cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ Rapport de ZHPDiag v2013.10.30.78 - Nicolas Coolman (30/10/2013)
~ Lanc� par kathy (31/10/2013 17:47:21)
~ Adresse du Site Web http://nicolascoolman.webs.com
~ Forums gratuits d'Assistance � la d�sinfection : http://nicolascoolman.webs.com/apps/links/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : D�sactiv�e par l'utilisateur
~ El�vation des Privil�ges : OK
~ User Account Control (UAC): Deactivate by program


---\\ Navigateurs Internet
MSIE: Internet Explorer v9.0.8112.16421
GCIE: Google Chrome v30.0.1599.101 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Fran�ais
Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002)
Windows Server License Manager Script : OK
~ Vista, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : WQD8Q
Windows License : OK
Windows Automatic Updates : OK

---\\ Logiciels de protection du syst�me
Norton Internet Security v20.4.0.40

---\\ Logiciels d'optimisation du syst�me
CCleaner v4.02 =>Piriform Ltd

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Flash Player 11 Plugin
Adobe Reader X
Java 7 Update 45

---\\ Informations sur le syst�me
~ Processor: x86 Family 15 Model 107 Stepping 2, AuthenticAMD
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3069 MB (33% free)
System Restore: Activ� (Enable)
System drive C: has 74 GB (22%) free of 325 GB

---\\ Mode de connexion au syst�me
~ Computer Name: PC-DE-KATHY
~ User Name: kathy
~ All Users Names: kathy, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\kathy\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\kathy\AppData\Roaming\
~ %Desktop% : C:\Users\kathy\Desktop\
~ %Favorites% : C:\Users\kathy\Favorites\
~ %LocalAppData% : C:\Users\kathy\AppData\Local\
~ %StartMenu% : C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enum�ration des unit�s disques
C: Hard drive, Flash drive, Thumb drive (Free 74 Go of 325 Go)
D: Hard drive, Flash drive, Thumb drive (Free 1 Go of 10 Go)
E: Hard drive, Flash drive, Thumb drive (Free 8 Go of 1863 Go)
F: Floppy drive, Flash card reader, USB Key (Not Inserted)
G: Floppy drive, Flash card reader, USB Key (Free 1 Go of 8 Go)
H: Hard drive, Flash drive, Thumb drive (Free 639 Go of 931 Go)
J: Hard drive, Flash drive, Thumb drive (Free 82 Go of 466 Go)



---\\ Etat du Centre de S�curit� Windows
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 50 Scanned in 00mn 00s



---\\ Recherche particuli�re de fichiers g�n�riques
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.11/04/2009 - 07:27:36.) -- C:\Windows\Explorer.exe [2926592]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de d�marrage de Windows.) (.18/01/2008 - 22:33:38.) -- C:\Windows\System32\Wininit.exe [96768]
[MD5.C8ADAA6948993D839D14524847EA5B75] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.22/09/2013 - 11:13:22.) -- C:\Windows\System32\wininet.dll [1129472]
[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/04/2009 - 07:28:13.) -- C:\Windows\System32\Winlogon.exe [314368]
[MD5.3911B972B55FEA0478476B2E777B29FA] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.21/04/2011 - 14:58:27.) -- C:\Windows\system32\Drivers\AFD.sys [273408]
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.11/04/2009 - 07:32:26.) -- C:\Windows\system32\Drivers\atapi.sys [19944]
[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.18/01/2008 - 20:28:04.) -- C:\Windows\system32\Drivers\Cdfs.sys [70144]
[MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.11/04/2009 - 05:39:17.) -- C:\Windows\system32\Drivers\Cdrom.sys [67072]
[MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.14/04/2011 - 15:59:03.) -- C:\Windows\system32\Drivers\DfsC.sys [75264]
[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.11/04/2009 - 05:42:42.) -- C:\Windows\system32\Drivers\HDAudBus.sys [561152]
[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) (.18/01/2008 - 20:49:20.) -- C:\Windows\system32\Drivers\i8042prt.sys [54784]
[MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) (.18/01/2008 - 20:56:30.) -- C:\Windows\system32\Drivers\IpNat.sys [100864]
[MD5.1E94971C4B446AB2290DEB71D01CF0C2] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.29/04/2011 - 14:24:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [106496]
[MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) (.11/04/2009 - 05:45:37.) -- C:\Windows\system32\Drivers\netBT.sys [185856]
[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - (.Microsoft Corporation - Pilote du syst�me de fichiers NT.) (.03/03/2013 - 20:07:52.) -- C:\Windows\system32\Drivers\ntfs.sys [1082232]
[MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parall�le.) (.02/11/2006 - 09:51:30.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.18/01/2008 - 20:56:36.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [76288]
[MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.02/11/2006 - 10:03:00.) -- C:\Windows\system32\Drivers\rdpdr.sys [242688]
[MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) (.11/04/2009 - 05:45:22.) -- C:\Windows\system32\Drivers\smb.sys [66560]
[MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) (.11/04/2009 - 05:45:56.) -- C:\Windows\system32\Drivers\tdx.sys [72192]
[MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Pilote de clich� instantan� du volume.) (.21/08/2012 - 12:47:42.) -- C:\Windows\system32\Drivers\volsnap.sys [224640]
~ Generic Processes: Scanned in 00mn 04s



---\\ Etat des fichiers cach�s (Cach�/Total)
~ Mes images (My Pictures) : 2/1209
~ Mes musiques (My Musics) : 37/584
~ Mes Videos (My Videos) : 1/24
~ Mes Favoris (My Favorites) : 1/29
~ Mes Documents (My Documents) : 2/8965
~ Mon Bureau (My Desktop) : 13/47091
~ Menu demarrer (Programs) : 1/63
~ Hidden Files: Scanned in 00mn 56s



---\\ Processus lanc�s
[MD5.9A4322EE420D6FACD4D4B1FF6CB856B1] - (.Hewlett-Packard Company - hpsysdrv.) -- C:\hp\support\hpsysdrv.exe [65536] [PID.2080]
[MD5.B1361669BDC6ED612C35B7C67ADA2240] - (.OsdMaestro - OsdMaestro main program.) -- C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe [118784] [PID.2216]
[MD5.574B0C1A95D1EA0FBA1CA700CE83E7B9] - (.Logitech Inc. - LVCom Server.) -- C:\Program Files\Common Files\Logitech\QCDriver3\LVComS.exe [127022] [PID.2424]
[MD5.72334F906C2E2B002CDD2FF9022FD957] - (.PixArt Imaging Incorporation - Registry Monitor.) -- C:\Windows\PixArt\Pac207\Monitor.exe [319488] [PID.2520]
[MD5.255E405D801CF01247390F38F92D8042] - (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe [17408] [PID.2552]
[MD5.95D0EA1BECAD6D781C3D09AEC1295E8F] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\hpwuschd2.exe [49208] [PID.3072]
[MD5.472DC56D3F40B50B7B977822A206E7B9] - (.Nero AG - Nero SecurDisc Host.) -- C:\Program Files\Nero\Tools\InCD\NBHGui.exe [1600816] [PID.3616]
[MD5.F72C5D0F567BE8D63DE4BCE0C8E2C0CB] - (.Nero AG - InCD.) -- C:\Program Files\Nero\Tools\InCD\InCD.exe [1060136] [PID.3640]
[MD5.7D3CEE287CCD0A3B333A0F4B46520ECE] - (.Pas de propri�taire - Printer Device Monitor.) -- C:\Program Files\Lexmark X5400 Series\lxdvmon.exe [455336] [PID.3656]
[MD5.8A814AE59A39C44261B36126BDAB0AB6] - (.Pas de propri�taire - Printer Card Transfer Monitor.) -- C:\Program Files\Lexmark X5400 Series\lxdvamon.exe [25256] [PID.3680]
[MD5.AABF93F351E17EA4D42EE028A905AF45] - (.Wondershare - Wondershare Studio.) -- C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1985824] [PID.3776]
[MD5.BF08674925F151BD4537B89A493E3E0C] - (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe [125952] [PID.3872]
[MD5.4C8942B8721813E5C8874D47112DCF73] - (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2741616] [PID.3896]
[MD5.32F2FEC86FD01E8F12590B79D751EDEE] - (...) -- C:\Program Files\Logitech\Desktop Messenger\8876480\Program\backWeb-8876480.exe [16384] [PID.3944]
[MD5.92F0C2F900FA70F2B614FEDCD59832DA] - (.Spotify Ltd - SpotifyWebHelper.) -- C:\_OTL\MovedFiles\07222012_182814\C_Users\kathy\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1140736] [PID.3992]
[MD5.F7128E5772F9312F0D111A5FA5D41773] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe [20684656] [PID.4048]
[MD5.8E331DBFB86B682696ED16D90EC1F11F] - (.Spotify Ltd - Spotify.) -- C:\_OTL\MovedFiles\07222012_182814\C_Users\kathy\AppData\Roaming\Spotify\spotify.exe [4752384] [PID.4064]
[MD5.F415C0541CD53C453E61E2D7375CAF8F] - (.Western Digital Technologies, Inc. - WD Drive Manager Status.) -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe [3986944] [PID.4164]
[MD5.EB46B8E56C1B6C73C4251EED5F0E6DD6] - (.Dropbox, Inc. - Dropbox.) -- C:\Users\kathy\AppData\Roaming\Dropbox\bin\Dropbox.exe [27370808] [PID.4204]
[MD5.83166BFFA8C4BBAC4413F47C865CC8EE] - (.Microsoft Corporation - Outil de notification de cadeaux MSN.) -- C:\Users\kathy\AppData\Roaming\Microsoft\Outil de notification de cadeaux MSN\msnotif.exe [183096] [PID.4228]
[MD5.6080A176D09435FC8E6E800996656E18] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120] [PID.4604]
[MD5.0F4195B9B348DE5CF9B822F81704B20E] - (.Microsoft Corporation - Media Center Media Status Aggregator Servic.) -- C:\Windows\ehome\ehmsas.exe [37376] [PID.5324]
[MD5.1BF9D6476061B31CD7FC2BF848529A56] - (.Symantec Corporation - Symantec Service Framework.) -- C:\Program Files\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [144368] [PID.4804]
[MD5.7CAC10A1C258DFCB5ADE563BAE6D2F15] - (.Hewlett-Packard Company - KBD EXE.) -- C:\hp\kbd\kbd.exe [67128] [PID.4488]
[MD5.B748868FAA897E85414BF1588ADFC04C] - (...) -- C:\_OTL\MovedFiles\07222012_182814\C_Users\kathy\AppData\Roaming\Spotify\Data\SpotifyHelper.exe [521216] [PID.1208]
[MD5.3E399A1328181C2A352472369DE2A93A] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [844752] [PID.204]
[MD5.A7766D3BCB614BC77AA06579D84AE8ED] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8153600] [PID.4736]
[MD5.C4232FADFA9691B85DDA0A7B636C5F6D] - (.AMD - AMD External Events Service Module.) -- C:\Windows\system32\atiesrxx.exe [217088] [PID.3484]
[MD5.862BB4CBC05D80C5B45BE430E5EF872F] - (.Microsoft Corporation - Service de gestion des licences Microsoft.) -- C:\Windows\system32\SLsvc.exe [3408896] [PID.3972]
[MD5.2E4C813C9987FA912477C0D5A2D0743E] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe [203848] [PID.4320]
[MD5.1A89003CE7A4333C9630BB717F59C419] - (.AMD - AMD External Events Client Module.) -- C:\Windows\system32\atieclxx.exe [453632] [PID.4304]
[MD5.A4795821C92884217C92A8FB4F8DF511] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe [957512] [PID.4368]
[MD5.4F1FFD438750EBEF6B93F326E29759B6] - (.Nero AG - incdsrv.) -- C:\Program Files\Nero\Tools\InCD\InCDSrv.exe [1420592] [PID.4712]
[MD5.CF7B0E597C1F34E528285495721DEEE9] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.21.165\GoogleCrashHandler.exe [237960] [PID.2616]
[MD5.ADDA5E1951B90D3D23C56D3CF0622ADC] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [65640] [PID.356]
[MD5.9FE76D783A7D47965D086A220B54277B] - (.Advanced Micro Devices - RM Application.) -- C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [140224] [PID.436]
[MD5.3DEBBECF665DCDDE3A95D9B902010817] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55144] [PID.564]
[MD5.DB5BEA73EDAF19AC68B2C0FAD0F92B1A] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [390504] [PID.628]
[MD5.C96C52D0D80666AF585516FFA97B7C00] - (.Pas de propri�taire - app_filter Module.) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [387616] [PID.756]
[MD5.D75A41E9D515D061ABD0D542157E0780] - (.Freemake - FreemakeUtilsService.) -- C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [101888] [PID.980]
[MD5.65C2D3C4BAE4C0EF1CD92BBC8BB57F2B] - (.Ellora Assets Corp. - CaptureLibService.) -- C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe [9216] [PID.2464]
[MD5.15AB846886C225FFF0376F3CEF21188F] - (.Teruten - FsUsbDevice.) -- C:\Windows\system32\FsUsbExService.exe [233472] [PID.2560]
[MD5.C34411A244029F1C08687F7C752C4563] - (.Hewlett-Packard Company - LightScribe Service.) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728] [PID.2704]
[MD5.EF1F4B00A8705511CA28C090D8F85A6B] - (.Lexmark International, Inc. - Lexmark Connect Service Executable.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\lxdvserv.exe [98984] [PID.2848]
[MD5.B3041BDF1DD74D52BE5AB21776799874] - (.Pas de propri�taire - Printer Communication System.) -- C:\Windows\system32\lxdvcoms.exe [594600] [PID.2912]
[MD5.934BB0D23A25C8C136570800A5A149B6] - (.Nero AG - NeroUpdate.) -- C:\Program Files\Nero\Update\NASvc.exe [687400] [PID.3296]
[MD5.917A6788B6054CBA5BCD5C8C8BADEF74] - (.Nero AG - Nero Registry InCD Service.) -- C:\Program Files\Nero\Tools\InCD\NBHRegInCDSrv.exe [53560] [PID.3360]
[MD5.BF847A3972CC6B5CE26E0EA742DD52D9] - (.WDC - WD Drive Manager Service.) -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [238592] [PID.5848]
[MD5.B5966F1DFF6E20576F3C8C2D93D129FD] - (.Pas de propri�taire - WD File Management Engine.) -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDFME\WDFME.exe [1060864] [PID.6072]
[MD5.92F0088CA18BB08BB596EF2608256F8A] - (.Pas de propri�taire - WD Shadow Copy.) -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSC.exe [484352] [PID.1592]
[MD5.2F8AC80B178500885940C51F85E90580] - (.Advanced Micro Devices, Inc. - Service Fusion Utility.) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [284672] [PID.684]
[MD5.B6C48D01147EC020DE7F1856734127F8] - (.Pas de propri�taire - NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [178720] [PID.1280]
[MD5.A1545B731579895D8CC44FC0481C1192] - (.Microsoft Corporation - Service de la passerelle de la couche Appli.) -- C:\Windows\System32\alg.exe [59392] [PID.4016]
[MD5.BE01E566D1F569AAB32D0335613E1EEA] - (.Microsoft Corporation - COM Surrogate.) -- C:\Windows\system32\DllHost.exe [7168] [PID.3576]
[MD5.0D26C438E2938A3E6BDD91173BC96FF0] - (.Hewlett-Packard - HP Health Check Service.) -- c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [65536] [PID.916]
[MD5.7CAEC4665452072662496CFCCAB727E2] - (.Microsoft Corporation - wpffontcache_v0400.exe.) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [756392] [PID.1596]
[MD5.ECEF404F62863755951E09C802C94AD5] - (.Microsoft Corporation - D�tection de services interactifs.) -- C:\Windows\system32\UI0Detect.exe [35840] [PID.1352]
~ Processes Running: Scanned in 00mn 23s



---\\ Google Chrome, D�marrage,Recherche,Extensions (G0,G1,G2)
C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] http://ixquick.com
G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Store v.0.2 (Activ�)
G2 - GCE: Preference [User Data\Default] [bkdegagmpemadclljncealhmmkojfoam] Wondershare Player v.1.6.0, (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [booedmolknjekdopkepjjeckmjkdpfgl] Managerr v.0.1 (Activ�)
G2 - GCE: Preference [User Data\Default] [bpegkgagfojjbcpkihigfmkojdmmimdf] Freemake Video Downloader v.1.0.0 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [cbfongnabbfejdhkfkikcfjfhacdopai] Rainy Day v.1.0 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] Adblock Plus v.1.6.1, (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [ciagpekplgpbepdgggflgmahnjgiaced] Add to Amazon Wish List v.1.0.0.10, (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activ�)
G2 - GCE: Preference [User Data\Default] [ehebfpjkmkfjlfffcmnejglggpmpgclb] Bubble Shooter - Deluxe v.1.5 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [ehgldbbpchgpcfagfpfjgoomddhccfgh] Freemake Video Downloader v.1.0.0, (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activ�)
G2 - GCE: Preference [User Data\Default] [fhkblechghlfhpniljnjlmojhjjdjpep] Bubble Shooter v.13.2334.9140 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [flpcjncodpafbgdpnkljologafpionhb] Managera v.0.1 (Activ�)
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock v.2.6.11, (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [gpdjojdkbbmdfjfahjcgigfpmkopogic] Pinterest v.1.1 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [icppfcnhkcmnfdhfhphakoifcfokfdhg] Google Play Music v.5.2 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [ijeflaokddpcanknaifjldbbnacgnofg] Mah Jong Connect v.13.2334.9140 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [imdilajngppdgdbemeighbingnbmpnpl] Faerie Alchemy HD v.1.1.3.7 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [ioekoebejdcmnlefjiknokhhafglcjdl] Dropbox v.3.0.8 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [jbolfgndggfhhpbnkgnpjkfhinclbigj] Freemake Video Converter v.1.0.0 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [jfmjfhklogoienhpfnppmbcbjfjnkonk] RealPlayer HTML5Video Downloader Extension v.1.5 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [jjkhefodfbgjpcmahghmfggbcpjabnag] Blackball Pool v.1.0.3 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [lnpmoecabagognommankobjfmdfdppgp] Conjugation Vatefaireconjuguer v.1.5.6 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activ�)
G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activ�)
G2 - GCE: Preference [User Data\Default] [mkfokfffehpeedafpekjeddnmnjhmcmk] Norton Identity Protection v.2013.4.3.4 (Activ�)
G2 - GCE: Preference [User Data\Default] [njgpiocdhdmnglomggfjkkonjjfahnom] Norton Identity Safe v.1.0.0.7 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Chrome In-App Payments service v.0.0.4.11 (Activ�)
G2 - GCE: Preference [User Data\Default] [npfkoakaabdallkcdbpkkhfilkkngakh] Deezer v.1.3.2 (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [ocifcklkibdehekfnmflempfgjhbedch] Adblock Pro v.2.6, (D�sactiv�)
G2 - GCE: Preference [User Data\Default] [oecmlnmneeeeiccpcohlffnipjhngmdk] Universe v.2 (D�sactiv�)
~ Google Browser: 32 Scanned in 00mn 24s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\kathy\AppData\Roaming\Mozilla\Firefox\Profiles\rpy80tth.default\prefs.js
M3 - MFPP: Plugins - [kathy] -- C:\Users\kathy\AppData\Roaming\Mozilla\Firefox\Profiles\rpy80tth.default\searchplugins\aol-search.xml
M3 - MFPP: Plugins - [kathy] -- C:\Users\kathy\AppData\Roaming\Mozilla\Firefox\Profiles\rpy80tth.default\searchplugins\bing.xml
M3 - MFPP: Plugins - [kathy] -- C:\Users\kathy\AppData\Roaming\Mozilla\Firefox\Profiles\rpy80tth.default\searchplugins\start-searcher.xml
M3 - MFPP: Plugins - [kathy] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo.xml
M2 - MFEP: prefs.js [kathy - rpy80tth.default\djziggy@gmail.com] [] LavaFox V2-Blue v2.1.1 (..)
M2 - MFEP: prefs.js [kathy - rpy80tth.default\vinceturk@gmail.com] [] KwiClick v2.7.2.884 (..)
M2 - MFEP: prefs.js [kathy - rpy80tth.default\{20a82645-c095-46ed-80e3-08825760534b}] [MicrosoftCG] Microsoft .NET Framework Assistant v1.2.1 (..)
M2 - MFEP: prefs.js [kathy - rpy80tth.default\{3112ca9c-de6d-4884-a869-9855de68056c}] [] Google Toolbar for Firefox v7.1.20110512W (..) =>Toolbar.Google
M2 - MFEP: prefs.js [kathy - rpy80tth.default\{4be68a18-deba-49e0-9e09-ee7796f3b62a}(117)] [] Billeo v2.1.2.3 (..)
M2 - MFEP: prefs.js [kathy - rpy80tth.default\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}] [WOT] WOT v20130924 (..)
M2 - MFEP: prefs.js [kathy - rpy80tth.default\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}] [dwhelper] DownloadHelper v4.9.21 (..)
M2 - MFEP: prefs.js [kathy - rpy80tth.default\{ef62e1ce-d2a4-4cdd-b7ec-92b120366b66}] [] FoxLingo v2.7.8 (..)
P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - np-mswmp.) -- C:\Program Files\Mozilla Firefox\Plugins\np-mswmp.dll
P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.8.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - 12.0.1.647.) -- C:\Program Files\Mozilla Firefox\Plugins\nprpjplug.dll
P2 - FPN:Firefox Plugin Navigator . (.Zylom - Zylom Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\npzylomgamesplayer.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll
P2 - FPN: [HKLM] [@flyordie.com/GamesPlugin] - (.Solware - FlyOrDie Games Plugin 1.0.1.) -- C:\Program Files\Flyordie Plugin\npfod.dll
P2 - FPN: [HKLM] [@Google.com/GoogleEarthPlugin] - (.Google - GEPlugin.) -- C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll =>.Google Inc
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.45.2] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.45.2] - (.Oracle Corporation - Next Generation Java Plug-in 10.45.2 for Mozilla browsers.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20913.0.) -- C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.5] - (.Microsoft Corp. - Office Live Update v1.5.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3502.0922] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3508.1109] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3538.0513] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3555.0308] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
P2 - FPN: [HKLM] [@real.com/nprpchromebrowserrecordext;version=15.0.6.14] - (.RealNetworks, Inc. - RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
P2 - FPN: [HKLM] [@real.com/nprphtml5videoshim;version=15.0.6.14] - (.RealNetworks, Inc. - RealPlayer(tm) HTML5VideoShim Plug-In.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
P2 - FPN: [HKLM] [@real.com/nprpjplug;version=12.0.1.647] - (.RealNetworks, Inc. - 12.0.1.647.) -- c:\program files\real\realplayer\Netscape6\nprpjplug.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@veetle.com/veetleCorePlugin,version=0.9.18] - (.Veetle Inc - Version 0.9.18, Copyright 2006-2009 Veetle Inc
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.8] - (.VideoLAN - VLC media player Web Plugin 2.0.6.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll =>.VideoLAN
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (...) -- C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\8\NP_wtapp.dll
P2 - FPN: [HKLM] [@zylom.com/ZylomGamesPlayer] - (.Zylom - Zylom Plugin.) -- C:\ProgramData\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.8.) -- C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
P2 - FPN: [HKCU] [@Skype Limited.com/Facebook Video Calling Plugin] - (.Skype Limited - Facebook Video Calling Plugin.) -- C:\Users\kathy\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
P2 - FPN: [HKCU] [@talk.google.com/GoogleTalkPlugin] - (.Google - Version 4.8.2.15856.) -- C:\Users\kathy\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
P2 - FPN: [HKCU] [@talk.google.com/O1DPlugin] - (.Google - Version 4.8.2.15856.) -- C:\Users\kathy\AppData\Roaming\Mozilla\plugins\npo1d.dll
P2 - FPN: [HKCU] [@talk.google.com/O3DPlugin] - (.Pas de propri�taire - Google Talk Plugin Video Accelerator version:0.1.44.29.) -- C:\Users\kathy\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\kathy\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\kathy\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS - Unity Player 4.1.2f1.) -- C:\Users\kathy\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
~ Firefox Browser: 64 Scanned in 00mn 03s



