cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Rapport de ZHPDiag v1.34.76 par Nicolas Coolman, Update du 01/02/2013
Run by sumvero at 01/02/2013 18:07:24
State : Version � jour.
UAC : Deactivate by program


---\\ Web Browser
MSIE: Internet Explorer v9.0.8112.16421
GCIE: Google Chrome v24.0.1312.52 (Defaut)

---\\ Windows Product Information
~ Langage: Fran�ais
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 3Q6C9
Windows License : OK
~ Windows Remaining Initializations Number : 2
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ System Information
~ Processor: Intel64 Family 6 Model 37 Stepping 5, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3893 MB (52% free)
System Restore: Activ� (Enable)
System drive C: has 505 GB (87%) free of 579 GB

---\\ Logged in mode
~ Computer Name: SUMVERO-HP
~ User Name: sumvero
~ All Users Names: sumvero, HomeGroupUser$, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\sumvero\AppData\Roaming\
~ %Desktop% : C:\Users\sumvero\Desktop\
~ %Favorites% : C:\Users\sumvero\Favorites\
~ %LocalAppData% : C:\Users\sumvero\AppData\Local\
~ %StartMenu% : C:\Users\sumvero\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 505 Go of 579 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 3 Go of 17 Go)
E:\ CD-ROM drive (Not Inserted)
F:\ Hard drive, Flash drive, Thumb drive (Free 0 Go of 0 Go)
Q:\ Hard drive, Flash drive, Thumb drive (Free 0 Go of 0 Go)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Scan Security Center in 00mn 00s



---\\ Recherche particuli�re de fichiers g�n�riques
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de d�marrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.5121DB613E10A46A3C5085B479026AA7] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.14/11/2012 - 07:04:11.) -- C:\Windows\System32\wininet.dll [1392128]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d�ouverture de session Windows.) (.20/11/2010 - 14:25:30.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioth�que de licences.) (.20/11/2010 - 14:27:26.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 10:19:21.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 10:26:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 11:43:43.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 10:23:20.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.E453ACF4E7D44E5530B5D5F2B9CA8563] - (.Microsoft Corporation - Pilote du syst�me de fichiers NT.) (.31/08/2012 - 19:19:35.) -- C:\Windows\system32\Drivers\ntfs.sys [1659760]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parall�le.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 11:52:35.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 10:21:56.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de clich� instantan� du volume.) (.20/11/2010 - 14:34:02.) -- C:\Windows\system32\Drivers\volsnap.sys [295808]
~ Scan Generic Processes in 00mn 01s



---\\ Etat des fichiers cach�s (Cach�/Total)
~ Mes images (My Pictures) : 2/6328
~ Mes musiques (My Musics) : 1/221
~ Mes Videos (My Videos) : 1/2
~ Mes Favoris (My Favorites) : 1/36
~ Mes Documents (My Documents) : 1/197
~ Mon Bureau (My Desktop) : 1/170
~ Menu demarrer (Programs) : 1/23
~ Scan Hidden Files in 00mn 04s



---\\ Processus lanc�s
[MD5.7853D2AB445C10F97610B2B05FA4CF0A] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [512360] [PID.2264]
[MD5.B00F98FF6FE8682FF941BEB2559BF191] - (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488] [PID.1560]
[MD5.328EF5D436FADDED0D0D709A394A0C75] - (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2736128] [PID.3236]
[MD5.0301E49C2746A990C94B6DD71FBEF656] - (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [584760] [PID.2756]
[MD5.93DB1FF92B03D24738A71E6E4992DFD3] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [248552] [PID.4004]
[MD5.4AFFDCAADCB1DBBFFAF06C7F82E7F6FC] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [421776] [PID.3096]
[MD5.0D286C0FE561D1A7EB30E83A0FF305B2] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe [757296] [PID.2800]
[MD5.72CB29B523061FF64B3F66B8F3A5E034] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [5648896] [PID.4596]
[MD5.DB1A23EE7DD2E5E04E7DE071A6BEF699] - (.Sun Microsystems, Inc. - Java(TM) Update Checker.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe [501480] [PID.4648]
[MD5.A5299D04ED225D64CF07A568A3E1BF8C] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55184] [PID.1260]
[MD5.CA793DCC1D5F619021EF1D37CC7A831E] - (.EasyBits Software AS - Shared EasyBits services for Windows.) -- C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232] [PID.1492]
[MD5.BCC4A8B2E2E902F52E7F2E7D8E125765] - (.Hewlett-Packard Company - HP Quick Synchronization Service.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [94264] [PID.1892]
[MD5.854197D1270D20193FE2D4B14784AADE] - (.Hewlett-Packard Development Company, L.P. - HP Quick Launch WMI Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [26680] [PID.1916]
[MD5.FCBDCC6F1801E32244235608E1277752] - (.Hewlett-Packard Company - LightScribe Service.) -- C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728] [PID.1964]
[MD5.7485FBCEF9136F530953575E2977859D] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [268824] [PID.1988]
[MD5.1ACAA67676E9E7BDA5E0C41B6E0DECAF] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [398184] [PID.2020]
[MD5.916B8954AC3E06DC9E898AFFB41F3FB6] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [682344] [PID.2040]
[MD5.7C7C59BE1A8FC688C7D4CF7349D08861] - (.Symantec Corporation - Symantec Service Framework.) -- C:\Program Files (x86)\Norton Internet Security\Engine\18.1.0.37\ccSvcHst.exe [126904] [PID.1176]
[MD5.C3CDDD18F43D44AB713CF8C4916F7696] - (.Microsoft Corporation - Microsoft Application Virtualization Virtua.) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [219496] [PID.2164]
[MD5.13693B6354DD6E72DC5131DA7D764B90] - (.Microsoft Corporation - Microsoft Application Virtualization Client.) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [508776] [PID.2340]
[MD5.72794D112CBAFF3BC0C29BF7350D4741] - (.Microsoft Corporation - Microsoft Office Client Virtualization Serv.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.exe [822624] [PID.2596]
[MD5.EC9739A46F1F83C6E52A7A4697F44A65] - (.Hewlett-Packard Company - hpqwmiex Module.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [799800] [PID.3788]
[MD5.C5A75EB48E2344ABDC162BDA79E16841] - (.Microsoft Corporation - .NET Runtime Optimization Service.) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [130384] [PID.2808]
[MD5.765F2DD351BA064F657751D8D75E58C0] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2320920] [PID.4172]
~ Scan Processes Running in 00mn 00s



---\\ Google Chrome, D�marrage,Recherche,Extensions (G0,G1,G2)
C:\Users\sumvero\AppData\Local\Google\Chrome\User Data\Default\Preferences
G0 - GCSP: Preference [User Data\Default][HomePage] http://www.google.com
G0 - GCSP: Preference [User Data\Default] http://www.google.com
G1 - GCS: Preference [User Data\Default] None
~ Scan Google Browser in 00mn 00s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_21 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
P2 - FPN: [HKLM] [@ma-config.com/HardwareDetection] - (.Cybelsoft - Plugin NPAPI Ma-Config.com # win64 # 6.5.1.0.) -- C:\Program Files\ma-config.com\x64\nphardwaredetection.dll
~ Scan Firefox Browser in 00mn 00s



---\\ Internet Explorer, D�marrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://hpp.orange.fr
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.uk.msn.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://g.uk.msn.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) [64Bits] - {00000000-6E41-4FD3-8538-502F5495E5FC} . (.Ask - Ask Toolbar.) (5.9.1.14019) -- C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
R3 - URLSearchHook: (no name) [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\SysWOW64\ieframe.dll
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ Scan IE Browser in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Scan Keys in 00mn 00s



---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 00s
~ Nombre de lignes (Lines number): 21



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Symantec NCO BHO [64Bits] - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files (x86)\Norton Internet Security\Engine\18.1.0.37\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention [64Bits] - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} . (...) -- C:\Program Files (x86)\Norton Internet Security\Engine\18.1.0.37\IPSBHO.DLL (.not file.)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft� Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\
O2 - BHO: Windows Live Messenger Companion Helper [64Bits] - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Ask Toolbar BHO [64Bits] - {D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
~ Scan BHO in 00mn 00s



---\\ Applications d�marr�es par registre & par dossier (O4)
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
O4 - HKLM\..\Run: [HPWirelessAssistant] . (...) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - HKLM\..\Wow6432Node\Run: [HP Quick Launch] . (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe
O4 - HKLM\..\Wow6432Node\Run: [Easybits Recovery] . (.EasyBits Software AS - Pas de description.) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-21-2190998877-2663019843-3674929303-1000\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
O4 - HKUS\S-1-5-21-2190998877-2663019843-3674929303-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
~ Scan Application in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\sumvero\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\sumvero\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\sumvero\Desktop\Aller sur MSN.fr.lnk - Cl� orpheline
O4 - Global Startup: C:\Users\sumvero\Desktop\Best Removal Tool.lnk . (...) -- C:\Program Files (x86)\Best Removal Tool\BRT.exe (.not file.)
O4 - Global Startup: C:\Users\sumvero\Desktop\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\sumvero\Desktop\PhotoFiltre.lnk . (.Antonio Da Cruz.) -- C:\Program Files (x86)\PhotoFiltre\photofiltre.exe
O4 - Global Startup: C:\Users\sumvero\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Best Removal Tool.lnk . (...) -- C:\Program Files\Best Removal Tool\BRT.exe
O4 - Global Startup: C:\Users\sumvero\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\sumvero\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
~ Scan Global Startup in 00mn 00s



---\\ Invisibilit� de l'ic�ne d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ Scan IE Control Panel in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d�affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corp. - Microsoft� Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corp. - Microsoft� Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
~ Scan Winsock in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{146A4EBD-C1A0-48E7-A9B2-DAEC98E71A4E}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{146A4EBD-C1A0-48E7-A9B2-DAEC98E71A4E}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{146A4EBD-C1A0-48E7-A9B2-DAEC98E71A4E}: DhcpNameServer = 192.168.1.1
~ Scan Domain in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contr�le ActiveX pour le flux vid�o.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft� InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\system32\inetcomm.dll
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft� InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Handler: mso-offdap [64Bits] - {3D9F03FA-7A94-11D3-BE81-0050048385D1} . (.Microsoft Corporation - Microsoft Office XP Web Components.) -- C:\Program Files (x86)\Common Files\microsoft shared\Web Components\10\OWC10.dll
O18 - Handler: mso-offdap11 [64Bits] - {32505114-5902-49B2-880A-1F7738E5A384} . (.Microsoft Corporation - Microsoft Office Web Components 2003.) -- C:\Program Files (x86)\Common Files\microsoft shared\Web Components\11\OWC11.dll
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contr�le ActiveX pour le flux vid�o.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: text/xml [64Bits] - {807553E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.dll
~ Scan Protocole Additionnel in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-cl�s Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Scan Winlogon in 00mn 00s



---\\ Cl� de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ Scan SSODL in 00mn 00s



---\\ Liste des services NT non Microsoft et non d�sactiv�s (O23)
O23 - Service: Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Wireless Assistant Service (HP Wireless Assistant Service) . (.Hewlett-Packard Company - HPPA_Service.) - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP Client Services (HPClientSvc) . (.Hewlett-Packard Company - HP Client Services.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) . (.Hewlett-Packard Company - HP Quick Synchronization Service.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P. - HP Quick Launch WMI Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: LightScribeService Direct Disc Labeling (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Applica (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Norton Internet Security (NIS) . (.Symantec Corporation - Symantec Service Framework.) - C:\Program Files (x86)\Norton Internet Security\Engine\18.1.0.37\ccSvcHst.exe
O23 - Service: RtVOsdService Installer (RtVOsdService) . (.Realtek Semiconductor Corp. - RtVOsdService.) - C:\Program Files\Realtek\RtVOsd\RtVOsdService.exe
O23 - Service: Intel(R) Management & Security Applicati (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
~ Scan Services in 00mn 09s



---\\ Enum�ration Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Scan Desktop Component in 00mn 00s



---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ Scan Keys in 00mn 00s



---\\ T�ches planifi�es en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForsumvero.job
[MD5.424877CB9D5517F980FF7BACA2EB379D] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
[MD5.00000000000000000000000000000000] [APT] [avast! Emergency Update] (...) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe (.not file.)
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
[MD5.AF51D4FE088A3EFA5303B36FFFD0581B] [APT] [HPCeeScheduleForsumvero] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
[MD5.B00F98FF6FE8682FF941BEB2559BF191] [APT] [MirageAgent] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
[MD5.9DDC0931EDA0F2E31C86180CBA25B0D3] [APT] [Scheduled Update for Ask Toolbar] (...) -- C:\Program Files (x86)\Ask.com\UpdateTask.exe
[MD5.B0663B58C1F90379798D284B2F75633B] [APT] [ServicePlan] (...) -- C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe
[MD5.A7E3EC42048061A0A1FF7BFE8F76AFB2] [APT] [{349C5FDA-EAAF-4924-B999-F96BE578E5C7}] (.Intel Corporation.) -- C:\Users\sumvero\Downloads\Win7Vista_64_152257.exe
[MD5.1DB8C2220EFDBA97F671F46F6A8DE51E] [APT] [HP Support Assistant Quick Start] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFMessenger\HPSFMsgr.exe
[MD5.FFD052D0F464ADC243C24E71D15C9990] [APT] [HPSAObjUtilTask] (.Microsoft.) -- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe
[MD5.0757398E1539E633CEC5179A3BCA5F4F] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
[MD5.0757398E1539E633CEC5179A3BCA5F4F] [APT] [PC Tuneup] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
[MD5.3EA98EF084CB360121A6D7BA2B47E655] [APT] [Update Check] (.Hewlett-Packard.) -- C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater\HPSFUpdater.exe
[MD5.00000000000000000000000000000000] [APT] [Norton Error Analyzer 18.1.0.37] (...) -- C:\Program Files (x86)\Norton Internet Security\Engine\18.1.0.37\SymErr.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [Norton Error Processor 18.1.0.37] (...) -- C:\Program Files (x86)\Norton Internet Security\Engine\18.1.0.37\SymErr.exe (.not file.)
~ Scan Scheduled Task in 00mn 09s



---\\ Composants install�s (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Internet Explorer [64Bits] - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: Browser Customizations [64Bits] - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d�IEAK.) -- C:\Windows\System32\iedkcs32.dll
O40 - ASIC: Java (Sun) [64Bits] - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\regutils.dll
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Scan Active Setup in 00mn 00s



---\\ Pilotes lanc�s au d�marrage (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (BHDrvx64) . (.Symantec Corporation - BASH Driver.) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\BASHDefs\20100810.004\BHDrvx64.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (IDSVia64) . (.Symantec Corporation - IDS Core Driver.) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\IPSDefs\20100706.002\IDSVia64.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-syst�me de mise en m�moire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: (SRTSPX) . (.Symantec Corporation - Symantec AutoProtect.) - C:\Windows\system32\drivers\NISx64\1201000.025\SRTSPX64.sys
O41 - Driver: (SymIRON) . (.Symantec Corporation - Iron Driver.) - C:\Windows\system32\drivers\NISx64\1201000.025\Ironx64.sys
O41 - Driver: (SymNetS) . (.Symantec Corporation - Network Security Driver.) - C:\Windows\system32\drivers\NISx64\1201000.025\SYMNETS.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Scan Drivers in 00mn 00s



---\\ Logiciels install�s (O42)
O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Reader 9.5.3 MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-A91000000001}
O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {3B834B54-EC4B-48E2-BFC6-03FF5DA06F62}
O42 - Logiciel: Agatha Christie - Peril at End House - (.WildTangent.) [HKLM][64Bits] -- WT089362
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {63EC2120-1742-4625-AA47-C6A8AEC9C64C}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {7446FE8D-C1F9-4D42-AAAE-5DBCE58605A6}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM][64Bits] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE}
O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087428
O42 - Logiciel: Best Removal Tool - (.www.bestremovaltool.com.) [HKLM][64Bits] -- Best Removal Tool_is1
O42 - Logiciel: Blasterball 3 - (.WildTangent.) [HKLM][64Bits] -- WT089308
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: Bounce Symphony - (.WildTangent.) [HKLM][64Bits] -- WT087330
O42 - Logiciel: Build-a-Lot - The Elizabethan Era - (.WildTangent.) [HKLM][64Bits] -- WT089303
O42 - Logiciel: Cake Mania - (.WildTangent.) [HKLM][64Bits] -- WT089359
O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087453
O42 - Logiciel: Compl�ment Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}
O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: CyberLink PowerDVD 9 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}
O42 - Logiciel: CyberLink PowerDVD 9 - (.CyberLink Corp..) [HKLM][64Bits] -- {A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Diner Dash 2 Restaurant Rescue - (.WildTangent.) [HKLM][64Bits] -- WT087536
O42 - Logiciel: ESU for Microsoft Windows 7 - (.Hewlett-Packard.) [HKLM][64Bits] -- {3877C901-7B90-4727-A639-B6ED2DD59D43}
O42 - Logiciel: Energy Star Digital Logo - (.Hewlett-Packard.) [HKLM][64Bits] -- {BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}
O42 - Logiciel: FATE - (.WildTangent.) [HKLM][64Bits] -- WT087361
O42 - Logiciel: Farm Frenzy - (.WildTangent.) [HKLM][64Bits] -- WT089328
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Google�Earth - (.Google.) [HKLM][64Bits] -- {5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}
O42 - Logiciel: HP Auto - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}
O42 - Logiciel: HP Client Services - (.Hewlett-Packard.) [HKLM][64Bits] -- {2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2}
O42 - Logiciel: HP CloudDrive - (.Zecter Inc..) [HKLM][64Bits] -- ZumoDrive
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544}
O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM][64Bits] -- {2385DA7C-F545-4E66-A968-D464F0519425}
O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall
O42 - Logiciel: HP Power Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {AF306BD8-F9D1-4627-89B9-246E59074A05}
O42 - Logiciel: HP Quick Launch - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {EF682D1C-591D-48B5-9803-628DA622C281}
O42 - Logiciel: HP Setup - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {53469506-A37E-4314-A9D9-38724EC23A75}
O42 - Logiciel: HP Setup Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {AE856388-AFAD-4753-81DF-D96B19D0A17C}
O42 - Logiciel: HP Software Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {CE9A85B7-358E-42E2-B211-E10C75D96171}
O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F44AF95-3CDE-4513-AD3F-6D45F17BF324}
O42 - Logiciel: HP Wireless Assistant - (.Hewlett-Packard.) [HKLM][64Bits] -- {48EE0E00-86DE-47A5-8D00-B5D72A70BCCD}
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.1.2.0 - (.Hewlett-Packard.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F}
O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087480
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421}
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}
O42 - Logiciel: Java(TM) 6 Update 21 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86416021FF}
O42 - Logiciel: Java(TM) 6 Update 21 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216021FF}
O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-6d3b2b83-e379-410b-8a99-3cde93013ff6
O42 - Logiciel: Jewel Quest II - (.WildTangent.) [HKLM][64Bits] -- WT087485
O42 - Logiciel: Jewel Quest Solitaire - (.WildTangent.) [HKLM][64Bits] -- WT087490
O42 - Logiciel: John Deere Drive Green - (.WildTangent.) [HKLM][64Bits] -- WT087380
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM][64Bits] -- {705B639E-FAAF-40D7-AD58-C445321C7C3F}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
O42 - Logiciel: Ma-Config.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {E4306BC6-3807-4239-8A5B-822AEFE2F7EB}
O42 - Logiciel: Magic Desktop - (.EasyBits Software AS.) [HKLM][64Bits] -- EasyBits Magic Desktop
O42 - Logiciel: Malwarebytes Anti-Malware version 1.70.0.1100 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Norton Internet Security - (.Symantec Corporation.) [HKLM][64Bits] -- NIS
O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WT087394
O42 - Logiciel: PhotoFiltre - (.Pas de propri�taire.) [HKCU][64Bits] -- PhotoFiltre
O42 - Logiciel: PhotoNow! - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE}
O42 - Logiciel: PhotoNow! - (.CyberLink Corp..) [HKLM][64Bits] -- {D36DD326-7280-11D8-97C8-000129760CBE}
O42 - Logiciel: PictureMover - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {264FE20A-757B-492a-B0C3-4009E2997D8A}
O42 - Logiciel: Plants vs. Zombies - (.WildTangent.) [HKLM][64Bits] -- WT087501
O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WT087396
O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: Ralink RT5390 802.11b/g/n WiFi Adapter - (.Ralink.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}
O42 - Logiciel: Realtek Ethernet Controller Driver For Windows 7 - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}
O42 - Logiciel: Recovery Manager - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}
O42 - Logiciel: RtVOsd - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {091A0130-A82F-4A6D-9C61-3BBBB3289030}
O42 - Logiciel: Slingo Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087510
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey
O42 - Logiciel: System Requirements Lab for Intel - (.Husdawg, LLC.) [HKLM][64Bits] -- {C7CA731B-BF9A-46D9-92CF-8A8737AE9240}
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App
O42 - Logiciel: Virtual Villagers - The Secret City - (.WildTangent.) [HKLM][64Bits] -- WT087513
O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM][64Bits] -- WT087519
O42 - Logiciel: WildTangent Games App (HP Games) - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp
O42 - Logiciel: Zuma Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087533
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {1493B2AE-0261-47D2-B1AA-F4DAD0F6C48B}

