db.dx O45 - LFCP:[MD5.791E1FAB36BA5A64B61A77069F3F4C89] - 19/03/2014 - 15:41:27 ---A- - C:\Windows\Prefetch\AgCx_SC2.db O45 - LFCP:[MD5.B8F0EEBA002A5887EB6CC9782B4A75AE] - 19/03/2014 - 15:43:45 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-494048827-1650175510-1422529119-1000.db O45 - LFCP:[MD5.3C4CAB6E32FA260FB869174E927665D2] - 19/03/2014 - 15:43:45 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-494048827-1650175510-1422529119-1000.db O45 - LFCP:[MD5.4552E3B586BFDB4BFCCBE217ECA7A291] - 19/03/2014 - 15:45:54 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin O45 - LFCP:[MD5.EF33DCCE371E497F592A35982F31DC68] - 19/03/2014 - 15:47:53 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-6E88E69C.pf O45 - LFCP:[MD5.6B0BF2D1D045CD8243AC9E1A7D423525] - 19/03/2014 - 15:47:56 ---A- - C:\Windows\Prefetch\SEARCHINDEXER.EXE-4A6353B9.pf O45 - LFCP:[MD5.7A88587D4B3AFD93E1EFB9DCCFE48123] - 19/03/2014 - 15:48:01 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf O45 - LFCP:[MD5.E3E79AD9FB3DB4676959DFA88A30C109] - 19/03/2014 - 15:48:10 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-C775D18D.pf O45 - LFCP:[MD5.5F5A71BBB02538F90111A1DBBEAD1A8B] - 19/03/2014 - 15:48:12 ---A- - C:\Windows\Prefetch\EXPLORER.EXE-A80E4F97.pf O45 - LFCP:[MD5.D45E25B691489E38FEFA88F0A896528C] - 19/03/2014 - 15:48:12 ---A- - C:\Windows\Prefetch\WMPNSCFG.EXE-FC0D39BF.pf O45 - LFCP:[MD5.8C1EB0EA5D6E0D1F17285EB0B9A0611E] - 19/03/2014 - 15:48:21 ---A- - C:\Windows\Prefetch\WMPNETWK.EXE-D9F2A96F.pf O45 - LFCP:[MD5.3DE9BD69AE7C7135F6B7EDC9DEC429D1] - 19/03/2014 - 15:50:05 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf O45 - LFCP:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 26/01/2136 - 16:52:38 ----D - C:\Windows\Prefetch\ReadyBoot ~ Prefetcher: 21 Scanned in 00mn 01s ---\\ Export de clé d'application autorisée (O47) O47 - AAKE:Key Export SP - "C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe" [Enabled] .(.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe =>.© O47 - AAKE:Key Export SP - "C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe" [Enabled] .(.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe =>.© O47 - AAKE:Key Export SP - "C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe" [Enabled] .(.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe =>.© O47 - AAKE:Key Export SP - "C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe" [Enabled] .(.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe =>.© ~ Keys Export: 4 Scanned in 00mn 00s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll =>.© O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll =>.© O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll =>.© O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll =>.© O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll =>.© O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll =>.© O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll =>.© O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll =>.© ~ LSA: 8 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys =>.© O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys =>.© O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) =>.© O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys =>.© O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys =>.© O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys =>.© O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys =>.© O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys =>.© O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys =>.© O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys =>.© O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) =>.© O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys =>.© O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys =>.© ~ CSB: 13 Scanned in 00mn 00s ---\\ Clé de registre Shell MountPoints2 (MPKS) (O51) O51 - MPSK:{9da3b01a-33ab-11e1-9de9-90fba68897a0}\AutoRun\command - Clé orpheline ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm =>.© O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll =>.© O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Intel Corporation - Intel Indeo® video 5.10.) -- C:\Windows\System32\ir50_32.dll =>.© O52 - TDSD: \Drivers32\"vidc.iv41"="ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\Windows\System32\ir41_32.ax =>.© O52 - TDSD: \Drivers32\"vidc.iv32"="ir32_32.dll" . (.Intel(R) Corporation - Pas de description.) -- C:\Windows\System32\ir32_32.dll =>.© O52 - TDSD: \Drivers32\"vidc.iv31"="ir32_32.dll" . (.Intel(R) Corporation - Pas de description.) -- C:\Windows\System32\ir32_32.dll =>.© O52 - TDSD: \Drivers32\"msacm.iac2"="C:\Windows\system32\iac25_32.ax" . (.Intel Corporation - Indeo® audio software.) -- C:\Windows\system32\iac25_32.ax =>.© O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm =>.© O52 - TDSD: \drivers.desc\"C:\Windows\system32\iac25_32.ax"="Indeo® audio software" . (.Intel Corporation - Indeo® audio software.) -- C:\Windows\system32\iac25_32.ax =>.© ~ TDSD: 9 Scanned in 00mn 00s ---\\ Enumération des clés de registre StartupReg (SMSR) (O53) O53 - SMSR:HKLM\...\startupreg\command . (...) -- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (.not file.) =>.© O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.© O53 - SMSR:HKLM\...\startupreg\Aimersoft Helper Compact.exe [Key] . (.AimerSoft - AimerSoft Studio.) -- C:\Program Files\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.© O53 - SMSR:HKLM\...\startupreg\CanonMyPrinter [Key] . (.CANON INC. - Canon My Printer.) -- C:\Program Files\Canon\MyPrinter\BJMyPrt.exe =>.© O53 - SMSR:HKLM\...\startupreg\Clavier+ [Key] . (.Guillaume Ryder (http://utilfr42.free.fr) - Clavier+.) -- C:\Users\Utilisateur\AppData\Local\Clavier+\Clavier.exe =>.© O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.© O53 - SMSR:HKLM\...\startupreg\KiesPDLR [Key] . (...) -- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (.not file.) =>.© O53 - SMSR:HKLM\...\startupreg\NokiaSuite.exe [Key] . (.Nokia - Nokia Suite.) -- C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe =>.© O53 - SMSR:HKLM\...\startupreg\SDTray [Key] . (.Safer-Networking Ltd. - Spybot - Search & Destroy tray access.) -- C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe =>.© O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.© O53 - SMSR:HKLM\...\startupreg\TkBellExe [Key] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- c:\program files\real\realplayer\Update\realsched.exe =>.© O53 - SMSR:HKLM\...\startupreg\TrojanScanner [Key] . (.Simply Super Software - Trojan Scanner.) -- C:\Program Files\Trojan Remover\Trjscan.exe O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent O53 - SMSR:HKLM\...\startupreg\WLAN Optimizer [Key] . (.none - WLAN Optimizer.) -- C:\Users\Utilisateur\Desktop\WLAN Optimizer.exe O53 - SMSR:HKLM\...\startupreg\Zune Launcher [Key] . (.Microsoft Corporation - Zune Auto-Launcher.) -- C:\Program Files\Zune\ZuneLauncher.exe =>.© ~ SMSR Keys: 27 Scanned in 00mn 00s ---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll =>.© O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll =>.© ~ MSCP: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLinkedConnections"=1 O55 - MWPS:[HKCU\...\Policies\System] - "LogonHoursAction"=2 O55 - MWPS:[HKCU\...\Policies\System] - "DontDisplayLogonHoursWarnings"=1 ~ MWPS: 19 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=153 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveTypeAutoRun"=153 ~ MWPE Keys: 2 Scanned in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:[MD5.F385467DF95D0A73775CB3B076B8B969] - 21/10/2013 - 16:35:57 ---A- . (...) -- C:\Windows\System32\Drivers\aswRvrt.sys [49944] O58 - SDL:[MD5.1B0662514A68C3A42E60D240C5ABEF28] - 22/12/2013 - 03:56:43 ---A- . (...) -- C:\Windows\System32\Drivers\aswVmm.sys [180248] O58 - SDL:[MD5.505506526A9D467307B3C393DEDAF858] - 14/07/2009 - 00:45:01 ---A- . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\Drivers\beep.sys [6144] =>.