---\\ Internet Explorer, D�marrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://home.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Unity Technologies ApS - Unity Player 4.1.2f1.) (No version) -- (.not file.)
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 1
~ IE Browser: 13 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\Userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 20



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Lexmark Barre d'outils - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} . (...) -- C:\Program Files\Lexmark Toolbar\toolband.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealPlayer - RealPlayer Download and Record Plugin.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Wondershare Player 1.6.0 - {43D9786F-A485-683B-9B5B-ACC97ABC17FC} . (.Wondershare - Wondershare Player.) -- C:\ProgramData\Wondershare\Player\WSBrowserAppMgr.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} . (.Symantec Corporation - IPS Browser Helper DLL.) -- C:\Program Files\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} . (.AOL - Librairie de lien dynamique AOL Toolbar pou.) -- C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft� Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Freemake.YoutubeButton - {e9e8eb35-ff77-455d-b677-91e5e4fc06c2} . (...) -- mscoree.dll (.not file.)
~ BHO: 24 Scanned in 00mn 01s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: AOL Toolbar - [HKLM]{DE9C389F-3316-41A7-809B-AA305ED9D922} . (.AOL - Librairie de lien dynamique AOL Toolbar pou.) -- C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O3 - Toolbar: Lexmark Barre d'outils - [HKLM]{1017A80C-6F09-4548-A84D-EDD6AC9525F0} . (...) -- C:\Program Files\Lexmark Toolbar\toolband.dll
O3 - Toolbar: Norton Toolbar - [HKLM]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll
O3 - Toolbar: Google Toolbar - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{DE9C389F-3316-41A7-809B-AA305ED9D922} Cl� orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{1017A80C-6F09-4548-A84D-EDD6AC9525F0} Cl� orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{F999A48B-1950-4D81-9971-79018F807B4B} Cl� orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Cl� orpheline
~ Toolbar: Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>Piriform Ltd
O4 - GS\Desktop [Public]: CollageIt.lnk . (.Pearl Mountain Soft - Make photo collages in minutes with a few m.) -- C:\Program Files\CollageIt\CollageIt.exe
O4 - GS\Desktop [Public]: CyberGhost VPN.lnk . (.CyberGhost SRL - CyberGhost VPN Client.) -- C:\Program Files\CyberGhost VPN\CyberGhost.exe
O4 - GS\Desktop [Public]: Freemake Audio Converter.lnk . (.Freemake - Freemake Audio Converter.) -- C:\Program Files\Freemake\Freemake Audio Converter\FreemakeAudioConverter.exe
O4 - GS\Desktop [Public]: Freemake Video Converter.lnk . (.Freemake - Freemake Video Converter.) -- C:\Program Files\Freemake\Freemake Video Converter\FreemakeVideoConverter.exe
O4 - GS\Desktop [Public]: Freemake Video Downloader.lnk . (.Freemake - Freemake Video Downloader.) -- C:\Program Files\Freemake\Freemake Video Downloader\FreemakeVideoDownloader.exe
O4 - GS\Desktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Public]: Google�Earth.lnk . (.Google - Google Earth.) -- C:\Program Files\Google\Google Earth\client\googleearth.exe =>.Google Inc
O4 - GS\Desktop [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Desktop [Public]: Lexmark Productivity Studio - X5400 Series.LNK . (...) -- C:\Program Files\Lexmark X5400 Series\app4r.exe
O4 - GS\Desktop [Public]: Lidl-Photos FR.lnk . (...) -- C:\Program Files\Lidl-Photos\Lidl-Photos FR\Lidl-Photos FR.exe
O4 - GS\Desktop [Public]: MP3 Cutter.lnk . (.MP3 Cutter, Inc. - Easily and Fast Cut MP3 in few clicks..) -- C:\MP3Cutter\MP3Cutter.exe
O4 - GS\Desktop [Public]: NeoPaint.lnk . (...) -- C:\Program Files\NeoPaint\NeoPaint.exe
O4 - GS\Desktop [Public]: Norton Internet Security.lnk . (.Symantec Corporation - Norton Protection Center UI Stub.) -- C:\Program Files\Norton Internet Security\Engine\20.4.0.40\uistub.exe
O4 - GS\Desktop [Public]: PhotoStudio 5.lnk . (.ArcSoft, Inc. - Photo Editing Software.) -- C:\Program Files\ArcSoft\PhotoStudio\PhotoStudio.exe
O4 - GS\Desktop [Public]: Photoupz.lnk . (...) -- C:\Program Files\Photoupz\PhotoUpz.exe
O4 - GS\Desktop [Public]: Skype.lnk . (...) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe
O4 - GS\Desktop [Public]: SystemTweaker.lnk . (.Uniblue Systems Ltd - Uniblue SystemTweaker.) -- C:\Program Files\Uniblue\SystemTweaker\systemtweaker.exe
O4 - GS\Desktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player 2.0.8.) -- C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN
O4 - GS\Desktop [Public]: Windows Media Center.lnk . (.Microsoft Corporation - Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\Desktop [Public]: Wondershare Player.lnk . (.Wondershare - Wondershare Player.) -- C:\Program Files\Wondershare\Player\WSPlayer.exe
O4 - GS\Desktop [Public]: WorldWide Telescope.lnk . (...) -- C:\Windows\Installer\{35A81F0A-A1CA-458D-8FCD-7D838E3D95FF}\_DFDD381D707A57418F4E45.exe
O4 - GS\Desktop [Public]: WWT � Mars.lnk . (...) -- C:\Windows\Installer\{35A81F0A-A1CA-458D-8FCD-7D838E3D95FF}\_7B68A39648EE8AEE6D6498.exe
O4 - GS\Program [Public]: Adobe Reader X.lnk . (...) -- C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-AA1000000001}\SC_Reader.ico
O4 - GS\Program [Public]: Apple Software Update.lnk . (...) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc
O4 - GS\Program [Public]: audials TV.lnk . (.RapidSolution Software AG - Pas de description.) -- C:\Program Files\RapidSolution\AudialsTV\bin\audialsTV.exe
O4 - GS\Program [Public]: Game Manager.lnk . (...) -- C:\Program Files\bfgclient\bfgclient.exe
O4 - GS\Program [Public]: HP Advisor.lnk . (.Hewlett-Packard - HP Advisor.) -- C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
O4 - GS\Program [Public]: Lanceur de t�ches Microsoft Works.lnk . (.Microsoft� Corporation - Microsoft� Works.) -- C:\Program Files\Microsoft Works\MSWorks.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Media Center.lnk . (.Microsoft Corporation - Media Center.) -- C:\Windows\ehome\ehshell.exe
O4 - GS\Program [Public]: Microsoft Access.lnk . (...) -- C:\Windows\Installer\{9111040C-6000-11D3-8CFE-0050048383C9}\accicons.exe
O4 - GS\Program [Public]: Microsoft Excel.lnk . (...) -- C:\Windows\Installer\{9111040C-6000-11D3-8CFE-0050048383C9}\xlicons.exe
O4 - GS\Program [Public]: Microsoft Outlook.lnk . (...) -- C:\Windows\Installer\{9111040C-6000-11D3-8CFE-0050048383C9}\outicon.exe
O4 - GS\Program [Public]: Microsoft PowerPoint.lnk . (...) -- C:\Windows\Installer\{9111040C-6000-11D3-8CFE-0050048383C9}\pptico.exe
O4 - GS\Program [Public]: Microsoft Publisher.lnk . (...) -- C:\Windows\Installer\{9119040C-6000-11D3-8CFE-0050048383C9}\pubs.exe
O4 - GS\Program [Public]: Microsoft Word.lnk . (...) -- C:\Windows\Installer\{9111040C-6000-11D3-8CFE-0050048383C9}\wordicon.exe
O4 - GS\Program [Public]: More Great Games.lnk - Cl� orpheline
O4 - GS\Program [Public]: Paint.NET.lnk . (.dotPDN LLC - Paint.NET.) -- C:\Program Files\Paint.NET\PaintDotNet.exe
O4 - GS\Program [Public]: Visionneuse Microsoft Office PowerPoint 2007.lnk . (...) -- C:\Windows\Installer\{95120000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Calendar.lnk . (.Microsoft Corporation - Calendrier Windows.) -- C:\Program Files\Windows Calendar\WinCal.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Collaboration.lnk . (.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Contacts.lnk . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Defender.lnk . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
O4 - GS\Program [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Cr�ation de DVD Windows.) -- C:\Program Files\Movie Maker\DVDMaker.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Live Mail.lnk . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\wlmail.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Live Movie Maker.lnk . (.Microsoft Corporation - Windows Live Movie Maker.) -- C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Live Photo Gallery.lnk . (.Microsoft Corporation - Windows Live Photo Gallery.) -- C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Movie Maker.lnk . (.Microsoft Corporation - Windows Movie Maker.) -- C:\Program Files\Movie Maker\MOVIEMK.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Photo Gallery.lnk . (.Microsoft Corporation - Galerie de photos Windows.) -- C:\Program Files\Windows Photo Gallery\WindowsPhotoGallery.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\System32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilit� Windows.) -- C:\Windows\System32\mblctr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\System32\NetProj.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\System32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau � distance.) -- C:\Windows\System32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sidebar.lnk . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\System32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magn�tophone Windows.) -- C:\Windows\System32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Backup.lnk . (.Microsoft Corporation - Sauvegarde Microsoft� Windows.) -- C:\Windows\System32\sdclt.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caract�res.) -- C:\Windows\System32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - D�fragmenteur de disque Microsoft�.) -- C:\Windows\System32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\System32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: migwiz.lnk . (.Microsoft Corporation - Transfert de fichiers et param�tres Windows.) -- C:\Windows\System32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations syst�me.) -- C:\Windows\System32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du syst�me de Microsoft� Windo.) -- C:\Windows\System32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\System32\taskschd.msc
O4 - GS\QuickLaunch [kathy]: Advanced PC Tweaker.lnk . (...) -- C:\Program Files\Advanced PC Tweaker\AdvancedPCTweaker.exe (.not file.) =>Rogue.AdvancedPCTweaker
O4 - GS\QuickLaunch [kathy]: Astro Gemini Screensaver Manager.lnk . (...) -- C:\Users\kathy\AppData\Roaming\Astro Gemini Software\Screensaver Manager 2.0\Astro Gemini Screensaver Manager.exe
O4 - GS\QuickLaunch [kathy]: D�marrer Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) -- C:\Program Files\Microsoft Office\Office10\OUTLOOK.exe
O4 - GS\QuickLaunch [kathy]: freeTunes 3.0.lnk . (.Engelmann Media - freeTunes 3.0.) -- C:\Program Files\Engelmann Media\freeTunes�3.0\fTunes.exe
O4 - GS\QuickLaunch [kathy]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [kathy]: icomancer.lnk . (.LAVA SoftWorks - icomancer.) -- C:\Program Files\icomancer\icomancer.exe
O4 - GS\QuickLaunch [kathy]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [kathy]: Media Player Classic.lnk . (.MPC-HC Team - Media Player Classic - Home Cinema.) -- C:\Program Files\K-Lite Codec Pack\Media Player Classic\mpc-hc.exe
O4 - GS\QuickLaunch [kathy]: MP Manager.lnk . (.MPMAN - MP Manager.) -- C:\Users\kathy\AppData\Roaming\MPMAN\MP Manager\MP Manager.exe
O4 - GS\QuickLaunch [kathy]: My HP Games.lnk . (...) -- C:\Program Files\HP Games\My HP Game Console\GameConsole.exe (.not file.)
O4 - GS\QuickLaunch [kathy]: NeoDownloader.lnk . (...) -- C:\Program Files\NeoDownloader\NeoDownloader.exe (.not file.)
O4 - GS\QuickLaunch [kathy]: PDFTiger.lnk . (.PDFTiger.com - Pas de description.) -- C:\Program Files\qvPDF\PDFTiger.exe
O4 - GS\QuickLaunch [kathy]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\System32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\QuickLaunch [kathy]: Streaming Audio Recorder.lnk . (.Apowersoft - Streaming Audio Recorder.) -- C:\Program Files\Apowersoft\Streaming Audio Recorder\Streaming Audio Recorder.exe
O4 - GS\QuickLaunch [kathy]: SystemTweaker.lnk . (.Uniblue Systems Ltd - Uniblue SystemTweaker.) -- C:\Program Files\Uniblue\SystemTweaker\systemtweaker.exe
O4 - GS\QuickLaunch [kathy]: WildTangent Games App - hp.lnk . (.WildTangent - WildTangent Games App.) -- C:\Program Files\WildTangent Games\App\GameConsole-wt.exe
O4 - GS\QuickLaunch [kathy]: WildTangent Games App - wildgames.lnk . (.WildTangent - WildTangent Games App.) -- C:\Program Files\WildTangent Games\App\GameConsole-wt.exe
O4 - GS\QuickLaunch [kathy]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\QuickLaunch [kathy]: Wondershare Player.lnk . (.Wondershare - Wondershare Player.) -- C:\Program Files\Wondershare\Player\WSPlayer.exe
O4 - GS\Program [kathy]: CyberLink DVD Suite Deluxe.lnk . (.CyberLink - PowerStarter.) -- C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe
O4 - GS\Program [kathy]: Free Video Converter.lnk . (...) -- C:\Program Files\Free Video Converter\FreeVideoConverter.exe (.not file.)
O4 - GS\Program [kathy]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Program [kathy]: Spotify.lnk . (...) -- C:\Users\kathy\AppData\Roaming\Spotify\spotify.exe (.not file.)
O4 - GS\Program [kathy]: View My Screensavers.lnk . (...) -- C:\Users\kathy\AppData\Roaming\Astro Gemini Software\Screensaver Manager 2.0\Astro Gemini Screensaver Manager.exe
O4 - GS\Program [kathy]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O4 - GS\Program [kathy]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Accessories [kathy]: Command Prompt.lnk . (.Microsoft Corporation - Interpr�teur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [kathy]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\System32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [kathy]: Run.lnk - Cl� orpheline
O4 - GS\Accessories [kathy]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [kathy]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\SendTo [kathy]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - GS\Desktop [kathy]: Advanced PC Tweaker.lnk . (...) -- C:\Program Files\Advanced PC Tweaker\AdvancedPCTweaker.exe (.not file.) =>Rogue.AdvancedPCTweaker
O4 - GS\Desktop [kathy]: All Sound Recorder Vista.lnk . (.MP3DO,Inc - Record Any Sound from sound card.) -- C:\Program Files\All Sound Recorder Vista\asrv.exe
O4 - GS\Desktop [kathy]: AMCap.lnk . (.InstallShield Software Corp. - InstallShield.) -- C:\Windows\Installer\{F4749535-2B87-498A-B74D-0A01B174E36D}\AMCap.exe_683B953FD73C401C81A9461658577DFD.exe
O4 - GS\Desktop [kathy]: Bandicam.lnk . (.www.Bandisoft.com - Bandisoft - bdcam.exe.) -- C:\Program Files\Bandicam\bdcam.exe
O4 - GS\Desktop [kathy]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\System32\calc.exe =>.Microsoft Corporation
O4 - GS\Desktop [kathy]: CommentCaMarche.lnk . (...) -- C:\Program Files\CommentCaMarche\index.htm
O4 - GS\Desktop [kathy]: Cool Record Edit Pro.lnk . (...) -- C:\Program Files\Cool Record Edit Pro\CoolRecordEditPro.exe
O4 - GS\Desktop [kathy]: Corbeille - Raccourci.lnk - Cl� orpheline
O4 - GS\Desktop [kathy]: CyberLink DVD Suite Deluxe.lnk . (.CyberLink - PowerStarter.) -- C:\Program Files\CyberLink\DVD Suite Deluxe\PowerStarter.exe
O4 - GS\Desktop [kathy]: Documents - Raccourci.lnk . (...) -- C:\Users\kathy\Documents
O4 - GS\Desktop [kathy]: Dropbox.lnk . (.Dropbox, Inc. - Dropbox.) -- C:\Users\kathy\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - GS\Desktop [kathy]: Easy Audio Cutter.lnk . (.Koyote Soft - Pas de description.) -- C:\Program Files\Free mp3 Wma Converter\Easy Audio Cutter\AudioCutter.exe
O4 - GS\Desktop [kathy]: ecbl-lbp - Raccourci.lnk . (.Orbiscom Ltd. All rights reserved. - ECBL Client.) -- C:\Program Files\e-Carte Bleue La Banque Postale\ecbl-lbp.exe
O4 - GS\Desktop [kathy]: Free Video Converter.lnk . (...) -- C:\Program Files\Free Video Converter\FreeVideoConverter.exe (.not file.)
O4 - GS\Desktop [kathy]: gifan - Raccourci.lnk . (.Karlis Blumentals - Easy GIF Animator.) -- C:\Program Files\Easy GIF Animator\gifan.exe
O4 - GS\Desktop [kathy]: ImageMagick 6.8.0 Q16 - Raccourci.lnk . (...) -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImageMagick 6.8.0 Q16
O4 - GS\Desktop [kathy]: Kindle.lnk . (.Amazon.com - Kindle.) -- C:\Users\kathy\AppData\Local\Amazon\Kindle\application\Kindle.exe
O4 - GS\Desktop [kathy]: mediAvatar Photo to Flash.lnk . (...) -- C:\Program Files\mediAvatar\Photo to Flash\SplashScreen.exe
O4 - GS\Desktop [kathy]: Microsoft Word.lnk . (...) -- C:\Windows\Installer\{9111040C-6000-11D3-8CFE-0050048383C9}\wordicon.exe
O4 - GS\Desktop [kathy]: MP Manager.lnk . (.MPMAN - MP Manager.) -- C:\Users\kathy\AppData\Roaming\MPMAN\MP Manager\MP Manager.exe
O4 - GS\Desktop [kathy]: My PC Choice.lnk . (...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.)
O4 - GS\Desktop [kathy]: Options Internet - Raccourci.lnk - Cl� orpheline
O4 - GS\Desktop [kathy]: Spotify.lnk . (.Spotify Ltd - Spotify.) -- C:\_OTL\MovedFiles\07222012_182814\C_Users\kathy\AppData\Roaming\Spotify\spotify.exe
O4 - GS\Desktop [kathy]: Wondershare DVD Slideshow Builder Deluxe.lnk . (.Wondershare - Pas de description.) -- C:\Program Files\Wondershare\DVD Slideshow Builder Deluxe\DSB.exe
O4 - GS\Desktop [kathy]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\Desktop [kathy]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman
~ Global Startup: 133 Scanned in 00mn 08s