---\\ HKCU & HKLM Software Keys
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\AskToolbarInfo]
[HKCU\Software\AppDataLow\Software\Adobe]
[HKCU\Software\AppDataLow\Software\AskToolbar]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Ask.com]
[HKCU\Software\Aurigma]
[HKCU\Software\Avast Software]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CyberLink]
[HKCU\Software\EasyBits]
[HKCU\Software\Google]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\HookNetwork]
[HKCU\Software\IM Providers]
[HKCU\Software\ImageViewer]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\Lake]
[HKCU\Software\LightScribe]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Netscape]
[HKCU\Software\Norton]
[HKCU\Software\ODBC]
[HKCU\Software\Opendisc]
[HKCU\Software\PictureMover]
[HKCU\Software\Policies]
[HKCU\Software\Realtek]
[HKCU\Software\Skype]
[HKCU\Software\Synaptics]
[HKCU\Software\System Requirements Lab]
[HKCU\Software\Trolltech]
[HKCU\Software\WildTangent]
[HKCU\Software\Wow6432Node]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\cybelsoft]
[HKCU\Software\funkitron]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\Best Removal Tool]
[HKLM\Software\BrowserChoice]
[HKLM\Software\CXT]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Cyberlink]
[HKLM\Software\GEAR Software]
[HKLM\Software\HPQ]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\Macromedia]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\ODBC]
[HKLM\Software\Policies]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\Sonic]
[HKLM\Software\Symantec]
[HKLM\Software\Synaptics]
[HKLM\Software\Wow6432Node\AVAST Software]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\AppDataLow]
[HKLM\Software\Wow6432Node\Apple Computer, Inc.]
[HKLM\Software\Wow6432Node\Apple Inc.]
[HKLM\Software\Wow6432Node\Caphyon]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\CyberLink]
[HKLM\Software\Wow6432Node\Data Fellows]
[HKLM\Software\Wow6432Node\EasyBits]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\Hewlett-Packard]
[HKLM\Software\Wow6432Node\InstallShield]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\JavaSoft]
[HKLM\Software\Wow6432Node\Lake]
[HKLM\Software\Wow6432Node\LightScribe]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\Norton]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\P2G_Upgrade]
[HKLM\Software\Wow6432Node\PDR_Upgrade]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\Product_Upgrade]
[HKLM\Software\Wow6432Node\Ralink]
[HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\Symantec]
[HKLM\Software\Wow6432Node\Volatile]
[HKLM\Software\Wow6432Node\WildTangent]
[HKLM\Software\Wow6432Node\Win32 Services]
[HKLM\Software\Wow6432Node\Zecter]
[HKLM\Software\Wow6432Node\cybelsoft]
[HKLM\Software\Wow6432Node]
[HKLM\Software\Zecter]
[HKLM\Software\cybelsoft]
~ Scan Softwares in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 22/10/2010 - 16:33:14 - [638,644] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 27/11/2012 - 18:04:24 - [2,316] ----D C:\Program Files (x86)\Apple Software Update
O43 - CFD: 31/01/2013 - 08:38:45 - [1,698] ----D C:\Program Files (x86)\Ask.com
O43 - CFD: 27/11/2012 - 18:03:56 - [0,602] ----D C:\Program Files (x86)\Bonjour
O43 - CFD: 27/11/2012 - 18:03:47 - [364,613] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 20/12/2010 - 00:41:25 - [1469,933] ----D C:\Program Files (x86)\CyberLink
O43 - CFD: 29/04/2012 - 15:54:38 - [114,894] ----D C:\Program Files (x86)\EasyBits For Kids
O43 - CFD: 31/01/2013 - 08:20:20 - [438,818] ----D C:\Program Files (x86)\Google
O43 - CFD: 19/07/2012 - 20:45:42 - [882,021] ----D C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 30/08/2011 - 21:10:09 - [1458,170] ----D C:\Program Files (x86)\HP Games
O43 - CFD: 19/07/2012 - 20:46:03 - [179,330] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 20/12/2010 - 00:29:58 - [21,408] ----D C:\Program Files (x86)\Intel
O43 - CFD: 16/12/2012 - 10:03:50 - [4,935] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 27/11/2012 - 18:06:15 - [142,398] ----D C:\Program Files (x86)\iTunes
O43 - CFD: 22/10/2010 - 16:44:37 - [86,339] ----D C:\Program Files (x86)\Java
O43 - CFD: 31/01/2013 - 17:49:13 - [12,170] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 01/02/2013 - 15:27:15 - [0] ----D C:\Program Files (x86)\Microsoft
O43 - CFD: 18/02/2012 - 23:29:45 - [12,399] ----D C:\Program Files (x86)\Microsoft Application Virtualization Client
O43 - CFD: 29/01/2012 - 16:49:24 - [280,705] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 15/05/2012 - 20:21:33 - [36,641] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 22/10/2010 - 16:32:03 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 29/01/2012 - 16:48:13 - [0,316] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 14/07/2009 - 06:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 20/12/2010 - 00:43:27 - [134,684] ----D C:\Program Files (x86)\Norton Internet Security
O43 - CFD: 20/12/2010 - 00:43:05 - [18,891] ----D C:\Program Files (x86)\NortonInstaller
O43 - CFD: 01/02/2011 - 17:38:01 - [20,619] R---D C:\Program Files (x86)\Online Services
O43 - CFD: 30/04/2011 - 23:32:19 - [3,528] ----D C:\Program Files (x86)\PhotoFiltre
O43 - CFD: 20/12/2010 - 00:41:09 - [61,444] ----D C:\Program Files (x86)\PictureMover
O43 - CFD: 20/12/2010 - 00:30:57 - [15,107] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - 06:32:38 - [37,509] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 01/02/2013 - 15:31:39 - [1,040] ----D C:\Program Files (x86)\SystemRequirementsLab
O43 - CFD: 20/12/2010 - 00:30:50 - [0] --H-D C:\Program Files (x86)\Temp
O43 - CFD: 14/07/2009 - 05:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 30/08/2011 - 21:12:45 - [153,770] ----D C:\Program Files (x86)\WildGames
O43 - CFD: 31/01/2013 - 08:39:07 - [9,409] ----D C:\Program Files (x86)\WildTangent Games
O43 - CFD: 23/10/2010 - 01:46:16 - [0,500] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 06/09/2011 - 14:30:12 - [178,085] ----D C:\Program Files (x86)\Windows Live
O43 - CFD: 31/01/2013 - 08:40:53 - [5,895] ----D C:\Program Files (x86)\Windows Mail
O43 - CFD: 31/01/2013 - 08:40:53 - [7,009] ----D C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - 06:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 31/01/2013 - 08:53:43 - [5,981] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 31/01/2013 - 08:40:53 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 15/01/2013 - 22:12:47 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 01/02/2013 - 18:07:37 - [11,884] ----D C:\Program Files (x86)\ZHPDiag
O43 - CFD: 22/10/2010 - 16:33:48 - [16,024] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 27/11/2012 - 18:05:09 - [105,882] ----D C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 20/12/2010 - 00:42:21 - [0,132] ----D C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 09/01/2012 - 22:11:06 - [0,095] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 22/10/2010 - 16:43:11 - [3,806] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 20/12/2010 - 00:28:40 - [13,578] ----D C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 22/10/2010 - 16:44:45 - [1,185] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 20/12/2010 - 00:36:16 - [35,753] ----D C:\Program Files (x86)\Common Files\LightScribe
O43 - CFD: 02/02/2012 - 21:43:25 - [125,637] ----D C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 20/12/2010 - 00:29:28 - [0,159] ----D C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 14/07/2009 - 04:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 14/07/2009 - 04:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 31/01/2013 - 08:40:53 - [23,161] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 22/10/2010 - 16:30:12 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 27/11/2012 - 18:06:17 - [2,774] ----D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 25/12/2012 - 08:40:57 - [48,580] ----D C:\ProgramData\Adobe
O43 - CFD: 27/11/2012 - 18:04:15 - [35,788] ----D C:\ProgramData\Apple
O43 - CFD: 27/11/2012 - 18:05:09 - [49,870] ----D C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Application Data
O43 - CFD: 01/02/2013 - 15:04:11 - [0] ----D C:\ProgramData\AVAST Software
O43 - CFD: 01/02/2011 - 17:35:26 - [0] --H-D C:\ProgramData\Bureau
O43 - CFD: 05/06/2011 - 07:43:22 - [0,067] ----D C:\ProgramData\CyberLink
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Documents
O43 - CFD: 17/03/2012 - 17:11:02 - [0,001] ----D C:\ProgramData\f-secure
O43 - CFD: 01/02/2011 - 17:35:26 - [0] --H-D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Favorites
O43 - CFD: 25/04/2012 - 21:05:23 - [0,250] ----D C:\ProgramData\fssg
O43 - CFD: 03/04/2011 - 14:37:33 - [0] ----D C:\ProgramData\Google
O43 - CFD: 12/04/2012 - 22:04:03 - [3,633] ----D C:\ProgramData\Hewlett-Packard
O43 - CFD: 01/02/2013 - 16:04:29 - [1,595] ----D C:\ProgramData\ma-config.com
O43 - CFD: 31/01/2013 - 17:49:13 - [6,647] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 01/02/2011 - 17:35:26 - [0] --H-D C:\ProgramData\Menu D�marrer
O43 - CFD: 31/01/2013 - 08:22:03 - [-1771,907] -S--D C:\ProgramData\Microsoft
O43 - CFD: 01/02/2011 - 17:35:26 - [0] --H-D C:\ProgramData\Mod�les
O43 - CFD: 03/02/2011 - 06:42:05 - [131,496] ----D C:\ProgramData\Norton
O43 - CFD: 20/12/2010 - 00:43:05 - [26,236] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 20/12/2010 - 00:41:09 - [0,055] ----D C:\ProgramData\PictureMover
O43 - CFD: 05/08/2011 - 15:04:16 - [0] ----D C:\ProgramData\PlayFirst
O43 - CFD: 20/12/2010 - 00:31:52 - [3,743] ----D C:\ProgramData\Ralink Driver
O43 - CFD: 20/12/2010 - 10:19:04 - [0,042] ----D C:\ProgramData\Recovery
O43 - CFD: 09/07/2011 - 23:17:13 - [0,000] ----D C:\ProgramData\Sandlot Games
O43 - CFD: 17/03/2012 - 17:26:37 - [18,951] ----D C:\ProgramData\Skype
O43 - CFD: 22/10/2010 - 16:43:06 - [0,815] ----D C:\ProgramData\Stardock
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Start Menu
O43 - CFD: 22/10/2010 - 16:44:46 - [0,000] ----D C:\ProgramData\Sun
O43 - CFD: 20/12/2010 - 00:41:22 - [0,671] ----D C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Templates
O43 - CFD: 06/02/2011 - 18:10:37 - [7,847] ----D C:\ProgramData\Wild Tangent
O43 - CFD: 31/01/2013 - 08:22:04 - [1253,455] ----D C:\ProgramData\WildTangent
O43 - CFD: 19/07/2012 - 20:43:52 - [45,653] ----D C:\ProgramData\{A8DA1505-E615-42BB-BB77-74D5CC91FE7E}
O43 - CFD: 22/10/2010 - 16:45:27 - [33,601] ----D C:\ProgramData\{D13C0989-F3EC-4F44-A33D-B3F83DF90FAF}
O43 - CFD: 01/02/2011 - 19:07:08 - [8,095] ----D C:\Users\sumvero\AppData\Roaming\Adobe
O43 - CFD: 29/11/2012 - 21:10:32 - [0,164] ----D C:\Users\sumvero\AppData\Roaming\Apple Computer
O43 - CFD: 19/03/2011 - 16:03:43 - [0,002] ----D C:\Users\sumvero\AppData\Roaming\CyberLink
O43 - CFD: 05/08/2011 - 14:52:04 - [0,003] ----D C:\Users\sumvero\AppData\Roaming\funkitron
O43 - CFD: 27/07/2012 - 20:52:33 - [0,050] ----D C:\Users\sumvero\AppData\Roaming\Hewlett-Packard
O43 - CFD: 18/07/2012 - 20:50:46 - [0,060] ----D C:\Users\sumvero\AppData\Roaming\hpqlog
O43 - CFD: 01/02/2011 - 17:45:19 - [0] ----D C:\Users\sumvero\AppData\Roaming\Identities
O43 - CFD: 30/08/2011 - 22:30:43 - [0,125] ----D C:\Users\sumvero\AppData\Roaming\Jewel Match 3
O43 - CFD: 01/02/2011 - 17:47:43 - [0,003] ----D C:\Users\sumvero\AppData\Roaming\Macromedia
O43 - CFD: 31/01/2013 - 17:49:22 - [0,004] ----D C:\Users\sumvero\AppData\Roaming\Malwarebytes
O43 - CFD: 20/12/2010 - 10:19:37 - [0] ----D C:\Users\sumvero\AppData\Roaming\Media Center Programs
O43 - CFD: 29/12/2012 - 21:48:03 - [10,684] -S--D C:\Users\sumvero\AppData\Roaming\Microsoft
O43 - CFD: 07/08/2011 - 03:54:44 - [0,001] ----D C:\Users\sumvero\AppData\Roaming\PhotoFiltre
O43 - CFD: 01/02/2011 - 17:46:45 - [13,958] ----D C:\Users\sumvero\AppData\Roaming\PictureMover
O43 - CFD: 05/08/2011 - 15:04:16 - [0,003] ----D C:\Users\sumvero\AppData\Roaming\PlayFirst
O43 - CFD: 17/03/2012 - 17:26:33 - [0,131] ----D C:\Users\sumvero\AppData\Roaming\Skype
O43 - CFD: 09/06/2012 - 19:25:55 - [0,612] ----D C:\Users\sumvero\AppData\Roaming\SoftGrid Client
O43 - CFD: 09/01/2012 - 22:12:03 - [0] ----D C:\Users\sumvero\AppData\Roaming\TP
O43 - CFD: 30/01/2013 - 20:12:34 - [3,519] ----D C:\Users\sumvero\AppData\Roaming\WildTangent
O43 - CFD: 03/03/2011 - 21:49:15 - [0,000] ----D C:\Users\sumvero\AppData\Roaming\Windows Live Writer
O43 - CFD: 29/04/2012 - 15:36:38 - [0,086] ----D C:\Users\sumvero\AppData\Roaming\_MDLogs
O43 - CFD: 01/02/2011 - 19:07:54 - [0,068] ----D C:\Users\sumvero\AppData\Local\Adobe
O43 - CFD: 27/11/2012 - 18:04:26 - [0] ----D C:\Users\sumvero\AppData\Local\Apple
O43 - CFD: 27/11/2012 - 18:07:03 - [0,012] ----D C:\Users\sumvero\AppData\Local\Apple Computer
O43 - CFD: 01/02/2011 - 17:35:43 - [0] ----D C:\Users\sumvero\AppData\Local\Application Data
O43 - CFD: 25/04/2012 - 21:10:07 - [0] ----D C:\Users\sumvero\AppData\Local\Apps
O43 - CFD: 29/01/2013 - 22:33:07 - [4,406] ----D C:\Users\sumvero\AppData\Local\CrashDumps
O43 - CFD: 06/02/2011 - 13:52:57 - [0,002] ----D C:\Users\sumvero\AppData\Local\Cyberlink
O43 - CFD: 18/12/2012 - 13:15:26 - [0] ----D C:\Users\sumvero\AppData\Local\Diagnostics
O43 - CFD: 30/01/2013 - 19:39:37 - [0,167] ----D C:\Users\sumvero\AppData\Local\ElevatedDiagnostics
O43 - CFD: 31/01/2013 - 08:22:05 - [18,445] ----D C:\Users\sumvero\AppData\Local\Google
O43 - CFD: 31/01/2013 - 08:39:09 - [0,436] ----D C:\Users\sumvero\AppData\Local\Hewlett-Packard
O43 - CFD: 01/02/2011 - 17:45:43 - [0,002] ----D C:\Users\sumvero\AppData\Local\Hewlett-Packard_Company
O43 - CFD: 01/02/2011 - 17:35:43 - [0] ----D C:\Users\sumvero\AppData\Local\Historique
O43 - CFD: 25/12/2012 - 09:05:46 - [417,182] ----D C:\Users\sumvero\AppData\Local\Microsoft
O43 - CFD: 05/08/2011 - 10:56:07 - [0,656] ----D C:\Users\sumvero\AppData\Local\Microsoft Games
O43 - CFD: 31/01/2013 - 17:49:02 - [0] ----D C:\Users\sumvero\AppData\Local\Programs
O43 - CFD: 01/02/2011 - 17:44:57 - [0,000] ----D C:\Users\sumvero\AppData\Local\RemEngine
O43 - CFD: 09/01/2012 - 22:11:49 - [0,438] ----D C:\Users\sumvero\AppData\Local\SoftGrid Client
O43 - CFD: 01/02/2013 - 18:07:24 - [657,419] ----D C:\Users\sumvero\AppData\Local\Temp
O43 - CFD: 01/02/2011 - 17:35:43 - [0] ----D C:\Users\sumvero\AppData\Local\Temporary Internet Files
O43 - CFD: 01/02/2011 - 21:39:19 - [21,309] ----D C:\Users\sumvero\AppData\Local\VirtualStore
O43 - CFD: 29/12/2012 - 14:05:03 - [0,152] ----D C:\Users\sumvero\AppData\Local\Windows Live
O43 - CFD: 15/09/2011 - 21:44:54 - [0,619] ----D C:\Users\sumvero\AppData\Local\Windows Live Writer
O43 - CFD: 19/07/2012 - 20:25:48 - [0] ----D C:\Users\sumvero\AppData\Local\{0044342C-B439-4653-9C34-A0594821D5EE}
O43 - CFD: 30/01/2013 - 19:54:54 - [0] ----D C:\Users\sumvero\AppData\Local\{00B45DBD-E5DA-4635-B04F-3DFFF2B08C8F}
O43 - CFD: 18/08/2012 - 17:10:52 - [0] ----D C:\Users\sumvero\AppData\Local\{00C6BF2E-7089-4C9C-9AC9-6E6806C46B8C}
O43 - CFD: 12/10/2012 - 19:53:51 - [0] ----D C:\Users\sumvero\AppData\Local\{00F40A8A-39D4-4090-80D2-7237ABCA182D}
O43 - CFD: 15/12/2011 - 20:41:15 - [0] ----D C:\Users\sumvero\AppData\Local\{010BC73E-EADB-479F-9E16-2B0645AF2C77}
O43 - CFD: 28/08/2012 - 15:23:34 - [0] ----D C:\Users\sumvero\AppData\Local\{0116CF4F-947C-4F2C-AC54-278CB8F1988D}
O43 - CFD: 07/11/2012 - 13:48:22 - [0] ----D C:\Users\sumvero\AppData\Local\{01587CC8-7F6C-4F1C-9E7E-F709895F6E92}
O43 - CFD: 12/11/2011 - 14:00:43 - [0] ----D C:\Users\sumvero\AppData\Local\{0267F154-C609-45F4-9641-B635932C389E}
O43 - CFD: 17/01/2012 - 18:01:01 - [0] ----D C:\Users\sumvero\AppData\Local\{0418F2D0-58A1-4065-8757-1C71B1C3152B}
O43 - CFD: 23/12/2012 - 13:31:45 - [0] ----D C:\Users\sumvero\AppData\Local\{04590592-6022-4827-AED2-3B91FD8AE023}