© O58 - SDL:[MD5.56801AD62213A41F6497F96DEE83755A] - 13/07/2009 - 23:53:28 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [5248] =>.© O58 - SDL:[MD5.B918E7C5F9BF77202F89E1A9539F2EB4] - 14/07/2009 - 00:50:57 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmkaud.sys [5120] =>.© O58 - SDL:[MD5.0ED67910C8C326796FAA00B2BF6D9D3C] - 14/07/2009 - 02:20:28 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [453712] O58 - SDL:[MD5.8FC3208352DD3912C94367A206AB3F11] - 14/07/2009 - 00:19:19 ---A- . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\Drivers\errdev.sys [7168] =>.© O58 - SDL:[MD5.C44E3C2BAB6837DB337DDEE7544736DB] - 13/07/2009 - 23:54:14 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [26624] O58 - SDL:[MD5.457AC1DB3B28DCEE57E1F7CF5DFD775C] - 01/11/2012 - 19:21:56 ---A- . (.AnchorFree Inc. - Hotspot Shield Routing Driver.) -- C:\Windows\System32\Drivers\hssdrv6.sys [35592] O58 - SDL:[MD5.2AA2C79B9E39C2FCBE0670AECC5B4361] - 27/06/2013 - 10:57:42 ---A- . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\Drivers\idmwfp.sys [104928] O58 - SDL:[MD5.194722361F31E0CD20A77F8F36AB1830] - 22/12/2006 - 15:13:06 ---A- . (.Pas de propriétaire - ExtSta NDIS 6.0 driver.) -- C:\Windows\System32\Drivers\MRVW23B.sys [231040] O58 - SDL:[MD5.3E1E5767043C5AF9367F0056295E9F84] - 14/07/2009 - 00:51:08 ---A- . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\Drivers\mshidkmdf.sys [4096] =>.© O58 - SDL:[MD5.8C0860D6366AAFFB6C5BB9DF9448E631] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\Drivers\mskssrv.sys [8320] =>.© O58 - SDL:[MD5.3EA8B949F963562CEDBB549EAC0C11CE] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\Drivers\mspclock.sys [5888] =>.© O58 - SDL:[MD5.F456E973590D663B1073E9C463B40932] - 14/07/2009 - 00:45:07 ---A- . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\Drivers\mspqm.sys [5504] =>.© O58 - SDL:[MD5.B42C6B921F61A6E55159B8BE6CD54A36] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\Drivers\mstee.sys [6144] =>.© O58 - SDL:[MD5.A4ABB21D13528D1BA3ABF484B2DF24FE] - 13/02/2014 - 15:33:58 ---A- . (.NetFilterSDK.com - NetFilter SDK TDI Hook Driver (WPP).) -- C:\Windows\System32\Drivers\netfilter.sys [47488] O58 - SDL:[MD5.9699486E10F89163979FCD48A40FE805] - 23/01/2013 - 10:31:52 ---A- . (.Nokia - Nokia USB Phone Generic Client.) -- C:\Windows\System32\Drivers\nmwcdnsuc.sys [8576] =>.© O58 - SDL:[MD5.25401B0C9576C8456B3E0BBD74FF0771] - 01/03/2013 - 02:48:42 ---A- . (.Riverbed Technology, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\Windows\System32\Drivers\npf.sys [36600] O58 - SDL:[MD5.A57299EDA93CFA25E2DBB0043A3E79BA] - 01/09/2009 - 20:06:02 ---A- . (.NeoRouter Inc. - NeoRouter Virtual Network Driver.) -- C:\Windows\System32\Drivers\nrtap.sys [24576] O58 - SDL:[MD5.F9756A98D69098DCA8945D62858A812C] - 14/07/2009 - 00:11:12 ---A- . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\Drivers\null.sys [4608] =>.© O58 - SDL:[MD5.EB0A59F29C19B86479D36B35983DAADC] - 14/07/2009 - 00:45:29 ---A- . (.Microsoft Corporation - Pilote parallèle VDM.) -- C:\Windows\System32\Drivers\parvdm.sys [8704] =>.© O58 - SDL:[MD5.12D0034FA8EC4B1E768D7D6FF0F306D1] - 23/11/2012 - 16:24:36 ---A- . (...) -- C:\Windows\System32\Drivers\PPFlt.sys [23576] O58 - SDL:[MD5.23DAE03F29D253AE74C44F99E515F9A1] - 20/11/2010 - 22:29:12 ---A- . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\RDPCDD.sys [6656] =>.© O58 - SDL:[MD5.5A53CA1598DD4156D44196D200C94B8A] - 14/07/2009 - 01:01:39 ---A- . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\RDPENCDD.sys [6656] =>.© O58 - SDL:[MD5.44B0A53CD4F27D50ED461DAE0C0B4E1F] - 14/07/2009 - 01:01:41 ---A- . (.Microsoft Corporation - RDP Reflector Driver Miniport.) -- C:\Windows\System32\Drivers\RDPREFMP.sys [7168] =>.© O58 - SDL:[MD5.564297827D213F52C7A3A2FF749568CA] - 14/07/2009 - 00:55:21 ---A- . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\Drivers\rootmdm.sys [8192] =>.© O58 - SDL:[MD5.0022CFFF1A41E5CE3A764050A7DDF22A] - 13/07/2012 - 07:44:51 ---A- . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\Drivers\sptd.sys [477240] O58 - SDL:[MD5.3EED76A0C1412F52860F7E7EAB5AECCA] - 01/08/2011 - 12:44:26 ---A- . (.Pas de propriétaire - SRS Premium Sound driver.) -- C:\Windows\System32\Drivers\SRS_AE_i386.sys [404256] O58 - SDL:[MD5.DB32D325C192B801DF274BFD12A7E72B] - 14/07/2009 - 02:19:04 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [21072] O58 - SDL:[MD5.98A1E6BC9F766B0B0A5BF00AF847EF20] - 01/07/2011 - 12:46:40 ---A- . (.The OpenVPN Project - TAP-Win32 Virtual Network Driver.) -- C:\Windows\System32\Drivers\tap0901.sys [26624] O58 - SDL:[MD5.93260747EA752CA419E817F80E9A7262] - 01/11/2012 - 19:29:22 ---A- . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\Windows\System32\Drivers\taphss6.sys [35592] O58 - SDL:[MD5.7550AD0C6998BA1CB4843E920EE0FEAC] - 14/07/2009 - 00:51:35 ---A- . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\Drivers\umpass.sys [8192] =>.© O58 - SDL:[MD5.6E421CCC57059B0186C6259CA3B6DFC9] - 13/12/2012 - 12:50:38 ---A- . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\Drivers\usbaapl.sys [45056] O58 - SDL:[MD5.74F805AB12EB0E3E49E469F19FF02640] - 27/11/2013 - 02:13:33 ---A- . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\Drivers\usbd.sys [6016] =>.© O58 - SDL:[MD5.8721F55D8BC9F89E3A63CEBDF5EF4FA3] - 23/01/2013 - 10:31:50 ---A- . (.Nokia - Filter Driver for Nokia USB Phone Bus Driver.) -- C:\Windows\System32\Drivers\usbser_lowerflt.sys [8192] =>.© O58 - SDL:[MD5.4E66C71D8D010BFB0DF1042D25E9CB0F] - 23/01/2013 - 10:31:50 ---A- . (.Nokia - Filter Driver for Nokia USB Phone Bus Driver.) -- C:\Windows\System32\Drivers\usbser_lowerfltj.sys [8192] =>.© O58 - SDL:[MD5.8B9A943F3B53861F2BFAF6C186168F79] - 14/07/2009 - 00:53:51 ---A- . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) -- C:\Windows\System32\Drivers\wfplwf.sys [9728] =>.© O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 13/07/2009 - 22:40:41 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 13/07/2009 - 22:40:44 ---A- . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:[MD5.DDEE99DC54EFA20BD5A442CD733C4462] - 22/05/2013 - 12:34:26 ---A- . (...) -- C:\Windows\System32\FsUsbExDisk.Sys [37344] O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 13/07/2009 - 22:40:40 ---A- . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 13/07/2009 - 22:40:43 ---A- . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 13/07/2009 - 22:40:43 ---A- . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 13/07/2009 - 22:40:23 ---A- . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 13/07/2009 - 22:40:31 ---A- . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 13/07/2009 - 22:40:35 ---A- . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 13/07/2009 - 22:40:39 ---A- . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 13/07/2009 - 22:40:27 ---A- . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 13/07/2009 - 22:40:11 ---A- . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 13/07/2009 - 22:40:15 ---A- . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 13/07/2009 - 22:40:17 ---A- . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 13/07/2009 - 22:40:19 ---A- . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 13/07/2009 - 22:40:13 ---A- . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ~ Drivers: 19 Scanned in 00mn 03s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 01/01/2028 - 15:53:34 R-HA- . (...) -- C:\Users\Utilisateur\Downloads\Final Cut - Mort a l'Ecran Edition Collector fr.HURLUS\Final Cut - Mort a l'Ecran Edition Collector\CE\HURLUS.txt [20768] O61 - LFC: 16/03/2014 - 15:52:23 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\default\preferences [91055] =>.© O61 - LFC: 16/03/2014 - 15:52:55 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-03-16 (05-39-52).txt [1970] =>.© O61 - LFC: 16/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\adwcleaner.exe [1950720] O61 - LFC: 16/03/2014 - 15:53:37 ---A- . (...) -- C:\Users\Utilisateur\Videos\Oliver Stone - 01l10 - La Seconde Guerre Mondiale.avi [805868666] =>.