---\\ Applications lanc�es au d�marrage du syt�me (O4)
O4 - GS\Startup [Public]: Logitech Desktop Messenger.lnk . (.Logitech - LDM Configuration Application.) -- C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - GS\Startup [Public]: Microsoft Office.lnk . (.Microsoft Corporation - Microsoft Office XP component.) -- C:\Program Files\Microsoft Office\Office10\OSA.exe =>.Microsoft Corporation
O4 - GS\Startup [Public]: WDDMStatus.lnk . (.Western Digital Technologies, Inc. - WD Drive Manager Status.) -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
O4 - GS\Startup [kathy]: Dropbox.lnk . (.Dropbox, Inc. - Dropbox.) -- C:\Users\kathy\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - GS\Startup [kathy]: Outil de notification de cadeaux MSN.lnk . (.Microsoft Corporation - Outil de notification de cadeaux MSN.) -- C:\Users\kathy\AppData\Roaming\Microsoft\Outil de notification de cadeaux MSN\msnotif.exe
O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
O4 - HKLM\..\Run: [hpsysdrv] . (.Hewlett-Packard Company - hpsysdrv.) -- c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [KBD] . (...) -- C:\HP\KBD\KbdStub.exe
O4 - HKLM\..\Run: [OsdMaestro] . (.OsdMaestro - OsdMaestro main program.) -- C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
O4 - HKLM\..\Run: [SunJavaUpdateReg] . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Windows\system32\jureg.exe
O4 - HKLM\..\Run: [LVCOMS] . (.Logitech Inc. - LVCom Server.) -- C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.exe
O4 - HKLM\..\Run: [Monitor] . (.PixArt Imaging Incorporation - Registry Monitor.) -- C:\Windows\PixArt\PAC207\Monitor.exe
O4 - HKLM\..\Run: [UnlockerAssistant] . (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe
O4 - HKLM\..\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst� Control Center Launcher.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe =>.Advanced Micro Devices, Inc
O4 - HKLM\..\Run: [ATICustomerCare] . (.Advanced Micro Devices, Inc. - ATI Customer Care.) -- C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe
O4 - HKLM\..\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard Co
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Run: [NBAgent] . (.Nero AG - Nero BackItUp.) -- C:\Program Files\Nero\Nero 10\Nero BackItUp\NBAgent.exe
O4 - HKLM\..\Run: [NBHGui] . (.Nero AG - Nero SecurDisc Host.) -- C:\Program Files\Nero\Tools\InCD\NBHGui.exe
O4 - HKLM\..\Run: [InCD] . (.Nero AG - InCD.) -- C:\Program Files\Nero\Tools\InCD\InCD.exe
O4 - HKLM\..\Run: [lxdvmon.exe] . (.Pas de propri�taire - Printer Device Monitor.) -- C:\Program Files\Lexmark X5400 Series\lxdvmon.exe
O4 - HKLM\..\Run: [lxdvamon] . (.Pas de propri�taire - Printer Card Transfer Monitor.) -- C:\Program Files\Lexmark X5400 Series\lxdvamon.exe
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] . (.Wondershare - Wondershare Studio.) -- C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKLM\..\Run: [DelaypluginInstall] . (...) -- C:\ProgramData\Wondershare\Player\DelayPluginI.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
O4 - HKCU\..\Run: [ccleaner] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>Piriform Ltd
O4 - HKCU\..\Run: [LDM] . (...) -- C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [chromium] . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\_OTL\MovedFiles\07222012_182814\C_Users\kathy\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\kathy\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\kathy\AppData\Local\Facebook\Update\FacebookUpdate.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKCU\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\_OTL\MovedFiles\07222012_182814\C_Users\kathy\AppData\Roaming\Spotify\Spotify.exe
O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] Cl� orpheline
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] Cl� orpheline
O4 - HKUS\S-1-5-21-4255072227-2134163802-563611887-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-4255072227-2134163802-563611887-1000\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe
O4 - HKUS\S-1-5-21-4255072227-2134163802-563611887-1000\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
O4 - HKUS\S-1-5-21-4255072227-2134163802-563611887-1000\..\Run: [ccleaner] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>Piriform Ltd
O4 - HKUS\S-1-5-21-4255072227-2134163802-563611887-1000\..\Run: [LDM] . (...) -- C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKUS\S-1-5-21-4255072227-2134163802-563611887-1000\..\Run: [chromium] . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - HKUS\S-1-5-21-4255072227-2134163802-563611887-1000\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\_OTL\MovedFiles\07222012_182814\C_Users\kathy\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
O4 - HKUS\S-1-5-21-4255072227-2134163802-563611887-1000\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\kathy\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc
O4 - HKUS\S-1-5-21-4255072227-2134163802-563611887-1000\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\kathy\AppData\Local\Facebook\Update\FacebookUpdate.exe
O4 - HKUS\S-1-5-21-4255072227-2134163802-563611887-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKUS\S-1-5-21-4255072227-2134163802-563611887-1000\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\_OTL\MovedFiles\07222012_182814\C_Users\kathy\AppData\Roaming\Spotify\Spotify.exe
O4 - HKUS\S-1-5-21-4255072227-2134163802-563611887-1000\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe =>.Microsoft Corporation
~ Application: Scanned in 00mn 00s



---\\ Boutons situ�s sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} . (.Microsoft Corporation - Windows Live Messenger Companion core resources.) -- C:\Program Files\Windows Live\Companion\companionres.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} . (.AOL - AOL Toolbar.) -- c:\program files\aol\aol toolbar 5.0\resources\fr-fr\aoltbres.dll
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll
~ Winsock: 7 Scanned in 00mn 00s



---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} ((no name)) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
~ Objets ActiveX: Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{068ba2ba-c31f-4a9a-9a93-5683221f449c}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CCS\Services\Tcpip\..\{5B9EC009-17EB-4144-B50A-5BFAA3DA4D5F}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{068ba2ba-c31f-4a9a-9a93-5683221f449c}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CS1\Services\Tcpip\..\{5B9EC009-17EB-4144-B50A-5BFAA3DA4D5F}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{068ba2ba-c31f-4a9a-9a93-5683221f449c}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CS3\Services\Tcpip\..\{5B9EC009-17EB-4144-B50A-5BFAA3DA4D5F}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: WSIEChrome - {6D02ED5F-FD0D-4C4C-lSet . (...) --
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Cl� de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contr�leur de site Web.) -- C:\Windows\System32\webcheck.dll
~ SSODL: 1 Scanned in 00mn 00s



---\\ Cl� de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Biblioth�que de l'interface utilisateur du.) -- C:\Windows\System32\browseui.dll
~ STS/SSO: Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non d�sactiv�s (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe
O23 - Service: AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc. - Service Fusion Utility.) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AMD Reservation Manager (AMD Reservation Manager) . (.Advanced Micro Devices - RM Application.) - C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: ForceWare Intelligent Application Manage (ForceWare Intelligent Application Manager (IAM)) . (.Pas de propri�taire - app_filter Module.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: Freemake Improver (Freemake Improver) . (.Freemake - FreemakeUtilsService.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
O23 - Service: (FreemakeVideoCapture) . (.Ellora Assets Corp. - CaptureLibService.) - C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe
O23 - Service: FsUsbExService (FsUsbExService) . (.Teruten - FsUsbDevice.) - C:\Windows\system32\FsUsbExService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard - HP Health Check Service.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: InCD Helper (InCDSrv) . (.Nero AG - incdsrv.) - C:\Program Files\Nero\Tools\InCD\InCDSrv.exe
O23 - Service: LightScribeService Direct Disc Labeling (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LVSrvLauncher (LVSrvLauncher) . (.Logitech Inc. - LogitechService Launcher.) - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: lxdvCATSCustConnectService (lxdvCATSCustConnectService) . (.Lexmark International, Inc. - Lexmark Connect Service Executable.) - C:\Windows\system32\spool\DRIVERS\W32X86\3\lxdvserv.exe
O23 - Service: lxdv_device (lxdv_device) . (.Pas de propri�taire - Printer Communication System.) - C:\Windows\system32\lxdvcoms.exe
O23 - Service: C:\Program Files\Nero\Update\NASvc.exe (NAUpdate) . (.Nero AG - NeroUpdate.) - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: Nero Registry InCD Service (NeroRegInCDSrv) . (.Nero AG - Nero Registry InCD Service.) - C:\Program Files\Nero\Tools\InCD\NBHRegInCDSrv.exe
O23 - Service: Norton Internet Security (NIS) . (.Symantec Corporation - Symantec Service Framework.) - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe
O23 - Service: ForceWare IP service (nSvcIp) . (.Pas de propri�taire - NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Util SaltarSmart (Util SaltarSmart) . (...) - C:\Program Files\SaltarSmart\bin\utilSaltarSmart.exe (.not file.) =>PUP.SaltarSmart
O23 - Service: WDDMService (WDDMService) . (.WDC - WD Drive Manager Service.) - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
O23 - Service: WD File Management Engine (WDFME) . (.Pas de propri�taire - WD File Management Engine.) - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDFME\WDFME.exe
O23 - Service: WD File Management Shadow Engine (WDSC) . (.Pas de propri�taire - WD Shadow Copy.) - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSC.exe
~ Services: 26 Scanned in 00mn 13s



---\\ Enum�ration Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(.Microsoft Corporation - Microsoft Word.) - C:\Program Files\Microsoft Office\Office10\WINWORD.exe
O24 - Desktop General: BackupWallPaper - .(...) - C:\Users\kathy\Desktop\1176332_10151634437742956_1812658989_n.jpg
O24 - Desktop General: WallPaper - .(...) - C:\Users\kathy\Desktop\1176332_10151634437742956_1812658989_n.jpg
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enum�re les donn�es de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ T�ches planifi�es en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4255072227-2134163802-563611887-1000Core.job [906]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4255072227-2134163802-563611887-1000UA.job [928]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1050]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1054]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4255072227-2134163802-563611887-1000Core.job [1026]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4255072227-2134163802-563611887-1000UA.job [1078]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\One-Click Tweak.job [500]
[MD5.A283108E14F3970432C21AF4C0CB1BCE] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [257416]
[MD5.518545E8CBD79EBF42891A6066578118] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [3591960] =>Piriform Ltd
[MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-4255072227-2134163802-563611887-1000Core] (.Facebook Inc..) -- C:\Users\kathy\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096]
[MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-4255072227-2134163802-563611887-1000UA] (.Facebook Inc..) -- C:\Users\kathy\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096]
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [136176]
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [136176]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskUserS-1-5-21-4255072227-2134163802-563611887-1000Core] (.Google Inc..) -- C:\Users\kathy\AppData\Local\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskUserS-1-5-21-4255072227-2134163802-563611887-1000UA] (.Google Inc..) -- C:\Users\kathy\AppData\Local\Google\Update\GoogleUpdate.exe [116648]
[MD5.00000000000000000000000000000000] [APT] [InstallerTracingAgent] (...) -- C:\Program Files\Full Uninstall\FullUninstallAgent.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [JavaUpdateAdministrator] (...) -- C:\Windows\system32\jusched.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [JavaUpdatekathy] (...) -- C:\Windows\system32\jusched.exe (.not file.) [0]
[MD5.C66557728011B83C4FFAE7DD022F99DA] [APT] [Norton WSC Integration] (.Symantec Corporation.) -- C:\Program Files\Norton Internet Security\Engine\20.4.0.40\WSCStub.exe [163944]
[MD5.00000000000000000000000000000000] [APT] [One-Click Tweak] (...) -- C:\Program Files\Advanced PC Tweaker\OneClick.exe (.not file.) [0] =>Rogue.AdvancedPCTweaker
[MD5.E6019253451DBB67740F7027AD9E1CB5] [APT] [RealUpgradeLogonTaskS-1-5-21-4255072227-2134163802-563611887-1000] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [178840]
[MD5.E6019253451DBB67740F7027AD9E1CB5] [APT] [RealUpgradeScheduledTaskS-1-5-21-4255072227-2134163802-563611887-1000] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [178840]
[MD5.00000000000000000000000000000000] [APT] [{1A529CEF-44F1-4F76-A4E1-C2848DE638BF}] (...) -- C:\Users\kathy\Downloads\sp42719.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{1D98910F-86A6-41AB-BA53-E54B62225F85}] (...) -- E:\SETUP.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{32C60142-5AEF-403E-A075-17DE163B2B01}] (...) -- F:\Data\Driver Mender\15.49_nforce_winvista_win7_32bit_international_whql.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{5397A8D7-D247-48B5-A43C-8B554F4F4037}] (...) -- C:\Users\kathy\Documents\giveaway of the day\PhotoCollage\Setup.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{55198A65-5E92-4DA5-BF6C-0A4926C395D2}] (...) -- C:\Users\kathy\Downloads\FreeYouTubeUploader.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{627196BD-C58F-4361-BC41-35523EB79323}] (...) -- E:\ScanGear\French\SetupSG.exe (.not file.) [0]
[MD5.4A59A653E0A415E19B7B236B1BB08E68] [APT] [{7033B3D7-4AF4-4CD0-950D-5B69941E7C99}] (.MicSoft.) -- C:\Users\kathy\Downloads\LiDE60_11100WNEN.exe [9253301]
[MD5.F7128E5772F9312F0D111A5FA5D41773] [APT] [{796B4728-AF26-4DBC-9839-BE0560245AB6}] (.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe [20684656]
[MD5.666A1E7EB3DFADB5ECE37B3E3B42FD06] [APT] [{8F2394D2-3A88-4DCF-AB29-66E78A48633A}] (...) -- C:\Users\kathy\Desktop\Video\Virtual Dub\auxsetup.exe [69632]
[MD5.00000000000000000000000000000000] [APT] [{B27F1ADC-F560-4138-84E5-4DC6FDF5B340}] (...) -- C:\Windows\system32\Camcpl.cpl (.not file.) [0]
[MD5.54B3679F8D1CFD579D01FE2A49EBAFCF] [APT] [{BCBB4AD8-F8B1-4611-9AED-EF0D2193D77B}] (.Maxis, a division of Electronic Arts Inc..) -- J:\Mes Documents\Program Files\EA GAMES\Les Sims 2 Deluxe\Base\CSBin\PackageInstaller.exe [3813665]
[MD5.AA9C328D65B5F3B0BEF628666B1D9A37] [APT] [{C8BD046B-698B-4351-8B8D-CB3D66018947}] (...) -- C:\users\kathy\downloads\canon\SetupSG.exe [5869056]
[MD5.00000000000000000000000000000000] [APT] [{D2FE5F72-756B-4CBC-BF79-171F05840706}] (...) -- C:\Users\kathy\Downloads\vlc_setup1.1.5-win32(2).exe (.not file.) [0]
[MD5.DDE4351F08E5562865C79C7F347F4EB1] [APT] [{E1A1EEA2-A121-4759-B66E-B119AB444BC0}] (.Realtek Semiconductor Corp..) -- C:\Users\kathy\Downloads\Vista_Win7_Win8_R271.exe [152543706]
[MD5.00000000000000000000000000000000] [APT] [{F54D92F1-679C-413C-927E-3554BF838369}] (...) -- C:\Users\kathy\Desktop\Virtual Dub\auxsetup.exe (.not file.) [0]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984]
[MD5.7720251986778B402978761589434491] [APT] [Norton Error Analyzer] (.Symantec Corporation.) -- C:\Program Files\Norton Internet Security\Engine\20.4.0.40\SymErr.exe [54096]
[MD5.7720251986778B402978761589434491] [APT] [Norton Error Processor] (.Symantec Corporation.) -- C:\Program Files\Norton Internet Security\Engine\20.4.0.40\SymErr.exe [54096]
[MD5.61D3771702DE72053FEE2A98F213A030] [APT] [Scheduled Maintenance] (.PC-Doctor, Inc..) -- C:\Program Files\PC-Doctor 5 for Windows\RunProfiler.exe [73728]
[MD5.6D0F62A4D823A36A529369257CD8C00D] [APT] [Scheduled Maintenance Swap] (...) -- C:\Program Files\PC-Doctor 5 for Windows\task_swap.bat [199]
~ Scheduled Task: 44 Scanned in 03mn 10s



---\\ Composants install�s (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\system32\ie4uinit.exe
O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d�IEAK.) -- C:\Windows\system32\iedkcs32.dll
O40 - ASIC: LightScribe Control Panel - {10880D85-AAD9-4558-ABDC-2AB1552D831F} . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LSRunOnce.exe
O40 - ASIC: Microsoft Windows Media Player 11.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows Mail 7 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
O40 - ASIC: Google Chrome - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\30.0.1599.101\Installer\chrmstp.exe
O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11CF-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 11.6 r602.) -- C:\Windows\system32\Macromed\Flash\Flash32_11_6_602_168.ocx
~ Active Setup: 14 Scanned in 00mn 00s



---\\ Pilotes lanc�s au d�marrage du syst�me (O41)
O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (BHDrvx86) . (.Symantec Corporation - BASH Driver.) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.3.1.22\Definitions\BASHDefs\20131022.001\BHDrvx86.sys
O41 - Driver: (ccSet_NIS) . (.Symantec Corporation - Common Client Settings Driver.) - C:\Windows\system32\drivers\NIS\1404000.028\ccSetx86.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: (eeCtrl) . (.Symantec Corporation - Symantec Eraser Control Driver.) - C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys
O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys
O41 - Driver: (IDSVix86) . (.Symantec Corporation - IDS Core Driver.) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.3.1.22\Definitions\IPSDefs\20131030.001\IDSvix86.sys
O41 - Driver: (InCDRec) . (.Nero AG - Nero InCD File System Recognizer.) - C:\Windows\System32\DRIVERS\InCDRec.sys
O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys
O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys
O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys
O41 - Driver: (SRTSP) . (.Symantec Corporation - Symantec AutoProtect.) - C:\Windows\system32\Drivers\NIS\1404000.028\SRTSP.sys
O41 - Driver: (SRTSPX) . (.Symantec Corporation - Symantec AutoProtect.) - C:\Windows\system32\drivers\NIS\1404000.028\SRTSPX.sys
O41 - Driver: (SymIRON) . (.Symantec Corporation - Iron Driver.) - C:\Windows\system32\drivers\NIS\1404000.028\Ironx86.sys
O41 - Driver: (SYMTDIv) . (.Symantec Corporation - Network Dispatch Driver.) - C:\Windows\system32\Drivers\NIS\1404000.028\SYMTDIV.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
~ Drivers: 84 Scanned in 01mn 21s