O43 - CFD: 07/12/2011 - 13:19:55 - [0] ----D C:\Users\sumvero\AppData\Local\{04D036FC-7D4D-4F6E-91B2-CEA82DB01430}
O43 - CFD: 16/12/2011 - 13:01:30 - [0] ----D C:\Users\sumvero\AppData\Local\{05040A56-BABD-4454-8296-702EF8735D76}
O43 - CFD: 02/10/2011 - 15:53:51 - [0] ----D C:\Users\sumvero\AppData\Local\{0599FACF-B6BB-4DF2-9964-1AFBD894ED74}
O43 - CFD: 15/09/2011 - 20:55:43 - [0] ----D C:\Users\sumvero\AppData\Local\{06980915-E91F-4D01-B394-DDB81F053A1E}
O43 - CFD: 27/11/2011 - 08:22:03 - [0] ----D C:\Users\sumvero\AppData\Local\{06A8C672-325D-436F-9883-C6DC41BC8A69}
O43 - CFD: 29/11/2011 - 09:21:34 - [0] ----D C:\Users\sumvero\AppData\Local\{08FCF099-9A9B-4D42-84BD-0A9B9BEDE02C}
O43 - CFD: 15/05/2012 - 18:12:09 - [0] ----D C:\Users\sumvero\AppData\Local\{09867068-7643-46DC-8901-9832A5446D9E}
O43 - CFD: 27/01/2012 - 21:25:43 - [0] ----D C:\Users\sumvero\AppData\Local\{0AA8B9B9-8615-4B0F-BECE-8C37BE070371}
O43 - CFD: 25/11/2011 - 23:33:55 - [0] ----D C:\Users\sumvero\AppData\Local\{0D1AD08E-911B-44B6-AC4C-6B034068584F}
O43 - CFD: 12/01/2012 - 21:00:42 - [0] ----D C:\Users\sumvero\AppData\Local\{0D4BC6CA-473A-44D3-A873-2F02B0446750}
O43 - CFD: 08/03/2012 - 20:41:29 - [0] ----D C:\Users\sumvero\AppData\Local\{0DCE6D4A-CCD3-475D-9D66-2F32E4FEA276}
O43 - CFD: 01/05/2012 - 07:29:08 - [0] ----D C:\Users\sumvero\AppData\Local\{0F34C03E-DB7D-4AAD-9A90-583130938799}
O43 - CFD: 08/11/2011 - 18:05:25 - [0] ----D C:\Users\sumvero\AppData\Local\{108CD76B-AB38-48DB-951B-1785F8346197}
O43 - CFD: 13/09/2011 - 08:21:56 - [0] ----D C:\Users\sumvero\AppData\Local\{1144ACF1-EC55-4C88-B47D-5C28C8BBA24B}
O43 - CFD: 15/05/2012 - 21:10:39 - [0] ----D C:\Users\sumvero\AppData\Local\{11475F12-CCE9-4F1F-9520-4435EBD00F12}
O43 - CFD: 11/11/2011 - 19:09:54 - [0] ----D C:\Users\sumvero\AppData\Local\{1248303A-F6E1-4CE9-A2B0-2D2A74B77E9E}
O43 - CFD: 27/11/2011 - 08:21:53 - [0] ----D C:\Users\sumvero\AppData\Local\{1271FC6F-3A6D-41D1-BABE-B0F483D8BDB0}
O43 - CFD: 18/08/2012 - 17:19:06 - [0] ----D C:\Users\sumvero\AppData\Local\{127250C0-50FD-49ED-8D6D-A18317FAF72F}
O43 - CFD: 07/11/2011 - 22:24:28 - [0] ----D C:\Users\sumvero\AppData\Local\{12BF56EC-514E-4CD8-BAA2-138B4176FCC3}
O43 - CFD: 23/11/2011 - 20:15:28 - [0] ----D C:\Users\sumvero\AppData\Local\{12E93CBF-E8DB-47F8-B27A-60F1512651AF}
O43 - CFD: 17/01/2013 - 21:36:59 - [0] ----D C:\Users\sumvero\AppData\Local\{13A70A57-2DFC-4073-AD3D-DAE3510AE444}
O43 - CFD: 03/12/2011 - 18:53:54 - [0] ----D C:\Users\sumvero\AppData\Local\{14E2E393-326D-4EC4-9CF0-1AD8B41F59D7}
O43 - CFD: 27/10/2011 - 20:22:56 - [0] ----D C:\Users\sumvero\AppData\Local\{14EDF02C-5142-46E5-B43C-B57CC8A22DC2}
O43 - CFD: 30/12/2012 - 14:15:04 - [0] ----D C:\Users\sumvero\AppData\Local\{155C51F2-E331-480F-B2C6-C7E7206BAAD6}
O43 - CFD: 19/08/2012 - 07:33:31 - [0] ----D C:\Users\sumvero\AppData\Local\{15D635F7-773A-4619-A0CD-5B23D44BA9D8}
O43 - CFD: 31/01/2012 - 15:14:17 - [0] ----D C:\Users\sumvero\AppData\Local\{174F9C80-63E9-48D4-8C09-86E70047B730}
O43 - CFD: 08/03/2012 - 20:41:18 - [0] ----D C:\Users\sumvero\AppData\Local\{176F15D7-EB71-400C-9EEB-83A3F3AE1905}
O43 - CFD: 01/06/2012 - 20:13:21 - [0] ----D C:\Users\sumvero\AppData\Local\{1791C2FE-CDDB-4DF4-84F0-5A43A8326B40}
O43 - CFD: 23/02/2012 - 21:10:34 - [0] ----D C:\Users\sumvero\AppData\Local\{17D3650C-765F-4FA4-B906-2B8B248CD753}
O43 - CFD: 18/11/2011 - 21:55:00 - [0] ----D C:\Users\sumvero\AppData\Local\{18DF893E-2271-4324-BF44-2A3D7354E5C3}
O43 - CFD: 19/06/2012 - 16:28:54 - [0] ----D C:\Users\sumvero\AppData\Local\{19D1643F-5A38-4803-974F-C86B61DBD95C}
O43 - CFD: 12/06/2012 - 16:24:20 - [0] ----D C:\Users\sumvero\AppData\Local\{1ABE7219-0E3D-4EE6-987C-4E2A6F0E6186}
O43 - CFD: 13/05/2012 - 12:49:58 - [0] ----D C:\Users\sumvero\AppData\Local\{1AF9AA39-059C-4CE6-95A8-18307977DB5D}
O43 - CFD: 04/02/2012 - 20:29:23 - [0] ----D C:\Users\sumvero\AppData\Local\{1AFA18A1-6B5C-4C1C-91A4-2E0F97AE9B05}
O43 - CFD: 02/03/2012 - 19:55:18 - [0] ----D C:\Users\sumvero\AppData\Local\{1BC7DB99-B608-498B-9C23-E55773807D1D}
O43 - CFD: 05/06/2012 - 19:22:56 - [0] ----D C:\Users\sumvero\AppData\Local\{1BD05FD3-858E-4391-B451-A1CC0EA48CA0}
O43 - CFD: 29/02/2012 - 21:04:48 - [0] ----D C:\Users\sumvero\AppData\Local\{1D094FA9-D40C-42D2-BDCB-B1257E888D14}
O43 - CFD: 18/07/2012 - 20:05:23 - [0] ----D C:\Users\sumvero\AppData\Local\{1D2ADA77-1C76-4B21-BB48-C2DE1C544378}
O43 - CFD: 26/10/2012 - 19:09:51 - [0] ----D C:\Users\sumvero\AppData\Local\{1E007342-F7FD-4CA7-95B8-C19E1849DDEE}
O43 - CFD: 28/10/2012 - 18:39:57 - [0] ----D C:\Users\sumvero\AppData\Local\{1EC379B0-448D-48DD-A99C-AE16569E291C}
O43 - CFD: 25/10/2011 - 18:05:41 - [0] ----D C:\Users\sumvero\AppData\Local\{1EE7BB4B-0109-4199-9C12-F4D018EE879C}
O43 - CFD: 17/09/2011 - 13:37:39 - [0] ----D C:\Users\sumvero\AppData\Local\{1F40A4D8-64B1-40AC-9EBD-71216BB4B6AF}
O43 - CFD: 31/01/2013 - 00:27:45 - [0] ----D C:\Users\sumvero\AppData\Local\{1F57F2B9-B038-4135-8946-B3DA8999D1F3}
O43 - CFD: 09/04/2012 - 07:52:56 - [0] ----D C:\Users\sumvero\AppData\Local\{1F7B649D-C669-44B0-BCE8-359C8BD40C79}
O43 - CFD: 11/09/2011 - 13:03:38 - [0] ----D C:\Users\sumvero\AppData\Local\{1F81EFCA-19C0-45B8-B036-B323696543EF}
O43 - CFD: 23/07/2012 - 22:09:00 - [0] ----D C:\Users\sumvero\AppData\Local\{20D7FF79-E958-4CC5-8796-89CE96A21D13}
O43 - CFD: 28/09/2012 - 20:01:27 - [0] ----D C:\Users\sumvero\AppData\Local\{2225A863-9725-4D6E-88DC-289122EBE20F}
O43 - CFD: 09/06/2012 - 19:12:05 - [0] ----D C:\Users\sumvero\AppData\Local\{22EEB15B-2F9A-4EB0-8D6C-78729588B63B}
O43 - CFD: 24/10/2011 - 20:08:23 - [0] ----D C:\Users\sumvero\AppData\Local\{2844EEA7-D3DE-4315-B549-BBE222B1AA76}
O43 - CFD: 19/10/2012 - 19:50:08 - [0] ----D C:\Users\sumvero\AppData\Local\{29AC675F-AF63-4920-8FAB-B1FD616F7AE0}
O43 - CFD: 18/08/2012 - 17:19:17 - [0] ----D C:\Users\sumvero\AppData\Local\{2AE6FAAF-BC42-457A-8659-8AAF997821F5}
O43 - CFD: 12/05/2012 - 15:41:59 - [0] ----D C:\Users\sumvero\AppData\Local\{2BBF5245-A6C7-4EAA-B888-981F109AD422}
O43 - CFD: 01/02/2012 - 21:58:57 - [0] ----D C:\Users\sumvero\AppData\Local\{2D36DC21-3AD0-48D5-AB9B-7C8FFF9B0E41}
O43 - CFD: 02/02/2012 - 21:32:01 - [0] ----D C:\Users\sumvero\AppData\Local\{2D462347-3A08-4747-BD62-ED6007D087F4}
O43 - CFD: 08/02/2012 - 13:46:42 - [0] ----D C:\Users\sumvero\AppData\Local\{2DD3819E-E864-48A4-8ECA-775FCE5FA39E}
O43 - CFD: 15/11/2011 - 16:02:17 - [0] ----D C:\Users\sumvero\AppData\Local\{2DE4BE9B-D637-4E40-836C-C8341459C014}
O43 - CFD: 15/01/2013 - 20:40:10 - [0] ----D C:\Users\sumvero\AppData\Local\{2FE28273-7DD2-469B-B83D-DF1A7AC4772C}
O43 - CFD: 17/05/2012 - 10:14:57 - [0] ----D C:\Users\sumvero\AppData\Local\{2FEA9E16-D81B-4D61-B9C8-97763A3B2A5C}
O43 - CFD: 05/02/2012 - 16:49:24 - [0] ----D C:\Users\sumvero\AppData\Local\{3165109E-7996-48C8-91C1-9E26E2EB874D}
O43 - CFD: 21/04/2012 - 16:43:08 - [0] ----D C:\Users\sumvero\AppData\Local\{3207A6FC-7E60-4F59-99AC-251ADF1C05BA}
O43 - CFD: 09/12/2011 - 22:43:35 - [0] ----D C:\Users\sumvero\AppData\Local\{325F913A-578F-4246-8F42-D4F6F673632F}
O43 - CFD: 29/01/2012 - 17:48:11 - [0] ----D C:\Users\sumvero\AppData\Local\{32818962-C803-4E10-A22E-1C76F58908ED}
O43 - CFD: 10/01/2013 - 21:20:57 - [0] ----D C:\Users\sumvero\AppData\Local\{32C9BA04-63B9-449D-A502-79A497F643D0}
O43 - CFD: 01/02/2013 - 15:11:18 - [0] ----D C:\Users\sumvero\AppData\Local\{339DB20F-BAE9-40EA-B18A-19CA6C5754BF}
O43 - CFD: 06/09/2011 - 14:48:24 - [0] ----D C:\Users\sumvero\AppData\Local\{33BEF5AC-59E8-4540-B9AD-368A9E403840}
O43 - CFD: 06/09/2011 - 14:47:53 - [0] ----D C:\Users\sumvero\AppData\Local\{3446DC8D-0C16-439A-8967-1CCEAEFEA10D}
O43 - CFD: 15/02/2012 - 20:48:29 - [0] ----D C:\Users\sumvero\AppData\Local\{34A97965-5658-41A3-A9D7-57F82B61A809}
O43 - CFD: 14/10/2012 - 08:17:45 - [0] ----D C:\Users\sumvero\AppData\Local\{35BEB4CE-C55B-432A-9991-5648B64A1679}
O43 - CFD: 29/12/2011 - 13:13:57 - [0] ----D C:\Users\sumvero\AppData\Local\{36476DD5-F02A-4D4F-91B8-50E5EB8B7E35}
O43 - CFD: 09/04/2012 - 17:49:32 - [0] ----D C:\Users\sumvero\AppData\Local\{369E73BA-E597-40BB-83B3-59A98DDA26E4}
O43 - CFD: 10/05/2012 - 22:41:40 - [0] ----D C:\Users\sumvero\AppData\Local\{36AE2269-395E-4041-981C-B9704BC9E8A0}
O43 - CFD: 09/10/2011 - 09:24:00 - [0] ----D C:\Users\sumvero\AppData\Local\{374C1784-873A-46F1-B3A6-182B84BB775F}
O43 - CFD: 19/06/2012 - 16:04:01 - [0] ----D C:\Users\sumvero\AppData\Local\{37BED134-27AB-4FEC-B0D5-27BD2A9F181F}
O43 - CFD: 21/08/2012 - 12:43:16 - [0] ----D C:\Users\sumvero\AppData\Local\{38D8CB05-ACDE-4E6C-8F28-FC1F350662E6}
O43 - CFD: 18/12/2012 - 11:47:42 - [0] ----D C:\Users\sumvero\AppData\Local\{398556F4-0933-460B-8767-5314A58B9676}
O43 - CFD: 28/04/2012 - 20:31:06 - [0] ----D C:\Users\sumvero\AppData\Local\{399E3DD5-C3EC-413A-B440-43077ED5E6F2}
O43 - CFD: 09/10/2011 - 09:23:48 - [0] ----D C:\Users\sumvero\AppData\Local\{39BBCDD1-C8B3-4206-A6D9-CADFB8ABE6BC}
O43 - CFD: 22/01/2013 - 18:13:58 - [0] ----D C:\Users\sumvero\AppData\Local\{3A6BD3FC-6F31-4B6E-A65C-1ABB324C4A17}
O43 - CFD: 05/12/2011 - 21:41:23 - [0] ----D C:\Users\sumvero\AppData\Local\{3A733483-D6CF-4B5B-9C92-ACC5E5E196AD}
O43 - CFD: 24/08/2012 - 18:40:17 - [0] ----D C:\Users\sumvero\AppData\Local\{3A993564-6219-43AB-A06B-3592689AAB96}
O43 - CFD: 22/01/2012 - 11:24:36 - [0] ----D C:\Users\sumvero\AppData\Local\{3B0E1CC2-BBEE-40E8-B96D-4EA43DE07387}
O43 - CFD: 04/01/2013 - 21:12:43 - [0] ----D C:\Users\sumvero\AppData\Local\{3B251224-C2B7-4193-B5F6-F2D71B07562B}
O43 - CFD: 18/10/2011 - 17:36:18 - [0] ----D C:\Users\sumvero\AppData\Local\{3B6FB2EB-8296-4E59-9B99-78308D047C07}
O43 - CFD: 17/05/2012 - 10:15:07 - [0] ----D C:\Users\sumvero\AppData\Local\{3BC6F00E-5F9E-48D0-A8BE-82B03982B9C1}
O43 - CFD: 14/12/2012 - 20:29:49 - [0] ----D C:\Users\sumvero\AppData\Local\{3BE192DA-AD97-439E-8FD6-C1765CFBEE42}
O43 - CFD: 30/01/2013 - 22:56:04 - [0] ----D C:\Users\sumvero\AppData\Local\{3C73F74A-57C3-4EB1-93F7-9E34F0DE8060}
O43 - CFD: 24/05/2012 - 20:51:27 - [0] ----D C:\Users\sumvero\AppData\Local\{3CE23B0A-E561-4565-B046-580B3032216E}
O43 - CFD: 28/11/2011 - 21:04:56 - [0] ----D C:\Users\sumvero\AppData\Local\{3E968B9A-E319-404D-ABF1-1CB5526E28CF}
O43 - CFD: 03/02/2012 - 22:19:46 - [0] ----D C:\Users\sumvero\AppData\Local\{3FA9D95A-190F-4906-98D0-94817C38EC51}
O43 - CFD: 14/01/2012 - 22:57:30 - [0] ----D C:\Users\sumvero\AppData\Local\{413F157D-F6C9-4B9F-942A-6D8098FF9586}
O43 - CFD: 05/06/2012 - 16:04:14 - [0] ----D C:\Users\sumvero\AppData\Local\{41B6843B-58BA-46E4-82D3-B8F6BDF79EEB}
O43 - CFD: 10/12/2012 - 20:56:02 - [0] ----D C:\Users\sumvero\AppData\Local\{41BB54A7-EBFE-47B4-B35F-C4A5188C608A}
O43 - CFD: 23/03/2012 - 21:30:08 - [0] ----D C:\Users\sumvero\AppData\Local\{41BD96A7-D0A4-48E0-9A81-16FCA6C6F052}
O43 - CFD: 03/05/2012 - 20:42:09 - [0] ----D C:\Users\sumvero\AppData\Local\{4210A182-9FE4-4106-AF1B-987A5D4FA5A4}
O43 - CFD: 09/01/2012 - 21:07:01 - [0] ----D C:\Users\sumvero\AppData\Local\{421563CB-EFF9-4FA5-A942-BF5CFECD5BEC}
O43 - CFD: 26/12/2011 - 21:21:16 - [0] ----D C:\Users\sumvero\AppData\Local\{430E92D4-5C9A-4369-8470-FCCA4D854E0B}
O43 - CFD: 29/09/2011 - 20:19:29 - [0] ----D C:\Users\sumvero\AppData\Local\{4342329D-6FFE-4DE6-8977-D7B761E954CE}
O43 - CFD: 09/01/2012 - 21:06:49 - [0] ----D C:\Users\sumvero\AppData\Local\{43A12EAE-6D22-48B1-A65A-CCBBA6B749E1}
O43 - CFD: 21/09/2012 - 20:18:52 - [0] ----D C:\Users\sumvero\AppData\Local\{459695D5-8A37-4831-B358-5D0CB225AC07}
O43 - CFD: 20/12/2011 - 12:36:09 - [0] ----D C:\Users\sumvero\AppData\Local\{4647460E-087C-4B1F-AD47-C24D1C7FE93A}
O43 - CFD: 10/05/2012 - 07:22:00 - [0] ----D C:\Users\sumvero\AppData\Local\{46D73600-8A3F-49CE-880D-7CC31BF96ABF}
O43 - CFD: 18/10/2011 - 17:36:29 - [0] ----D C:\Users\sumvero\AppData\Local\{46D84B8A-2DED-4D4D-8FED-1DB1E41B482E}
O43 - CFD: 18/11/2012 - 13:50:47 - [0] ----D C:\Users\sumvero\AppData\Local\{46DFC6D2-7159-4F35-8E71-B44288A525FF}
O43 - CFD: 01/01/2012 - 23:08:27 - [0] ----D C:\Users\sumvero\AppData\Local\{47512423-E761-4198-94C2-A3B319B711F2}
O43 - CFD: 07/12/2012 - 21:20:22 - [0] ----D C:\Users\sumvero\AppData\Local\{4764C978-47AC-427D-8B35-B4543BE543B4}
O43 - CFD: 07/04/2012 - 16:02:00 - [0] ----D C:\Users\sumvero\AppData\Local\{476D6A9D-2FCA-4A04-A938-1A67C0C39112}
O43 - CFD: 11/10/2011 - 19:34:47 - [0] ----D C:\Users\sumvero\AppData\Local\{497F5238-5000-4296-B996-1C9E30766D08}
O43 - CFD: 29/04/2012 - 15:37:16 - [0] ----D C:\Users\sumvero\AppData\Local\{4A032F08-066C-4EAF-AB81-F8EC1C15063C}
O43 - CFD: 21/06/2012 - 20:24:42 - [0] ----D C:\Users\sumvero\AppData\Local\{4A1EFEB3-E795-47BD-9471-E7B8592A69BD}
O43 - CFD: 17/01/2012 - 18:01:12 - [0] ----D C:\Users\sumvero\AppData\Local\{4CB1B3C5-8B33-47AB-945D-234EE3F98C45}
O43 - CFD: 18/02/2012 - 23:22:46 - [0] ----D C:\Users\sumvero\AppData\Local\{4CE36285-F4F5-47B6-AC8F-8C096426AD07}
O43 - CFD: 09/06/2012 - 19:11:50 - [0] ----D C:\Users\sumvero\AppData\Local\{4E0B50C4-6D94-45A0-BF03-347DE5026025}
O43 - CFD: 24/01/2012 - 18:31:40 - [0] ----D C:\Users\sumvero\AppData\Local\{4EDE0825-9EA1-4D67-9A67-56E9015C9EEA}
O43 - CFD: 11/11/2011 - 19:10:05 - [0] ----D C:\Users\sumvero\AppData\Local\{4F655671-6A7C-4412-9EBF-F83792E7AD88}
O43 - CFD: 14/12/2011 - 19:50:29 - [0] ----D C:\Users\sumvero\AppData\Local\{4FB7AFF5-1209-46BC-A4D4-096DCFD8B680}
O43 - CFD: 01/10/2011 - 16:59:03 - [0] ----D C:\Users\sumvero\AppData\Local\{512FEC52-ECB4-4598-BE19-BAE5ADA19C16}
O43 - CFD: 13/12/2011 - 08:49:13 - [0] ----D C:\Users\sumvero\AppData\Local\{51732701-38BF-44C4-B062-B856E5AB8B62}
O43 - CFD: 10/02/2012 - 12:48:47 - [0] ----D C:\Users\sumvero\AppData\Local\{51A7E542-7134-4FB9-A163-55318FB8A9E2}
O43 - CFD: 29/01/2013 - 22:17:12 - [0] ----D C:\Users\sumvero\AppData\Local\{52CE0FB0-B4C1-4F59-ABBF-C9FE5CA308A6}
O43 - CFD: 04/02/2012 - 21:44:01 - [0] ----D C:\Users\sumvero\AppData\Local\{53C94C10-6BF1-4C75-9E8E-FA429C42B8D1}
O43 - CFD: 05/01/2012 - 21:11:07 - [0] ----D C:\Users\sumvero\AppData\Local\{53FB1176-8ACF-4190-A69E-4E1A63DA9F30}
O43 - CFD: 20/11/2011 - 13:45:45 - [0] ----D C:\Users\sumvero\AppData\Local\{549FEF2D-C32D-4893-A219-0D53B4BEA21A}
O43 - CFD: 24/06/2012 - 08:17:12 - [0] ----D C:\Users\sumvero\AppData\Local\{556FFAB3-9077-4704-B51B-41C2820C45A6}
O43 - CFD: 16/02/2012 - 21:04:38 - [0] ----D C:\Users\sumvero\AppData\Local\{55878091-AF4D-4FB0-A36A-97B2799A2735}
O43 - CFD: 29/10/2011 - 20:23:52 - [0] ----D C:\Users\sumvero\AppData\Local\{55B14E2F-E331-41BD-B79C-2CA3348025C6}
O43 - CFD: 16/08/2012 - 19:43:19 - [0] ----D C:\Users\sumvero\AppData\Local\{5669C98D-0960-4738-AF1E-0EC67F7F1B74}
O43 - CFD: 10/06/2012 - 16:46:34 - [0] ----D C:\Users\sumvero\AppData\Local\{57DFF132-D933-41CD-A39C-ABDD4E987568}
O43 - CFD: 11/09/2012 - 16:29:19 - [0] ----D C:\Users\sumvero\AppData\Local\{587805A4-143B-448A-AE90-9FC2F7D8D686}
O43 - CFD: 05/11/2011 - 22:21:23 - [0] ----D C:\Users\sumvero\AppData\Local\{58D0687C-30A3-47DA-BC75-849B41379AE1}
O43 - CFD: 09/01/2013 - 21:15:07 - [0] ----D C:\Users\sumvero\AppData\Local\{594D64EF-D65E-4AEF-9C7D-63EA45E1401B}
O43 - CFD: 30/12/2012 - 12:38:37 - [0] ----D C:\Users\sumvero\AppData\Local\{599F929C-72F1-49F2-B41A-AA0D57EE5D53}
O43 - CFD: 09/04/2012 - 20:10:21 - [0] ----D C:\Users\sumvero\AppData\Local\{59C80C2E-639C-4DA2-8C01-90BD80E3548A}
O43 - CFD: 22/05/2012 - 14:50:41 - [0] ----D C:\Users\sumvero\AppData\Local\{59CCE7D8-A943-4723-93C5-3FA8263AA6B5}
O43 - CFD: 22/05/2012 - 14:50:55 - [0] ----D C:\Users\sumvero\AppData\Local\{5A86252D-A3CE-47BB-9585-0127A1ABB6CA}
O43 - CFD: 19/02/2012 - 17:05:23 - [0] ----D C:\Users\sumvero\AppData\Local\{5B3DE374-12F8-462F-B290-A1AAB5DE6D22}
O43 - CFD: 30/09/2011 - 20:20:28 - [0] ----D C:\Users\sumvero\AppData\Local\{5B96A03F-324E-401A-A90D-51B10E24D80B}