© O61 - LFC: 16/03/2014 - 15:53:37 ---A- . (...) -- C:\Users\Utilisateur\Videos\Oliver Stone - 02l10 - Roosevelt, Truman et Wallace, occasion manquée.avi [800633238] =>.© O61 - LFC: 16/03/2014 - 15:53:38 ----- . (...) -- C:\Users\Utilisateur\Videos\u torrent fichiers\American.Hustle.2013.FRENCH.BDRip.x264-PRiDEHD.torrent [10177] O61 - LFC: 16/03/2014 - 15:53:38 ----- . (...) -- C:\Users\Utilisateur\Videos\u torrent fichiers\Une_autre_histoire_de_l_Amerique_Oliver_Stone.torrent [19808] O61 - LFC: 16/03/2014 - 15:53:38 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent fichiers\Une autre histoire de l'Amérique, par Oliver Stone open.torrent [19652] O61 - LFC: 16/03/2014 - 15:53:38 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\American.Hustle.2013.FRENCH.BDRip.x264-PRiDEHD\American.Hustle.2013.FRENCH.BDRip.x264-PRiDEHD.mkv [971750935] O61 - LFC: 16/03/2014 - 15:53:38 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\American.Hustle.2013.FRENCH.BDRip.x264-PRiDEHD\~uTorrentPartFile_39EBC052.dat [108546] =>.© O61 - LFC: 16/03/2014 - 15:53:42 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une autre histoire de l'Amérique, par Oliver Stone open\Une autre histoire de l'Amérique, par Oliver Stone - 01l10 - La Seconde Guerre Mondiale.mp4.!ut [380419460] O61 - LFC: 16/03/2014 - 15:53:42 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une autre histoire de l'Amérique, par Oliver Stone open\Une autre histoire de l'Amérique, par Oliver Stone - 02l10 - Roosevelt, Truman et Wallace, occasion manquée.mp4.!ut [378130548] O61 - LFC: 17/03/2014 - 15:52:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\CrashDumps\explorer.exe.5700.dmp [1443633] =>.© O61 - LFC: 17/03/2014 - 15:52:25 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\Nokia\Nokia Data Store\DataBase\MDataStore.db3 [1200128] =>.© O61 - LFC: 17/03/2014 - 15:52:25 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\Nokia\Nokia Data Store\Thumbnail\DataBase\MDataStore.db3 [3737600] =>.© O61 - LFC: 17/03/2014 - 15:52:25 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\Nokia\Nokia Suite\CDC\statistics.dat [16096] =>.© O61 - LFC: 17/03/2014 - 15:52:25 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\Nokia\Nokia Suite\Cache\recentMessagesModel.dat [129] =>.© O61 - LFC: 17/03/2014 - 15:53:14 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dht.dat.old [4118] =>.© O61 - LFC: 17/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\rss.dat.old [99] =>.© O61 - LFC: 17/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\CSI.Las.Vegas.S13E14.FRENCH.LD.HDTV.XviD-MiND-SC-Zone-Telechargement.Com.avi [367163627] =>.© O61 - LFC: 17/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\CSI.Las.Vegas.S13E15.FRENCH.LD.DVDRip.XviD-MiND.zone-telechargement.com.avi [367200556] =>.© O61 - LFC: 17/03/2014 - 15:53:37 ---A- . (...) -- C:\Users\Utilisateur\Videos\Oliver Stone - 03l10 - La bombe.avi [798801094] =>.© O61 - LFC: 17/03/2014 - 15:53:37 ---A- . (...) -- C:\Users\Utilisateur\Videos\Oliver Stone - 04l10 - La guerre froide, 1945-1950.avi [799286200] =>.© O61 - LFC: 17/03/2014 - 15:53:37 ---A- . (...) -- C:\Users\Utilisateur\Videos\The.Wolf.of.Wall.Street.2013.FRENCH.BDRip.x264-AYMO.avi [2033993934] =>.© O61 - LFC: 17/03/2014 - 15:53:38 ----- . (...) -- C:\Users\Utilisateur\Videos\u torrent fichiers\The.Wolf.of.Wall.Street.2013.FRENCH.BDRip.x264-AYMO.torrent [12614] O61 - LFC: 17/03/2014 - 15:53:42 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\The.Wolf.of.Wall.Street.2013.FRENCH.BDRip.x264-AYMO\The.Wolf.of.Wall.Street.2013.FRENCH.BDRip.x264-AYMO.mkv [1224917401] O61 - LFC: 17/03/2014 - 15:53:42 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\The.Wolf.of.Wall.Street.2013.FRENCH.BDRip.x264-AYMO\~uTorrentPartFile_4902C322.dat [124718] =>.© O61 - LFC: 17/03/2014 - 15:53:42 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une autre histoire de l'Amérique, par Oliver Stone open\Une autre histoire de l'Amérique, par Oliver Stone - 03l10 - La bombe.mp4.!ut [378061244] O61 - LFC: 17/03/2014 - 15:53:42 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une autre histoire de l'Amérique, par Oliver Stone open\Une autre histoire de l'Amérique, par Oliver Stone - 10l10 - Bush et Obama, l'ère du terrorisme.mp4.!ut [380522248] O61 - LFC: 17/03/2014 - 15:53:43 R--A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une_autre_histoire_de_l_Amerique_Oliver_Stone\Oliver Stone - 03l10 - La bombe.mp4.!ut [378061244] O61 - LFC: 17/03/2014 - 15:53:43 R--A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une_autre_histoire_de_l_Amerique_Oliver_Stone\Oliver Stone - 04l10 - La guerre froide, 1945-1950.mp4.!ut [377795016] O61 - LFC: 18/03/2014 - 15:52:18 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\FreemakeVideoConverter\Configs\conversionConfig [261] =>.© O61 - LFC: 18/03/2014 - 15:52:18 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\FreemakeVideoConverter\Configs\fileOpeningConfig [261] =>.© O61 - LFC: 18/03/2014 - 15:52:18 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\FreemakeVideoConverter\Configs\launchConfig [261] =>.© O61 - LFC: 18/03/2014 - 15:52:18 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\FreemakeVideoConverter\Configs\userConfig [261] =>.© O61 - LFC: 18/03/2014 - 15:52:56 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Office\Recent\budget.LNK [985] =>.© O61 - LFC: 18/03/2014 - 15:52:56 --H-- . (...) -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Office\Recent\index.dat [2741] =>.© O61 - LFC: 18/03/2014 - 15:53:13 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\SoftGrid Client\140066.FRA-90140011-66-40C\UsrVol_sftfs_v1.pkg [5923328] =>.© O61 - LFC: 18/03/2014 - 15:53:14 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\SoftGrid Client\Icon Cache\icon_ex.dat [2738] =>.© O61 - LFC: 18/03/2014 - 15:53:14 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\SoftGrid Client\shortcut_ex.dat [17] =>.© O61 - LFC: 18/03/2014 - 15:53:14 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dht.dat [3962] =>.© O61 - LFC: 18/03/2014 - 15:53:14 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dht_feed.dat [2] =>.© O61 - LFC: 18/03/2014 - 15:53:14 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dht_feed.dat.old [2] =>.© O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\07DF93AB3826DDC6C31958F4FA98A3A3C06F9622 [1150] =>.© O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\2000A2B87A84B030B1F00701AA87EC78404624E4 [1381] =>.© O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\2F8895AAB784A79B0CC41A7190CEC7259DBD40E4 [0] =>.© O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\3D34F7CBF0AB04CAF0C6363657FAD64A15BF33DE [824] =>.© O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\3D87A68C8B0A703BFC83A64FD3EBE153FEBD259B [0] =>.© O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\42335698F91E523F7CC09979C734B9F537284AD4 [2] =>.© O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\4E5A94E8524B6D30BFFEABE38574B96C0F85E4C5 [1150] =>.© O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\5108DF53CC447C7C85D4E98DC2487135DCD5C35B [1150] =>.© O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\9FEF9A5FE0C51DAC8E9497D5610AC5E485CF82F1 [240] =>.© O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\B92BC04FD4EA5A691F8A271243C6669EEA343A4E [1150] =>.© O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\C49EF3FA8788C2F05BE3028B054F439736440B29 [0] =>.© O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPADSReport.txt [351] =>.Nicolas Coolman O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPDiag.txt [300423] =>.Nicolas Coolman O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\resume.dat [5201] =>.© O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\resume.dat.old [5218] =>.© O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\rss.dat [99] =>.