---\\ Logiciels install�s (O42)
O42 - Logiciel: 1AVCapture version 1.8.7.21 - (.PCWinSoft Systems Informatica Ltda.) [HKLM] -- {8EB278E8-7FDA-4ED9-A429-C87A76F95087}_is1
O42 - Logiciel: 5 Card Deluxe - (.WildTangent.) [HKLM] -- WTA-f59d502c-bbbe-4c25-a037-e4fc5caf97ef
O42 - Logiciel: ABBYY FineReader 6.0 Sprint - (.ABBYY Software House.) [HKLM] -- {ACF60000-22B9-4CE9-98D6-2CCF359BAC07}
O42 - Logiciel: AOL Toolbar 5.0 - (.AOL.) [HKLM] -- AOL Toolbar
O42 - Logiciel: ATI Catalyst Install Manager - (.ATI Technologies, Inc..) [HKLM] -- {5968F27A-66E6-171E-5311-0A74D74AAD9B}
O42 - Logiciel: ATI Catalyst Registration - (.ATI Technologies Inc..) [HKLM] -- {11083C7A-D0D6-4DA4-8C3A-74B8389EC07B}
O42 - Logiciel: ATI Stream SDK v2 Developer - (.ATI Technologies Inc..) [HKLM] -- {86B247F9-1D5E-CCC6-3280-71486D9A4E70}
O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader X (10.1.8) - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1033-7B44-AA1000000001}
O42 - Logiciel: Advanced PC Tweaker v4.2 - (.AdvancedPCTweaker.com, Inc..) [HKLM] -- Advanced PC Tweaker_is1 =>Rogue.AdvancedPCTweaker
O42 - Logiciel: Age of Enigma: The Secret of the Sixth Ghost - (.WildTangent.) [HKLM] -- WTA-508361c0-ac21-43da-9efa-8b5fcb11d239
O42 - Logiciel: Aiseesoft Convertisseur M�dia Total 6.2.18 - (...) [HKLM] -- {42087B24-ECD8-41d2-8053-E6EB99E5083F}_is1
O42 - Logiciel: All Sound Recorder Vista 1.30 - (.MP3DO, Inc..) [HKLM] -- All Sound Recorder Vista_is1
O42 - Logiciel: Almeza MultiSet Professional 7.8.1 - (.Almeza Company.) [HKLM] -- Almeza MultiSet Professional_is1
O42 - Logiciel: Amazon Kindle - (.Amazon.) [HKCU] -- Amazon Kindle
O42 - Logiciel: Analyseur et SDK MSXML 4.0 SP2 - (.Microsoft Corporation.) [HKLM] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC}
O42 - Logiciel: Ancient Seal - (.WildTangent.) [HKLM] -- WTA-f509a2c0-bc33-4c34-9875-7d9d901fe6d1
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {F5266D28-E0B2-4130-BFC5-EE155AD514DC}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {8153ED9A-C94A-426E-9880-5E6775C08B62}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc
O42 - Logiciel: Around the World in 80 Days - (.Playrix Entertainment.) [HKLM] -- Around the World in 80 Days_is1
O42 - Logiciel: Astro Gemini Screensaver Manager 2.0 - (...) [HKLM] -- Astro Gemini Screensaver Manager_is1
O42 - Logiciel: Atlantis Adventure - (.WildTangent.) [HKLM] -- WTA-5e82d451-bb5c-46c3-b6d8-f185b07e2d10
O42 - Logiciel: Atlantis Quest - (.Playrix Entertainment.) [HKLM] -- Atlantis Quest_is1
O42 - Logiciel: Audials - (.RapidSolution Software AG.) [HKLM] -- {CC2A20EC-24D8-4961-ACA5-7370C1B4E9EB}
O42 - Logiciel: Audials TV - (.RapidSolution Software AG.) [HKLM] -- {4044436C-3A01-4ECA-8FC9-AC8F3F838EDC}
O42 - Logiciel: Audio Recorder 1.5 - (.MediaVigor Software.) [HKLM] -- {6873814C-1E89-4ADC-A0D6-CEEE306A6416}_is1
O42 - Logiciel: AviSynth 2.5 - (...) [HKLM] -- AviSynth
O42 - Logiciel: Ballad of Solar - (.WildTangent.) [HKLM] -- WTA-02ec72bb-7eba-4177-9117-b8f2d039e094
O42 - Logiciel: Bandicam - (.Bandisoft.com.) [HKLM] -- Bandicam
O42 - Logiciel: Bandisoft MPEG-1 Decoder - (...) [HKLM] -- BandiMPEG1
O42 - Logiciel: Beadz - (...) [HKLM] -- Beadz_is1
O42 - Logiciel: Bejeweled Twist - (.WildTangent.) [HKLM] -- WTA-ea39923b-a871-494e-9992-8a53702ba18a
O42 - Logiciel: Bejeweled(R) 3 - (...) [HKLM] -- 7c1fb1922271a97a35adab643b5c756a
O42 - Logiciel: Big Fish Games: Game Manager - (...) [HKLM] -- BFGC
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B}
O42 - Logiciel: Bubble Shooter Premium Edition - (.WildTangent.) [HKLM] -- WTA-5363905b-90e0-4c46-997d-a95535e17608
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>Piriform Ltd
O42 - Logiciel: Call of Atlantis - (.Playrix Entertainment.) [HKLM] -- Call of Atlantis_is1
O42 - Logiciel: CanoScan LiDE20,30 Manual - (...) [HKLM] -- {B360A8E5-C171-4AAE-9777-65B3CDB0072C}
O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM] -- {5FD89EA1-99C2-40EE-BBF5-20F8991ED756}
O42 - Logiciel: Clusterz - (...) [HKLM] -- Clusterz_is1
O42 - Logiciel: CollageIt 1.8.5 - (.PearlMountain Technology Co., Ltd.) [HKLM] -- {D9757258-30B2-496E-86F2-84920C5858E1}_is1
O42 - Logiciel: CommentCaMarche 2.0.7 - (.PILLOU Jean-Fran�ois.) [HKLM] -- CommentCaMarche 2.0.7_is1
O42 - Logiciel: Compl�ment Messenger - (.Microsoft Corporation.) [HKLM] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}
O42 - Logiciel: Cool Record Edit Pro v7.9.3 - (.Copyright(C) 2005-2011 CoolRecordEdit Technologies, Inc..) [HKLM] -- Cool Record Edit Pro_is1
O42 - Logiciel: Cradle Of Egypt Collector's Edition - (.WildTangent.) [HKLM] -- WTA-6beb93c1-2a53-499e-9d95-22a0f4e9e32f
O42 - Logiciel: CubeDrift 1.10 - (.Dextronet.) [HKLM] -- CubeDrift_is1
O42 - Logiciel: CyberGhost VPN Patch 4.7.19 - (.CyberGhost S.R.L..) [HKLM] -- CyberGhost VPN_is1
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: DP Animation Maker - (.DesktopPaints.com.) [HKLM] -- DP Animation Maker
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU] -- Dropbox
O42 - Logiciel: Echoes Of Sorrow - (.WildTangent.) [HKLM] -- WTA-d7d765ff-f0fc-43df-a400-e8787348da94
O42 - Logiciel: Elementals - The Magic Key - (.Playrix Entertainment.) [HKLM] -- Elementals - The Magic Key_is1
O42 - Logiciel: Empress of the Deep II : Song of the Blue Whale - (.WildTangent.) [HKLM] -- WTA-ed9456f0-d670-4978-9e59-20b23f6392d2
O42 - Logiciel: Enchanted Cavern - (.WildTangent.) [HKLM] -- WTA-f34ccd9a-c306-4c95-a42b-6c823d582c51
O42 - Logiciel: Escape the Museum - (.WildTangent.) [HKLM] -- WTA-955d4eb1-f5c4-4ea9-a654-b4a73b6c9fae
O42 - Logiciel: Facebook Video Calling 1.2.0.287 - (.Skype Limited.) [HKLM] -- {B92C5909-1D37-4C51-8397-A28BB28E5DC3}
O42 - Logiciel: Fairy Island - (.Playrix Entertainment.) [HKLM] -- Fairy Island_is1
O42 - Logiciel: Fishdom - Frosty Splash - (.Playrix Entertainment.) [HKLM] -- Fishdom - Frosty Splash_is1
O42 - Logiciel: Fluttabyes - (.WildTangent.) [HKLM] -- WTA-c4d831b8-9c1e-4e97-9fce-d7dad7f20351
O42 - Logiciel: FolderIco 1.0 - (.teorex.) [HKLM] -- {22C37D82-6137-40BF-8625-7A846ED65F3A}_is1
O42 - Logiciel: Free Mp3 Wma Converter V 2.2 - (.Koyote Soft.) [HKLM] -- Free Mp3 Wma Converter_is1
O42 - Logiciel: Free Video Converter V 3.1 - (.Koyote Soft.) [HKLM] -- Free Video Converter_is1
O42 - Logiciel: Freemake Audio Converter version 1.1.0 - (.Ellora Assets Corporation.) [HKLM] -- Freemake Audio Converter_is1
O42 - Logiciel: Freemake Video Converter version 4.0.1 - (.Ellora Assets Corporation.) [HKLM] -- Freemake Video Converter_is1
O42 - Logiciel: Freemake Video Downloader - (.Ellora Assets Corporation.) [HKLM] -- Freemake Video Downloader_is1
O42 - Logiciel: FullScreen Photo Viewer 2.2 - (.4Neurons.) [HKLM] -- FullScreen Photo Viewer
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM] -- {192A227B-A8C8-4C6D-B939-21FAEB007E1E}
O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM] -- {43AC7CBC-1D6A-3B5B-81B1-A0C166FE48F4}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} =>Toolbar.Google
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Google�Earth - (.Google.) [HKLM] -- {96AD3B61-EAE2-11E2-9E72-B8AC6F98CCE3}
O42 - Logiciel: HP Advisor - (.Hewlett-Packard.) [HKLM] -- {73A43E42-3658-4DD9-8551-FACDA3632538}
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM] -- {C8D47273-7A1A-4614-A3D8-263632D8A5ED}
O42 - Logiciel: HP Customer Feedback - (.Hewlett-Packard.) [HKLM] -- {9DBA770F-BF73-4D39-B1DF-6035D95268FC}
O42 - Logiciel: HP Easy Setup - Frontend - (.Hewlett-Packard.) [HKLM] -- {1BCE2581-B7CA-4BB4-BDFB-D113506AA38B}
O42 - Logiciel: HP Games - (.WildTangent.) [HKLM] -- WildTangent hp Master Uninstall
O42 - Logiciel: HP On-Screen Cap/Num/Scroll Lock Indicator - (.Hewlett-Packard.) [HKLM] -- OsdMaestro
O42 - Logiciel: HP Photo Creations - (.HP Photo Creations Powered by RocketLife.) [HKLM] -- HP Photo Creations
O42 - Logiciel: HP Photosmart Essential 2.5 - (.HP.) [HKLM] -- HP Photosmart Essential =>.Hewlett-Packard Co
O42 - Logiciel: HP Picasso Media Center Add-In - (.HP.) [HKLM] -- {55979C41-7D6A-49CC-B591-64AC1BBE2C8B}
O42 - Logiciel: HP Product Detection - (.Hewlett-Packard Company.) [HKLM] -- {CAE7D1D9-3794-4169-B4DD-964ADBC534EE}
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {DDD5104F-1C44-49EB-9E6B-29EC5D27658B}
O42 - Logiciel: Haunted Domains - (.WildTangent.) [HKLM] -- WTA-c9289d24-b58a-47de-a6da-2c606dd66b47
O42 - Logiciel: Hewlett-Packard Active Check - (.Hewlett-Packard.) [HKLM] -- {254C37AA-6B72-4300-84F6-98A82419187E}
O42 - Logiciel: Hewlett-Packard Asset Agent for Health Check - (.HP.) [HKLM] -- {669D4A35-146B-4314-89F1-1AC3D7B88367}
O42 - Logiciel: High-Definition Video Playback - (.Nero AG.) [HKLM] -- {237CCB62-8454-43E3-B158-3ACD0134852E}
O42 - Logiciel: House of 1000 Doors: Family Secret - (.WildTangent.) [HKLM] -- WTA-b52e2987-e0e9-4448-a566-ad66ae9dcb29
O42 - Logiciel: House, MD - (.WildTangent.) [HKLM] -- WTA-a78a0c36-9c5c-4db3-9419-24c17492e9ee
O42 - Logiciel: ImageMagick 6.8.0-8 Q16 (2012-12-01) - (.ImageMagick Studio LLC.) [HKLM] -- ImageMagick 6.8.0 Q16_is1
O42 - Logiciel: Inca Ball - (.Playrix Entertainment.) [HKLM] -- Inca Ball_is1
O42 - Logiciel: Inca Ball - (.WildTangent.) [HKLM] -- WTA-84e17602-953c-4fc2-ad8b-550041333041
O42 - Logiciel: Jar of Marbles - (.WildTangent.) [HKLM] -- WTA-6a70f503-b8b8-418d-9c98-8c7bfabbdf22
O42 - Logiciel: Java 7 Update 45 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217045FF}
O42 - Logiciel: Jeux WildTangent - (.WildTangent.) [HKLM] -- WildTangent wildgames Master Uninstall
O42 - Logiciel: Jewel Quest Mysteries 2 Trail of the Midnight Heart - (.WildTangent.) [HKLM] -- WTA-e4e12af8-4e3e-4f42-8953-29f491188909
O42 - Logiciel: Jewel Quest: The Sleepless Star - Collector's Edition - (.WildTangent.) [HKLM] -- WTA-899d2e2c-082b-4c7c-8426-62969eb58591
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: K-Lite Codec Pack 7.0.0 (Standard) - (...) [HKLM] -- KLiteCodecPack_is1
O42 - Logiciel: Kong: Skull Island Adventure - (.WildTangent.) [HKLM] -- WTA-36f5fa8f-db3a-4483-8f1a-153f34f6403c
O42 - Logiciel: Lamp of Aladdin - (.WildTangent.) [HKLM] -- WTA-2dc00b22-8d62-4267-8a77-88cfab3f1d2b
O42 - Logiciel: Les Sims� 2 Deluxe - (...) [HKLM] -- {9C244239-ED8E-40f1-937F-51C706CD2160}
O42 - Logiciel: Les Sims� 2 Kit Glamour - (...) [HKLM] -- {9CDBC303-3EED-40b0-8E41-A7C65AA96C26}
O42 - Logiciel: Letters from Nowhere - (.WildTangent.) [HKLM] -- WTA-b21cbcb0-142d-43d8-b9cc-66692d3fbc2c
O42 - Logiciel: Lexmark Barre d'outils - (...) [HKLM] -- {1017A80C-6F09-4548-A84D-EDD6AC9525F0}
O42 - Logiciel: Lexmark X5400 Series - (.Lexmark International, Inc..) [HKLM] -- Lexmark X5400 Series
O42 - Logiciel: Lidl-Photos FR - (...) [HKLM] -- Lidl-Photos FR
O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM] -- {E0E55FC1-C53D-4F8D-B14B-B59C312747C8}
O42 - Logiciel: Luxor 3 - (.WildTangent.) [HKLM] -- WTA-3e66abae-3c73-4da8-8b9b-423f3a1ce2c0
O42 - Logiciel: MP Manager - (.MPMAN.) [HKLM] -- {0F91824B-7417-463B-8DC7-1530B30CD1DC}
O42 - Logiciel: MP3 Cutter 1.1.1 - (.MP3Cutter.org.) [HKLM] -- MP3 Cutter_is1
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSXML 4.0 SP2 (KB927978) - (.Microsoft Corporation.) [HKLM] -- {37477865-A3F1-4772-AD43-AAFC6BCFF99F}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: MVision - (.Logitech Inc..) [HKLM] -- {35725FBC-A136-4A46-9F29-091759D9BB93}
O42 - Logiciel: Mahjongg - Ancient Egypt - (.WildTangent.) [HKLM] -- WTA-0711dbf3-78f0-4221-9e8d-952c84242b81
O42 - Logiciel: Masquerade Mysteries - Case of the Copycat Curator - (.WildTangent.) [HKLM] -- WTA-624268d9-be74-49f5-8831-4f31038fd78f
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: Microsoft Publisher 2002 - (.Microsoft Corporation.) [HKLM] -- {9119040C-6000-11D3-8CFE-0050048383C9}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {3B160861-7250-451E-B5EE-8B92BF30A710}
O42 - Logiciel: Microsoft WorldWide Telescope - (.Microsoft Research.) [HKLM] -- {35A81F0A-A1CA-458D-8FCD-7D838E3D95FF}
O42 - Logiciel: Mysterious Worlds - The Secret of Oak Island - (.LeeGTs Games.) [HKLM] -- {0E84F2CF-7D86-4F94-9724-5046DCB91643}
O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers
O42 - Logiciel: NVIDIA ForceWare Network Access Manager - (.NVIDIA Corporation.) [HKLM] -- InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}
O42 - Logiciel: NVIDIA ForceWare Network Access Manager - (.NVIDIA Corporation.) [HKLM] -- {7CFA46E3-CC2F-4355-82AE-6012DC3633FD}
O42 - Logiciel: NeoPaint 4.7c - (.NeoSoft Corp..) [HKLM] -- {50206644-C226-498D-8273-9F5F300807E2}_is1
O42 - Logiciel: Nero BackItUp 10 - (.Nero AG.) [HKLM] -- {68AB6930-5BFF-4FF6-923B-516A91984FE6}
O42 - Logiciel: Nero BackItUp 10 Help (CHM) - (.Nero AG.) [HKLM] -- {08C8666B-C502-4AB3-B4CB-D74AC42D14FE}
O42 - Logiciel: Nero BurnRights 10 - (.Nero AG.) [HKLM] -- {943CFD7D-5336-47AF-9418-E02473A5A517}
O42 - Logiciel: Nero BurnRights 10 Help (CHM) - (.Nero AG.) [HKLM] -- {555868C6-49FB-484F-BB43-8980651A1B00}
O42 - Logiciel: Nero Control Center 10 - (.Nero AG.) [HKLM] -- {6DFB899F-17A2-48F0-A533-ED8D6866CF38}
O42 - Logiciel: Nero ControlCenter 10 Help (CHM) - (.Nero AG.) [HKLM] -- {523B2B1B-D8DB-4B41-90FF-C4D799E2758A}
O42 - Logiciel: Nero Core Components 10 - (.Nero AG.) [HKLM] -- {2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F}
O42 - Logiciel: Nero CoverDesigner 10 - (.Nero AG.) [HKLM] -- {FCF00A6E-FB58-477A-ABE9-232907105521}
O42 - Logiciel: Nero CoverDesigner 10 Help (CHM) - (.Nero AG.) [HKLM] -- {C3273C55-E1E4-41FF-8D69-0158090DB8D8}
O42 - Logiciel: Nero DiscCopy Gadget 10 - (.Nero AG.) [HKLM] -- {92EC1A84-7FFC-42DF-A8F6-79C21C4765A5}
O42 - Logiciel: Nero DiscCopyGadget 10 Help (CHM) - (.Nero AG.) [HKLM] -- {5F548A02-80BC-404D-BAE6-F05F9BF6B449}
O42 - Logiciel: Nero DiscSpeed 10 - (.Nero AG.) [HKLM] -- {34490F4E-48D0-492E-8249-B48BECF0537C}
O42 - Logiciel: Nero DiscSpeed 10 Help (CHM) - (.Nero AG.) [HKLM] -- {C18A0418-442A-4186-AF98-D08F5054A2FC}
O42 - Logiciel: Nero Express 10 - (.Nero AG.) [HKLM] -- {70550193-1C22-445C-8FA4-564E155DB1A7}
O42 - Logiciel: Nero Express 10 Help (CHM) - (.Nero AG.) [HKLM] -- {33643918-7957-4839-92C7-EA96CB621A98}
O42 - Logiciel: Nero InCD - (.Nero AG.) [HKLM] -- {59482AA7-3E30-4B5E-A52F-4101DACC2707}
O42 - Logiciel: Nero InfoTool 10 - (.Nero AG.) [HKLM] -- {F412B4AF-388C-4FF5-9B2F-33DB1C536953}
O42 - Logiciel: Nero InfoTool 10 Help (CHM) - (.Nero AG.) [HKLM] -- {66049135-9659-4AAD-9169-9CCA269EBB3E}
O42 - Logiciel: Nero Multimedia Suite 10 Essentials - (.Nero AG.) [HKLM] -- {89590A73-9AC3-48ED-B83E-6489900DED5A}
O42 - Logiciel: Nero StartSmart 10 - (.Nero AG.) [HKLM] -- {F61D489E-6C44-49AC-AD02-7DA8ACA73A65}
O42 - Logiciel: Nero StartSmart 10 Help (CHM) - (.Nero AG.) [HKLM] -- {F6117F9C-ADB5-4590-9BE4-12C7BEC28702}
O42 - Logiciel: Nero Update - (.Nero AG.) [HKLM] -- {65BB0407-4CC8-4DC7-952E-3EEFDF05602A}
O42 - Logiciel: Norton Internet Security - (.Symantec Corporation.) [HKLM] -- NIS
O42 - Logiciel: Outil de notification de cadeaux MSN - (.Microsoft Corporation.) [HKCU] -- {CAD9C0EB-457D-49BB-A6AD-389304C38B2A}
O42 - Logiciel: Outils de diagnostic du mat�riel - (.PC-Doctor, Inc..) [HKLM] -- PC-Doctor 5 for Windows
O42 - Logiciel: PC Camera - (.Nom de votre soci�t�.) [HKLM] -- InstallShield_{F4749535-2B87-498A-B74D-0A01B174E36D}
O42 - Logiciel: PDFTiger - (...) [HKLM] -- PDFTiger_is1
O42 - Logiciel: PDFTiger Kernel - (...) [HKLM] -- {DE252510-5687-4C60-A705-C43E19F12C9D}_is1
O42 - Logiciel: PDFTigerDriver - (...) [HKLM] -- {AEM384L1-28E3-1232-1233-1JD74JDIEK32}_is1
O42 - Logiciel: Paint.NET v3.5.6 - (.dotPDN LLC.) [HKLM] -- {639673E9-D53F-44F4-A046-485C8A6ADA15}
O42 - Logiciel: Path to Tao screensaver - (.www.path-to-tao.info.) [HKLM] -- {88C0CCC8-7629-49CF-807A-602A740C2523}_is1
O42 - Logiciel: Photoupz 1.6 - (.Smartopic Ltd.) [HKLM] -- Photoupz
O42 - Logiciel: Potion Bar - (.Playrix Entertainment.) [HKLM] -- Potion Bar_is1
O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: Programme de gestion Camera de Logitech� - (...) [HKLM] -- QcDrv
O42 - Logiciel: Puzkend - (.WildTangent.) [HKLM] -- WTA-e9af5e18-945a-4c2f-8288-0116e3c1e558
O42 - Logiciel: Python 2.5 - (.Martin v. L�wis.) [HKLM] -- {0A2C5854-557E-48C8-835A-3B9F074BDCAA}
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}
O42 - Logiciel: Rainbow Web 2 - (.WildTangent.) [HKLM] -- WTA-c7aaab56-018b-4fb6-87d8-ec77fa4af24d
O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {DC24971E-1946-445D-8A82-CE685433FA7D}
O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44}
O42 - Logiciel: SES Driver - (.Western Digital.) [HKLM] -- {0673654C-5296-453B-9798-B61CD7E03FEB}
O42 - Logiciel: Scepter of Ra - (.WildTangent.) [HKLM] -- WTA-dfa24795-82b7-4370-aa2c-66d02794774c
O42 - Logiciel: Screenseven! GAME CENTER - (.INTENIUM GmbH.) [HKLM] -- FranceGPlayer
O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {5DD4FCBD-A3C1-4155-9E17-4161C70AAABA}
O42 - Logiciel: Skype� 6.7 - (.Skype Technologies S.A..) [HKLM] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}
O42 - Logiciel: Software Informer 1.0 BETA - (.Informer Technologies, Inc..) [HKLM] -- Software Informer_is1
O42 - Logiciel: Solution de clavier multim�dia am�lior� - (.Hewlett-Packard.) [HKLM] -- KBD
O42 - Logiciel: Splotches - (...) [HKCU] -- Splotches
O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU] -- Spotify
O42 - Logiciel: Streaming Audio Recorder V2.3.2 - (.Apowersoft.) [HKLM] -- {B6D9D06B-4B4D-4B41-B963-C056B627F704}_is1
O42 - Logiciel: Super Clicks - (.ALLCinema Ltd..) [HKLM] -- Super Clicks_is1
O42 - Logiciel: SystemTweaker - (.Uniblue Systems Ltd.) [HKLM] -- {DBB1F4ED-3212-4F58-A427-9C01DE4A24A5}_is1
O42 - Logiciel: TSST OEM Content - (.Nero AG.) [HKLM] -- {885AFEC2-0809-47CE-8B3F-00AEC19DDD5F}
O42 - Logiciel: The Book of Desires - (.WildTangent.) [HKLM] -- WTA-e9572752-a043-4a85-b3e1-9b9c0fa272e1
O42 - Logiciel: The Lord of the Rings FREE Trial - (.ATI Technologies Inc..) [HKLM] -- {8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}
O42 - Logiciel: The Lost Kingdom Prophecy - (.INTENIUM GmbH.) [HKLM] -- The Lost Kingdom Prophecy
O42 - Logiciel: The Lost Kingdom Prophecy - (.Playrix Entertainment.) [HKLM] -- The Lost Kingdom Prophecy_is1
O42 - Logiciel: The Treasures of Montezuma 3 - (.WildTangent.) [HKLM] -- WTA-088ba775-9934-4369-a77a-c85d8485561a
O42 - Logiciel: Tipard DVD Ripper 6.1.20 - (...) [HKLM] -- {CB31166F-62E4-4172-8186-16E539B1096B}_is1
O42 - Logiciel: TotalAudioConverter - (.Softplicity, Inc..) [HKLM] -- Total Audio Converter_is1
O42 - Logiciel: Treasure Island 2 - (.WildTangent.) [HKLM] -- WTA-4b2ab33d-ce68-49df-8e9a-34f8c185d666
O42 - Logiciel: Treasures of the Deep - (.WildTangent.) [HKLM] -- WTA-ed844f3e-7397-4e43-b45f-d518fe094d24
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU] -- UnityWebPlayer
O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM] -- Unlocker
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App
O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM] -- {933B4015-4618-4716-A828-5289FC03165F}
O42 - Logiciel: VLC media player 2.0.8 - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN
O42 - Logiciel: Vacation Quest - The Hawaiian Islands - (.WildTangent.) [HKLM] -- WTA-ade0f9ed-bee1-43be-8092-4671cbac9141
O42 - Logiciel: Veetle TV 0.9.18 - (.Veetle, Inc.) [HKLM] -- Veetle TV
O42 - Logiciel: WD SmartWare - (.Western Digital.) [HKLM] -- {BC3804E5-77CC-47A0-8BD5-797355A26BA3}
O42 - Logiciel: WellMahjong - (...) [HKLM] -- WellMahjong_is1
O42 - Logiciel: WildTangent Games App (HP Games) - (.WildTangent.) [HKLM] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp
O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-wildgames
O42 - Logiciel: WinCDEmu - (.Bazis.) [HKLM] -- WinCDEmu
O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM] -- WinPcapInst
O42 - Logiciel: WinRAR 4.00 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} =>.Microsoft Corporation
O42 - Logiciel: Wondershare DVD Slideshow Builder Deluxe(Build 6.1.13.0) - (.WonderShare Software Co.,Ltd..) [HKLM] -- Wondershare DVD Slideshow Builder Deluxe_is1
O42 - Logiciel: Wondershare Photo Collage Studio 4.2.16.5 - (.Wondershare Software Co.,Ltd..) [HKLM] -- Wondershare Photo Collage Studio GOTD Edition_is1
O42 - Logiciel: Wondershare Player(Build 1.6.0) - (.Wondershare.) [HKLM] -- Wondershare Player_is1
O42 - Logiciel: World Mosaics 4 - (.WildTangent.) [HKLM] -- WTA-7901c467-549b-4022-99b3-9bfe5e2602ff
O42 - Logiciel: Zuma's Revenge - (.WildTangent.) [HKLM] -- WT079624
O42 - Logiciel: Zylom Games Player Plugin - (.Zylom Games.) [HKLM] -- Zylom Games Player Plugin
O42 - Logiciel: ccc-Branding - (.ATI.) [HKLM] -- {4F027497-15AE-4DE5-B3BC-8E721C6127DE}
O42 - Logiciel: ffdshow v1.3.4500 [2013-01-06] - (...) [HKLM] -- ffdshow_is1
O42 - Logiciel: freeTunes�3.0 - (.Engelmann Media GmbH.) [HKLM] -- {447E3935-A085-42D4-0001-8BE5E4034B40}
O42 - Logiciel: iCare Data Recovery 4.0 - (.iCare Software.) [HKLM] -- iCare Data Recovery_is1
O42 - Logiciel: iCare Undelete Free 1.0 - (.iCare Undelete Free, Inc..) [HKLM] -- {1742DA45-189C-4257-86E1-BFA70F97A799}_is1
O42 - Logiciel: icomancer 1.3.2.101 - (.lavasoftworks.com.) [HKLM] -- {4304ADDC-824B-4888-A6E7-F8E48D7FDBBD}_is1
O42 - Logiciel: mediAvatar Photo to Flash - (.mediAvatar.) [HKLM] -- mediAvatar Photo to Flash
O42 - Logiciel: muvee autoProducer 6.1 - (.muvee Technologies.) [HKLM] -- {5115C036-C0D5-4E1B-81C9-542CA967478A}
~ Logic: 392 Scanned in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\20 days v1.0]
[HKCU\Software\8.1]
[HKCU\Software\ABBYY]
[HKCU\Software\AC3Filter]
[HKCU\Software\AOL]
[HKCU\Software\ASProtect]
[HKCU\Software\ATI Technologies Inc.]
[HKCU\Software\ATI]
[HKCU\Software\Adobe]
[HKCU\Software\Advanced PC Tweaker] =>Rogue.AdvancedPCTweaker
[HKCU\Software\Affinix]
[HKCU\Software\Aiseesoft Studio]
[HKCU\Software\Alawar]
[HKCU\Software\Almeza]
[HKCU\Software\Amazon]
[HKCU\Software\Antanda]
[HKCU\Software\AppDataLow\RealNetworks]
[HKCU\Software\AppDataLow\Software\JavaSoft]
[HKCU\Software\AppDataLow\Software\MarkAny]