O43 - CFD: 02/12/2011 - 20:04:09 - [0] ----D C:\Users\sumvero\AppData\Local\{5BACA7AB-F5C0-4087-9EFA-E1022288449A}
O43 - CFD: 14/12/2012 - 20:56:40 - [0] ----D C:\Users\sumvero\AppData\Local\{5CBC32C6-D626-48D1-9DF3-72530E57A47F}
O43 - CFD: 27/12/2011 - 19:07:55 - [0] ----D C:\Users\sumvero\AppData\Local\{5CF33360-44F7-459E-BC77-6CBD4060F197}
O43 - CFD: 17/05/2012 - 07:25:48 - [0] ----D C:\Users\sumvero\AppData\Local\{5F5A27C9-0EFE-4850-973A-10FA4A42775A}
O43 - CFD: 18/08/2012 - 17:18:55 - [0] ----D C:\Users\sumvero\AppData\Local\{5F775EA6-A8D5-4AEE-8872-BE89544448AC}
O43 - CFD: 17/11/2011 - 21:02:27 - [0] ----D C:\Users\sumvero\AppData\Local\{5FB761AF-656F-4682-8410-1E58D9F42840}
O43 - CFD: 04/06/2012 - 11:52:57 - [0] ----D C:\Users\sumvero\AppData\Local\{5FF8DCFA-F70A-49CC-97BD-7ECC93D6CD3B}
O43 - CFD: 26/10/2011 - 12:33:01 - [0] ----D C:\Users\sumvero\AppData\Local\{600CD512-211C-48B0-89EC-6383B30EB756}
O43 - CFD: 19/06/2012 - 16:04:18 - [0] ----D C:\Users\sumvero\AppData\Local\{6026F1A9-6CB3-4833-865C-7CAD1207A0AD}
O43 - CFD: 31/01/2013 - 00:20:49 - [0] ----D C:\Users\sumvero\AppData\Local\{60315501-B703-41E9-AA1D-AF2F557C3B5F}
O43 - CFD: 29/01/2012 - 16:34:47 - [0] ----D C:\Users\sumvero\AppData\Local\{624D2C99-F377-44C5-B11F-BA14822EB79B}
O43 - CFD: 21/10/2011 - 19:40:20 - [0] ----D C:\Users\sumvero\AppData\Local\{6295254D-AF2E-429C-B44A-91EC2882D2F3}
O43 - CFD: 30/01/2013 - 19:44:57 - [0] ----D C:\Users\sumvero\AppData\Local\{63955ABB-3539-44E8-98D5-1A0D6544734C}
O43 - CFD: 06/11/2011 - 16:46:24 - [0] ----D C:\Users\sumvero\AppData\Local\{63C93E23-6C42-4B58-B117-84E83E80E4BF}
O43 - CFD: 19/06/2012 - 16:29:05 - [0] ----D C:\Users\sumvero\AppData\Local\{6484BCFE-DB2E-4441-B9E0-9C4E2062409B}
O43 - CFD: 22/11/2012 - 22:41:00 - [0] ----D C:\Users\sumvero\AppData\Local\{64BE154B-748A-47DF-8808-8078E23A19C3}
O43 - CFD: 04/06/2012 - 11:53:09 - [0] ----D C:\Users\sumvero\AppData\Local\{657359EC-10BB-4EFE-ABB4-DF23A3576ABB}
O43 - CFD: 23/10/2011 - 12:17:23 - [0] ----D C:\Users\sumvero\AppData\Local\{65DAEC52-47AA-46E5-B27F-4AFEFAABF805}
O43 - CFD: 28/06/2012 - 18:41:33 - [0] ----D C:\Users\sumvero\AppData\Local\{664A2D2D-51B6-4D64-8239-86063A8BBF14}
O43 - CFD: 02/10/2011 - 15:54:02 - [0] ----D C:\Users\sumvero\AppData\Local\{66A2CE62-947E-45B6-80A8-8883117F5597}
O43 - CFD: 23/10/2012 - 16:15:40 - [0] ----D C:\Users\sumvero\AppData\Local\{672BF6BB-3096-4823-AB54-7EAB31A9EE54}
O43 - CFD: 27/03/2012 - 22:12:05 - [0] ----D C:\Users\sumvero\AppData\Local\{6799DB40-6A27-41E9-9CE8-F801F51695F3}
O43 - CFD: 06/04/2012 - 20:04:23 - [0] ----D C:\Users\sumvero\AppData\Local\{67A3ADEA-B3C6-4DB0-A66D-6BEB0B456004}
O43 - CFD: 24/06/2012 - 16:52:37 - [0] ----D C:\Users\sumvero\AppData\Local\{683509E9-2562-49F6-8DC5-8B183B4A5666}
O43 - CFD: 14/06/2012 - 19:58:09 - [0] ----D C:\Users\sumvero\AppData\Local\{68FBA325-0A8A-4883-8C03-3EF89BB798BA}
O43 - CFD: 14/01/2013 - 23:31:33 - [0] ----D C:\Users\sumvero\AppData\Local\{694BBFDB-C590-409F-9F02-6C69DBA6F5A3}
O43 - CFD: 29/10/2011 - 19:25:34 - [0] ----D C:\Users\sumvero\AppData\Local\{6A970A08-DC83-4B2D-BC94-D7218A083014}
O43 - CFD: 06/11/2011 - 10:21:41 - [0] ----D C:\Users\sumvero\AppData\Local\{6AB42BF4-6ABF-4AF1-BBC4-D2A79FF4C3CF}
O43 - CFD: 04/02/2012 - 21:44:11 - [0] ----D C:\Users\sumvero\AppData\Local\{6B23EBE6-821B-4ADD-BA11-8E8A1DC7E49F}
O43 - CFD: 30/10/2011 - 08:24:30 - [0] ----D C:\Users\sumvero\AppData\Local\{6B6FD2EC-BAA0-49C8-A873-2FE627E194E9}
O43 - CFD: 30/09/2011 - 20:20:41 - [0] ----D C:\Users\sumvero\AppData\Local\{6B8092A7-33F7-4176-BDA4-F8061430ACB2}
O43 - CFD: 01/02/2012 - 21:58:46 - [0] ----D C:\Users\sumvero\AppData\Local\{6C0D1617-3564-427D-8BE5-652BF53B5514}
O43 - CFD: 04/04/2012 - 18:44:20 - [0] ----D C:\Users\sumvero\AppData\Local\{6E439E6B-1374-4B2F-8059-5C48C403B5A9}
O43 - CFD: 22/10/2011 - 17:56:56 - [0] ----D C:\Users\sumvero\AppData\Local\{6EEDB35A-35EF-4AC7-AE6C-6EAE5C5514B8}
O43 - CFD: 15/05/2012 - 18:11:58 - [0] ----D C:\Users\sumvero\AppData\Local\{6F6CD8EA-DC0C-4F83-8598-A6E4A574A3D0}
O43 - CFD: 19/07/2012 - 22:24:52 - [0] ----D C:\Users\sumvero\AppData\Local\{6F988191-7EC0-41E7-A3EC-44B5001EE9A1}
O43 - CFD: 22/04/2012 - 18:21:45 - [0] ----D C:\Users\sumvero\AppData\Local\{7089DBA8-F9CA-43DE-92E7-3F16E53791E6}
O43 - CFD: 21/12/2011 - 21:28:57 - [0] ----D C:\Users\sumvero\AppData\Local\{70FDA03A-2BF1-4035-A00D-6F5874B96568}
O43 - CFD: 29/09/2011 - 20:19:42 - [0] ----D C:\Users\sumvero\AppData\Local\{713868BC-E968-46B4-B134-1C0F3AB16171}
O43 - CFD: 03/05/2012 - 20:41:58 - [0] ----D C:\Users\sumvero\AppData\Local\{729EB4F4-01D1-4A43-962F-169537216625}
O43 - CFD: 05/01/2013 - 18:02:09 - [0] ----D C:\Users\sumvero\AppData\Local\{733223D2-0F2A-4CAB-BEEE-5FBD62E99F1B}
O43 - CFD: 29/11/2011 - 09:21:22 - [0] ----D C:\Users\sumvero\AppData\Local\{74340F53-A8FC-469F-A088-4DA179CA6381}
O43 - CFD: 25/04/2012 - 20:35:14 - [0] ----D C:\Users\sumvero\AppData\Local\{74F3CECB-1195-4614-BB5B-470A3F625A86}
O43 - CFD: 19/07/2012 - 22:25:13 - [0] ----D C:\Users\sumvero\AppData\Local\{751B3458-AC90-4234-B5A3-88B02D3B9C9E}
O43 - CFD: 13/02/2012 - 20:55:34 - [0] ----D C:\Users\sumvero\AppData\Local\{75350042-59E3-457B-8C98-CBC45113F922}
O43 - CFD: 21/11/2011 - 22:18:45 - [0] ----D C:\Users\sumvero\AppData\Local\{753FA36A-CE9B-449B-837B-95592A7E5585}
O43 - CFD: 19/11/2012 - 13:16:53 - [0] ----D C:\Users\sumvero\AppData\Local\{754EE84E-6947-42DC-93E3-C8D9CD542E83}
O43 - CFD: 18/02/2012 - 23:22:56 - [0] ----D C:\Users\sumvero\AppData\Local\{75A549E7-B9FB-4247-9DB2-C2CAAD3BA853}
O43 - CFD: 21/02/2012 - 09:59:38 - [0] ----D C:\Users\sumvero\AppData\Local\{75A5A5BC-F959-46F7-9A7C-7F48F6E53A55}
O43 - CFD: 17/03/2012 - 16:37:41 - [0] ----D C:\Users\sumvero\AppData\Local\{760163E6-C9D8-434E-91D8-4EB2CA59B3D8}
O43 - CFD: 28/06/2012 - 20:09:48 - [0] ----D C:\Users\sumvero\AppData\Local\{76DDB08E-96FA-41CF-9336-3970EFEAF416}
O43 - CFD: 04/05/2012 - 12:09:43 - [0] ----D C:\Users\sumvero\AppData\Local\{77078958-4022-4C60-A471-A2C6CD8B4737}
O43 - CFD: 06/12/2011 - 20:58:21 - [0] ----D C:\Users\sumvero\AppData\Local\{77279711-8B52-4328-B8E2-8337E8F5D83F}
O43 - CFD: 02/01/2012 - 18:23:36 - [0] ----D C:\Users\sumvero\AppData\Local\{7767CA95-F63B-4B73-B3B7-738561CA288F}
O43 - CFD: 07/09/2012 - 20:52:46 - [0] ----D C:\Users\sumvero\AppData\Local\{77BC6BE9-1428-42D0-9936-3DDC73134D89}
O43 - CFD: 27/09/2011 - 17:59:58 - [0] ----D C:\Users\sumvero\AppData\Local\{78A3DF82-7AAC-4A63-81A2-1C5C100E3A81}
O43 - CFD: 21/03/2012 - 20:43:40 - [0] ----D C:\Users\sumvero\AppData\Local\{7908A4C6-2EB1-4005-81AE-E42F7F94B674}
O43 - CFD: 01/09/2012 - 18:59:40 - [0] ----D C:\Users\sumvero\AppData\Local\{7963FCA6-19F6-4D48-9056-9B39B75B8449}
O43 - CFD: 03/12/2012 - 22:52:57 - [0] ----D C:\Users\sumvero\AppData\Local\{7993CDFD-6CAF-4EF9-9985-BBA6C4010FA1}
O43 - CFD: 18/11/2011 - 23:51:51 - [0] ----D C:\Users\sumvero\AppData\Local\{7AA994CE-EC1A-4920-937F-12E88C73244A}
O43 - CFD: 31/01/2013 - 09:20:39 - [0] ----D C:\Users\sumvero\AppData\Local\{7B6C95B9-8582-4B43-A4D3-CFF969A4DE47}
O43 - CFD: 03/11/2011 - 21:04:01 - [0] ----D C:\Users\sumvero\AppData\Local\{7BC86903-D308-4A89-8873-30A84221F6DB}
O43 - CFD: 28/11/2011 - 21:05:08 - [0] ----D C:\Users\sumvero\AppData\Local\{7C9A1023-0625-44B2-8417-DD7F277F075A}
O43 - CFD: 28/06/2012 - 20:09:36 - [0] ----D C:\Users\sumvero\AppData\Local\{7CB94245-0391-49D1-917C-182C7FD9CB1D}
O43 - CFD: 12/06/2012 - 12:54:21 - [0] ----D C:\Users\sumvero\AppData\Local\{7CE2402E-6852-4118-AC97-AA908DF8EB95}
O43 - CFD: 20/02/2012 - 21:33:27 - [0] ----D C:\Users\sumvero\AppData\Local\{7E5BE8BA-8CD5-432D-BA91-BD45D904F109}
O43 - CFD: 23/07/2012 - 22:09:11 - [0] ----D C:\Users\sumvero\AppData\Local\{7EA2857F-0736-4167-9575-5197CBB0F503}
O43 - CFD: 20/11/2011 - 13:45:55 - [0] ----D C:\Users\sumvero\AppData\Local\{7F0F0ABD-9ADA-4E0E-9B02-34EEE387C64D}
O43 - CFD: 29/10/2012 - 12:52:27 - [0] ----D C:\Users\sumvero\AppData\Local\{7F439F19-2F4B-4857-904E-F6F29DAF7EC1}
O43 - CFD: 16/12/2012 - 21:03:02 - [0] ----D C:\Users\sumvero\AppData\Local\{7F5735F1-67C2-4F25-9E1F-0E4A44839912}
O43 - CFD: 10/06/2012 - 16:46:44 - [0] ----D C:\Users\sumvero\AppData\Local\{7FE98F7B-9D61-4F73-8CB9-951EC3878325}
O43 - CFD: 12/08/2012 - 18:17:55 - [0] ----D C:\Users\sumvero\AppData\Local\{800DF77E-1E2F-4DEF-B788-EF46972E560A}
O43 - CFD: 27/11/2012 - 08:38:44 - [0] ----D C:\Users\sumvero\AppData\Local\{80302136-233C-4199-8EF6-6F2CB0492E21}
O43 - CFD: 01/06/2012 - 20:13:10 - [0] ----D C:\Users\sumvero\AppData\Local\{8105B2CB-C3AD-483B-9B0E-2B30735C5654}
O43 - CFD: 15/10/2011 - 16:25:49 - [0] ----D C:\Users\sumvero\AppData\Local\{8206B005-2341-4620-BE41-B62EDECE2F95}
O43 - CFD: 22/10/2011 - 17:56:43 - [0] ----D C:\Users\sumvero\AppData\Local\{82423AC3-1D18-4218-AB31-11A882F0AF99}
O43 - CFD: 05/11/2011 - 22:21:12 - [0] ----D C:\Users\sumvero\AppData\Local\{82B2FD2F-AE57-4E7E-B0AC-48D5BB1B8FCC}
O43 - CFD: 28/01/2012 - 21:09:17 - [0] ----D C:\Users\sumvero\AppData\Local\{85B075D3-0253-4EA6-87EE-A898A442A427}
O43 - CFD: 02/07/2012 - 22:38:46 - [0] ----D C:\Users\sumvero\AppData\Local\{8675820D-678D-4B69-BE10-6D34E9728005}
O43 - CFD: 26/11/2011 - 23:33:10 - [0] ----D C:\Users\sumvero\AppData\Local\{87E2FE5B-E9F2-40AD-A813-9879D1B7B9A3}
O43 - CFD: 08/11/2011 - 18:05:14 - [0] ----D C:\Users\sumvero\AppData\Local\{8849C43B-A9C2-4141-A660-3BBDA451A525}
O43 - CFD: 14/01/2012 - 22:57:41 - [0] ----D C:\Users\sumvero\AppData\Local\{893A66F4-78E5-4C8B-9E6E-0618614A0FCE}
O43 - CFD: 20/09/2011 - 14:43:05 - [0] ----D C:\Users\sumvero\AppData\Local\{89D14149-5AB4-425A-8B29-9099C38CE3D1}
O43 - CFD: 02/03/2012 - 19:55:31 - [0] ----D C:\Users\sumvero\AppData\Local\{89E11AAA-3046-4B1B-BE8E-45F881CEF865}
O43 - CFD: 15/05/2012 - 21:10:50 - [0] ----D C:\Users\sumvero\AppData\Local\{8A0C137B-F0D1-44CF-8C4A-1493A15BA50F}
O43 - CFD: 27/07/2012 - 20:37:48 - [0] ----D C:\Users\sumvero\AppData\Local\{8A28A9D7-D5ED-4843-B5F3-0D7FA1609BD3}
O43 - CFD: 03/02/2012 - 22:19:57 - [0] ----D C:\Users\sumvero\AppData\Local\{8ADC7ED1-2CF1-4249-AFDE-56D9DD9A45FF}
O43 - CFD: 25/09/2011 - 12:17:14 - [0] ----D C:\Users\sumvero\AppData\Local\{8BAD1F53-D616-4CB3-98CB-DAB4DDDCD366}
O43 - CFD: 07/02/2012 - 18:39:24 - [0] ----D C:\Users\sumvero\AppData\Local\{8C9749BE-B0CB-418B-9F08-24E7105FCC78}
O43 - CFD: 21/06/2012 - 20:24:30 - [0] ----D C:\Users\sumvero\AppData\Local\{8D051430-0E46-45E5-B450-76F19AAE302E}
O43 - CFD: 30/12/2012 - 08:45:54 - [0] ----D C:\Users\sumvero\AppData\Local\{8D2CB7E8-EDD6-46A9-BF6D-33A0437BFC59}
O43 - CFD: 20/04/2012 - 20:31:35 - [0] ----D C:\Users\sumvero\AppData\Local\{8D35E073-147A-4DDB-AA69-63DA89EBDB40}
O43 - CFD: 16/05/2012 - 20:36:06 - [0] ----D C:\Users\sumvero\AppData\Local\{8DAE8BCA-CC9C-4A73-9F4E-E13A6B757CD7}
O43 - CFD: 03/11/2012 - 20:37:17 - [0] ----D C:\Users\sumvero\AppData\Local\{8EFF9CE5-2362-4FEA-952D-4BC16396C0D5}
O43 - CFD: 28/06/2012 - 18:41:44 - [0] ----D C:\Users\sumvero\AppData\Local\{8F0B0ADC-B374-4565-B4DC-35E89CB0CCE0}
O43 - CFD: 24/11/2011 - 21:44:48 - [0] ----D C:\Users\sumvero\AppData\Local\{8F45F457-C633-447B-BD98-707B0DF24AEC}
O43 - CFD: 18/09/2011 - 07:11:17 - [0] ----D C:\Users\sumvero\AppData\Local\{907E80AF-9CCE-4301-8EA7-D1D445944907}
O43 - CFD: 23/02/2012 - 21:10:23 - [0] ----D C:\Users\sumvero\AppData\Local\{91B15025-82D5-4CE3-944F-4E03861D5E3A}
O43 - CFD: 31/01/2012 - 15:14:06 - [0] ----D C:\Users\sumvero\AppData\Local\{92209C97-BAD7-4AA0-9B40-37986ECC3422}
O43 - CFD: 11/05/2012 - 17:11:58 - [0] ----D C:\Users\sumvero\AppData\Local\{9221C8BC-ECDF-421E-A53D-2A66709D69BC}
O43 - CFD: 12/06/2012 - 11:46:05 - [0] ----D C:\Users\sumvero\AppData\Local\{924A5FE1-25CD-4A73-BB22-278D6D902B33}
O43 - CFD: 05/01/2012 - 21:11:18 - [0] ----D C:\Users\sumvero\AppData\Local\{927B4933-3222-407F-8028-35DC7664E2DD}
O43 - CFD: 27/12/2011 - 19:08:08 - [0] ----D C:\Users\sumvero\AppData\Local\{9367E744-BEB2-42B1-AA2E-780A53649AA9}
O43 - CFD: 23/09/2012 - 12:32:04 - [0] ----D C:\Users\sumvero\AppData\Local\{9549505D-F562-4AAB-B90C-6172A0DEE867}
O43 - CFD: 31/01/2013 - 00:34:38 - [0] ----D C:\Users\sumvero\AppData\Local\{95740C87-9E20-40ED-95F0-7571430E8DA2}
O43 - CFD: 12/04/2012 - 20:41:01 - [0] ----D C:\Users\sumvero\AppData\Local\{95E1CDD1-D883-4467-A11F-F92E28700C05}
O43 - CFD: 29/01/2012 - 17:48:01 - [0] ----D C:\Users\sumvero\AppData\Local\{96304586-3B02-4E1F-B8A3-168E067B7B48}
O43 - CFD: 05/06/2012 - 16:04:02 - [0] ----D C:\Users\sumvero\AppData\Local\{975FCAFF-B8F7-4A2D-86BC-BD193D263CA2}
O43 - CFD: 10/02/2012 - 12:48:36 - [0] ----D C:\Users\sumvero\AppData\Local\{97652268-36B3-4073-9427-0F12B7A9EC57}
O43 - CFD: 09/05/2012 - 22:30:41 - [0] ----D C:\Users\sumvero\AppData\Local\{9A5B3434-6708-4976-A9C6-2800890E5956}
O43 - CFD: 26/10/2011 - 12:32:48 - [0] ----D C:\Users\sumvero\AppData\Local\{9B30906C-C849-4DAB-9BE5-872EB7B3CCBF}
O43 - CFD: 21/04/2012 - 16:42:57 - [0] ----D C:\Users\sumvero\AppData\Local\{9B8367F2-9724-44C2-A6F5-FE82311C7480}
O43 - CFD: 02/07/2012 - 22:38:32 - [0] ----D C:\Users\sumvero\AppData\Local\{9C22FF9F-42F8-4747-A68E-D76FFA840E2B}
O43 - CFD: 20/09/2011 - 14:43:16 - [0] ----D C:\Users\sumvero\AppData\Local\{9D4C0F17-A0E6-4C5A-96C7-6C630979D64B}
O43 - CFD: 16/08/2012 - 19:43:08 - [0] ----D C:\Users\sumvero\AppData\Local\{9FE61653-E0FA-465C-86C0-AB0B6328B933}
O43 - CFD: 09/06/2012 - 22:52:45 - [0] ----D C:\Users\sumvero\AppData\Local\{A19D8A9B-7712-4A98-90DF-920130B1BB7D}
O43 - CFD: 29/10/2011 - 20:24:01 - [0] ----D C:\Users\sumvero\AppData\Local\{A1B814E2-EB3D-4E4C-B37D-62FB4B49FAEB}
O43 - CFD: 03/11/2011 - 21:03:50 - [0] ----D C:\Users\sumvero\AppData\Local\{A25E7497-F62B-4FB5-8996-A8FE44B736A0}
O43 - CFD: 19/06/2012 - 16:19:32 - [0] ----D C:\Users\sumvero\AppData\Local\{A26DBD1A-FB22-4598-B401-B52077276FAD}
O43 - CFD: 12/10/2011 - 18:56:28 - [0] ----D C:\Users\sumvero\AppData\Local\{A307CB64-6184-4038-A138-CF920361BDC7}
O43 - CFD: 11/09/2011 - 13:03:27 - [0] ----D C:\Users\sumvero\AppData\Local\{A3181A91-A921-4372-86F9-590B6757A33C}
O43 - CFD: 04/11/2012 - 11:55:51 - [0] ----D C:\Users\sumvero\AppData\Local\{A32FFB33-2EB7-4C40-8DFE-75C0B61A0A24}
O43 - CFD: 28/02/2012 - 22:51:44 - [0] ----D C:\Users\sumvero\AppData\Local\{A34F9E71-712C-4C7D-9E03-BEE5CE853F04}
O43 - CFD: 29/02/2012 - 21:05:01 - [0] ----D C:\Users\sumvero\AppData\Local\{A3700AC9-016F-4ADD-B12D-7CF1157B053A}
O43 - CFD: 07/12/2011 - 13:19:43 - [0] ----D C:\Users\sumvero\AppData\Local\{A3CDFE98-08C7-4F62-A33A-5C2EFD5C982C}
O43 - CFD: 06/06/2012 - 19:08:14 - [0] ----D C:\Users\sumvero\AppData\Local\{A3D18BEC-B229-45A6-927B-9789919B4941}
O43 - CFD: 17/03/2012 - 16:37:30 - [0] ----D C:\Users\sumvero\AppData\Local\{A50D08F6-3CF7-4A12-81EC-452759CC05DD}
O43 - CFD: 11/05/2012 - 22:04:02 - [0] ----D C:\Users\sumvero\AppData\Local\{A55F28AF-ADFA-4E29-AD0D-4603A76B6F21}
O43 - CFD: 24/01/2012 - 18:31:51 - [0] ----D C:\Users\sumvero\AppData\Local\{A596E883-2384-458E-B6B9-2DE7E30D313E}
O43 - CFD: 24/06/2012 - 16:52:27 - [0] ----D C:\Users\sumvero\AppData\Local\{A628ACB3-08A3-4614-B666-2F93E4FA3071}
O43 - CFD: 01/11/2011 - 20:51:44 - [0] ----D C:\Users\sumvero\AppData\Local\{A7097AAA-032B-49E2-9516-819476ADB796}
O43 - CFD: 27/10/2011 - 20:22:43 - [0] ----D C:\Users\sumvero\AppData\Local\{A783635B-F3D1-4E7B-A13B-DD1A2DD465DF}
O43 - CFD: 18/08/2012 - 17:28:58 - [0] ----D C:\Users\sumvero\AppData\Local\{A7972F25-9A09-4CB9-8150-9E47327AF41D}
O43 - CFD: 21/11/2011 - 22:18:57 - [0] ----D C:\Users\sumvero\AppData\Local\{A7E99BA3-CB19-4324-9E44-F5A585587B27}
O43 - CFD: 16/12/2011 - 13:01:18 - [0] ----D C:\Users\sumvero\AppData\Local\{A83E4194-2D13-4385-808B-BB76C63EE6F3}
O43 - CFD: 10/09/2011 - 21:23:48 - [0] ----D C:\Users\sumvero\AppData\Local\{A8773528-E0F1-46A7-ABA9-1899A670E955}