© O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\settings.dat [396847] =>.© O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\settings.dat.old [396847] =>.© O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\updates.dat [724] =>.© O61 - LFC: 18/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\CSI.Las.Vegas.S13E16.FRENCH.LD.DVDRip.XviD-MiND.zone-telechargement.com.avi [367177239] =>.© O61 - LFC: 18/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\CSI.Las.Vegas.S13E17.FRENCH.LD.DVDRip.XviD-MiND.zone-telechargement.com.avi [367193814] =>.© O61 - LFC: 18/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\CSI.Las.Vegas.S13E18.FRENCH.LD.DVDRip.XviD-MiND.zone-telechargement.com.avi [367230274] =>.© O61 - LFC: 18/03/2014 - 15:53:35 ---A- . (...) -- C:\Users\Utilisateur\Downloads\RogueKiller(1).exe [3901952] O61 - LFC: 18/03/2014 - 15:53:36 ---A- . (...) -- C:\Users\Utilisateur\Videos\Captain.Phillips.2013.FRENCH.SUBFORCED.BDRip.XviD-FrIeNdS.avi [1416652418] =>.© O61 - LFC: 18/03/2014 - 15:53:36 ---A- . (...) -- C:\Users\Utilisateur\Videos\a.Oliver Stone - 05l10 - Les années 1950, Eisenhower, la bombe et le tiers-monde.avi [794044586] =>.© O61 - LFC: 18/03/2014 - 15:53:37 ---A- . (...) -- C:\Users\Utilisateur\Videos\Oliver Stone - 06l10 - JFK, au bord du gouffre.avi [793404654] =>.© O61 - LFC: 18/03/2014 - 15:53:38 ----- . (...) -- C:\Users\Utilisateur\Videos\u torrent fichiers\Captain Phillips 2013 FRENCH SUBFORCED BDRip XviD-FrIeNdS.torrent [15017] O61 - LFC: 18/03/2014 - 15:53:38 R--A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Captain Phillips 2013 FRENCH SUBFORCED BDRip XviD-FrIeNdS\Captain.Phillips.2013.FRENCH.SUBFORCED.BDRip.XviD-FrIeNdS.avi [1483014144] =>.© O61 - LFC: 18/03/2014 - 15:53:43 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une autre histoire de l'Amérique, par Oliver Stone open\~uTorrentPartFile_E10E06B0.dat [230460] =>.© O61 - LFC: 18/03/2014 - 15:53:43 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une_autre_histoire_de_l_Amerique_Oliver_Stone\~uTorrentPartFile_E10E078F.dat [6718524] =>.© O61 - LFC: 18/03/2014 - 15:53:43 R--A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une_autre_histoire_de_l_Amerique_Oliver_Stone\Oliver Stone - 02l10 - Roosevelt, Truman et Wallace, occasion manquée.mp4.!ut [378130548] O61 - LFC: 18/03/2014 - 15:53:43 R--A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une_autre_histoire_de_l_Amerique_Oliver_Stone\Oliver Stone - 05l10 - Les années 1950, Eisenhower, la bombe et le tiers-monde.mp4 [376896201] O61 - LFC: 18/03/2014 - 15:53:43 R--A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une_autre_histoire_de_l_Amerique_Oliver_Stone\Oliver Stone - 06l10 - JFK, au bord du gouffre.mp4 [375907239] O61 - LFC: 19/03/2014 - 15:52:24 --HA- . (...) -- C:\Users\Utilisateur\AppData\Local\IconCache.db [1165556] =>.© O61 - LFC: 19/03/2014 - 15:52:26 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\Temp\FXSAPIDebugLogFile.txt [0] O61 - LFC: 19/03/2014 - 15:52:42 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\AVAST Software\Avast\Cache\HTMLayout.xml [3732] =>.© O61 - LFC: 19/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\ZHP\Log.txt [137391] =>.Nicolas Coolman O61 - LFC: 19/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\ZHP\TestsZHPDiag.txt [2971] =>.Nicolas Coolman O61 - LFC: 19/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\Hostages.S01E01.FRENCH.zone-telechargement.com.avi [367659017] =>.© O61 - LFC: 19/03/2014 - 15:53:35 ---A- . (...) -- C:\Users\Utilisateur\Downloads\Hostages.S01E02.FRENCH.HDTV.XviD-ASPHiXiAS.zone-telechargement.com.avi [367616032] =>.© O61 - LFC: 19/03/2014 - 15:53:35 ---A- . (...) -- C:\Users\Utilisateur\Downloads\Low.Winter.Sun.US.S01E07.FRENCH.zone-telechargement.com.avi [367404099] =>.© O61 - LFC: 19/03/2014 - 15:53:35 ---A- . (...) -- C:\Users\Utilisateur\Downloads\Low.Winter.Sun.US.S01E08.FRENCH.zone-telechargement.com.avi [367391251] =>.© O61 - LFC: 19/03/2014 - 15:53:35 ---A- . (.El Desaparecido - SosVirus.net - UsbFix.net.) -- C:\Users\Utilisateur\Downloads\UsbFix.exe [3099901] =>.© ~ 1 Fichiers temporaires (Temporary files) ~ Files: 87 Scanned in 01mn 37s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: UsbFix - (.El Desaparecido - www.usbfix.net - www.sosvirus.net.) [HKLM] -- Usbfix O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman ~ ADS: Scanned in 00mn 00s ---\\ Liste les services legacy du registre (LALS) (O64) O64 - Services: CurCS - 14/09/2013 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD =>.© O64 - Services: CurCS - 25/01/2014 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT =>.© O64 - Services: CurCS - 21/02/2014 - C:\Windows\System32\DRIVERS\aswNdisFlt.sys (aswNdisFlt) .(.AVAST Software - avast! Filtering NDIS driver.) - LEGACY_ASWNDISFLT =>.© O64 - Services: CurCS - 21/10/2013 - C:\Windows\system32\drivers\aswRdr2.sys (aswRdr) .(.AVAST Software - avast! WFP Redirect Driver.) - LEGACY_ASWRDR =>.© O64 - Services: CurCS - 21/10/2013 - C:\Windows\System32\Drivers\aswRvrt.sys (aswRvrt) .(...) - LEGACY_ASWRVRT =>.© O64 - Services: CurCS - 25/01/2014 - C:\Windows\system32\drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX =>.© O64 - Services: CurCS - 25/01/2014 - C:\Windows\system32\drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP =>.© O64 - Services: CurCS - 25/01/2014 - C:\Windows\system32\drivers\aswStm.sys (aswStm) .(.AVAST Software - Stream Filter.) - LEGACY_ASWSTM =>.© O64 - Services: CurCS - 22/12/2013 - C:\Windows\System32\Drivers\aswVmm.sys (aswVmm) .(...) - LEGACY_ASWVMM =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\atapi.sys (atapi) .(.Microsoft Corporation - ATAPI IDE Miniport Driver.) - LEGACY_ATAPI =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\Beep.sys (Beep) .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP =>.© O64 - Services: CurCS - 26/02/2014 - C:\Windows\System32\drivers\BootDefragDriver.sys (BootDefragDriver) .(.Glarysoft Ltd - Boot Defrag Driver.) - LEGACY_BOOTDEFRAGDRIVER =>.© O64 - Services: CurCS - 04/07/2012 - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\cdfs.sys (cdfs) .(.Microsoft Corporation - CD-ROM File System Driver.) - LEGACY_CDFS =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS =>.© O64 - Services: CurCS - 04/07/2013 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE =>.© O64 - Services: CurCS - 01/08/2013 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\fastfat.sys (fastfat) .(.Microsoft Corporation - Fast FAT File System Driver.) - LEGACY_FASTFAT =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR =>.© O64 - Services: CurCS - 22/05/2013 - C:\Windows\system32\FsUsbExDisk.sys (FsUsbExDisk) .(...) - LEGACY_FSUSBEXDISK =>.© O64 - Services: CurCS - 24/01/2013 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL =>.© O64 - Services: CurCS - 01/11/2012 - C:\Windows\System32\DRIVERS\hssdrv6.sys (HssDRV6) .(.AnchorFree Inc. - Hotspot Shield Routing Driver.) - LEGACY_HSSDRV6 =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY =>.© O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD =>.© O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecpkg.sys (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV =>.© O64 - Services: CurCS - 04/04/2013 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10 =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20 =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\msisadrv.sys (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\nwifi.sys (NativeWifiP) .(.Microsoft Corporation - Pilote de miniport WiFi natif.) - LEGACY_NATIVEWIFIP =>.© O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\DRIVERS\ndisuio.sys (Ndisuio) .(.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) - LEGACY_NDISUIO =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT =>.© O64 - Services: CurCS - 01/03/2013 - C:\Windows\System32\drivers\npf.sys (NPF) .