[HKCU\Software\AppDataLow\Software\Unity]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\ArcSoft]
[HKCU\Software\Astro Gemini Software]
[HKCU\Software\Audacity]
[HKCU\Software\BANDISOFT]
[HKCU\Software\BandiMPEG1]
[HKCU\Software\Bendigo]
[HKCU\Software\Big Fish Games]
[HKCU\Software\Boonty]
[HKCU\Software\Borland]
[HKCU\Software\BrowserTemp]
[HKCU\Software\CBS Interactive]
[HKCU\Software\CDDB]
[HKCU\Software\CMD]
[HKCU\Software\Caphyon]
[HKCU\Software\CeWe Color]
[HKCU\Software\Classes]
[HKCU\Software\Clicks]
[HKCU\Software\Clients]
[HKCU\Software\CodeGear]
[HKCU\Software\Cool Record Edit Pro]
[HKCU\Software\CyberLink]
[HKCU\Software\Cygnus Solutions]
[HKCU\Software\Datastead]
[HKCU\Software\DesktopPaints.com]
[HKCU\Software\Dextrogames]
[HKCU\Software\DivXNetworks]
[HKCU\Software\EasyBits]
[HKCU\Software\Elcor Software]
[HKCU\Software\Engelmann Media]
[HKCU\Software\Enrico Ros]
[HKCU\Software\Episode Downloader]
[HKCU\Software\Facebook]
[HKCU\Software\Fenomen Games]
[HKCU\Software\FlyOrDie]
[HKCU\Software\FotoWire]
[HKCU\Software\FreeCDRIP]
[HKCU\Software\Freemake]
[HKCU\Software\Fridgesoft]
[HKCU\Software\Fugazo]
[HKCU\Software\FullScreen Photo Viewer]
[HKCU\Software\GNU]
[HKCU\Software\Gabest]
[HKCU\Software\Good games]
[HKCU\Software\Google]
[HKCU\Software\HP Guide]
[HKCU\Software\HP]
[HKCU\Software\Haali]
[HKCU\Software\Helmsman]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\HookNetwork]
[HKCU\Software\IE]
[HKCU\Software\IM Providers]
[HKCU\Software\ImageMagick]
[HKCU\Software\Informer Technologies, Inc.]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\Karlis Blumentals]
[HKCU\Software\KasperskyLab]
[HKCU\Software\Legacy Interactive]
[HKCU\Software\Lexmark X5400 Series]
[HKCU\Software\LexmarkInkjet]
[HKCU\Software\Lexmark]
[HKCU\Software\LightScribe]
[HKCU\Software\Ligos]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\Logitech]
[HKCU\Software\MP3DO]
[HKCU\Software\MPMAN]
[HKCU\Software\Macromedia]
[HKCU\Software\Macrovision]
[HKCU\Software\MainConcept (Muvee)]
[HKCU\Software\MainConcept]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\Media Research Group]
[HKCU\Software\MediaInfo]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\NeoSoft]
[HKCU\Software\Nero]
[HKCU\Software\Netscape]
[HKCU\Software\Norton]
[HKCU\Software\ODBC]
[HKCU\Software\Olivier Lapicque]
[HKCU\Software\PCWinSoft]
[HKCU\Software\Paint.NET]
[HKCU\Software\PearlMountainSoft]
[HKCU\Software\Photoupz]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\PopCap] =>Adware.PopCap
[HKCU\Software\PrtScr]
[HKCU\Software\RapidSolution]
[HKCU\Software\RealNetworks]
[HKCU\Software\Red Chain]
[HKCU\Software\S.A.D]
[HKCU\Software\Sahmon Studio]
[HKCU\Software\Samsung]
[HKCU\Software\SecuROM]
[HKCU\Software\ShiningMorning]
[HKCU\Software\Shiny Tales]
[HKCU\Software\Silverback Productions]
[HKCU\Software\SkypeApps]
[HKCU\Software\SkypeRS]
[HKCU\Software\Skype]
[HKCU\Software\Softplicity]
[HKCU\Software\Spotlife]
[HKCU\Software\Streaming Audio Recorder]
[HKCU\Software\SuperSoftwarePackage]
[HKCU\Software\Swift Creek Games LLC]
[HKCU\Software\Symantec]
[HKCU\Software\SysProgs]
[HKCU\Software\TeamViewer]
[HKCU\Software\TeleCharger]
[HKCU\Software\TeleCharger_v2]
[HKCU\Software\Teorex]
[HKCU\Software\Test3D]
[HKCU\Software\Thraex Software]
[HKCU\Software\Tific]
[HKCU\Software\Tipard Studio]
[HKCU\Software\Topckit]
[HKCU\Software\Transcend Elite]
[HKCU\Software\Trolltech]
[HKCU\Software\UniPhiz]
[HKCU\Software\Unity]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\Veetle]
[HKCU\Software\VideoToMp3]
[HKCU\Software\VirtualDub.org]
[HKCU\Software\Visan]
[HKCU\Software\Western Digital]
[HKCU\Software\WildTangent]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Wondershare]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\Zebra-Media]
[HKCU\Software\Zylom]
[HKCU\Software\giveawayoftheday.com]
[HKCU\Software\iCare]
[HKCU\Software\intenium]
[HKCU\Software\madFlac]
[HKCU\Software\mediAvatar]
[HKCU\Software\unpacker]
[HKLM\Software\685D6D1C-D73A-4F37-B7E5E53660311DDB]
[HKLM\Software\ABBYY]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\Adobe]
[HKLM\Software\AdwCleaner]
[HKLM\Software\Alawar]
[HKLM\Software\America Online]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\ArcSoft]
[HKLM\Software\Ashampoo]
[HKLM\Software\BANDISOFT]
[HKLM\Software\BackWeb]
[HKLM\Software\Big Fish Games]
[HKLM\Software\Boonty]
[HKLM\Software\CBS Interactive]
[HKLM\Software\CDDB]
[HKLM\Software\CLSID]
[HKLM\Software\CMD]
[HKLM\Software\Canon]
[HKLM\Software\Caphyon]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Codec Tweak Tool]
[HKLM\Software\Copernic]
[HKLM\Software\CyberLink]
[HKLM\Software\Cygnus Solutions]
[HKLM\Software\DEUTSCHLAND SPIELT Spiele Post]
[HKLM\Software\Debug]
[HKLM\Software\DivXNetworks]
[HKLM\Software\DivX]
[HKLM\Software\Dropbox]
[HKLM\Software\EA GAMES]
[HKLM\Software\Electronic Arts]
[HKLM\Software\Emsi Software GmbH]
[HKLM\Software\Engelmann Media]
[HKLM\Software\Freemake]
[HKLM\Software\GEAR Software]
[HKLM\Software\GNU]
[HKLM\Software\GameInstaller]
[HKLM\Software\Google]
[HKLM\Software\HPS]
[HKLM\Software\HP]
[HKLM\Software\HaaliMkx]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\IM Providers]
[HKLM\Software\ImageMagick]
[HKLM\Software\InstallShield]
[HKLM\Software\Intel]
[HKLM\Software\InterVideo]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\KLCodecPack]
[HKLM\Software\Khronos]
[HKLM\Software\Le courrier de La Boutique des Jeux]
[HKLM\Software\LexmarkInkjet]
[HKLM\Software\Lexmark]
[HKLM\Software\Licenses]
[HKLM\Software\LightScribe]
[HKLM\Software\Logitech]
[HKLM\Software\Macromedia]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\McAfee.com]
[HKLM\Software\MimarSinan]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\NeoSoft]
[HKLM\Software\Nero]
[HKLM\Software\Norton]
[HKLM\Software\Nuance]
[HKLM\Software\ODBC]
[HKLM\Software\OldTimer Tools]
[HKLM\Software\PC-Doctor]
[HKLM\Software\PCWinSoft]
[HKLM\Software\PDFCreator]
[HKLM\Software\Paint.NET]
[HKLM\Software\Piriform]
[HKLM\Software\PixArt]
[HKLM\Software\Policies]
[HKLM\Software\QuickCamInstallTemp]
[HKLM\Software\RapidSolution]
[HKLM\Software\RealNetworks]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\ReflexiveArcade]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\RichFX]
[HKLM\Software\RocketLife]
[HKLM\Software\S.A.D]
[HKLM\Software\SRS Labs]
[HKLM\Software\Samsung]
[HKLM\Software\Shield]
[HKLM\Software\ShiningMorning]
[HKLM\Software\Skype]
[HKLM\Software\Sonic]
[HKLM\Software\Symantec]
[HKLM\Software\Techcity]
[HKLM\Software\Thraex Software]
[HKLM\Software\TuneUp]
[HKLM\Software\UNREAL]
[HKLM\Software\Uniblue]
[HKLM\Software\Veetle]
[HKLM\Software\VideoLAN]
[HKLM\Software\VideoToMp3]
[HKLM\Software\Visan]
[HKLM\Software\Volatile]
[HKLM\Software\Western Digital]
[HKLM\Software\WholeSecurity]
[HKLM\Software\WildTangent]
[HKLM\Software\WinPcap]
[HKLM\Software\WinRAR]
[HKLM\Software\Windows]
[HKLM\Software\Wondershare]
[HKLM\Software\Wow6432Node]
[HKLM\Software\Xing Technology Corp.]
[HKLM\Software\ahead]
[HKLM\Software\iCare]
[HKLM\Software\illiminable]
[HKLM\Software\mediAvatar]
[HKLM\Software\mozilla.org]
[HKLM\Software\muvee Technologies]
[HKLM\Software\noname]
[HKLM\Software\oxxogames]
[HKLM\Software\qvPDF]
~ Key Software: 465 Scanned in 00mn 01s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 05/07/2011 - 07:58:42 - [4,876] ----D C:\Program Files\1AVCapture
O43 - CFD: 08/03/2011 - 11:58:37 - [115,536] ----D C:\Program Files\Abbyy FineReader 6.0 Sprint
O43 - CFD: 16/06/2011 - 15:14:01 - [157,986] ----D C:\Program Files\Adobe
O43 - CFD: 16/09/2011 - 18:15:04 - [62,746] ----D C:\Program Files\Aiseesoft Studio
O43 - CFD: 24/11/2010 - 19:11:59 - [0,311] ----D C:\Program Files\Alawar
O43 - CFD: 21/04/2011 - 17:50:15 - [5,942] ----D C:\Program Files\All Sound Recorder Vista
O43 - CFD: 18/10/2010 - 16:37:34 - [12,951] ----D C:\Program Files\Almeza
O43 - CFD: 18/09/2010 - 15:32:58 - [2,370] ----D C:\Program Files\AOL
O43 - CFD: 11/05/2013 - 22:44:40 - [35,494] ----D C:\Program Files\Apowersoft
O43 - CFD: 09/07/2011 - 08:25:23 - [2,316] ----D C:\Program Files\Apple Software Update =>.Apple Inc
O43 - CFD: 18/09/2010 - 16:30:55 - [94,124] ----D C:\Program Files\ArcSoft
O43 - CFD: 10/02/2013 - 17:52:48 - [0,711] ----D C:\Program Files\Astro Gemini Software
O43 - CFD: 24/02/2011 - 15:35:51 - [17,083] ----D C:\Program Files\ATI
O43 - CFD: 24/02/2011 - 15:35:43 - [20,040] ----D C:\Program Files\ATI Stream
O43 - CFD: 24/02/2011 - 17:42:02 - [40,153] ----D C:\Program Files\ATI Technologies
O43 - CFD: 03/02/2011 - 23:15:34 - [5,919] ----D C:\Program Files\Audio Recorder
O43 - CFD: 05/07/2011 - 07:58:44 - [0,425] ----D C:\Program Files\AviSynth 2.5
O43 - CFD: 01/02/2011 - 18:37:37 - [1,563] ----D C:\Program Files\AVN Products
O43 - CFD: 10/05/2011 - 15:25:29 - [17,861] ----D C:\Program Files\Bandicam
O43 - CFD: 10/05/2011 - 15:24:48 - [6,826] ----D C:\Program Files\BandiMPEG1
O43 - CFD: 27/09/2011 - 22:50:49 - [22,762] ----D C:\Program Files\bfgclient
O43 - CFD: 29/12/2011 - 21:01:29 - [0,602] ----D C:\Program Files\Bonjour
O43 - CFD: 11/03/2012 - 23:13:50 - [5,128] ----D C:\Program Files\BoontyGames
O43 - CFD: 30/11/2011 - 11:26:32 - [0] ----D C:\Program Files\Call Of Atlantis
O43 - CFD: 31/01/2013 - 16:07:01 - [3,955] ----D C:\Program Files\Canon
O43 - CFD: 24/10/2013 - 07:46:04 - [5,583] ----D C:\Program Files\CCleaner =>Piriform Ltd
O43 - CFD: 30/01/2012 - 21:31:38 - [20,077] ----D C:\Program Files\CollageIt
O43 - CFD: 08/04/2011 - 09:58:03 - [46,380] ----D C:\Program Files\CommentCaMarche
O43 - CFD: 27/10/2013 - 10:25:31 - [765,216] ----D C:\Program Files\Common Files
O43 - CFD: 22/07/2011 - 18:23:55 - [14,190] ----D C:\Program Files\Cool Record Edit Pro
O43 - CFD: 09/07/2011 - 22:30:13 - [13,411] ----D C:\Program Files\CubeDrift
O43 - CFD: 12/09/2013 - 08:43:18 - [64,735] ----D C:\Program Files\CyberGhost VPN
O43 - CFD: 06/03/2008 - 06:17:09 - [701,106] ----D C:\Program Files\CyberLink
O43 - CFD: 12/02/2011 - 01:24:45 - [0,056] ----D C:\Program Files\Digital Physiognomy
O43 - CFD: 27/10/2013 - 10:25:40 - [25,486] ----D C:\Program Files\DivX
O43 - CFD: 29/10/2011 - 15:30:21 - [8,956] ----D C:\Program Files\DP Animation Maker
O43 - CFD: 07/05/2013 - 16:07:58 - [63,991] ----D C:\Program Files\Dropbox
O43 - CFD: 04/10/2010 - 10:03:11 - [0,470] ----D C:\Program Files\e-Carte Bleue La Banque Postale
O43 - CFD: 18/09/2010 - 23:05:56 - [1649,065] ----D C:\Program Files\EA GAMES
O43 - CFD: 14/03/2012 - 10:25:26 - [1,803] ----D C:\Program Files\Easy GIF Animator
O43 - CFD: 18/09/2010 - 23:13:59 - [0,861] ----D C:\Program Files\Easy Gif Animator Extension
O43 - CFD: 06/03/2008 - 13:43:16 - [49,120] ----D C:\Program Files\EasyBits
O43 - CFD: 02/02/2013 - 23:49:27 - [169,420] ----D C:\Program Files\Echoes of the Past - La Malediction d'Orion
O43 - CFD: 01/10/2011 - 18:10:16 - [16,331] ----D C:\Program Files\Egyptoid
O43 - CFD: 22/01/2012 - 15:41:01 - [3,247] ----D C:\Program Files\Engelmann Media
O43 - CFD: 23/08/2013 - 08:19:45 - [0,017] ----D C:\Program Files\Flyordie Plugin
O43 - CFD: 16/11/2010 - 20:59:32 - [3,409] ----D C:\Program Files\FolderIco
O43 - CFD: 13/10/2010 - 10:37:25 - [22,248] ----D C:\Program Files\Free Audio Pack
O43 - CFD: 19/04/2012 - 14:49:46 - [25,855] ----D C:\Program Files\Free mp3 Wma Converter
O43 - CFD: 19/01/2013 - 16:14:29 - [152,671] ----D C:\Program Files\Freemake
O43 - CFD: 31/01/2013 - 16:21:03 - [0] ----D C:\Program Files\Full Uninstall
O43 - CFD: 27/10/2013 - 11:30:40 - [0,368] ----D C:\Program Files\FullScreen Photo Viewer
O43 - CFD: 27/07/2013 - 16:44:08 - [697,439] ----D C:\Program Files\Google
O43 - CFD: 19/09/2010 - 18:56:09 - [86,198] ----D C:\Program Files\Hewlett-Packard
O43 - CFD: 23/03/2011 - 22:39:13 - [37,036] ----D C:\Program Files\HP
O43 - CFD: 09/12/2010 - 20:45:04 - [964,096] ----D C:\Program Files\HP Games
O43 - CFD: 10/10/2010 - 18:52:30 - [0,352] ----D C:\Program Files\HP Photo Creations
O43 - CFD: 16/07/2012 - 18:09:55 - [6,597] ----D C:\Program Files\iCare Data Recovery
O43 - CFD: 04/11/2010 - 16:33:45 - [4,297] ----D C:\Program Files\iCare Undelete Free
O43 - CFD: 30/04/2013 - 12:05:44 - [19,128] ----D C:\Program Files\icomancer
O43 - CFD: 30/04/2013 - 09:51:23 - [69,870] ----D C:\Program Files\ImageMagick-6.8.0-Q16
O43 - CFD: 31/01/2013 - 16:06:59 - [85,716] --H-D C:\Program Files\InstallShield Installation Information
O43 - CFD: 17/10/2013 - 03:05:02 - [14,778] ----D C:\Program Files\Internet Explorer
O43 - CFD: 30/04/2013 - 09:01:27 - [127,855] ----D C:\Program Files\Java
O43 - CFD: 16/07/2012 - 18:09:56 - [38,139] ----D C:\Program Files\K-Lite Codec Pack
O43 - CFD: 24/01/2013 - 20:43:45 - [33,430] ----D C:\Program Files\LeeGTs Games
O43 - CFD: 29/03/2011 - 04:47:59 - [7,600] ----D C:\Program Files\Lexmark Toolbar
O43 - CFD: 26/02/2013 - 12:10:32 - [102,810] ----D C:\Program Files\Lexmark X5400 Series
O43 - CFD: 19/10/2013 - 14:10:27 - [196,670] ----D C:\Program Files\Lidl-Photos
O43 - CFD: 17/07/2012 - 00:39:21 - [9,084] ----D C:\Program Files\Logitech
O43 - CFD: 06/11/2010 - 18:30:05 - [2,414] ----D C:\Program Files\MarkAny
O43 - CFD: 03/04/2011 - 16:54:21 - [70,420] ----D C:\Program Files\mediAvatar
O43 - CFD: 26/01/2013 - 12:21:24 - [0,502] ----D C:\Program Files\Microsoft
O43 - CFD: 02/11/2006 - 13:37:34 - [89,117] ----D C:\Program Files\Microsoft Games
O43 - CFD: 18/09/2010 - 17:05:38 - [317,210] ----D C:\Program Files\Microsoft Office
O43 - CFD: 25/01/2011 - 10:29:36 - [95,788] ----D C:\Program Files\Microsoft Research
O43 - CFD: 17/10/2013 - 08:43:10 - [40,851] ----D C:\Program Files\Microsoft Silverlight
O43 - CFD: 18/09/2010 - 17:56:16 - [1,745] ----D C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 11/10/2012 - 09:32:46 - [137,975] ----D C:\Program Files\Microsoft Works
O43 - CFD: 24/09/2010 - 09:46:58 - [0,023] ----D C:\Program Files\Microsoft.NET
O43 - CFD: 24/09/2010 - 10:35:34 - [94,740] ----D C:\Program Files\Movie Maker
O43 - CFD: 31/10/2013 - 16:30:10 - [2,025] ----D C:\Program Files\Mozilla Firefox
O43 - CFD: 02/11/2006 - 13:37:34 - [0,025] ----D C:\Program Files\MSBuild
O43 - CFD: 06/03/2008 - 06:17:53 - [147,929] ----D C:\Program Files\muvee Technologies
O43 - CFD: 09/05/2011 - 10:27:33 - [5,445] ----D C:\Program Files\NeoPaint
O43 - CFD: 11/01/2013 - 20:42:43 - [558,459] ----D C:\Program Files\Nero
O43 - CFD: 20/05/2013 - 08:30:59 - [108,740] ----D C:\Program Files\Norton Internet Security
O43 - CFD: 20/05/2013 - 08:30:34 - [13,663] ----D C:\Program Files\NortonInstaller
O43 - CFD: 07/06/2011 - 10:23:15 - [54,269] ----D C:\Program Files\NVIDIA Corporation
O43 - CFD: 19/09/2010 - 18:56:53 - [6,397] R---D C:\Program Files\Online Services
O43 - CFD: 20/12/2010 - 13:11:21 - [18,076] ----D C:\Program Files\OXXOGames
O43 - CFD: 05/07/2011 - 07:59:40 - [29,544] ----D C:\Program Files\Paint.NET
O43 - CFD: 14/03/2012 - 10:25:38 - [0,655] ----D C:\Program Files\Path to Tao
O43 - CFD: 14/03/2012 - 10:25:38 - [0,156] ----D C:\Program Files\PC Camera
O43 - CFD: 23/08/2012 - 18:06:24 - [0] ----D C:\Program Files\PC Tools Registry Mechanic
O43 - CFD: 31/01/2013 - 10:01:12 - [135,819] ----D C:\Program Files\PC-Doctor 5 for Windows
O43 - CFD: 27/10/2010 - 18:49:05 - [16,801] ----D C:\Program Files\PDFTiger
O43 - CFD: 01/12/2011 - 22:25:04 - [1,714] ----D C:\Program Files\Photoupz
O43 - CFD: 01/06/2013 - 11:13:41 - [502,728] ----D C:\Program Files\Playrix Entertainment
O43 - CFD: 29/06/2013 - 19:15:58 - [0,096] ----D C:\Program Files\Premium Booster
O43 - CFD: 29/06/2013 - 19:18:35 - [12,192] ----D C:\Program Files\PrtScr
O43 - CFD: 25/04/2013 - 18:57:23 - [74,698] ----D C:\Program Files\QuickTime
O43 - CFD: 27/10/2010 - 18:49:21 - [42,041] ----D C:\Program Files\qvPDF
O43 - CFD: 04/07/2011 - 20:42:34 - [237,026] ----D C:\Program Files\RapidSolution
O43 - CFD: 30/06/2011 - 22:18:11 - [16,160] ----D C:\Program Files\real
O43 - CFD: 16/03/2011 - 20:36:26 - [2,044] ----D C:\Program Files\RealArcade
O43 - CFD: 26/02/2011 - 22:48:09 - [129,893] ----D C:\Program Files\Realtek
O43 - CFD: 02/11/2006 - 13:37:34 - [36,910] ----D C:\Program Files\Reference Assemblies
O43 - CFD: 10/11/2010 - 20:25:49 - [0,008] ----D C:\Program Files\ReflexiveArcade
O43 - CFD: 06/11/2010 - 18:34:59 - [47,144] ----D C:\Program Files\Samsung
O43 - CFD: 11/12/2012 - 00:05:22 - [32,401] ----D C:\Program Files\Screenseven
O43 - CFD: 11/12/2012 - 00:04:55 - [5,532] ----D C:\Program Files\ShiningMorning
O43 - CFD: 25/09/2013 - 05:17:01 - [20,004] R---D C:\Program Files\Skype
O43 - CFD: 01/12/2012 - 18:25:39 - [40,382] ----D C:\Program Files\Splotches
O43 - CFD: 05/03/2011 - 17:00:17 - [15,996] ----D C:\Program Files\Super Clicks
O43 - CFD: 20/05/2013 - 08:35:49 - [0] ----D C:\Program Files\Symantec
O43 - CFD: 18/03/2013 - 21:48:46 - [0,001] ----D C:\Program Files\TeamViewer
O43 - CFD: 23/07/2012 - 11:30:41 - [0,006] ----D C:\Program Files\Techcity
O43 - CFD: 11/09/2013 - 09:29:36 - [0] --H-D C:\Program Files\Temp
O43 - CFD: 24/07/2011 - 22:05:46 - [60,459] ----D C:\Program Files\Tipard Studio
O43 - CFD: 21/06/2012 - 08:30:27 - [15,429] ----D C:\Program Files\TotalAudioConverter
O43 - CFD: 31/10/2013 - 16:47:17 - [17,739] ----D C:\Program Files\Uniblue
O43 - CFD: 27/10/2013 - 00:01:19 - [0,046] ----D C:\Program Files\Uninstaller
O43 - CFD: 07/10/2013 - 21:07:05 - [0,221] ----D C:\Program Files\Unlocker
O43 - CFD: 28/02/2011 - 12:49:39 - [9,945] ----D C:\Program Files\Veetle
O43 - CFD: 23/09/2010 - 09:42:55 - [103,032] ----D C:\Program Files\VideoLAN
O43 - CFD: 29/06/2013 - 19:15:31 - [0] ----D C:\Program Files\VS Revo Group
O43 - CFD: 01/08/2011 - 17:15:15 - [12,767] ----D C:\Program Files\Wellgames.com
O43 - CFD: 28/09/2011 - 08:27:18 - [30,182] ----D C:\Program Files\Western Digital
O43 - CFD: 01/04/2012 - 21:54:32 - [-633,144] ----D C:\Program Files\WildGames
O43 - CFD: 17/08/2013 - 17:51:16 - [999,712] ----D C:\Program Files\WildTangent Games
O43 - CFD: 05/08/2012 - 11:18:51 - [2,295] ----D C:\Program Files\WinCDEmu
O43 - CFD: 24/09/2010 - 10:35:34 - [0,970] ----D C:\Program Files\Windows Calendar
O43 - CFD: 24/09/2010 - 10:35:32 - [2,610] ----D C:\Program Files\Windows Collaboration
O43 - CFD: 24/09/2010 - 10:35:26 - [4,283] ----D C:\Program Files\Windows Defender
O43 - CFD: 11/07/2013 - 06:05:15 - [6,757] ----D C:\Program Files\Windows Journal
O43 - CFD: 22/01/2013 - 12:01:56 - [155,927] ----D C:\Program Files\Windows Live
O43 - CFD: 17/04/2012 - 06:40:20 - [8,694] ----D C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 18/09/2010 - 16:00:30 - [2,691] ----D C:\Program Files\Windows Media Components
O43 - CFD: 15/10/2010 - 07:04:19 - [4,598] ----D C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 05/07/2011 - 08:00:14 - [7,589] ----D C:\Program Files\Windows NT
O43 - CFD: 24/09/2010 - 10:35:30 - [12,902] ----D C:\Program Files\Windows Photo Gallery
O43 - CFD: 27/09/2010 - 04:22:39 - [0,128] ----D C:\Program Files\Windows Portable Devices
O43 - CFD: 24/09/2010 - 10:35:33 - [25,558] ----D C:\Program Files\Windows Sidebar
O43 - CFD: 16/11/2011 - 21:19:21 - [0,180] ----D C:\Program Files\WinPcap
O43 - CFD: 07/04/2011 - 07:30:58 - [3,954] ----D C:\Program Files\WinRAR
O43 - CFD: 29/06/2013 - 14:17:53 - [213,955] ----D C:\Program Files\Wondershare
O43 - CFD: 31/10/2013 - 17:46:52 - [17,049] ----D C:\Program Files\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 19/03/2011 - 22:34:46 - [0,487] ----D C:\Program Files\Zylom Games
O43 - CFD: 13/09/2013 - 17:47:11 - [3,338] ----D C:\Program Files\Common Files\Adobe
O43 - CFD: 30/01/2012 - 22:42:20 - [87,895] ----D C:\Program Files\Common Files\Apple
O43 - CFD: 06/03/2011 - 00:18:51 - [0,066] ----D C:\Program Files\Common Files\BOONTY Shared
O43 - CFD: 18/09/2010 - 16:57:27 - [0,082] ----D C:\Program Files\Common Files\Designer
O43 - CFD: 28/03/2011 - 16:21:43 - [32,236] ----D C:\Program Files\Common Files\HDX4
O43 - CFD: 06/03/2008 - 06:10:48 - [3,841] ----D C:\Program Files\Common Files\HP
O43 - CFD: 06/03/2008 - 06:34:53 - [12,494] ----D C:\Program Files\Common Files\InstallShield
O43 - CFD: 17/10/2013 - 00:21:00 - [1,191] ----D C:\Program Files\Common Files\Java
O43 - CFD: 11/01/2013 - 19:30:09 - [37,376] ---AD C:\Program Files\Common Files\LightScribe
O43 - CFD: 17/07/2012 - 00:39:34 - [27,048] ----D C:\Program Files\Common Files\logishrd
O43 - CFD: 18/09/2010 - 16:03:08 - [28,680] ----D C:\Program Files\Common Files\Logitech
O43 - CFD: 06/03/2008 - 06:17:18 - [0,054] ---AD C:\Program Files\Common Files\LS Getting Started
O43 - CFD: 02/08/2011 - 09:17:46 - [322,530] ----D C:\Program Files\Common Files\microsoft shared
O43 - CFD: 06/03/2008 - 06:17:54 - [47,111] ----D C:\Program Files\Common Files\muvee Technologies
O43 - CFD: 11/01/2013 - 20:27:40 - [47,531] ----D C:\Program Files\Common Files\Nero
O43 - CFD: 13/09/2013 - 09:25:23 - [9,341] ----D C:\Program Files\Common Files\PAC207
O43 - CFD: 23/08/2012 - 18:05:41 - [0] ----D C:\Program Files\Common Files\PC Tools
O43 - CFD: 27/03/2011 - 11:00:25 - [4,521] ----D C:\Program Files\Common Files\PX Storage Engine
O43 - CFD: 04/11/2010 - 06:54:07 - [0,085] ----D C:\Program Files\Common Files\Real
O43 - CFD: 04/10/2011 - 20:49:19 - [0,070] ----D C:\Program Files\Common Files\Samsung
O43 - CFD: 02/11/2006 - 12:18:33 - [0,003] ----D C:\Program Files\Common Files\Services
O43 - CFD: 30/05/2013 - 07:57:50 - [1,904] ----D C:\Program Files\Common Files\Skype
O43 - CFD: 02/11/2006 - 12:18:33 - [39,198] ----D C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 20/05/2013 - 09:37:19 - [5,263] ----D C:\Program Files\Common Files\Symantec Shared
O43 - CFD: 10/11/2011 - 00:01:57 - [20,388] ----D C:\Program Files\Common Files\System
O43 - CFD: 18/09/2010 - 17:07:24 - [0] ----D C:\Program Files\Common Files\Windows Live
O43 - CFD: 29/06/2013 - 14:16:33 - [32,636] ----D C:\Program Files\Common Files\Wondershare
O43 - CFD: 30/06/2011 - 22:18:06 - [0,336] ----D C:\Program Files\Common Files\xing shared