O43 - CFD: 13/11/2011 - 13:35:17 - [0] ----D C:\Users\sumvero\AppData\Local\{A91C6409-A409-4944-99E1-827540BF43CD}
O43 - CFD: 04/10/2011 - 16:24:47 - [0] ----D C:\Users\sumvero\AppData\Local\{A94532C1-02F9-4E0B-9632-49C66BAC41F6}
O43 - CFD: 08/10/2011 - 19:18:30 - [0] ----D C:\Users\sumvero\AppData\Local\{A974D124-8B32-4545-8B9E-F4EF5E887118}
O43 - CFD: 09/11/2012 - 20:39:01 - [0] ----D C:\Users\sumvero\AppData\Local\{A9F96779-EC10-4C61-915A-B5EF63B5FB94}
O43 - CFD: 10/06/2012 - 12:35:43 - [0] ----D C:\Users\sumvero\AppData\Local\{AA8861F9-F99E-431E-8B49-8AC896010A48}
O43 - CFD: 11/05/2012 - 20:05:05 - [0] ----D C:\Users\sumvero\AppData\Local\{AA8B3BBF-2368-4462-B75F-FEBE09FB5557}
O43 - CFD: 15/10/2011 - 16:26:00 - [0] ----D C:\Users\sumvero\AppData\Local\{AAE9AC35-0F2E-4086-9D73-24102338C8A6}
O43 - CFD: 25/04/2012 - 20:35:03 - [0] ----D C:\Users\sumvero\AppData\Local\{AB0226BB-698E-43C9-BC0F-DF38E07671AF}
O43 - CFD: 16/02/2012 - 21:04:51 - [0] ----D C:\Users\sumvero\AppData\Local\{AB970B00-5E83-4519-8CC8-2F102838EC78}
O43 - CFD: 12/08/2012 - 18:18:07 - [0] ----D C:\Users\sumvero\AppData\Local\{AC3AA52D-2433-40DD-9B1B-F578E2FFC87D}
O43 - CFD: 02/10/2012 - 20:54:09 - [0] ----D C:\Users\sumvero\AppData\Local\{AD898946-0272-40DB-984C-71A9651E9F90}
O43 - CFD: 05/12/2011 - 21:41:34 - [0] ----D C:\Users\sumvero\AppData\Local\{AE1614CA-9EC9-44FE-96D6-98F2078DD136}
O43 - CFD: 15/06/2012 - 06:57:54 - [0] ----D C:\Users\sumvero\AppData\Local\{AE7A8E79-1993-4FE0-8552-866C55F94E6D}
O43 - CFD: 25/09/2011 - 12:17:03 - [0] ----D C:\Users\sumvero\AppData\Local\{AEC95F4C-539F-4E36-9FA0-BEADFB0FC5A2}
O43 - CFD: 07/05/2012 - 17:12:46 - [0] ----D C:\Users\sumvero\AppData\Local\{B0B21ADA-5944-45AC-8779-57A4876C2756}
O43 - CFD: 25/10/2011 - 18:05:52 - [0] ----D C:\Users\sumvero\AppData\Local\{B1666CE9-E33E-473A-A34F-A6171E201C58}
O43 - CFD: 18/08/2012 - 17:28:47 - [0] ----D C:\Users\sumvero\AppData\Local\{B1A99074-EA6A-4FB0-ABA7-5ABA0F253448}
O43 - CFD: 01/04/2012 - 17:51:09 - [0] ----D C:\Users\sumvero\AppData\Local\{B219C8B3-F40B-410F-A2F5-C313DED9BC6C}
O43 - CFD: 15/11/2011 - 16:02:30 - [0] ----D C:\Users\sumvero\AppData\Local\{B22370E7-0ADE-4164-8242-925911B387B9}
O43 - CFD: 16/10/2011 - 17:23:14 - [0] ----D C:\Users\sumvero\AppData\Local\{B2D141F2-E926-4903-BC4B-5CAC86E91CB1}
O43 - CFD: 22/09/2012 - 21:39:45 - [0] ----D C:\Users\sumvero\AppData\Local\{B3360224-9F55-499D-B870-53964F4C83B4}
O43 - CFD: 18/08/2012 - 17:11:03 - [0] ----D C:\Users\sumvero\AppData\Local\{B38562D6-4014-45F3-B9BD-7F2E884C894C}
O43 - CFD: 19/06/2012 - 16:19:21 - [0] ----D C:\Users\sumvero\AppData\Local\{B8FD637D-6FB9-4110-B998-246A3EA55902}
O43 - CFD: 24/04/2012 - 16:34:51 - [0] ----D C:\Users\sumvero\AppData\Local\{BB3EDB69-0F63-40D4-8F9F-009158A4E4B4}
O43 - CFD: 12/11/2012 - 20:57:06 - [0] ----D C:\Users\sumvero\AppData\Local\{BBEA7094-891B-4B5D-A8A9-A27997B45A2B}
O43 - CFD: 11/05/2012 - 13:48:05 - [0] ----D C:\Users\sumvero\AppData\Local\{BC5F2CC1-D88B-4CDF-8260-9F2A9A28BC58}
O43 - CFD: 31/12/2011 - 14:47:11 - [0] ----D C:\Users\sumvero\AppData\Local\{BCDD1E7A-B649-4BD2-9215-73F33411F42C}
O43 - CFD: 13/12/2011 - 08:49:24 - [0] ----D C:\Users\sumvero\AppData\Local\{BCEC1265-646C-4829-B909-4B4FD2882256}
O43 - CFD: 05/10/2012 - 19:30:11 - [0] ----D C:\Users\sumvero\AppData\Local\{BD1DA2AF-6BD7-4D43-9A37-3AA627F9754C}
O43 - CFD: 25/12/2012 - 08:29:14 - [0] ----D C:\Users\sumvero\AppData\Local\{BE711C18-89EB-4B49-B554-3ADD3EE28700}
O43 - CFD: 28/01/2012 - 21:09:05 - [0] ----D C:\Users\sumvero\AppData\Local\{BEA66C91-6CA3-41B2-9662-DC8C390D5ED7}
O43 - CFD: 24/04/2012 - 20:14:08 - [0] ----D C:\Users\sumvero\AppData\Local\{C11A500C-26E9-4247-9BD6-3ACB4E0531F1}
O43 - CFD: 25/11/2012 - 09:58:36 - [0] ----D C:\Users\sumvero\AppData\Local\{C1559A63-FB4E-48C6-B35E-DF4C9230C2B2}
O43 - CFD: 14/12/2011 - 19:50:18 - [0] ----D C:\Users\sumvero\AppData\Local\{C2329F18-C3B1-413C-B7EC-ECC08B8C9D2C}
O43 - CFD: 07/02/2012 - 18:39:37 - [0] ----D C:\Users\sumvero\AppData\Local\{C2975920-E728-4328-9E21-96CE83C80D0C}
O43 - CFD: 21/12/2011 - 21:29:08 - [0] ----D C:\Users\sumvero\AppData\Local\{C2979EC9-106C-4555-ACDC-F4317ACAF02F}
O43 - CFD: 04/12/2012 - 17:06:44 - [0] ----D C:\Users\sumvero\AppData\Local\{C33A0AA9-EF3E-4B2A-9639-E705094A0EF0}
O43 - CFD: 26/12/2011 - 21:21:28 - [0] ----D C:\Users\sumvero\AppData\Local\{C3ACD3C0-16BB-44DB-B2A5-AE143C8CAB1B}
O43 - CFD: 23/10/2011 - 12:17:34 - [0] ----D C:\Users\sumvero\AppData\Local\{C3DE8024-2A31-4F59-918D-FB7CFC50AD31}
O43 - CFD: 25/11/2011 - 23:34:08 - [0] ----D C:\Users\sumvero\AppData\Local\{C4264BDE-A44D-4179-9EEB-8E7B356D7C1B}
O43 - CFD: 12/10/2011 - 18:56:39 - [0] ----D C:\Users\sumvero\AppData\Local\{C517836E-ACC7-452D-AEB0-E3E47E238406}
O43 - CFD: 24/11/2011 - 21:44:37 - [0] ----D C:\Users\sumvero\AppData\Local\{C61B9508-5658-4F75-A0B6-F4CD0528A69F}
O43 - CFD: 27/09/2011 - 18:00:09 - [0] ----D C:\Users\sumvero\AppData\Local\{C65DE364-EE76-44F7-8A3A-E59744464A44}
O43 - CFD: 13/05/2012 - 10:12:41 - [0] ----D C:\Users\sumvero\AppData\Local\{C68FD774-F3EE-4453-BC19-4BEEA5A0409E}
O43 - CFD: 17/09/2011 - 13:37:50 - [0] ----D C:\Users\sumvero\AppData\Local\{C6A85853-4F50-49E1-A966-4E5E8D54FAFC}
O43 - CFD: 19/07/2012 - 20:25:37 - [0] ----D C:\Users\sumvero\AppData\Local\{C7732554-BD1D-4C75-B944-F82779137422}
O43 - CFD: 18/09/2011 - 10:57:34 - [0] ----D C:\Users\sumvero\AppData\Local\{CB4C3531-53B6-4DC6-B43D-D94D1953902F}
O43 - CFD: 07/11/2011 - 22:24:39 - [0] ----D C:\Users\sumvero\AppData\Local\{CC1F3FCE-CBE7-4FFC-9312-8045B364F75D}
O43 - CFD: 05/06/2012 - 19:23:07 - [0] ----D C:\Users\sumvero\AppData\Local\{CC4D94A9-4457-4FF9-9D4D-FC94C70F9D78}
O43 - CFD: 15/12/2011 - 20:41:26 - [0] ----D C:\Users\sumvero\AppData\Local\{CCFAC30C-B71C-48AC-A800-AD908F2AC03C}
O43 - CFD: 14/06/2012 - 19:57:58 - [0] ----D C:\Users\sumvero\AppData\Local\{CD47288C-36CB-403F-AFC1-5FC9C7C13E38}
O43 - CFD: 03/12/2011 - 18:53:41 - [0] ----D C:\Users\sumvero\AppData\Local\{CD93108A-6B3A-4ACA-A66A-2BF049CA6005}
O43 - CFD: 15/12/2012 - 23:18:43 - [0] ----D C:\Users\sumvero\AppData\Local\{CDB2D1C6-4870-4DA9-816A-618CFC0A769F}
O43 - CFD: 20/12/2011 - 12:36:20 - [0] ----D C:\Users\sumvero\AppData\Local\{CE334FBC-73B0-4C42-A2CD-DE5724F1DA53}
O43 - CFD: 29/11/2012 - 21:11:10 - [0] ----D C:\Users\sumvero\AppData\Local\{D008A668-58F8-4785-8391-017610F0CAE7}
O43 - CFD: 12/11/2011 - 14:00:54 - [0] ----D C:\Users\sumvero\AppData\Local\{D0A40227-8A58-452D-88F4-CA92460EEC7D}
O43 - CFD: 01/11/2011 - 20:51:33 - [0] ----D C:\Users\sumvero\AppData\Local\{D0BBE817-5F27-44DD-BE45-CE4BBDACFFD7}
O43 - CFD: 02/02/2012 - 21:31:49 - [0] ----D C:\Users\sumvero\AppData\Local\{D0C70CA9-B4AD-4C4E-A450-B538A5B58CB0}
O43 - CFD: 29/12/2012 - 13:59:36 - [0] ----D C:\Users\sumvero\AppData\Local\{D25F7A59-2BD2-4B14-BD0C-29EE7E6B22BB}
O43 - CFD: 26/12/2012 - 21:46:32 - [0] ----D C:\Users\sumvero\AppData\Local\{D2786A67-4012-4628-AEE4-C79791F4B082}
O43 - CFD: 08/10/2011 - 19:18:44 - [0] ----D C:\Users\sumvero\AppData\Local\{D2ABA195-6915-442E-AD41-6EF7012521F3}
O43 - CFD: 24/04/2012 - 16:34:40 - [0] ----D C:\Users\sumvero\AppData\Local\{D3A3FB7C-5611-4257-AFD7-EDC2BA505EC9}
O43 - CFD: 04/10/2011 - 16:24:35 - [0] ----D C:\Users\sumvero\AppData\Local\{D50E099E-7C20-43C4-A393-6B780FFFBA7D}
O43 - CFD: 15/09/2011 - 20:55:55 - [0] ----D C:\Users\sumvero\AppData\Local\{D5B72CBF-FB20-468D-B1CE-0A2F653E8E8A}
O43 - CFD: 23/06/2012 - 21:21:17 - [0] ----D C:\Users\sumvero\AppData\Local\{D66D5B4C-5A56-460A-B933-F5D9637278A5}
O43 - CFD: 22/01/2012 - 11:24:20 - [0] ----D C:\Users\sumvero\AppData\Local\{D75C92F9-4226-4A95-A547-049640CF7B23}
O43 - CFD: 09/12/2011 - 22:43:46 - [0] ----D C:\Users\sumvero\AppData\Local\{D8F5AE55-57C9-4DEE-91BA-9A7BC891820F}
O43 - CFD: 08/02/2012 - 13:46:30 - [0] ----D C:\Users\sumvero\AppData\Local\{D94E3787-9BA8-48B1-8C70-71C60DC6F94B}
O43 - CFD: 10/06/2012 - 12:35:53 - [0] ----D C:\Users\sumvero\AppData\Local\{D989FB6F-BB17-4C10-BF7A-2F7C4D75BEC6}
O43 - CFD: 28/06/2012 - 16:57:46 - [0] ----D C:\Users\sumvero\AppData\Local\{DA1C1C7A-DFA7-4B9F-87F8-C1757CFF49E6}
O43 - CFD: 20/02/2012 - 21:33:38 - [0] ----D C:\Users\sumvero\AppData\Local\{DAFDBD5E-38B3-41CD-B087-ED77F57DA8AA}
O43 - CFD: 02/12/2011 - 20:03:58 - [0] ----D C:\Users\sumvero\AppData\Local\{DB290E70-512D-460D-9648-15DBB62166A9}
O43 - CFD: 28/06/2012 - 16:57:57 - [0] ----D C:\Users\sumvero\AppData\Local\{DD1F8532-06DF-45D8-BA92-13F3FD5AF94A}
O43 - CFD: 19/02/2012 - 17:05:12 - [0] ----D C:\Users\sumvero\AppData\Local\{DD20EDF2-C235-4B3F-B4F5-C305912EF018}
O43 - CFD: 27/03/2012 - 22:11:54 - [0] ----D C:\Users\sumvero\AppData\Local\{DD73B6E2-2FB8-4635-9B4B-FC991C1B9603}
O43 - CFD: 06/12/2011 - 20:58:07 - [0] ----D C:\Users\sumvero\AppData\Local\{DE31BACC-AFF8-4C19-9D48-B373938D8B4A}
O43 - CFD: 14/02/2012 - 09:59:40 - [0] ----D C:\Users\sumvero\AppData\Local\{DE8F58C6-F88A-41EA-B4CD-2AC4CFAF2B27}
O43 - CFD: 13/02/2012 - 20:55:22 - [0] ----D C:\Users\sumvero\AppData\Local\{DF0E8DEB-6210-4364-A014-144847CA0199}
O43 - CFD: 24/04/2012 - 20:13:57 - [0] ----D C:\Users\sumvero\AppData\Local\{DF6B0687-C315-4852-B4D2-925B870DD926}
O43 - CFD: 24/10/2011 - 20:08:10 - [0] ----D C:\Users\sumvero\AppData\Local\{DF883412-1E3E-4CC4-A740-B733E9707D63}
O43 - CFD: 27/07/2012 - 20:37:37 - [0] ----D C:\Users\sumvero\AppData\Local\{E08D5756-FCB2-4580-940F-BB543EAEABFA}
O43 - CFD: 03/10/2011 - 06:46:04 - [0] ----D C:\Users\sumvero\AppData\Local\{E11B02B4-16D5-49C1-A2E0-689500CB45EB}
O43 - CFD: 13/11/2011 - 13:35:04 - [0] ----D C:\Users\sumvero\AppData\Local\{E1209BA6-E8DF-4806-AE0D-E8190888D1DD}
O43 - CFD: 12/06/2012 - 16:24:37 - [0] ----D C:\Users\sumvero\AppData\Local\{E2175E0F-9680-46BA-A04F-6D46D52B8F67}
O43 - CFD: 06/11/2011 - 16:46:15 - [0] ----D C:\Users\sumvero\AppData\Local\{E2B84DB8-1E28-422D-B80F-AC40341751DB}
O43 - CFD: 18/08/2012 - 17:18:43 - [0] ----D C:\Users\sumvero\AppData\Local\{E2E6B251-B038-4723-8F26-6F901C0D3432}
O43 - CFD: 23/03/2012 - 21:29:57 - [0] ----D C:\Users\sumvero\AppData\Local\{E424A849-118D-47F1-969F-B0A495D48EE7}
O43 - CFD: 18/11/2011 - 23:51:41 - [0] ----D C:\Users\sumvero\AppData\Local\{E4316FC5-1E8C-4265-A97E-E717781E3A15}
O43 - CFD: 14/02/2012 - 09:59:28 - [0] ----D C:\Users\sumvero\AppData\Local\{E448CA1D-25DD-4647-A85C-CB393CC5DE55}
O43 - CFD: 22/11/2011 - 15:30:42 - [0] ----D C:\Users\sumvero\AppData\Local\{E54D8F97-16EE-4941-BC0B-490747D336AB}
O43 - CFD: 06/06/2012 - 19:08:03 - [0] ----D C:\Users\sumvero\AppData\Local\{E55792D6-C9DB-4157-941D-FA102C1FC3B8}
O43 - CFD: 21/03/2012 - 20:43:54 - [0] ----D C:\Users\sumvero\AppData\Local\{E5A256C3-A0F2-4CF8-92E1-C4995C4EA4D3}
O43 - CFD: 24/05/2012 - 20:51:40 - [0] ----D C:\Users\sumvero\AppData\Local\{E5BD5B5E-ABE0-4CB2-9116-7E9C9E818EB8}
O43 - CFD: 23/11/2011 - 20:15:16 - [0] ----D C:\Users\sumvero\AppData\Local\{E72D6F6E-69F9-4A4D-BCD5-374A894A0083}
O43 - CFD: 12/05/2012 - 13:04:49 - [0] ----D C:\Users\sumvero\AppData\Local\{E7492277-7077-4EA7-BEA4-7B3C1D1B8114}
O43 - CFD: 20/11/2012 - 09:50:31 - [0] ----D C:\Users\sumvero\AppData\Local\{E7724CBD-18D4-49D9-B251-FFDA99823DAE}
O43 - CFD: 28/02/2012 - 22:51:32 - [0] ----D C:\Users\sumvero\AppData\Local\{E7EA21DF-3658-4730-8EB1-C1E60172EEB9}
O43 - CFD: 06/11/2012 - 16:03:17 - [0] ----D C:\Users\sumvero\AppData\Local\{E9031FA9-94FC-4FAD-B773-32330E3F281F}
O43 - CFD: 20/04/2012 - 20:31:49 - [0] ----D C:\Users\sumvero\AppData\Local\{E95BCE00-2FD9-4134-B018-83B363B39C01}
O43 - CFD: 24/06/2012 - 08:17:23 - [0] ----D C:\Users\sumvero\AppData\Local\{E990B4DB-4662-4D85-890A-85D497376D3A}
O43 - CFD: 04/01/2012 - 20:52:21 - [0] ----D C:\Users\sumvero\AppData\Local\{E9B4FC32-1A2E-4D48-ACEB-7759D856FC89}
O43 - CFD: 29/08/2012 - 20:50:05 - [0] ----D C:\Users\sumvero\AppData\Local\{EA12479D-1119-4590-B56D-0D3268036A81}
O43 - CFD: 29/03/2012 - 20:14:44 - [0] ----D C:\Users\sumvero\AppData\Local\{EA250F11-126B-4F83-A4B9-03BE5CE98C37}
O43 - CFD: 17/11/2011 - 21:02:16 - [0] ----D C:\Users\sumvero\AppData\Local\{EA805EC9-33E8-43DC-8590-52EE4E6781F5}
O43 - CFD: 18/09/2012 - 19:45:05 - [0] ----D C:\Users\sumvero\AppData\Local\{EC5EE155-80F5-44CD-8DA5-4A71F01175EB}
O43 - CFD: 04/01/2012 - 20:52:33 - [0] ----D C:\Users\sumvero\AppData\Local\{ED2EF000-EF51-4BDD-8EB3-04C13569D1B8}
O43 - CFD: 27/01/2012 - 21:25:56 - [0] ----D C:\Users\sumvero\AppData\Local\{EE3889F1-EE1F-4B3C-BC62-E9366C6D2B75}
O43 - CFD: 31/12/2011 - 14:46:59 - [0] ----D C:\Users\sumvero\AppData\Local\{EE66520A-FF66-4702-B78C-389FD24C0B0D}
O43 - CFD: 04/05/2012 - 12:09:32 - [0] ----D C:\Users\sumvero\AppData\Local\{F035351A-685E-4535-A67B-9F47BE3644D9}
O43 - CFD: 17/05/2012 - 07:25:58 - [0] ----D C:\Users\sumvero\AppData\Local\{F08D58A3-8C6A-4507-BB99-5FD525366EA9}
O43 - CFD: 07/05/2012 - 17:42:23 - [0] ----D C:\Users\sumvero\AppData\Local\{F0E9EFF7-5703-45A9-8D7A-E3D8FE54EAF6}
O43 - CFD: 12/06/2012 - 12:54:10 - [0] ----D C:\Users\sumvero\AppData\Local\{F0EDD6F2-62FD-4AE9-8050-C8670832685C}
O43 - CFD: 30/01/2013 - 20:18:19 - [0] ----D C:\Users\sumvero\AppData\Local\{F1130531-3EC6-4EBE-9542-FA00FAFED786}
O43 - CFD: 12/01/2012 - 21:00:31 - [0] ----D C:\Users\sumvero\AppData\Local\{F11D4707-8F98-42DE-A4B7-D1E0C5554BDC}
O43 - CFD: 01/05/2012 - 07:29:19 - [0] ----D C:\Users\sumvero\AppData\Local\{F14E81F9-720E-4572-B79D-DD1889D91216}
O43 - CFD: 23/06/2012 - 21:21:07 - [0] ----D C:\Users\sumvero\AppData\Local\{F3122F9B-F55C-4EAA-B4B6-9114D1409693}
O43 - CFD: 18/07/2012 - 20:04:48 - [0] ----D C:\Users\sumvero\AppData\Local\{F3BAC8B5-7413-4F6E-A5B1-B03FBBE0287F}
O43 - CFD: 20/01/2013 - 20:41:42 - [0] ----D C:\Users\sumvero\AppData\Local\{F4E97931-B5CB-4495-B959-E96885B49576}
O43 - CFD: 11/10/2011 - 19:34:35 - [0] ----D C:\Users\sumvero\AppData\Local\{F5B16CB1-7930-4584-B2B3-3E14A81A705E}
O43 - CFD: 09/10/2012 - 13:03:25 - [0] ----D C:\Users\sumvero\AppData\Local\{F5D9B6DC-F72D-4644-BCCC-639E723CADB7}
O43 - CFD: 14/10/2012 - 10:47:39 - [0] ----D C:\Users\sumvero\AppData\Local\{F74E2FB0-80D2-4EB7-ABDE-2DCA67A7B57E}
O43 - CFD: 22/11/2011 - 15:30:27 - [0] ----D C:\Users\sumvero\AppData\Local\{F7712BFD-7CCF-4CBF-B125-233D168A826B}
O43 - CFD: 17/04/2012 - 21:53:32 - [0] ----D C:\Users\sumvero\AppData\Local\{F95CA3B6-FE2C-4D64-9D4F-261A306C9DD8}
O43 - CFD: 30/01/2013 - 22:39:37 - [0] ----D C:\Users\sumvero\AppData\Local\{FA1E242E-5C8E-4FFF-8FFF-03CC3906ACCF}
O43 - CFD: 29/12/2011 - 13:14:08 - [0] ----D C:\Users\sumvero\AppData\Local\{FA56D4E7-14B9-4966-A2E8-5239ED06C785}
O43 - CFD: 21/10/2011 - 19:40:32 - [0] ----D C:\Users\sumvero\AppData\Local\{FAE7B3A3-9705-4093-B2BB-52E761B3B614}
O43 - CFD: 13/09/2011 - 08:21:44 - [0] ----D C:\Users\sumvero\AppData\Local\{FBCEE7D8-144A-4FF5-94F2-234C35F8E0FB}
O43 - CFD: 30/10/2011 - 08:24:40 - [0] ----D C:\Users\sumvero\AppData\Local\{FC211D39-3832-4C5B-987D-B6D31F835E4D}
O43 - CFD: 28/01/2012 - 19:47:15 - [0] ----D C:\Users\sumvero\AppData\Local\{FD999268-CC9C-4915-916A-8B3F1E13D838}
O43 - CFD: 21/02/2012 - 09:59:57 - [0] ----D C:\Users\sumvero\AppData\Local\{FF2AE6DE-505F-416E-A294-B80C968EC8C8}
O43 - CFD: 15/02/2012 - 20:48:40 - [0] ----D C:\Users\sumvero\AppData\Local\{FFADE297-520D-4269-85B6-3F497ABD51F7}
O43 - CFD: 14/07/2009 - 05:54:32 - [0,014] R---D C:\Users\sumvero\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 31/01/2013 - 08:39:17 - [0,000] R---D C:\Users\sumvero\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 14/07/2009 - 05:49:38 - [0,001] R---D C:\Users\sumvero\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 30/04/2011 - 23:32:19 - [0] ----D C:\Users\sumvero\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre
O43 - CFD: 31/01/2013 - 08:39:17 - [0,000] R---D C:\Users\sumvero\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
~ Scan Program Folder in 01mn 25s