(.Riverbed Technology, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) - LEGACY_NPF =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pcw.sys (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\peauth.sys (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR =>.© O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV =>.© O64 - Services: CurCS - 26/06/2013 - C:\Windows\System32\DRIVERS\Sftfswin7.sys (Sftfs) .(.Microsoft Corporation - Microsoft Application Virtualization File S.) - LEGACY_SFTFS =>.© O64 - Services: CurCS - 26/06/2013 - C:\Windows\System32\DRIVERS\Sftplaywin7.sys (Sftplay) .(.Microsoft Corporation - Microsoft Application Virtualization System.) - LEGACY_SFTPLAY =>.© O64 - Services: CurCS - 26/06/2013 - C:\Windows\System32\DRIVERS\Sftredirwin7.sys (Sftredir) .(.Microsoft Corporation - Microsoft Application Virtualization System.) - LEGACY_SFTREDIR =>.© O64 - Services: CurCS - 26/06/2013 - C:\Windows\System32\DRIVERS\Sftvolwin7.sys (Sftvol) .(.Microsoft Corporation - Microsoft Application Virtualization Volume.) - LEGACY_SFTVOL =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\spldr.sys (spldr) .(.Microsoft Corporation - loader for security processor.) - LEGACY_SPLDR =>.© O64 - Services: CurCS - 13/07/2012 - C:\Windows\system32\Drivers\sptd.sys (sptd) .(.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) - LEGACY_SPTD =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2 =>.© O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP =>.© O64 - Services: CurCS - 03/10/2012 - C:\Windows\System32\drivers\tcpipreg.sys (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX =>.© O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6 =>.© O64 - Services: CurCS - 25/06/2013 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000 =>.© O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\wfplwf.sys (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF =>.© ~ Legacy: 102 Scanned in 00mn 00s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.© O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.© O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.© O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.© O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe =>.© O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.© O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.exe =>.© O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe =>.© O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.© O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.© O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.© ~ FASS Keys: 11 Scanned in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) O69 - SBI: SearchScopes [HKCU] ${searchCLSID} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {0DB68DB5-8952-451E-A334-E367AB0553EE} - (Google) - http://www.google.com O69 - SBI: SearchScopes [HKCU] {F57821DB-FB05-4106-A683-EBDD7EC482A0} - (DVDvideoSoft 2.0 Customized Web Search) - http://search.conduit.com ~ Keys: Scanned in 00mn 00s ---\\ Enumère les fichiers Crack & Keygen (CKF) (O82) C:\Users\Utilisateur\Videos\u torrent films téléchargés\Trojan Remover 6.9.6 (Full Version with Keygen)\Trojan Remover 6.9.6 (Full Version with Keygen).rar.!ut C:\Users\Utilisateur\Videos\u torrent films téléchargés\Trojan Remover 6.9.6 (Full Version with Keygen)\Trojan Remover 6.9.6 (Full Version with Keygen).rar.!ut ~ Files: Scanned in 00mn 10s ---\\ Enumère les service demarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.© O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [67584] =>.© O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [67584] =>.© O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] =>.© O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] =>.© O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [679424] =>.© O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [473600] =>.© O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [90624] =>.© O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] =>.© O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] =>.© O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [49664] =>.© O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.© O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [242176] =>.© O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [521216] =>.© O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\system32\wuaueng.dll [1933848] =>.© O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [585728] =>.© O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] =>.© O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.© O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [21504] =>.© O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] =>.© O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.© O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [49664] =>.© O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.© O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] =>.© O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352] =>.© O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] =>.© O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [71168] =>.© O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [113664] =>.© O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.© O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] =>.© O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] =>.© O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.© ~ Services: 32 Scanned in 00mn 00s ---\\ Recherche particulière à la racine du système (SPRF) (O84) [MD5.254FBCA565E049648B0CCE2CEADF05D2] [SPRF][04/01/2014] (...) -- C:\Users\Utilisateur\AppData\Roaming\inst.exe [87608] [MD5.5B6C11DE7E839C05248CED8825470FEF] [SPRF][04/01/2014] (.VSO Software - low level access layer for CD/DVD/BD devices.) -- C:\Users\Utilisateur\AppData\Roaming\pcouffin.sys [47360] =>.© [MD5.D60C1B509A62E349F92B528AF6C24DD9] [SPRF][15/07/2013] (.Rovio - Pas de description.) -- C:\Users\Utilisateur\Desktop\AngryBirdsStarWarsInstaller_1-1-2.exe [72352576] =>.© [MD5.E998F77C0943056319A6A46C330606A4] [SPRF][07/08/2009] (.none - WLAN Optimizer.) -- C:\Users\Utilisateur\Desktop\WLAN Optimizer.exe [109056] ~ Files: 4 Scanned in 00mn 03s ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe =>.© O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe =>.© O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe =>.© O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe =>.© O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe =>.© O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe =>.© O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe =>.© O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe =>.© O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe =>.© O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe =>.© O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe =>.© O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe =>.© O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe =>.© O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe =>.© O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe =>.© O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe =>.© O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe =>.© O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe =>.© O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe =>.© O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe =>.© O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe =>.© O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe =>.© O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe =>.© O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe =>.© O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe =>.© O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe =>.© O87 - FAEL: "Collab-P2PHost-In-TCP" | In - None - P6 - TRUE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe =>.© O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMPNSS-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.