O43 - CFD: 19/04/2013 - 16:13:59 - [0,001] ----D C:\ProgramData\10tons
O43 - CFD: 24/01/2013 - 18:53:24 - [111,993] ----D C:\ProgramData\1912 Titanic Mystery
O43 - CFD: 26/11/2011 - 18:06:09 - [3,698] ----D C:\ProgramData\20 days v1.0
O43 - CFD: 24/01/2013 - 20:44:16 - [0,021] ----D C:\ProgramData\3rd Eye Solutions
O43 - CFD: 19/04/2013 - 15:54:10 - [0,001] ----D C:\ProgramData\Absolutist
O43 - CFD: 12/11/2012 - 08:21:17 - [183,101] ----D C:\ProgramData\Adobe
O43 - CFD: 16/09/2011 - 18:15:04 - [0] ----D C:\ProgramData\Aiseesoft Studio
O43 - CFD: 24/02/2011 - 15:34:45 - [0,002] ----D C:\ProgramData\AMD
O43 - CFD: 29/12/2011 - 21:04:56 - [142,502] ----D C:\ProgramData\Apple
O43 - CFD: 25/04/2013 - 18:56:34 - [25,486] ----D C:\ProgramData\Apple Computer
O43 - CFD: 02/11/2006 - 14:02:03 - [0] -SH-D C:\ProgramData\Application Data
O43 - CFD: 31/10/2011 - 21:43:58 - [0,003] ----D C:\ProgramData\Arcade Lab
O43 - CFD: 24/02/2011 - 15:40:43 - [0] ----D C:\ProgramData\ATI
O43 - CFD: 18/08/2011 - 21:45:14 - [0] ----D C:\ProgramData\BigFish
O43 - CFD: 06/03/2011 - 00:20:08 - [18,132] ----D C:\ProgramData\BOONTY
O43 - CFD: 18/09/2010 - 15:29:10 - [0] -SH-D C:\ProgramData\Bureau
O43 - CFD: 18/11/2011 - 19:23:22 - [0] ----D C:\ProgramData\cerasus.media
O43 - CFD: 24/07/2012 - 20:36:16 - [0] --H-D C:\ProgramData\Common Files
O43 - CFD: 02/10/2010 - 14:27:12 - [0,009] ----D C:\ProgramData\CyberLink
O43 - CFD: 02/11/2006 - 14:02:03 - [0] -SH-D C:\ProgramData\Desktop
O43 - CFD: 27/10/2013 - 10:25:40 - [0,152] ----D C:\ProgramData\DivX
O43 - CFD: 02/11/2006 - 14:02:03 - [0] -SH-D C:\ProgramData\Documents
O43 - CFD: 03/11/2010 - 15:19:34 - [0] ----D C:\ProgramData\Driver Mender
O43 - CFD: 01/03/2011 - 16:46:35 - [0] ----D C:\ProgramData\Driver Whiz
O43 - CFD: 21/10/2010 - 22:21:51 - [0] ----D C:\ProgramData\Elephant Games
O43 - CFD: 28/03/2011 - 16:22:01 - [0,195] ----D C:\ProgramData\Engelmann Media
O43 - CFD: 04/11/2010 - 12:56:50 - [0,005] ----D C:\ProgramData\EscapeTheMuseum
O43 - CFD: 09/12/2011 - 21:46:34 - [0] ----D C:\ProgramData\FaceOffMax
O43 - CFD: 18/09/2010 - 15:29:10 - [0] -SH-D C:\ProgramData\Favoris
O43 - CFD: 02/11/2006 - 14:02:03 - [0] -SH-D C:\ProgramData\Favorites
O43 - CFD: 09/04/2011 - 14:46:34 - [0,061] ----D C:\ProgramData\Fenomen Games
O43 - CFD: 04/04/2013 - 19:55:20 - [0,001] ----D C:\ProgramData\Forge of Games
O43 - CFD: 03/08/2012 - 20:33:43 - [11,934] ----D C:\ProgramData\Freemake
O43 - CFD: 31/07/2011 - 16:13:24 - [13,518] ----D C:\ProgramData\Fugazo
O43 - CFD: 26/03/2013 - 22:54:13 - [0,002] ----D C:\ProgramData\Funny Bear Studio
O43 - CFD: 12/11/2012 - 08:23:28 - [0,012] ----D C:\ProgramData\Google
O43 - CFD: 18/09/2010 - 15:39:40 - [2,360] ----D C:\ProgramData\Hewlett-Packard
O43 - CFD: 06/03/2008 - 06:10:48 - [0,048] ----D C:\ProgramData\HP
O43 - CFD: 10/10/2010 - 18:53:18 - [35,402] ----D C:\ProgramData\HP Photo Creations
O43 - CFD: 24/10/2013 - 17:16:35 - [0,384] ----D C:\ProgramData\hps
O43 - CFD: 18/03/2013 - 00:08:42 - [1,071] ----D C:\ProgramData\InstallMate =>PUP.Tarma
O43 - CFD: 21/11/2012 - 19:33:42 - [0,662] ----D C:\ProgramData\Intenium
O43 - CFD: 01/05/2011 - 07:16:05 - [0,206] ----D C:\ProgramData\Kaspersky Lab
O43 - CFD: 30/04/2013 - 09:50:20 - [21,822] ----D C:\ProgramData\LAVA SoftWorks
O43 - CFD: 02/06/2011 - 19:08:54 - [0] ----D C:\ProgramData\Licenses
O43 - CFD: 25/10/2010 - 10:22:18 - [0] ----D C:\ProgramData\LightScribe
O43 - CFD: 17/07/2012 - 00:39:21 - [0] ----D C:\ProgramData\Logishrd
O43 - CFD: 27/10/2013 - 23:28:25 - [0,041] ----D C:\ProgramData\lx_cats
O43 - CFD: 21/05/2011 - 11:38:15 - [9,687] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 19/09/2010 - 11:25:45 - [0] ----D C:\ProgramData\McAfee
O43 - CFD: 18/09/2010 - 15:29:10 - [0] -SH-D C:\ProgramData\Menu D�marrer
O43 - CFD: 17/07/2012 - 00:51:53 - [690,614] ----D C:\ProgramData\Microsoft
O43 - CFD: 18/09/2010 - 15:29:10 - [0] -SH-D C:\ProgramData\Mod�les
O43 - CFD: 04/05/2012 - 19:24:50 - [0,022] ----D C:\ProgramData\Mozilla
O43 - CFD: 19/02/2011 - 22:00:57 - [0,001] ----D C:\ProgramData\MumboJumbo
O43 - CFD: 06/03/2008 - 06:17:53 - [0] ----D C:\ProgramData\muvee Technologies
O43 - CFD: 11/01/2013 - 20:33:50 - [3,677] ----D C:\ProgramData\Nero
O43 - CFD: 20/05/2013 - 08:30:57 - [879,597] ----D C:\ProgramData\Norton
O43 - CFD: 02/06/2011 - 19:14:23 - [8,666] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 17/10/2013 - 00:53:13 - [0] ----D C:\ProgramData\Oracle
O43 - CFD: 24/11/2010 - 08:49:33 - [0] ----D C:\ProgramData\PC Drivers HeadQuarters
O43 - CFD: 06/03/2008 - 06:23:32 - [0,001] ----D C:\ProgramData\PC-Doctor
O43 - CFD: 02/06/2011 - 19:14:23 - [0] ----D C:\ProgramData\PCSettings
O43 - CFD: 22/01/2012 - 15:23:41 - [0] ----D C:\ProgramData\PearlMountainSoft
O43 - CFD: 05/01/2013 - 15:13:43 - [0,481] ----D C:\ProgramData\Playrix Entertainment
O43 - CFD: 04/07/2011 - 20:42:45 - [214,448] ----D C:\ProgramData\RapidSolution
O43 - CFD: 28/10/2012 - 18:07:58 - [1,652] ----D C:\ProgramData\Real
O43 - CFD: 13/09/2012 - 08:12:54 - [1,363] ----D C:\ProgramData\Samsung
O43 - CFD: 23/04/2013 - 21:56:46 - [0,008] ----D C:\ProgramData\ScreenSeven
O43 - CFD: 28/08/2011 - 21:21:58 - [70,143] ----D C:\ProgramData\ShinyTales
O43 - CFD: 25/09/2013 - 05:17:10 - [164,960] ----D C:\ProgramData\Skype
O43 - CFD: 05/07/2011 - 23:06:11 - [8,867] ----D C:\ProgramData\Skype Extras
O43 - CFD: 02/11/2006 - 14:02:03 - [0] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 24/05/2011 - 19:40:36 - [0,080] ----D C:\ProgramData\SugarGames
O43 - CFD: 18/09/2010 - 16:13:14 - [0] ----D C:\ProgramData\Sun
O43 - CFD: 02/06/2011 - 19:33:25 - [0] ----D C:\ProgramData\Symantec
O43 - CFD: 17/10/2013 - 11:10:13 - [0] ---AD C:\ProgramData\TEMP
O43 - CFD: 02/11/2006 - 14:02:04 - [0] -SH-D C:\ProgramData\Templates
O43 - CFD: 16/11/2010 - 21:00:08 - [0,002] ----D C:\ProgramData\Teorex
O43 - CFD: 17/05/2013 - 18:09:24 - [0] ----D C:\ProgramData\ThumbnailCache4R
O43 - CFD: 24/07/2011 - 22:05:46 - [0] ----D C:\ProgramData\Tipard Studio
O43 - CFD: 20/10/2013 - 17:56:24 - [0,002] ----D C:\ProgramData\tmp
O43 - CFD: 31/10/2013 - 16:47:10 - [0] ----D C:\ProgramData\Uniblue
O43 - CFD: 10/10/2010 - 18:53:23 - [0] ----D C:\ProgramData\Visan
O43 - CFD: 28/09/2011 - 08:28:48 - [62,316] ----D C:\ProgramData\Western Digital
O43 - CFD: 24/03/2013 - 00:58:11 - [731,582] ----D C:\ProgramData\WildTangent
O43 - CFD: 14/12/2011 - 22:44:17 - [0] ----D C:\ProgramData\WindowsSearch
O43 - CFD: 29/09/2013 - 13:44:18 - [4,132] ----D C:\ProgramData\Wondershare
O43 - CFD: 31/10/2013 - 12:27:33 - [7,693] ----D C:\ProgramData\Wondershare Player
O43 - CFD: 19/03/2011 - 22:34:46 - [22,012] ----D C:\ProgramData\Zylom
O43 - CFD: 24/07/2012 - 20:36:17 - [22,941] -SH-D C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936}
O43 - CFD: 19/04/2013 - 16:13:59 - [0] ----D C:\Users\kathy\AppData\Roaming\10tons
O43 - CFD: 27/02/2011 - 10:15:24 - [0] ----D C:\Users\kathy\AppData\Roaming\4Media
O43 - CFD: 05/03/2011 - 19:37:15 - [12,875] ----D C:\Users\kathy\AppData\Roaming\Adobe
O43 - CFD: 14/05/2012 - 19:36:26 - [8,382] ----D C:\Users\kathy\AppData\Roaming\Apowersoft
O43 - CFD: 20/03/2011 - 19:29:14 - [0,212] ----D C:\Users\kathy\AppData\Roaming\Apple Computer
O43 - CFD: 18/09/2010 - 19:11:06 - [0,002] ----D C:\Users\kathy\AppData\Roaming\ArcSoft
O43 - CFD: 15/05/2011 - 17:30:46 - [0,009] ----D C:\Users\kathy\AppData\Roaming\Arkadium
O43 - CFD: 27/04/2012 - 08:41:34 - [0,618] ----D C:\Users\kathy\AppData\Roaming\Artifex Mundi
O43 - CFD: 10/02/2013 - 17:52:38 - [4,611] ----D C:\Users\kathy\AppData\Roaming\Astro Gemini Software
O43 - CFD: 18/09/2010 - 15:39:23 - [0] ----D C:\Users\kathy\AppData\Roaming\ATI
O43 - CFD: 04/10/2010 - 16:04:01 - [0,001] ----D C:\Users\kathy\AppData\Roaming\Audacity
O43 - CFD: 22/02/2012 - 22:09:00 - [0,303] ----D C:\Users\kathy\AppData\Roaming\Awem
O43 - CFD: 10/05/2011 - 16:36:16 - [0] ----D C:\Users\kathy\AppData\Roaming\BANDISOFT
O43 - CFD: 18/08/2011 - 21:45:14 - [0,117] ----D C:\Users\kathy\AppData\Roaming\BigFish
O43 - CFD: 14/11/2011 - 19:32:21 - [0,004] ----D C:\Users\kathy\AppData\Roaming\BlitzCards
O43 - CFD: 28/12/2010 - 20:52:01 - [0,215] ----D C:\Users\kathy\AppData\Roaming\Boomzap
O43 - CFD: 19/04/2013 - 22:26:03 - [0,008] ----D C:\Users\kathy\AppData\Roaming\Casual Box
O43 - CFD: 18/11/2011 - 19:23:20 - [0,004] ----D C:\Users\kathy\AppData\Roaming\cerasus.media
O43 - CFD: 20/08/2011 - 18:45:44 - [0] ----D C:\Users\kathy\AppData\Roaming\ChemTable Software
O43 - CFD: 23/07/2011 - 10:35:07 - [0,006] ----D C:\Users\kathy\AppData\Roaming\Cool Record Edit Pro
O43 - CFD: 09/10/2011 - 22:13:58 - [0] ----D C:\Users\kathy\AppData\Roaming\CyberLink
O43 - CFD: 22/04/2011 - 23:42:22 - [0,163] ----D C:\Users\kathy\AppData\Roaming\DivX
O43 - CFD: 31/10/2013 - 17:25:57 - [77,510] ----D C:\Users\kathy\AppData\Roaming\Dropbox
O43 - CFD: 31/12/2012 - 00:38:02 - [0] ----D C:\Users\kathy\AppData\Roaming\dvdcss
O43 - CFD: 17/07/2012 - 00:44:52 - [0,202] ----D C:\Users\kathy\AppData\Roaming\DVDVideoSoft
O43 - CFD: 09/02/2013 - 17:21:05 - [3,538] ----D C:\Users\kathy\AppData\Roaming\ElementalsTheMagicKey
O43 - CFD: 21/10/2010 - 22:21:51 - [2,475] ----D C:\Users\kathy\AppData\Roaming\Elephant Games
O43 - CFD: 01/04/2012 - 22:17:53 - [0] ----D C:\Users\kathy\AppData\Roaming\EnchantedCavern
O43 - CFD: 22/01/2012 - 15:41:01 - [0,003] ----D C:\Users\kathy\AppData\Roaming\Engelmann Media
O43 - CFD: 25/10/2011 - 19:11:59 - [0,003] ----D C:\Users\kathy\AppData\Roaming\Enlightenus
O43 - CFD: 15/04/2013 - 20:52:45 - [1,807] ----D C:\Users\kathy\AppData\Roaming\EurekaLog
O43 - CFD: 09/12/2011 - 21:44:10 - [0] ----D C:\Users\kathy\AppData\Roaming\FaceOffMax
O43 - CFD: 09/02/2012 - 23:26:32 - [0,074] ----D C:\Users\kathy\AppData\Roaming\Fenomen Games
O43 - CFD: 22/01/2012 - 16:00:11 - [0,001] ----D C:\Users\kathy\AppData\Roaming\Free Sound Recorder
O43 - CFD: 03/10/2010 - 21:18:44 - [0,001] ----D C:\Users\kathy\AppData\Roaming\FreeAudioPack
O43 - CFD: 04/10/2010 - 12:12:56 - [0,001] ----D C:\Users\kathy\AppData\Roaming\FreeCDRipper
O43 - CFD: 19/01/2013 - 19:15:20 - [0] ----D C:\Users\kathy\AppData\Roaming\FreemakeVideoDownloader
O43 - CFD: 31/10/2013 - 12:10:39 - [0,002] ----D C:\Users\kathy\AppData\Roaming\FreeVideoConverter
O43 - CFD: 31/07/2011 - 16:25:02 - [0,003] ----D C:\Users\kathy\AppData\Roaming\Friday's games
O43 - CFD: 19/04/2012 - 14:46:35 - [0] ----D C:\Users\kathy\AppData\Roaming\GetRightToGo
O43 - CFD: 12/11/2012 - 08:25:51 - [0] ----D C:\Users\kathy\AppData\Roaming\Google
O43 - CFD: 27/02/2011 - 12:19:51 - [3,926] ----D C:\Users\kathy\AppData\Roaming\HandBrake
O43 - CFD: 18/09/2010 - 15:39:36 - [0,312] ----D C:\Users\kathy\AppData\Roaming\Hewlett-Packard
O43 - CFD: 30/10/2013 - 17:05:18 - [0,059] ----D C:\Users\kathy\AppData\Roaming\HpUpdate
O43 - CFD: 23/12/2010 - 10:16:29 - [0,001] ----D C:\Users\kathy\AppData\Roaming\Identities
O43 - CFD: 07/01/2011 - 20:45:56 - [0] ----D C:\Users\kathy\AppData\Roaming\InstallShield
O43 - CFD: 09/09/2013 - 08:02:16 - [10,841] ----D C:\Users\kathy\AppData\Roaming\Kingston
O43 - CFD: 30/04/2013 - 09:51:05 - [0,010] ----D C:\Users\kathy\AppData\Roaming\LAVA SoftWorks
O43 - CFD: 06/04/2013 - 09:18:56 - [0,136] ----D C:\Users\kathy\AppData\Roaming\Lexmark Productivity Studio
O43 - CFD: 26/09/2010 - 16:59:57 - [0,003] ----D C:\Users\kathy\AppData\Roaming\Macromedia
O43 - CFD: 20/10/2010 - 17:03:48 - [0,007] ----D C:\Users\kathy\AppData\Roaming\Magic Academy
O43 - CFD: 21/05/2011 - 11:39:07 - [17,733] ----D C:\Users\kathy\AppData\Roaming\Malwarebytes
O43 - CFD: 02/11/2006 - 13:37:34 - [0] ----D C:\Users\kathy\AppData\Roaming\Media Center Programs
O43 - CFD: 14/10/2011 - 21:55:36 - [0] ----D C:\Users\kathy\AppData\Roaming\Media Player Classic
O43 - CFD: 03/04/2011 - 16:55:10 - [0,013] ----D C:\Users\kathy\AppData\Roaming\mediAvatar
O43 - CFD: 22/01/2013 - 17:28:25 - [91,791] -S--D C:\Users\kathy\AppData\Roaming\Microsoft
O43 - CFD: 24/10/2013 - 16:57:57 - [77,568] ----D C:\Users\kathy\AppData\Roaming\Mozilla
O43 - CFD: 09/06/2011 - 12:28:13 - [0,004] ----D C:\Users\kathy\AppData\Roaming\MP-Manager
O43 - CFD: 09/06/2011 - 09:31:28 - [112,892] ----D C:\Users\kathy\AppData\Roaming\MPMAN
O43 - CFD: 07/03/2013 - 15:55:00 - [0,174] ----D C:\Users\kathy\AppData\Roaming\Nero
O43 - CFD: 13/11/2011 - 22:55:44 - [0,004] ----D C:\Users\kathy\AppData\Roaming\Orneon
O43 - CFD: 22/01/2012 - 15:23:41 - [0,003] ----D C:\Users\kathy\AppData\Roaming\PearlMountainSoft
O43 - CFD: 27/02/2011 - 15:44:59 - [0] ----D C:\Users\kathy\AppData\Roaming\PeerNetworking
O43 - CFD: 26/09/2010 - 16:59:57 - [0] ----D C:\Users\kathy\AppData\Roaming\PlayFirst
O43 - CFD: 28/10/2012 - 18:07:49 - [58,543] ----D C:\Users\kathy\AppData\Roaming\Real
O43 - CFD: 13/09/2012 - 08:13:29 - [0,063] ----D C:\Users\kathy\AppData\Roaming\Samsung
O43 - CFD: 18/09/2011 - 18:24:00 - [0,027] ----D C:\Users\kathy\AppData\Roaming\Saved Games
O43 - CFD: 07/10/2010 - 12:28:20 - [0] R-H-D C:\Users\kathy\AppData\Roaming\SecuROM
O43 - CFD: 24/11/2010 - 18:10:40 - [0,024] ----D C:\Users\kathy\AppData\Roaming\Shape games
O43 - CFD: 01/04/2012 - 21:49:20 - [0,044] ----D C:\Users\kathy\AppData\Roaming\Silverback Productions
O43 - CFD: 31/10/2013 - 17:24:29 - [13,530] ----D C:\Users\kathy\AppData\Roaming\Skype
O43 - CFD: 09/07/2011 - 06:09:28 - [0,045] ----D C:\Users\kathy\AppData\Roaming\skypePM
O43 - CFD: 14/06/2011 - 12:07:51 - [0] ----D C:\Users\kathy\AppData\Roaming\Softplicity
O43 - CFD: 09/05/2011 - 11:37:48 - [0,060] ----D C:\Users\kathy\AppData\Roaming\SpinTop Games
O43 - CFD: 31/10/2013 - 17:52:06 - [4,194] ----D C:\Users\kathy\AppData\Roaming\Spotify
O43 - CFD: 18/09/2010 - 15:39:16 - [0] ----D C:\Users\kathy\AppData\Roaming\Symantec
O43 - CFD: 22/03/2011 - 16:59:53 - [0,013] ----D C:\Users\kathy\AppData\Roaming\Template
O43 - CFD: 11/09/2011 - 15:44:07 - [0,002] ----D C:\Users\kathy\AppData\Roaming\TheGreatPharaoh
O43 - CFD: 09/07/2011 - 12:56:51 - [0,048] ----D C:\Users\kathy\AppData\Roaming\Tific
O43 - CFD: 24/01/2013 - 18:54:44 - [0,006] ----D C:\Users\kathy\AppData\Roaming\TitanicMystery
O43 - CFD: 18/07/2011 - 10:06:44 - [0] ----D C:\Users\kathy\AppData\Roaming\Transcend Elite
O43 - CFD: 31/10/2013 - 16:47:17 - [0,614] ----D C:\Users\kathy\AppData\Roaming\Uniblue
O43 - CFD: 02/02/2012 - 22:53:03 - [0] ----D C:\Users\kathy\AppData\Roaming\Unity
O43 - CFD: 23/12/2010 - 10:16:35 - [0,004] ----D C:\Users\kathy\AppData\Roaming\VampireSaga
O43 - CFD: 29/10/2013 - 18:29:03 - [0,077] ----D C:\Users\kathy\AppData\Roaming\vlc
O43 - CFD: 25/09/2010 - 22:32:49 - [1,357] ----D C:\Users\kathy\AppData\Roaming\vlc(27)
O43 - CFD: 24/03/2013 - 00:58:20 - [10,094] ----D C:\Users\kathy\AppData\Roaming\WildTangent
O43 - CFD: 19/09/2010 - 18:42:39 - [0] ----D C:\Users\kathy\AppData\Roaming\WinBatch
O43 - CFD: 22/02/2011 - 17:21:04 - [0] ----D C:\Users\kathy\AppData\Roaming\Windows Live Writer
O43 - CFD: 07/01/2011 - 20:44:55 - [0] ----D C:\Users\kathy\AppData\Roaming\WinRAR
O43 - CFD: 21/07/2011 - 14:30:33 - [0,199] ----D C:\Users\kathy\AppData\Roaming\X5400 Series
O43 - CFD: 27/04/2013 - 21:50:59 - [0,007] ----D C:\Users\kathy\AppData\Roaming\YoudaGames
O43 - CFD: 31/10/2013 - 17:53:12 - [0,021] ----D C:\Users\kathy\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 23/12/2010 - 10:16:29 - [0,252] ----D C:\Users\kathy\AppData\Roaming\Zylom
O43 - CFD: 27/10/2013 - 00:40:58 - [0,561] ----D C:\Users\kathy\AppData\Local\Adobe
O43 - CFD: 16/09/2011 - 18:15:26 - [0] ----D C:\Users\kathy\AppData\Local\Aiseesoft Studio
O43 - CFD: 18/10/2012 - 14:28:20 - [85,550] ----D C:\Users\kathy\AppData\Local\Amazon
O43 - CFD: 24/02/2011 - 15:42:50 - [0] ----D C:\Users\kathy\AppData\Local\AMD
O43 - CFD: 18/09/2010 - 15:50:05 - [0,011] ----D C:\Users\kathy\AppData\Local\AOL
O43 - CFD: 20/03/2011 - 19:02:06 - [0] ----D C:\Users\kathy\AppData\Local\Apple
O43 - CFD: 20/03/2011 - 23:54:13 - [0,792] ----D C:\Users\kathy\AppData\Local\Apple Computer
O43 - CFD: 18/09/2010 - 15:32:31 - [0] -SH-D C:\Users\kathy\AppData\Local\Application Data
O43 - CFD: 30/10/2010 - 19:11:52 - [0] ----D C:\Users\kathy\AppData\Local\Apps
O43 - CFD: 18/09/2010 - 15:39:23 - [0,057] ----D C:\Users\kathy\AppData\Local\ATI
O43 - CFD: 07/01/2012 - 22:39:56 - [0,001] ----D C:\Users\kathy\AppData\Local\ChemTable Software
O43 - CFD: 03/01/2012 - 10:50:41 - [0] ----D C:\Users\kathy\AppData\Local\Chromium
O43 - CFD: 05/03/2011 - 17:00:16 - [0,037] ----D C:\Users\kathy\AppData\Local\Clicks
O43 - CFD: 18/09/2010 - 18:31:42 - [0,028] ----D C:\Users\kathy\AppData\Local\Cooliris
O43 - CFD: 31/10/2013 - 17:00:38 - [0] ----D C:\Users\kathy\AppData\Local\CrashDumps
O43 - CFD: 01/04/2011 - 19:19:32 - [0] ----D C:\Users\kathy\AppData\Local\CrashRpt
O43 - CFD: 30/10/2010 - 19:12:16 - [0] ----D C:\Users\kathy\AppData\Local\Deployment
O43 - CFD: 12/09/2012 - 22:14:15 - [248,192] ----D C:\Users\kathy\AppData\Local\Downloaded Installations
O43 - CFD: 17/01/2011 - 18:06:57 - [0] ----D C:\Users\kathy\AppData\Local\DVDVideoSoft_Ltd
O43 - CFD: 01/09/2011 - 07:20:52 - [0,181] ----D C:\Users\kathy\AppData\Local\ElevatedDiagnostics
O43 - CFD: 08/12/2012 - 07:46:20 - [7,432] ----D C:\Users\kathy\AppData\Local\Facebook
O43 - CFD: 01/06/2011 - 21:00:47 - [0,001] ----D C:\Users\kathy\AppData\Local\Freemake
O43 - CFD: 29/07/2012 - 16:38:09 - [0,232] ----D C:\Users\kathy\AppData\Local\FreemakeMusicBox
O43 - CFD: 26/04/2013 - 19:42:12 - [0,001] ----D C:\Users\kathy\AppData\Local\FreemakeVideoConverter
O43 - CFD: 27/10/2013 - 00:00:34 - [231,298] ----D C:\Users\kathy\AppData\Local\Google
O43 - CFD: 18/09/2010 - 18:51:19 - [0,004] ----D C:\Users\kathy\AppData\Local\Hewlett-Packard
O43 - CFD: 18/09/2010 - 15:32:31 - [0] -SH-D C:\Users\kathy\AppData\Local\Historique
O43 - CFD: 30/04/2013 - 15:05:13 - [0,002] ----D C:\Users\kathy\AppData\Local\LAVA_SoftWorks
O43 - CFD: 17/06/2012 - 19:10:04 - [0] ----D C:\Users\kathy\AppData\Local\Macromedia
O43 - CFD: 11/12/2012 - 00:04:53 - [0] ----D C:\Users\kathy\AppData\Local\MagicCamera
O43 - CFD: 09/12/2012 - 17:14:53 - [1982,004] ----D C:\Users\kathy\AppData\Local\Microsoft
O43 - CFD: 26/09/2010 - 20:54:28 - [0,968] ----D C:\Users\kathy\AppData\Local\Microsoft Games
O43 - CFD: 25/01/2011 - 14:57:55 - [0,003] ----D C:\Users\kathy\AppData\Local\Microsoft_Research
O43 - CFD: 18/09/2010 - 18:05:54 - [60,510] ----D C:\Users\kathy\AppData\Local\Mozilla
O43 - CFD: 16/03/2012 - 22:09:25 - [0] ----D C:\Users\kathy\AppData\Local\Paint.NET
O43 - CFD: 01/04/2011 - 19:29:22 - [262,757] ----D C:\Users\kathy\AppData\Local\RapidSolution
O43 - CFD: 04/05/2011 - 14:09:46 - [0,043] ----D C:\Users\kathy\AppData\Local\Samsung
O43 - CFD: 30/10/2013 - 20:22:44 - [1398,282] ----D C:\Users\kathy\AppData\Local\Spotify
O43 - CFD: 09/07/2011 - 12:56:49 - [0,001] ----D C:\Users\kathy\AppData\Local\Symantec
O43 - CFD: 31/10/2013 - 17:56:31 - [3,053] ----D C:\Users\kathy\AppData\Local\Temp
O43 - CFD: 18/09/2010 - 15:32:31 - [0] -SH-D C:\Users\kathy\AppData\Local\Temporary Internet Files
O43 - CFD: 24/07/2011 - 22:06:13 - [0] ----D C:\Users\kathy\AppData\Local\Tipard Studio
O43 - CFD: 02/02/2012 - 17:37:00 - [0,200] ----D C:\Users\kathy\AppData\Local\Unity
O43 - CFD: 18/09/2010 - 16:07:13 - [-600,806] ----D C:\Users\kathy\AppData\Local\VirtualStore
O43 - CFD: 24/10/2011 - 18:17:39 - [0,641] ----D C:\Users\kathy\AppData\Local\Western Digital
O43 - CFD: 28/09/2011 - 19:00:49 - [0] ----D C:\Users\kathy\AppData\Local\Western_Digital
O43 - CFD: 26/12/2012 - 12:25:31 - [0,504] ----D C:\Users\kathy\AppData\Local\Windows Live
O43 - CFD: 08/07/2011 - 16:06:34 - [0,618] ----D C:\Users\kathy\AppData\Local\Windows Live Writer
O43 - CFD: 29/06/2013 - 14:16:43 - [0] ----D C:\Users\kathy\AppData\Local\Wondershare
O43 - CFD: 17/03/2011 - 11:58:37 - [62,206] ----D C:\Users\kathy\AppData\Local\Zylom
O43 - CFD: 12/03/2012 - 01:18:59 - [6,575] ----D C:\Users\kathy\AppData\Local\Zylom Games
O43 - CFD: 06/03/2008 - 06:09:22 - [0,014] R---D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 18/09/2010 - 15:39:00 - [0] R---D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 24/11/2010 - 19:11:58 - [0,002] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Alawar Games
O43 - CFD: 18/10/2012 - 14:27:29 - [0,004] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon
O43 - CFD: 01/02/2011 - 18:37:51 - [0] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AviSynth 2.5
O43 - CFD: 29/10/2011 - 15:30:25 - [0,004] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DP Animation Maker
O43 - CFD: 28/09/2013 - 16:41:48 - [0,003] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
O43 - CFD: 17/08/2011 - 23:58:52 - [0,002] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Echoes of the Past - La Malediction d'Orion
O43 - CFD: 11/01/2013 - 20:26:22 - [0,005] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
O43 - CFD: 27/10/2013 - 11:30:40 - [0,003] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FullScreen Photo Viewer
O43 - CFD: 21/11/2012 - 19:33:28 - [0,001] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LA BOUTIQEU DES JEUX
O43 - CFD: 06/03/2008 - 06:09:22 - [0,001] R---D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 27/10/2013 - 12:34:11 - [0,003] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MP Manager
O43 - CFD: 09/07/2011 - 12:55:11 - [0,001] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Norton
O43 - CFD: 01/12/2012 - 18:25:45 - [0,002] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Splotches
O43 - CFD: 27/10/2013 - 00:04:42 - [0,002] R---D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 03/11/2010 - 15:42:15 - [0,004] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
O43 - CFD: 06/04/2011 - 23:11:37 - [0,002] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 14/03/2012 - 10:24:59 - [0,001] ----D C:\Users\kathy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zylom Games
~ Program Folder: 432 Scanned in 02mn 05s