---\\ Derniers fichiers modifi�s ou cr�es sous Windows et System32 (O44)
O44 - LFC:[MD5.74F18FBEB8C03D2C5C0A13BE7042C14B] - 01/02/2013 - 18:07:11 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1747508]
O44 - LFC:[MD5.D83DDA82550A0BE168F53A5BAABCA95E] - 01/02/2013 - 18:01:07 ---A- . (...) -- C:\Windows\setupact.log [74563]
O44 - LFC:[MD5.4678FE5E1ECBE58470BF03C6D0C4551B] - 01/02/2013 - 18:01:04 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.70CB25B8E4F448E8BF72265436018F61] - 31/01/2013 - 17:20:00 ---A- . (...) -- C:\Windows\MEMORY.DMP [466852431]
O44 - LFC:[MD5.CA49419467FCCE07C64ABFCE4C326C4E] - 01/02/2013 - 16:34:31 . (.Microsoft - Syst�me de classement PEGI/BBFC.) -- C:\Windows\System32\perfc009.dat [44544]
O44 - LFC:[MD5.22F23BBB0621216F51FCC0F7F04BFE76] - 01/02/2013 - 16:34:31 . (.Microsoft - Syst�me de classement PEGI/BBFC.) -- C:\Windows\System32\perfc00C.dat [44544]
O44 - LFC:[MD5.D6A69E751C19DA5F44BF564EA66D9AF6] - 01/02/2013 - 16:34:31 . (.Microsoft - Syst�me de classement PEGI/BBFC.) -- C:\Windows\System32\perfh009.dat [44544]
O44 - LFC:[MD5.F8C678A6574BE8788976D7762ED44346] - 01/02/2013 - 16:34:31 . (.Microsoft - Syst�me de classement PEGI/BBFC.) -- C:\Windows\System32\perfh00C.dat [44544]
O44 - LFC:[MD5.B899ACDB48AEF1B494299E5EF13C23E3] - 01/02/2013 - 16:34:31 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1551488]
O44 - LFC:[MD5.CA49419467FCCE07C64ABFCE4C326C4E] - 01/02/2013 - 16:34:31 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [106816]
O44 - LFC:[MD5.22F23BBB0621216F51FCC0F7F04BFE76] - 01/02/2013 - 16:34:31 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [131182]
O44 - LFC:[MD5.D6A69E751C19DA5F44BF564EA66D9AF6] - 01/02/2013 - 16:34:31 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [616694]
O44 - LFC:[MD5.F8C678A6574BE8788976D7762ED44346] - 01/02/2013 - 16:34:31 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [705166]
O44 - LFC:[MD5.B899ACDB48AEF1B494299E5EF13C23E3] - 01/02/2013 - 16:34:31 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1551488]
O44 - LFC:[MD5.08C2957BB30058E663720C5606885653] - 01/02/2013 - 16:04:13 . (.Microsoft - Syst�me de classement GRB.) -- C:\Windows\System32\iphlpsvc.dll [21504]
O44 - LFC:[MD5.EDABB9BC1BAD786A28E00FECB148A493] - 01/02/2013 - 15:08:36 ---A- . (...) -- C:\Windows\PFRO.log [17978]
O44 - LFC:[MD5.6692F876807DBD98DCA55E42909AB154] - 01/02/2013 - 15:04:09 ---A- . (...) -- C:\Windows\ntbtlog.txt [190604]
O44 - LFC:[MD5.B764F0F8B0D7FF2FFC3FB4C063F5F52A] - 30/01/2013 - 20:53:23 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\SysNative\aswBoot.exe [285328]
O44 - LFC:[MD5.FED0C937ED169BADB7BD5118290B17E7] - 17/01/2013 - 21:34:31 . (.Microsoft - Syst�me de classement ESRB.) -- C:\Windows\System32\FNTCACHE.DAT [51712]
O44 - LFC:[MD5.FED0C937ED169BADB7BD5118290B17E7] - 17/01/2013 - 21:34:31 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [376504]
O44 - LFC:[MD5.94BCE5A03EF5F9340AD9095E0D409C82] - 17/01/2013 - 01:28:58 . (...) -- C:\Windows\System32\MpSigStub.exe [420064]
O44 - LFC:[MD5.B1333C7A61106FCC28C60BE9CAC7EF39] - 10/01/2013 - 23:54:17 ---A- . (...) -- C:\Windows\win.ini [499]
O44 - LFC:[MD5.C4B0793E4B97AA36A2A8C81A7AA1979A] - 10/01/2013 - 21:35:17 ---A- . (.Microsoft - Syst�me de classement PEGI/BBFC.) -- C:\Windows\SysNative\pegibbfc.rs [44544]
O44 - LFC:[MD5.C4B0793E4B97AA36A2A8C81A7AA1979A] - 10/01/2013 - 21:35:17 ---A- . (.Microsoft - Syst�me de classement PEGI/BBFC.) -- C:\Windows\System32\pegibbfc.rs [44544]
O44 - LFC:[MD5.A2E0F1E01A0983E9C94565BBEC862BF7] - 10/01/2013 - 21:35:17 ---A- . (.Microsoft - Syst�me de classification COB-AU.) -- C:\Windows\SysNative\cob-au.rs [40960]
O44 - LFC:[MD5.A2E0F1E01A0983E9C94565BBEC862BF7] - 10/01/2013 - 21:35:17 ---A- . (.Microsoft - Syst�me de classification COB-AU.) -- C:\Windows\System32\cob-au.rs [40960]
O44 - LFC:[MD5.54B11BB2AFBC3D5EBA9C96F0C1820B9B] - 10/01/2013 - 21:35:17 ---A- . (.Microsoft - Syst�me de classification FPB.) -- C:\Windows\SysNative\fpb.rs [46592]
O44 - LFC:[MD5.54B11BB2AFBC3D5EBA9C96F0C1820B9B] - 10/01/2013 - 21:35:17 ---A- . (.Microsoft - Syst�me de classification FPB.) -- C:\Windows\System32\fpb.rs [46592]
O44 - LFC:[MD5.997938D423CE830161CB6059434E3C9F] - 10/01/2013 - 21:35:17 ---A- . (.Microsoft - Syst�me de classification OFLC-NZ.) -- C:\Windows\SysNative\oflc-nz.rs [45568]
O44 - LFC:[MD5.997938D423CE830161CB6059434E3C9F] - 10/01/2013 - 21:35:17 ---A- . (.Microsoft - Syst�me de classification OFLC-NZ.) -- C:\Windows\System32\oflc-nz.rs [45568]
O44 - LFC:[MD5.EBB73E4E8CA01089CF74ECE506EB7607] - 10/01/2013 - 21:35:17 ---A- . (.Microsoft - Syst�me de notation CSRR.) -- C:\Windows\SysNative\csrr.rs [43520]
O44 - LFC:[MD5.EBB73E4E8CA01089CF74ECE506EB7607] - 10/01/2013 - 21:35:17 ---A- . (.Microsoft - Syst�me de notation CSRR.) -- C:\Windows\System32\csrr.rs [43520]
O44 - LFC:[MD5.4489D5D2CB4BA0799F3FB4625DE181CF] - 10/01/2013 - 21:35:16 ---A- . (.Microsoft - Syst�me de classement GRB.) -- C:\Windows\SysNative\grb.rs [21504]
O44 - LFC:[MD5.4489D5D2CB4BA0799F3FB4625DE181CF] - 10/01/2013 - 21:35:16 ---A- . (.Microsoft - Syst�me de classement GRB.) -- C:\Windows\System32\grb.rs [21504]
O44 - LFC:[MD5.661AE5EAC62C4598DD01795CEB915BAE] - 10/01/2013 - 21:35:16 ---A- . (.Microsoft - Syst�me de classement PEGI.) -- C:\Windows\SysNative\pegi.rs [20480]
O44 - LFC:[MD5.661AE5EAC62C4598DD01795CEB915BAE] - 10/01/2013 - 21:35:16 ---A- . (.Microsoft - Syst�me de classement PEGI.) -- C:\Windows\System32\pegi.rs [20480]
O44 - LFC:[MD5.5C48A43FC30FC61ECB1335DC646686BC] - 10/01/2013 - 21:35:16 ---A- . (.Microsoft - Syst�me de classement USK.) -- C:\Windows\SysNative\usk.rs [30720]
O44 - LFC:[MD5.5C48A43FC30FC61ECB1335DC646686BC] - 10/01/2013 - 21:35:16 ---A- . (.Microsoft - Syst�me de classement USK.) -- C:\Windows\System32\usk.rs [30720]
O44 - LFC:[MD5.65A8302C7551CFE45FAA2BC085C9E7E2] - 10/01/2013 - 21:35:16 ---A- . (.Microsoft - Syst�me de classification DJCTQ.) -- C:\Windows\SysNative\djctq.rs [15360]
O44 - LFC:[MD5.65A8302C7551CFE45FAA2BC085C9E7E2] - 10/01/2013 - 21:35:16 ---A- . (.Microsoft - Syst�me de classification DJCTQ.) -- C:\Windows\System32\djctq.rs [15360]
O44 - LFC:[MD5.6D540AF9B183FC97DC4CC54369561548] - 10/01/2013 - 21:35:15 ---A- . (.Microsoft - Syst�me de classement PEGI au Portugal.) -- C:\Windows\SysNative\pegi-pt.rs [20480]
O44 - LFC:[MD5.6D540AF9B183FC97DC4CC54369561548] - 10/01/2013 - 21:35:15 ---A- . (.Microsoft - Syst�me de classement PEGI au Portugal.) -- C:\Windows\System32\pegi-pt.rs [20480]
O44 - LFC:[MD5.51D25C805A01A2C4F930F9720CF51FFE] - 10/01/2013 - 21:35:13 ---A- . (.Microsoft - Syst�me de classement ESRB.) -- C:\Windows\SysNative\esrb.rs [51712]
O44 - LFC:[MD5.51D25C805A01A2C4F930F9720CF51FFE] - 10/01/2013 - 21:35:13 ---A- . (.Microsoft - Syst�me de classement ESRB.) -- C:\Windows\System32\esrb.rs [51712]
O44 - LFC:[MD5.9BB05674E013C35F4DAED51F5015355D] - 10/01/2013 - 21:35:12 ---A- . (.Microsoft - Syst�me de classement PEGI en Finlande.) -- C:\Windows\SysNative\pegi-fi.rs [20480]
O44 - LFC:[MD5.9BB05674E013C35F4DAED51F5015355D] - 10/01/2013 - 21:35:12 ---A- . (.Microsoft - Syst�me de classement PEGI en Finlande.) -- C:\Windows\System32\pegi-fi.rs [20480]
O44 - LFC:[MD5.D0C01412FBF59C1C25630C49F0C1B803] - 10/01/2013 - 21:35:11 ---A- . (.Microsoft - Syst�me de classement CERO.) -- C:\Windows\SysNative\cero.rs [55296]
O44 - LFC:[MD5.D0C01412FBF59C1C25630C49F0C1B803] - 10/01/2013 - 21:35:11 ---A- . (.Microsoft - Syst�me de classement CERO.) -- C:\Windows\System32\cero.rs [55296]
O44 - LFC:[MD5.4773EB5962548068547214A620E9ACC3] - 10/01/2013 - 21:35:11 ---A- . (.Microsoft - Syst�me de classement OFLC.) -- C:\Windows\SysNative\oflc.rs [23552]
O44 - LFC:[MD5.4773EB5962548068547214A620E9ACC3] - 10/01/2013 - 21:35:11 ---A- . (.Microsoft - Syst�me de classement OFLC.) -- C:\Windows\System32\oflc.rs [23552]
O44 - LFC:[MD5.1BCDB508143B517F21BBDAC10F5777BF] - 10/01/2013 - 21:34:32 . (.Microsoft - Syst�me de classification COB-AU.) -- C:\Windows\System32\conhost.exe [40960]
O44 - LFC:[MD5.8ACC1EFC15C4EA1243FF0A48B397BCC1] - 16/12/2012 - 17:31:32 . (...) -- C:\Windows\System32\MRT.exe [420064]
O44 - LFC:[MD5.1153AC6E133AA849853DFD407B086B80] - 30/11/2012 - 00:15:43 ---A- . (...) -- C:\Windows\SysNative\locale.nls [420064]
O44 - LFC:[MD5.1153AC6E133AA849853DFD407B086B80] - 30/11/2012 - 00:15:43 ---A- . (...) -- C:\Windows\System32\locale.nls [420064]
O44 - LFC:[MD5.639774C9ACD063F028F6084ABF5593AD] - 23/11/2012 - 04:13:57 . (...) -- C:\Windows\System32\taskhost.exe [1551488]
~ Scan Files in 00mn 18s