© O87 - FAEL: "WMPNSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.© O87 - FAEL: "WMPNSS-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.© O87 - FAEL: "WMPNSS-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.© O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMPNSS-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.© O87 - FAEL: "WMPNSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.© O87 - FAEL: "WMPNSS-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.© O87 - FAEL: "WMPNSS-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.© O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WMP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "WMP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "WMP-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe =>.© O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe =>.© O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe =>.© O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe =>.© O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MCX-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.© O87 - FAEL: "MCX-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.© O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MCX-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.© O87 - FAEL: "MCX-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.© O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe =>.© O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe =>.© O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{939D5301-2ECB-4E2B-841B-C8951CA7415D}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "{A01CC783-374E-49C2-935F-73947E7CF67E}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "{EB3A9E19-E705-499D-8EC8-3C1133FFF423}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "{3BA8F178-7FE6-4E1E-B1FD-57AF4A8A6712}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{5A97BCC3-340C-4D82-9824-9EFE3698BA27}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{2BF4C3AF-C9EC-4B87-BFDB-08E3E852D59C}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{5056FBCD-F407-4FEF-B20C-4F701711D441}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{76388978-BB64-4A6B-ACF3-B4C63332860A}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{D5DEB7AD-3C8B-4C0F-B069-C5B3C681AD70}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{2D24B197-DD5B-4360-A492-B857907F67FA}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "{73A9AD4C-9E25-45F8-BCCD-9DBF6C19AD47}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "{5AE131DE-BD83-4F74-8E36-01B25A1BB2E6}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.© O87 - FAEL: "{16BA9528-D2B8-4937-8C50-7685092F1D86}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.© O87 - FAEL: "{A8D5E63B-0BE8-469C-BC34-9CB87EE2B917}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.© O87 - FAEL: "{775CB514-1FEE-4378-A39A-EF1FE8B9DF58}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.© O87 - FAEL: "{32887126-4048-442E-B63E-A06967CF548D}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.© O87 - FAEL: "{A24EBA06-5ECF-435F-8755-ECA3329DFD6F}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{DAE44BD1-23E3-48F8-B15D-8014077B85F3}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe =>.© O87 - FAEL: "{20D9A643-631E-42D4-8080-7D0B1F2D469C}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{D34B7759-1CE6-4977-A699-FB5A8E13646D}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{D3B6054E-8691-4278-B883-3B16C94DE8B7}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{3E604692-A9D0-4F98-B587-1A77B068484C}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{B3621570-04E9-4BA6-A335-364B40114CD8}" | In - Private - P6 - TRUE | .(.Musiccity Co.Ltd. - MUZAoDApp Module.) -- C:\Windows\System32\muzapp.exe =>.© O87 - FAEL: "{92922969-DCED-4BCD-9F78-0E848ECBF0D7}" | In - Private - P17 - TRUE | .(.Musiccity Co.Ltd. - MUZAoDApp Module.) -- C:\Windows\System32\muzapp.exe =>.© O87 - FAEL: "{73E7DA1E-78EC-4990-8C00-22E1A4BEAC9D}" | In - None - P6 - TRUE | .(.Microsoft Corporation - SMSvcHost.exe.) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe =>.© O87 - FAEL: "TCP Query User{BF2652EC-C471-46AA-85A4-35A33E3D719A}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Visual Basic Command Line Compiler.) -- C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe =>.© O87 - FAEL: "UDP Query User{56A886B2-03CE-4A65-B708-4EA242F449B1}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Visual Basic Command Line Compiler.) -- C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe =>.© O87 - FAEL: "{4D461B55-FA9D-440E-8925-FB02C8D935C6}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Installateur Windows®.) -- C:\Windows\System32\msiexec.exe =>.© O87 - FAEL: "{3A98A6B4-E646-4162-9F51-CFC17E5B586F}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Installateur Windows®.) -- C:\Windows\System32\msiexec.exe =>.© O87 - FAEL: "{26D86806-BE85-4D07-B14A-B60075044EE5}" | In - Private - P6 - TRUE | .(.Opera Software - Opera Internet Browser plugin wrapper.) -- C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe =>.© O87 - FAEL: "{EFA9CF94-C5F7-4978-B7B0-3D14A6010360}" | In - Private - P17 - TRUE | .(.Opera Software - Opera Internet Browser plugin wrapper.) -- C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe =>.© O87 - FAEL: "{95B094F5-A317-44C9-83D8-822141B27F5D}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files\TLKGAMES\3D Chess Unlimited Shareware\DXSetup.exe O87 - FAEL: "{CDC3794D-EB6F-4C41-8295-94E6013A5109}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files\TLKGAMES\3D Chess Unlimited Shareware\DXSetup.exe O87 - FAEL: "{605FE885-DABF-4DAD-B63C-63F0C694B2BB}" | In - Domain - P6 - FALSE | .(...) -- C:\Program Files\TLKGAMES\3D Chess Unlimited Shareware\DXSetup.exe O87 - FAEL: "{2A32BE19-5BEA-4B09-A8E7-CA0327EC948F}" | In - Domain - P17 - FALSE | .(...) -- C:\Program Files\TLKGAMES\3D Chess Unlimited Shareware\DXSetup.exe O87 - FAEL: "RemoteDesktop-UserMode-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "TCP Query User{F112A4FE-CD67-4731-A3B2-D0A645147018}C:\program files\internet explorer\iexplore.exe" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Internet Explorer.) -- C:\program files\internet explorer\iexplore.exe =>.© O87 - FAEL: "UDP Query User{B7BE050A-8A52-473B-BAAA-5A4462AB595D}C:\program files\internet explorer\iexplore.exe" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Internet Explorer.) -- C:\program files\internet explorer\iexplore.exe =>.© O87 - FAEL: "{B0F70E67-4D3B-4CAC-9883-ADCEEF8719CB}" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{9436EDE3-6D3C-4166-A499-0BD42BE774AB}" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{B878DDB8-FA17-4848-84A0-0A09B7535BCA}" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Microsoft Zune.) -- C:\Program Files\Zune\Zune.exe =>.© O87 - FAEL: "{B6CDB632-736B-4F61-B4FB-7492EE91BB22}" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{5749DF81-BDDE-406F-AAC6-A8F69E72A017}" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe =>.© O87 - FAEL: "{A88A673D-4747-4F50-BBA3-C1FB5E3B131D}" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe =>.© O87 - FAEL: "{FAEB5379-4E90-4B2C-B911-33DD55BFBD14}" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{017BD84D-0B12-4F24-BB10-2B44D1CD3CE7}" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{A0312D60-8F8F-41F0-8A89-B613E10268CC}" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{5E581B7A-F0C5-4D15-8B6F-2E0A3B1BA4C6}" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{5E5CF868-AF87-4BF0-9BD6-C66E8F3450BF}" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.© O87 - FAEL: "{68204967-2DB8-470F-910B-E276B68F3D7C}" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.© O87 - FAEL: "{9B521DAB-EB31-4876-925F-31F7B30F7F60}" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.© O87 - FAEL: "{B4096E9E-5F92-4629-B77E-43BF81E0F1A2}" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.