---\\ Derniers fichiers modifi�s ou cr�es sous Windows et System32 (O44)
O44 - LFC:[MD5.658633D255FEF154EA1CB8705B4468C5] - 17/10/2013 - 00:19:48 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\java.exe [174504]
O44 - LFC:[MD5.DC1342498BEE7EF1646E9D63138B69CC] - 17/10/2013 - 00:19:48 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\javaw.exe [175016]
O44 - LFC:[MD5.9223A2810B73069F4A03A636052EF14A] - 17/10/2013 - 00:19:48 ---A- . (.Oracle Corporation - Java(TM) Web Start Launcher.) -- C:\Windows\System32\javaws.exe [264616]
O44 - LFC:[MD5.9BF46C7F21E75FA0BB03AA93368CC66C] - 17/10/2013 - 00:19:50 ---A- . (.Oracle Corporation - Pas de description.) -- C:\Windows\System32\WindowsAccessBridge.dll [94632]
O44 - LFC:[MD5.9C5CC7677B63F939D980D16953438B45] - 17/10/2013 - 02:29:25 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\System32\ieframe.dll [9739264]
O44 - LFC:[MD5.F46A58EC9183CB2B24326A41CDDE1FAE] - 17/10/2013 - 02:29:29 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [12336128]
O44 - LFC:[MD5.8CDB5EC48867F571455B1C6875E033D3] - 17/10/2013 - 02:29:30 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [1104896]
O44 - LFC:[MD5.EB311F8C0DBE714A4A6E63AD22245A28] - 17/10/2013 - 02:29:30 ---A- . (.Microsoft Corporation - Panneau de configuration Internet.) -- C:\Windows\System32\inetcpl.cpl [1427968]
O44 - LFC:[MD5.D2A365FCB3492C01F7A6273F747BDD0A] - 17/10/2013 - 02:29:31 ---A- . (.Microsoft Corporation - Run time utility for Internet Explorer.) -- C:\Windows\System32\iertutil.dll [1796096]
O44 - LFC:[MD5.AF0FEB5AEFE8440F78DDCFDAA742EE63] - 17/10/2013 - 02:29:32 ---A- . (.Microsoft Corporation - Internet Shortcut Shell Extension DLL.) -- C:\Windows\System32\url.dll [231936]
O44 - LFC:[MD5.9CE9B5DDE7017DF600DC29EFC3E832A7] - 17/10/2013 - 02:29:33 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript.dll [717824]
O44 - LFC:[MD5.D71C425BBC059CBFEE99328AF6D4D340] - 17/10/2013 - 02:29:33 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript9.dll [1800704]
O44 - LFC:[MD5.C8ADAA6948993D839D14524847EA5B75] - 17/10/2013 - 02:29:34 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1129472]
O44 - LFC:[MD5.DE4C23B8F2F277ECF9692428DC9B5A22] - 17/10/2013 - 02:29:34 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\System32\msfeeds.dll [607744]
O44 - LFC:[MD5.3B0B665ECDC46A32395FF2F430B8680E] - 17/10/2013 - 02:29:35 ---A- . (.Microsoft Corporation - JScript Proxy Auto-Configuration.) -- C:\Windows\System32\jsproxy.dll [65024]
O44 - LFC:[MD5.FF3E0BA38DB8561CB97B0FBF6C3B3F9E] - 17/10/2013 - 02:29:35 ---A- . (.Microsoft Corporation - Moteur de l�interface utilisateur d�Interne.) -- C:\Windows\System32\ieui.dll [176640]
O44 - LFC:[MD5.3B2EFBBC78DA786391B5A49614DF56C0] - 17/10/2013 - 02:29:35 ---A- . (.Microsoft Corporation - Outil d�installation sans assistance d�IE 7.) -- C:\Windows\System32\ieUnatt.exe [142848]
O44 - LFC:[MD5.4F97C454AF1718AE51696D9AD6A2F9AB] - 17/10/2013 - 02:29:37 ---A- . (.Microsoft Corporation - Microsoft � VBScript.) -- C:\Windows\System32\vbscript.dll [420864]
O44 - LFC:[MD5.327FE5AB6905642AB9FC34F912B6C264] - 17/10/2013 - 02:29:38 ---A- . (.Microsoft Corporation - Microsoft� HTML Editing Component.) -- C:\Windows\System32\mshtmled.dll [73216]
O44 - LFC:[MD5.D9F8C3F763EF4CCEA8A6DD2540760817] - 17/10/2013 - 02:29:38 ---A- . (.Microsoft Corporation - Microsoft� MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2382848]
O44 - LFC:[MD5.64447D047A6BFD97EB2A29A54D6EC5A5] - 17/10/2013 - 02:38:37 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\mrt.exe [78106760]
O44 - LFC:[MD5.AA805603DB83A6243EC9FC6757CBBB09] - 17/10/2013 - 03:03:54 ---A- . (...) -- C:\Windows\System32\lvcoinst.log [17133]
O44 - LFC:[MD5.31D2A5DA79CC37919056B60BFD44A95D] - 17/10/2013 - 08:44:48 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [409880]
O44 - LFC:[MD5.4E7C90845EAF0A4186F2DF62590AE801] - 22/10/2013 - 17:17:05 ---A- . (...) -- C:\{27C67A30-C714-43C9-AA85-E81151C79D63} [2464]
O44 - LFC:[MD5.06AA259A25689583DEE3BF68C7B15C09] - 22/10/2013 - 17:23:00 ---A- . (...) -- C:\{09CEAB20-F3D5-4FD5-9EDB-8ABCF259B673} [2264]
O44 - LFC:[MD5.3437FD47E5FDAA52920A1476A0B8B72C] - 25/10/2013 - 22:50:43 ---A- . (...) -- C:\{7B5C3674-025D-4AD3-A880-BCBB874BC8E3} [2456]
O44 - LFC:[MD5.4982563BEAC673670DF7F4DE5A9CE158] - 25/10/2013 - 23:05:39 ---A- . (...) -- C:\{2CA7D27A-ACB6-42A0-AB7E-269FF4F1B2D1} [2992]
O44 - LFC:[MD5.671BF94AEBB06EBA93354853D577EFFB] - 27/10/2013 - 00:39:57 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerApp.exe [692616]
O44 - LFC:[MD5.46978DB392281618885EDD80EDB34137] - 27/10/2013 - 00:39:57 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [71048]
O44 - LFC:[MD5.94A5B3519CF8C12B881BE7316FA0E150] - 31/10/2013 - 17:21:39 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.5C2F6886DD30B8DAB22807DC8705F60C] - 31/10/2013 - 17:28:25 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1515117]
O44 - LFC:[MD5.D6FE7B7BAEBF69E48AAEC1D7931292D5] - 31/10/2013 - 17:55:28 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1655242]
O44 - LFC:[MD5.A921ACD19EFCCADC1EC99D62E38338E8] - 31/10/2013 - 17:55:28 ---A- . (...) -- C:\Windows\System32\perfc009.dat [124728]
O44 - LFC:[MD5.3D4387040D015737442623B1BE99D886] - 31/10/2013 - 17:55:28 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [152250]
O44 - LFC:[MD5.359818B6C94BDCA170A5328BF0498F69] - 31/10/2013 - 17:55:28 ---A- . (...) -- C:\Windows\System32\perfh009.dat [646972]
O44 - LFC:[MD5.2E1F9C3FCE99BFCE87847AD4277F823D] - 31/10/2013 - 17:55:28 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [736908]
~ Files: 36 Scanned in 00mn 30s