---\\ D�ni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package�v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l��diteur de configuration de s�curit� Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de s�curit� Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package�v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll
~ Scan Keys in 00mn 00s



---\\ Contr�le du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d�extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d�extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ Scan CSB in 00mn 00s



---\\ MountPoints2 Shell Key (O51) (None)

---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ Scan Keys in 00mn 00s



---\\ ShareTools MSconfig StartupReg (O53) (None)

---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "HideFastUserSwitching"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableLockWorkstation"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableTaskMgr"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableChangePassword"=0
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "EnableShellExecuteHooks"=1
~ Scan Keys in 00mn 00s



---\\ Liste des Drivers Syst�me (O58)
O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088]
O58 - SDL:[MD5.A31246180E61140AD7FF9DD7EDF1F6A1] - 21/06/2011 - 05:09:00 ---A- . (.Trend Micro Inc. - TrendMicro Common Module NoTrap Build.) -- C:\Windows\SysWOW64\drivers\tmcomm.sys [200976]
~ Scan Drivers in 00mn 00s



---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 1.34 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ Scan ADS in 00mn 00s



---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - 28/12/2011 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD
O64 - Services: CurCS - 09/08/2010 - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\BASHDefs\20100810.004\BHDrvx64.sys (BHDrvx64) .(.Symantec Corporation - BASH Driver.) - LEGACY_BHDRVX64
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS
O64 - Services: CurCS - 02/06/2012 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG
O64 - Services: CurCS - 21/07/2011 - C:\Program Files\ma-config.com\Drivers\driverhardwarev2x64.sys (driverhardwarev2x64) .(.CybelSoft - Driver NT Ma-Config.com.) - LEGACY_DRIVERHARDWAREV2X64
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY
O64 - Services: CurCS - 27/06/2010 - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\IPSDefs\20100706.002\IDSVia64.sys (IDSVia64) .(.Symantec Corporation - IDS Core Driver.) - LEGACY_IDSVIA64
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO
O64 - Services: CurCS - 14/12/2012 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR
O64 - Services: CurCS - 13/08/2010 - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\VirusDefs\20100813.009\ENG64.sys (NAVENG) .(.Symantec Corporation - AV Engine.) - LEGACY_NAVENG
O64 - Services: CurCS - 13/08/2010 - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\VirusDefs\20100813.009\EX64.sys (NAVEX15) .(.Symantec Corporation - AV Engine.) - LEGACY_NAVEX15
O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT
O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR
O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
O64 - Services: CurCS - 01/10/2011 - C:\Windows\System32\DRIVERS\Sftvollh.sys (Sftvol) .(.Microsoft Corporation - Microsoft Application Virtualization Volume.) - LEGACY_SFTVOL
O64 - Services: CurCS - 29/07/2010 - C:\Windows\system32\drivers\NISx64\1201000.025\SRTSP64.sys (SRTSP) .(.Symantec Corporation - Symantec AutoProtect.) - LEGACY_SRTSP
O64 - Services: CurCS - 29/07/2010 - C:\Windows\system32\drivers\NISx64\1201000.025\SRTSPX64.sys (SRTSPX) .(.Symantec Corporation - Symantec AutoProtect.) - LEGACY_SRTSPX
O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET
O64 - Services: CurCS - 13/06/2010 - C:\Windows\System32\drivers\NISx64\1201000.025\SYMDS64.sys (SymDS) .(.Symantec Corporation - Symantec Data Store.) - LEGACY_SYMDS
O64 - Services: CurCS - 29/07/2010 - C:\Windows\System32\drivers\NISx64\1201000.025\SYMEFA64.sys (SymEFA) .(.Symantec Corporation - Symantec Extended File Attributes.) - LEGACY_SYMEFA
O64 - Services: CurCS - 20/12/2010 - C:\Windows\system32\Drivers\SYMEVENT64x86.sys (SymEvent) .(.Symantec Corporation - Symantec Event Library.) - LEGACY_SYMEVENT
O64 - Services: CurCS - 27/06/2010 - C:\Windows\system32\drivers\NISx64\1201000.025\Ironx64.sys (SymIRON) .(.Symantec Corporation - Iron Driver.) - LEGACY_SYMIRON
O64 - Services: CurCS - 13/07/2010 - C:\Windows\system32\drivers\NISx64\1201000.025\SYMNETS.sys (SymNetS) .(.Symantec Corporation - Network Security Driver.) - LEGACY_SYMNETS
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE
O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de clich� instantan� du volume.) - LEGACY_VOLSNAP
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6
~ Scan Services in 00mn 00s



---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d��v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft � Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d��v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft � Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
~ Scan Keys in 00mn 00s



---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.)
~ Scan Keys in 00mn 00s



---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} - (Ask Search) - http://websearch.ask.com
O69 - SBI: SearchScopes [HKCU] {2fa28606-de77-4029-af96-b231e3b8f827} - (Ask.com) - http://eu.ask.com
O69 - SBI: SearchScopes [HKCU] {941136B4-ED85-4C87-9F99-241A0CF420F8} - (Yahoo!) - http://search.yahoo.com
O69 - SBI: SearchScopes [HKCU] {9D5BD211-422C-4164-9298-BB4186A30F31} [DefaultScope] - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {b7fca997-d0fb-4fe0-8afd-255e89cf9671} - (Yahoo) - http://fr.search.yahoo.com
O69 - SBI: SearchScopes [HKCU] {d43b3890-80c7-4010-a95d-1e77b5924dc3} - (Wikipedia) - http://fr.wikipedia.org
O69 - SBI: SearchScopes [HKCU] {d944bb61-2e34-4dbf-a683-47e505c587dc} - (eBay) - http://rover.ebay.com
O69 - SBI: SearchScopes [HKCU] {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} - (Bing) - http://www.bing.com
~ Scan Keys in 00mn 00s



---\\ Recherche des services d�marr�s par Svchost (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Exp�rience d�application.) -- C:\Windows\System32\aelupsvc.dll [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de strat�gie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de num�rotation automatique d�acc�s distant.) -- C:\Windows\System32\rasauto.dll [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d�acc�s distant.) -- C:\Windows\System32\rasmans.dll [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d�interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d��v�nements syst�me (SENS).) -- C:\Windows\System32\sens.dll [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l�application d�assistance � Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de t�l�phonie Microsoft� Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur h�te de session Burea.) -- C:\Windows\System32\termsrv.dll [680960]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise � jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arri�re-plan.) -- C:\Windows\System32\qmgr.dll [849920]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivit� IPv6 sur un r�seau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d�ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d�application.) -- C:\Windows\System32\appinfo.dll [70656]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de d�couverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multim�dias.) -- C:\Windows\System32\mmcss.dll [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau � distance.) -- C:\Windows\System32\sessenv.dll [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d�ordinateurs.) -- C:\Windows\System32\browser.dll [136704]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de t�ches.) -- C:\Windows\System32\schedsvc.dll [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des cl�s.) -- C:\Windows\System32\kmsvc.dll [90624]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux probl�mes.) -- C:\Windows\System32\wercplsupport.dll [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des th�mes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864]
~ Scan Services in 00mn 00s