© O87 - FAEL: "{56984B25-7D1B-4F85-AFCB-16EAB81AC415}" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{E8268CD4-131F-4E0B-AA5E-10F4458B2C45}" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{3A55D5CA-F671-4ADE-82DA-C5D37CC414E3}" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{43F4A7EB-BCCF-44C3-994F-3EC301F093B0}" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{AEA1CAF4-9EDA-4D79-8161-52F4F3FBDAC6}" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{481F1650-B58C-4E5D-AE2B-4E7DF6F796E9}" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{C6AB5008-EAF7-47B0-A10C-D11838CAD85D}" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.© O87 - FAEL: "{E863479D-43DA-4BD9-9272-3187B3D13CC4}" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.© O87 - FAEL: "{F2B5132D-63EE-4FDF-9469-0AB441D8392B}" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.© O87 - FAEL: "{CC094417-8EE1-4149-8F77-8CF9D2ACD43E}" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.© O87 - FAEL: "{A9EF6D26-51CA-447F-B5E4-CFACC2DC06DE}" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.© O87 - FAEL: "{1F550823-6608-41B7-A0A2-FE5B919D7467}" | In - None - P6 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe =>.© O87 - FAEL: "{0624DD69-22D6-49C0-A99E-2B0AEAAEB8F6}" | In - None - P6 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files\iTunes\iTunes.exe =>.© O87 - FAEL: "{BB0B6251-BFB3-4B34-BA37-E97D0B3BA830}" | In - None - P6 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\uTorrent.exe =>.© O87 - FAEL: "{C47ED992-EDBD-4D73-A44C-E24F869BAE35}" | In - None - P17 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\uTorrent.exe =>.© O87 - FAEL: "{32917F73-2CA6-4119-B843-0395B0FE4503}" | In - Private - P6 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe =>.© O87 - FAEL: "{F87DED98-B4D4-49C5-A774-00F9C7F3B469}" | In - Private - P17 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe =>.© O87 - FAEL: "{A226094A-AC66-4EA3-96B3-1676C6383C71}" | In - None - P17 - TRUE | .(.Nokia - Nokia Suite.) -- C:\Program Files\nokia\nokia suite\nokiasuite.exe =>.© O87 - FAEL: "{89C2E01C-5DEC-4066-9815-636CFC4723FD}" |In - None - P17 - TRUE | .(...) -- C:\Program Files\Common Files\nokia\service layer\a\nsl_host_process.exe (.not file.) =>.© O87 - FAEL: "{DB562C4E-045C-4DBA-97E6-74A54D154FE7}" | In - Private - P6 - TRUE | .(.NeoRouter Inc. - NeoRouter Client Service.) -- C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe O87 - FAEL: "{3E8D2DA2-BCCA-42FC-A573-F34DD548D2BC}" | In - Private - P17 - TRUE | .(.NeoRouter Inc. - NeoRouter Client Service.) -- C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe O87 - FAEL: "{49595E75-A32F-4E46-B87A-08439290A236}" | In - Public - P6 - TRUE | .(.NeoRouter Inc. - NeoRouter Client Service.) -- C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe O87 - FAEL: "{DCF8249A-A750-43EC-AF5C-14846BFEA43C}" | In - Public - P17 - TRUE | .(.NeoRouter Inc. - NeoRouter Client Service.) -- C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe ~ Firewall: 236 Scanned in 00mn 01s ---\\ Enumère les codes produits des logiciels (PUC) (O90) O90 - PUC: "000021090B00C0400000000000F01FEC" . (.Complément Microsoft Enregistrer en tant que PDF pour programmes Microsoft Office 2007.) -- C:\Windows\Installer\{90120000-00B0-040C-0000-0000000FF1CE}\expdfic.exe =>.© O90 - PUC: "000021092B00C0400000000000F01FEC" . (.Complément Microsoft Enregistrer en tant que PDF ou XPS pour programmes Microsoft Office 2007.) -- C:\Windows\Installer\{90120000-00B2-040C-0000-0000000FF1CE}\expxic.exe =>.© O90 - PUC: "1B1D10D6DB7101F4BB110FF8C0744DB2" . (.PC Connectivity Solution.) -- C:\Windows\Installer\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}\ARPPRODUCTICON.exe =>.© O90 - PUC: "277C90D53BCEB244C96C4B43C187DF2C" . (.Apple Application Support.) -- C:\Windows\Installer\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}\WinInstall.ico =>.© O90 - PUC: "2D64DF197BF415A4687355E6B11EBDC7" . (.iTunes.) -- C:\Windows\Installer\{91FD46D2-4FB7-4A51-8637-556E1BE1DB7C}\Installer.ico =>.© O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico =>.© O90 - PUC: "47237392E779C3144AEDCDF0E8084C92" . (.Nokia Connectivity Cable Driver.) -- C:\Windows\Installer\{29373274-977E-413C-A4DE-DC0F8E80C429}\ARPPRODUCTICON.exe =>.© O90 - PUC: "55AA633C3ABB809488F652FCD603D231" . (.Angry Birds Star Wars.) -- C:\Windows\Installer\{C336AA55-BBA3-4908-886F-25CF6D302D13}\icon.exe =>.© O90 - PUC: "5F881BDE8E8DEE24980E2F21AD84BC18" . (.Nokia Suite.) -- C:\Windows\Installer\{EDB188F5-D8E8-42EE-89E0-F212DA48CB81}\ARPPRODUCTICON.exe =>.© O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.06) - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico =>.© O90 - PUC: "7C43C21609E58D74B9C5F017D78D7262" . (.swMSM.) -- C:\Windows\Installer\{612C34C7-5E90-47D8-9B5C-0F717DD82726}\ARPPRODUCTICON.exe =>.© O90 - PUC: "8FC229B8C6A8EC148A851F57D5F7D592" . (.NVIDIA PhysX.) -- C:\Windows\Installer\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}\icon.ico =>.© O90 - PUC: "A7B14B03D9C3ED447A1A4909113FC33C" . (.PDF Architect.) -- C:\Windows\Installer\{30B41B7A-3C9D-44DE-A7A1-949011F33CC3}\main_icon =>.© O90 - PUC: "E0EDA41E3F5764A4785E6296D26D62CE" . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{E14ADE0E-75F3-4A46-87E5-26692DD626EC}\Installer.ico =>.© O90 - PUC: "F6071111A6667304777712318267D401" . (.JavaFX 2.1.1.) -- C:\Windows\Installer\{1111706F-666A-4037-7777-211328764D10}\javaIcon.ico =>.© ~ Update Products: 64 Scanned in 00mn 00s ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) =>.© [MD5.6B3B407E30E7D4C46F0F2327D63789FA] [WIS][25/12/2013] (.Nokia - MSVC80_x86_v2.) -- C:\Windows\Installer\1d369d9.msi [12815360] =>.© [MD5.19A665988BA2E2C24261EEA6AFD1B353] [WIS][25/12/2013] (.Nokia - MSVC90_x86.) -- C:\Windows\Installer\1d369e0.msi [28236288] =>.© [MD5.44AC5FA411BDC34CF17DB30422612742] [WIS][25/12/2013] (.Nokia - Microsoft_VC100_CRT_SP1.) -- C:\Windows\Installer\1d369e7.msi [503808] =>.© [MD5.C8ADE4B1732EF1770C5E6B54F892A6A4] [WIS][25/12/2013] (.Nokia - Nokia Connectivity Cable Driver.) -- C:\Windows\Installer\1d369ee.msi [7032832] =>.© [MD5.10E805D8636B1B3AF596688600EF6EC2] [WIS][25/12/2013] (.Nokia - PC Connectivity Solution.) -- C:\Windows\Installer\1d369f5.msi [26374144] =>.© [MD5.96D46EB790E2C269871162FB5F9A05E6] [WIS][25/12/2013] (.Nokia - Nokia Suite.) -- C:\Windows\Installer\1d369fd.msi [261939200] =>.© [MD5.0E67B6EA9B615567F878C1790A5EEF00] [WIS][22/08/2013] (.Gemalto - GemPcCCID Version 2.0.3.) -- C:\Windows\Installer\1e48448.msi [1248256] =>.© [MD5.22C9E7805145D0A0C4C62DDB591D2DAE] [WIS][27/06/2012] (.Babylon Ltd - BabylonObjectInstaller.) -- C:\Windows\Installer\24a1fee.msi [353280] =>PUP.Babylon [MD5.22C9E7805145D0A0C4C62DDB591D2DAE] [WIS][27/06/2012] (.Babylon Ltd - BabylonObjectInstaller.) -- C:\Windows\Installer\24a1fee.msi [353280] =>.© [MD5.E6CEB78DD2DF5FA412B02F07D359A14F] [WIS][13/09/2013] (.Ask.com - Blank Project Template.) -- C:\Windows\Installer\31a5e8b.msi [2717260] =>.© [MD5.FD2F75F2BBF246D930D5070C485ED932] [WIS][31/01/2014] (.Gemalto - GemPcCCID Version 2.0.1.) -- C:\Windows\Installer\31e321.msi [1265152] =>.© [MD5.8C74CBC105604D942C29C8486A62B72C] [WIS][03/09/2013] (.RagTime.de Development GmbH - RagTime 6.5.) -- C:\Windows\Installer\39065b.msi [124153856] [MD5.8C74CBC105604D942C29C8486A62B72C] [WIS][03/09/2013] (.RagTime.de Development GmbH - RagTime 6.5.) -- C:\Windows\Installer\39065b.msi [124153856] =>.© [MD5.22C9E7805145D0A0C4C62DDB591D2DAE] [WIS][27/06/2012] (.Babylon Ltd - BabylonObjectInstaller.) -- C:\Windows\Installer\7cab42.msi [353280] =>PUP.Babylon [MD5.22C9E7805145D0A0C4C62DDB591D2DAE] [WIS][27/06/2012] (.Babylon Ltd - BabylonObjectInstaller.) -- C:\Windows\Installer\7cab42.msi [353280] =>.© [MD5.8016A3D6D4C92179B9065BD4EA14F355] [WIS][19/04/2013] (.Rovio Entertainment Ltd. - Angry Birds Star Wars.) -- C:\Windows\Installer\a397f26.msi [1513984] =>.© [MD5.6EF2A4AF77CA58F8B0D3FE37A2864D0C] [WIS][06/07/2012] (.Ask.com - Blank Project Template.) -- C:\Windows\Installer\cc7c79.msi [3809280] =>.