---\\ Recherche particuliere � la racine de certains dossiers (O84)
[MD5.75F8BC409A632D86022BC3EE172CF76D] [SPRF][29/04/2012] (...) -- C:\Users\sumvero\AppData\Local\Temp\defaultCache.reg [1469404]
[MD5.171F1BB73D0238A7A56126D3459ECDCD] [SPRF][15/10/2008] (...) -- C:\Users\sumvero\AppData\Local\Temp\Extract.exe [50432]
[MD5.42654F3CBBB12730F996967CED5117F7] [SPRF][08/09/2012] (.Google Inc. - Google Update Setup.) -- C:\Users\sumvero\AppData\Local\Temp\GoogleUpdateSetup_1.3.21.89.exe [731288]
[MD5.BC9C9BE7BB74D629362608ACE470E7DA] [SPRF][06/09/2011] (.Microsoft Corporation - Notification de cadeaux MSN.) -- C:\Users\sumvero\AppData\Local\Temp\lsnfier.exe [135680]
[MD5.A03A9BC880957C8173DCD9411A8BE3D7] [SPRF][26/10/2011] (.Hewlett Packard Inc - HP Software Framework.) -- C:\Users\sumvero\AppData\Local\Temp\SP51976.exe [4077456]
[MD5.26B4FD24D322891AB3C681685D69C3BA] [SPRF][24/10/2011] (.Hewlett-Packard - HP System Diagnostics UEFI.) -- C:\Users\sumvero\AppData\Local\Temp\SP52407.exe [1592176]
[MD5.4E8EDBFB9F2F50C3F38067AC70C7094D] [SPRF][19/07/2012] (.Hewlett-Packard - Pas de description.) -- C:\Users\sumvero\AppData\Local\Temp\sp54620.exe [48868760]
[MD5.378A13EEBAD118903411B427264DDD64] [SPRF][19/07/2012] (...) -- C:\Users\sumvero\AppData\Local\Temp\temp.bat [299]
[MD5.7C7C95C271A66FDF8351FE1ADEC87334] [SPRF][09/09/2011] (.Hewlett-Packard Company - HP Support Assistant Uninstaller.) -- C:\Users\sumvero\AppData\Local\Temp\UninstallHPSA.exe [449592]
[MD5.7C7C95C271A66FDF8351FE1ADEC87334] [SPRF][09/09/2011] (.Hewlett-Packard Company - HP Support Assistant Uninstaller.) -- C:\Users\sumvero\AppData\Local\Temp\UninstallHPTCA.exe [449592]
[MD5.40395C175553CB14D2050888EFCCDF00] [SPRF][13/05/2011] (.Microsoft Corporation - Microsoft Visual C++ 2008 Redistributable Setup.) -- C:\Users\sumvero\AppData\Local\Temp\vcredist_x64.exe [4961800]
[MD5.719AF0A81B65A4AEB4BA7BD6644BB1A7] [SPRF][06/09/2011] (...) -- C:\Users\sumvero\AppData\Local\Temp\WLM2011Installer.exe [1289216]
[MD5.64281AF23447705DAB84E1A198D920C7] [SPRF][06/09/2011] (.Microsoft Corporation - Windows Live Installer.) -- C:\Users\sumvero\AppData\Local\Temp\WLM_2011.exe [1289576]
[MD5.4C99EE7518551F1B5881F230B8E1AB7E] [SPRF][01/02/2013] (.Nicolas Coolman - ZHPDiag.) -- C:\Users\sumvero\Desktop\ZHPDiag2.exe [3876312]
~ Scan Files in 00mn 01s



---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{C1913BA1-C949-403D-A233-CBA45314FEEB}" | In - None - P6 - TRUE | .(.CyberLink Corp. - PowerDirector.) -- C:\Program Files (x86)\CyberLink\PowerDirector\PDR8.exe
O87 - FAEL: "{EB0946C5-016F-45B5-9459-A0C45AB508E3}" | In - Public - P6 - TRUE | .(.EasyBits Software AS - EasyBits My First Browser.) -- C:\Program Files (x86)\EasyBits For Kids\Programs\My First Browser\MyFirstBrowser.exe
O87 - FAEL: "{B36E0B31-31CF-4964-8EB6-D0AB0EBA8126}" | In - Public - P17 - TRUE | .(.EasyBits Software AS - EasyBits My First Browser.) -- C:\Program Files (x86)\EasyBits For Kids\Programs\My First Browser\MyFirstBrowser.exe
O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "{9CAEBBB7-33CF-4E6E-9F98-89333EA63FCD}" | In - None - P6 - TRUE | .(.Zecter Inc. - HP CloudDrive.) -- C:\Program Files (x86)\Hewlett-Packard\HP CloudDrive\zumodrive.exe
O87 - FAEL: "{6C20D0D7-B5A3-4E43-8500-3174AFF8C734}" | Out - None - P6 - TRUE | .(.Zecter Inc. - HP CloudDrive.) -- C:\Program Files (x86)\Hewlett-Packard\HP CloudDrive\zumodrive.exe
O87 - FAEL: "{1928EB18-DDA4-4E8A-A04D-07DF775A262E}" | In - None - P6 - TRUE | .(.CyberLink Corp. - PowerDVD 9.0.) -- C:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD9.exe
O87 - FAEL: "{F8D9A1DF-FAF1-4192-BE16-39526CD33A8C}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{F2D70711-2CA7-4976-B134-27D02FEE6989}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{83960CFA-57B7-4F28-9125-930DBE57F071}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{6F29C395-5598-4AFF-9201-6D93524EB8F2}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{95B59D98-ECBF-46DF-8B8D-03FF725E0167}" | In - None - P6 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
O87 - FAEL: "{CD6BC475-2231-47DF-928A-154A678DE73F}" | In - Private - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{0C02CC2A-C4BC-41AC-BE54-6A633857EA0B}" | In - Private - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{603BDADC-03EB-4A84-B095-2C3FDC19472E}" | In - Private - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O87 - FAEL: "{5530F956-8F6E-4DA1-B65B-0F6D02A6C828}" | In - Private - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O87 - FAEL: "{F6CB60B3-4C1C-4AB0-8973-F51E16A2F160}" | In - None - P17 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files (x86)\iTunes\iTunes.exe
O87 - FAEL: "{688B086B-E307-482F-9ADE-0A008BC71DC9}" | In - Public - P6 - TRUE | .(.CybelSoft - Service de d�tection mat�riel.) -- C:\Program Files\ma-config.com\x64\maconfservice.exe
O87 - FAEL: "{4CF50BB1-80D3-4BF7-B84B-DDAECE454D18}" | In - Public - P17 - TRUE | .(.CybelSoft - Service de d�tection mat�riel.) -- C:\Program Files\ma-config.com\x64\maconfservice.exe
~ Scan Firewall in 00mn 01s



---\\ Scan Additionnel (O88)
Database Version : v2.10502 - (01/02/2013)
Cl�s trouv�es (Keys found) : 39
Valeurs trouv�es (Values found) : 2
Dossiers trouv�s (Folders found) : 1
Fichiers trouv�s (Files found) : 0

[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}] =>Toolbar.AskTBar
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}] =>Toolbar.Ask
[HKLM\Software\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] =>Adware.AskSBAR
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}] =>Toolbar.Babylon
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}] =>Toolbar.Babylon
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}] =>Toolbar.Babylon
[HKLM\Software\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}] =>Toolbar.Ask
[HKLM\Software\Wow6432Node\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}] =>Toolbar.Ask
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}] =>Adware.AskSBAR
[HKLM\Software\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}] =>Toolbar.Ask
[HKLM\Software\Wow6432Node\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}] =>Toolbar.Ask
[HKLM\Software\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}] =>Adware.AskSBAR
[HKLM\Software\Wow6432Node\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}] =>Adware.AskSBAR
[HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Adware.AskSBAR
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Adware.AskSBAR
[HKLM\Software\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}] =>Toolbar.Ask
[HKLM\Software\Wow6432Node\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}] =>Toolbar.Ask
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Adware.AskSBAR
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Adware.AskSBAR
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Adware.AskSBAR
[HKLM\Software\Classes\AppID\GenericAskToolbar.DLL] =>Adware.AskSBAR
[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd] =>Adware.AskSBAR
[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd.1] =>Adware.AskSBAR
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED] =>Toolbar.Ask
[HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF] =>Adware.AskSBAR
[HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Adware.AskSBAR
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Adware.AskSBAR
[HKLM\Software\Wow6432Node\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF] =>Adware.AskSBAR
[HKLM\Software\Wow6432Node\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Adware.AskSBAR
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9] =>Adware.MyWebSearch
[HKCU\Software\Ask.com] =>Toolbar.AskBar
[HKCU\Software\AppDataLow\Software\AskToolbar] =>Toolbar.AskTBar
[HKCU\Software\AppDataLow\AskToolbarInfo] =>Toolbar.AskTBar
[HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks]:{00000000-6E41-4FD3-8538-502F5495E5FC} =>Adware.ShopperReports
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar]:{D4027C7F-154A-4066-A1AD-4243D8127440} =>Adware.AskSBAR
C:\Program Files (x86)\Ask.com =>Toolbar.AskBar
~ Scan Additionnel in 00mn 08s



---\\ Product Upgrade Codes (O90)
O90 - PUC: "00004159070000000000000000F01FEC" . (.Microsoft Office 2010.) -- C:\Windows\Installer\{95140000-0070-0000-0000-0000000FF1CE}\oobeicon.exe
O90 - PUC: "00E0EE84ED685A74D8005B7DA207CBDC" . (.HP Wireless Assistant.) -- C:\Windows\Installer\{48EE0E00-86DE-47A5-8D00-B5D72A70BCCD}\WA_tray_32_on.exe
O90 - PUC: "0212CE3624715264AA746C8AEA9C6CC4" . (.Apple Application Support.) -- C:\Windows\Installer\{63EC2120-1742-4625-AA47-C6A8AEC9C64C}\WinInstall.ico
O90 - PUC: "02F12AEC4FBDC464B818828B05A8DFDD" . (.Windows Live Family Safety.) -- C:\Windows\Installer\{CEA21F20-DBF4-464C-8B81-28B8508AFDDD}\fssicon.ico
O90 - PUC: "0310A190F28AD6A4C916B3BB3B820903" . (.RtVOsd.) -- C:\Windows\Installer\{091A0130-A82F-4A6D-9C61-3BBBB3289030}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "0694AF70830BBE9498B1F95939A05A44" . (.HP Customer Experience Enhancements.) -- C:\Windows\Installer\{07FA4960-B038-49EB-891B-9F95930AA544}\ARPPRODUCTICON.exe
O90 - PUC: "076CFAAAB965F2A4284B2449E5D03EFE" . (.Windows Live Writer.) -- C:\Windows\Installer\{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}\ApplicationIcon.ico
O90 - PUC: "098990BCF5D15D11E99A0005AB3E711E" . (.PowerDirector.) -- C:\Windows\Installer\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\ARPPRODUCTICON.exe
O90 - PUC: "11F12B5E3396B0E42AC597363E0CD711" . (.Windows Live Messenger.) -- C:\Windows\Installer\{E5B21F11-6933-4E0B-A25C-7963E3C07D11}\MsblIco.Exe
O90 - PUC: "1271C3A5DE8F0E11A8BF8BCAF6798BE8" . (.Google�Earth.) -- C:\Windows\Installer\{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}\ARPPRODUCTICON.exe
O90 - PUC: "1C4235E6CF4867F4A9A36CE5708FE06E" . (.Compl�ment Messenger.) -- C:\Windows\Installer\{6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}\CompanionIcon
O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon
O90 - PUC: "2B0163E6D0340BE4183EB2758E9BEDD8" . (.Bonjour.) -- C:\Windows\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico
O90 - PUC: "2C1A65825C073CE4FA7F5E5BE155032A" . (.HP Client Services.) -- C:\Windows\Installer\{2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2}\ARPPRODUCTICON.exe
O90 - PUC: "38E1FB04BE028D11795C00905C206085" . (.Power2Go.) -- C:\Windows\Installer\{40BF1E83-20EB-11D8-97C5-0009C5020658}\ARPPRODUCTICON.exe
O90 - PUC: "42C6FBF1DF1C10144AB2C065F4E9E897" . (.PowerStarter.) -- C:\Windows\Installer\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\ARPPRODUCTICON.exe
O90 - PUC: "45B438B3B4CE2E84FB6C30FFD50AF626" . (.Adobe Shockwave Player 11.5.) -- C:\Windows\Installer\{3B834B54-EC4B-48E2-BFC6-03FF5DA06F62}\ARPPRODUCTICON.exe
O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico
O90 - PUC: "59FA44F6EDC33154DAF3D6541FB73F42" . (.HP Support Assistant.) -- C:\Windows\Installer\{6F44AF95-3CDE-4513-AD3F-6D45F17BF324}\ARPPRODUCTICON.exe
O90 - PUC: "623DD63D08278D11798C00109267C0EB" . (.PhotoNow.) -- C:\Windows\Installer\{D36DD326-7280-11D8-97C8-000129760CBE}\ARPPRODUCTICON.exe
O90 - PUC: "68AB67CA7DA7FFFFB7449A0100000010" . (.Adobe Reader 9.5.3 MUI.) -- C:\Windows\Installer\{AC76BA86-7AD7-FFFF-7B44-A91000000001}\SC_Reader.ico
O90 - PUC: "6CB6034E70839324A8B528A2FE2E7FBE" . (.Ma-Config.com (64 bits).) -- C:\Windows\Installer\{E4306BC6-3807-4239-8A5B-822AEFE2F7EB}\maconfico
O90 - PUC: "701043F6AA9F6C745BC43C1AF91155F3" . (.Hewlett-Packard ACLM.NET v1.1.2.0.) -- C:\Windows\Installer\{6F340107-F9AA-47C6-B54C-C3A19F11553F}\ARPPRODUCTICON.exe
O90 - PUC: "7B58A9ECE8532E242B111EC0579D1617" . (.HP Software Framework.) -- C:\Windows\Installer\{CE9A85B7-358E-42E2-B211-E10C75D96171}\app_1.exe
O90 - PUC: "7B65D4CC81F6B0747843BADC57CB4F1F" . (.HP Auto.) -- C:\Windows\Installer\{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}\ARPPRODUCTICON.exe
O90 - PUC: "883658EADAFA357418FD9DB6910D1AC7" . (.HP Setup Manager.) -- C:\Windows\Installer\{AE856388-AFAD-4753-81DF-D96B19D0A17C}\ARPPRODUCTICON.exe
O90 - PUC: "8994BF104C33134458DE70E9E3FE7ED5" . (.YouCam.) -- C:\Windows\Installer\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\ARPPRODUCTICON.exe
O90 - PUC: "8DB603FA1D9F7264989B42E69570A450" . (.HP Power Manager.) -- C:\Windows\Installer\{AF306BD8-F9D1-4627-89B9-246E59074A05}\_853F67D554F05449430E7E.exe
O90 - PUC: "9C43A1DB467497F4EAF111F2C8983D4D" . (.Energy Star Digital Logo.) -- C:\Windows\Installer\{BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "9CA6158A1FAA9F747966302E4DDCCB8F" . (.PowerDVD.) -- C:\Windows\Installer\{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}\ARPPRODUCTICON.exe
O90 - PUC: "A02EF462B757a2940B3C04902E99D7A8" . (.PictureMover.) -- C:\Windows\Installer\{264FE20A-757B-492a-B0C3-4009E2997D8A}\ARPPRODUCTICON.exe
O90 - PUC: "A28B4D68DEBAA244EB686953B7074FEF" . (.Ask Toolbar.) -- c:\program files (x86)\ask.com\fv_9d86.ico
O90 - PUC: "BA0A2B44E214C8F40B851D8EEACCFD5F" . (.PowerRecover.) -- C:\Windows\Installer\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}\ARPPRODUCTICON.exe
O90 - PUC: "C040110900063D11C8EF10054038389C" . (.Microsoft Office Professional Edition 2003.) -- C:\Windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\misc.exe,6
O90 - PUC: "C1D286FED1955B84893026D86A222C18" . (.HP Quick Launch.) -- C:\Windows\Installer\{EF682D1C-591D-48B5-9803-628DA622C281}\_853F67D554F05449430E7E.exe
O90 - PUC: "C7AD5832545F66E49A864D460F154952" . (.HP Documentation.) -- C:\Windows\Installer\{2385DA7C-F545-4E66-A968-D464F0519425}\NotebookDocs.exe
O90 - PUC: "C971C95CD8669A946BAE1012CCCF2134" . (.LabelPrint.) -- C:\Windows\Installer\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\ARPPRODUCTICON.exe
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- c:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon
O90 - PUC: "D8EF64479F1C24D4AAEAD5CB5E68506A" . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{7446FE8D-C1F9-4D42-AAAE-5DBCE58605A6}\Installer.ico
O90 - PUC: "E936B507FAAF7D04DA854C5423C1C7F3" . (.LightScribe System Software.) -- C:\Windows\Installer\{705B639E-FAAF-40D7-AD58-C445321C7C3F}\ARPPRODUCTICON.exe
O90 - PUC: "EA2B394116202D741BAA4FAD0D6F4CB8" . (.iTunes.) -- C:\Windows\Installer\{1493B2AE-0261-47D2-B1AA-F4DAD0F6C48B}\Installer.ico
~ Scan Files in 00mn 00s



---\\ Etat g�n�ral des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 15/01/2013 251400 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SR - | Auto 18/11/2009 98208 | (AERTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
SR - | Auto 11/08/2012 55184 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Auto 30/12/1899 0 | (ezSharedSvc) . (.EasyBits Software AS.) - C:\Windows\System32\ezSharedSvcHost.exe
SS - | Demand 12/10/2010 206072 | (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
SS - | Auto 12/11/2011 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 12/11/2011 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SR - | Auto 09/09/2011 86072 | (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
SR - | Auto 21/07/2010 103992 | (HP Wireless Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
SR - | Auto 05/08/2010 291896 | (HPClientSvc) . (.Hewlett-Packard Company.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
SR - | Auto 28/03/2011 94264 | (HPDrvMntSvc.exe) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
SR - | Demand 28/03/2011 799800 | (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
SR - | Auto 28/09/2010 26680 | (HPWMISVC) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
SR - | Demand 09/09/2012 936848 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SR - | Auto 16/08/2010 73728 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
SR - | Auto 01/10/2009 268824 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
SS - | Demand 25/01/2013 428928 | (maconfservice) . (.CybelSoft.) - C:\Program Files\ma-config.com\x64\maconfservice.exe
SR - | Auto 14/12/2012 398184 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
SR - | Auto 14/12/2012 682344 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
SR - | Auto 23/07/2010 126904 | (NIS) . (.Symantec Corporation.) - C:\Program Files (x86)\Norton Internet Security\Engine\18.1.0.37\ccSvcHst.exe
SR - | Auto 24/06/2010 315392 | (RtVOsdService) . (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\RtVOsd\RtVOsdService.exe
SR - | Auto 01/10/2009 2320920 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
SR - | Auto 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe
SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Scan Services in 00mn 01s



End of the scan (1674 lines in 02mn 36s)(0)

Publicité


Signaler le contenu de ce document

Publicité