© [MD5.03CA60D5185FC77BBABA6F29D89DF029] [WIS][07/01/2013] (.pdfforge - PDF Architect Installer.) -- C:\Windows\Installer\cf3a79.msi [50487296] =>.© [MD5.A91D34375B4647FF0F57E8076EC72B1B] [WIS][08/08/2012] (.Babylon Ltd - BabylonObjectInstaller.) -- C:\Windows\Installer\e69c56.msi [343040] =>PUP.Babylon [MD5.E6CEB78DD2DF5FA412B02F07D359A14F] [WIS][09/09/2012] (.Ask.com - Blank Project Template.) -- C:\Windows\Installer\e69c5c.msi [2717260] =>.© ~ WIS: 86 Scanned in 01mn 11s ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SS - | Disabled 21/12/2013 65432 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe SS - | Demand 12/03/2014 257928 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe SS - | Disabled 21/12/2012 57008 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe SS - | Disabled 20/01/2014 103936 | (Freemake Improver) . (.Freemake.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe SS - | Demand 09/05/2011 136120 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe SS - | Demand 31/05/2013 553288 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe SS - | Auto 04/04/2013 701512 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe SS - | Demand 13/03/2014 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe SS - | Disabled 22/11/2012 1522312 | (PDF Architect Helper Service) . (.pdfforge GbR.) - C:\Program Files\PDF Architect\HelperService.exe SS - | Disabled 22/11/2012 905864 | (PDF Architect Service) . (.pdfforge GbR.) - C:\Program Files\PDF Architect\ConversionService.exe SS - | Demand 01/03/2013 118520 | (rpcapd) . (.Riverbed Technology, Inc..) - C:\Program Files\WinPcap\rpcapd.exe SS - | Auto 16/05/2013 1033688 | (SDUpdateService) . (.Safer-Networking Ltd..) - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe SS - | Demand 18/04/2013 737616 | (ServiceLayer) . (.Nokia.) - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe SS - | Disabled 04/07/2012 265928 | C:\Program Files\SPEEDB~1\VideoAcceleratorService.exe (VideoAcceleratorService) . (.SpeedBit Ltd..) - C:\Program Files\SpeedBit Video Accelerator\VideoAcceleratorService.exe SR - | Auto 25/01/2014 50344 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe SR - | Auto 25/01/2014 113704 | (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe SR - | Auto 22/05/2013 233472 | (FsUsbExService) . (.Teruten.) - C:\Windows\system32\FsUsbExService.exe SR - | Auto 04/04/2013 418376 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe SR - | Auto 27/11/2013 1898320 | (NRClientService) . (.NeoRouter Inc..) - C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe SR - | Auto 23/10/2013 664352 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe SR - | Auto 27/10/2013 1364256 | (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe SR - | Auto 16/05/2013 1817560 | (SDScannerService) . (.Safer-Networking Ltd..) - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe SR - | Auto 15/05/2013 171928 | (SDWSCService) . (.Safer-Networking Ltd..) - C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe SR - | Auto 23/10/2013 414496 | (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe SR - | Auto 14/07/2009 20992 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 14/07/2009 20992 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 01mn 12s ---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80) Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net Run by Utilisateur at 19/03/2014 15:55:19 device: opened successfully user: error reading MBR Disk trace: error: Read Descripteur non valide kernel: error reading MBR ~ MBR: 9 Scanned in 00mn 02s ---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by Utilisateur at 19/03/2014 15:55:21 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 04s ---\\ Liste des émulateurs de CD/DVD (MBR Hook) O58 - SDL:[MD5.0022CFFF1A41E5CE3A764050A7DDF22A] - 13/07/2012 - 07:44:51 ---A- . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\Drivers\sptd.sys [477240] ~ Emulateurs: Scanned in 00mn 04s ---\\ Scan Additionnel (O88) Database Version : 13031 - (19/03/2014) Clés trouvées (Keys found) : 30 Valeurs trouvées (Values found) : 2 Dossiers trouvés (Folders found) : 0 Fichiers trouvés (Files found) : 5 [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS] =>Trojan.Trojan.Keygen^ [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Express Files Updater] =>Adware.ExpressFiles^ [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YourFile DownloaderUpdate] =>PUP.YourFileDownloader^ [HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\uTorrent] =>P2P.BitTorrent^ [HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.Ask [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D6533F74-218B-41BE-9D91-5BD471FECFFD}] =>Toolbar.Conduit [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ef79f67a-6ad7-4715-a0f8-932fca442023}] =>Toolbar.Conduit [HKLM\Software\Classes\BHO.IFlashGetNetscapeEx] =>Adware.BDSearch [HKLM\Software\Classes\BHO.IFlashGetNetscapeEx.1] =>Adware.BDSearch [HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\HssSrv] =>Toolbar.Agent [HKCU\Software\mixidj LTD] =>Adware.SmileyBar [HKLM\Software\Classes\AppID\{2C254882-699A-464B-95F5-32F003F4F45C}] =>Adware.BDSearch [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10245650-5917-4ff8-BED6-ABB91DD73E47}] =>Adware.BDSearch [HKLM\Software\Classes\CLSID\{10245650-5917-4ff8-BED6-ABB91DD73E47}] =>Adware.BDSearch [HKLM\Software\Classes\AppID\FlashgetHook.DLL] =>Adware.BDSearch [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{116ba71c-8187-4f15-9a1f-c9d6289155d1}] =>Adware.BDSearch [HKLM\Software\Classes\CLSID\{116ba71c-8187-4f15-9a1f-c9d6289155d1}] =>Adware.BDSearch [HKLM\Software\Classes\CLSID\{A0939A48-0E2F-453F-899C-595F6648EE88}] =>Adware.BDSearch [HKLM\Software\Classes\Interface\{A0939A48-0E2F-453F-899C-595F6648EE88}] =>Adware.BDSearch [HKLM\Software\Classes\Interface\{6DD9E779-2707-4BF0-8269-E4C6BD8B39B7}] =>Adware.BDSearch [HKLM\Software\Classes\Interface\{810B845F-70F3-4B05-9625-3FB37B59A884}] =>Adware.BDSearch [HKLM\Software\Classes\TypeLib\{DF772EB8-4116-49AE-8FA4-B5B078AA4198}] =>Adware.BDSearch [HKLM\Software\Classes\FG2CatchUrl.Netscape] =>Adware.BDSearch [HKLM\Software\Classes\FG2CatchUrl.Netscape.1] =>Adware.BDSearch [HKLM\Software\Classes\FlashGetHook.FG3DownMgr] =>Adware.BDSearch [HKLM\Software\Classes\FlashGetHook.FG3DownMgr.1] =>Adware.BDSearch [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011341191}] =>PUP.CrossRider [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011441179}] =>PUP.CrossRider [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311711180}] =>PUP.CrossRider [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311791108}] =>PUP.CrossRider [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified =>Hijacker.Application^ C:\Windows\AutoKMS\AutoKMS.exe =>Trojan.Trojan.Keygen^ C:\Windows\Installer\24a1fee.msi =>PUP.Babylon^ C:\Windows\Installer\7cab42.msi =>PUP.Babylon^ C:\Windows\Installer\e69c56.msi =>PUP.Babylon^ ~ Additionnel Scan: 257716 Items scanned in 00mn 24s ---\\ Récapitulatif des détections trouvées sur votre station ~ http://nicolascoolman.webs.com/apps/blog/show/26753274-adware-expressfiles =>Adware.ExpressFiles ~ http://nicolascoolman.webs.com/apps/blog/show/27752690-pup-yourfiledownloader =>PUP.YourFileDownloader ~ http://nicolascoolman.webs.com/apps/blog/show/26627369-toolbar-babylon =>PUP.Babylon ~ http://nicolascoolman.webs.com/apps/blog/show/28927746-toolbar-ask =>Toolbar.Ask ~ http://nicolascoolman.webs.com/apps/blog/show/29507721-toolbar-conduit =>Toolbar.Conduit ~ http://nicolascoolman.webs.com/apps/blog/show/28158343-adware-bdsearch =>Adware.BDSearch ~ http://nicolascoolman.webs.com/apps/blog/show/27530912-adware-smileybar =>Adware.SmileyBar ~ http://nicolascoolman.webs.com/apps/blog/show/27583526-pup-crossrider =>PUP.CrossRider ~ MSI: 8 link(s) detected in 00mn 25s End of the scan (2114 lines in 05mn 12s)(2)