---\\ Derniers fichiers cr��s dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.5215FD182D6F1F62D35DB28238348F2C] - 04/10/2013 - 23:26:42 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-519B2F13.pf
O45 - LFCP:[MD5.41223769DB99AAE3B2AB6A508221AA38] - 04/10/2013 - 23:26:47 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-D54483B1.pf
O45 - LFCP:[MD5.0052F77D90AD0DF4FBDB31B9C991C90B] - 05/10/2013 - 18:20:45 ---A- - C:\Windows\Prefetch\WINRAR.EXE-6F42D4E7.pf
O45 - LFCP:[MD5.3F2A91732ECD4A2423E9CE8B95AFFEC1] - 06/10/2013 - 11:50:43 ---A- - C:\Windows\Prefetch\Layout.ini
O45 - LFCP:[MD5.3426F6C1819768207434A804A14809E5] - 06/10/2013 - 12:00:11 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-F452D79D.pf
O45 - LFCP:[MD5.89FDF6641F8751889F420B1EA844F5A0] - 06/10/2013 - 21:58:39 ---A- - C:\Windows\Prefetch\EGYPTOID2.EXE-C91EFA69.pf
O45 - LFCP:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 07/09/2122 - 23:54:55 ----D - C:\Windows\Prefetch\ReadyBoot
O45 - LFCP:[MD5.2EEB65930E41CC27591728C7DB213619] - 16/10/2013 - 23:33:49 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-7D2183B8.pf
O45 - LFCP:[MD5.3580573FD0F0F96A3EC995C993E0B8AA] - 17/10/2013 - 08:46:12 ---A- - C:\Windows\Prefetch\WLIDSVC.EXE-1DBC2021.pf
O45 - LFCP:[MD5.57516B910CC0A02CE2ED6496BD64426D] - 17/10/2013 - 14:34:46 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-93CEEE07.pf
O45 - LFCP:[MD5.35E8B2739B6D20E20FDB5BF6B73DBFEA] - 17/10/2013 - 14:34:46 ---A- - C:\Windows\Prefetch\WDDMSERVICE.EXE-B2167195.pf
O45 - LFCP:[MD5.32E74DF78CEBDD2F05EB8CC977914E00] - 17/10/2013 - 14:34:46 ---A- - C:\Windows\Prefetch\WDFME.EXE-43D2D283.pf
O45 - LFCP:[MD5.E33250197349C58995772E4829C797C2] - 17/10/2013 - 14:34:46 ---A- - C:\Windows\Prefetch\WDSC.EXE-613CDA86.pf
O45 - LFCP:[MD5.187728A11BAD8ACE9EC939710E3DE305] - 20/10/2013 - 20:04:10 ---A- - C:\Windows\Prefetch\ASOELNCH.EXE-19F82AF1.pf
O45 - LFCP:[MD5.67935AD5E147F65B482278F3E2890337] - 21/10/2013 - 20:23:03 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx
O45 - LFCP:[MD5.2A7F7A9586BFE2098DD34814CD9E7C3F] - 21/10/2013 - 20:24:03 ---A- - C:\Windows\Prefetch\AgCx_SC1.db
O45 - LFCP:[MD5.E0D75895AC46D6C71E4401AE98BBB41D] - 22/10/2013 - 22:28:14 ---A- - C:\Windows\Prefetch\SNIPPINGTOOL.EXE-2DBBC209.pf
O45 - LFCP:[MD5.E9825EB4981EB80130C0B2443491AA1C] - 22/10/2013 - 22:28:14 ---A- - C:\Windows\Prefetch\WISPTIS.EXE-6C347CFA.pf
O45 - LFCP:[MD5.0F33A0B71528A02E83AC9F19B219314F] - 25/10/2013 - 22:19:46 ---A- - C:\Windows\Prefetch\DEFRAG.EXE-738093E8.pf
O45 - LFCP:[MD5.35959F49C7FC7DF2EF0D27CFD1D4E5D7] - 25/10/2013 - 22:19:50 ---A- - C:\Windows\Prefetch\DFRGNTFS.EXE-4F838A89.pf
O45 - LFCP:[MD5.879F85802565DE1B30C26EE624334466] - 26/10/2013 - 13:32:05 ---A- - C:\Windows\Prefetch\CLTRT.EXE-3E0065A5.pf
O45 - LFCP:[MD5.5FF57E15D209FBDB27742140B5803AED] - 26/10/2013 - 22:52:06 ---A- - C:\Windows\Prefetch\POWERPNT.EXE-C30F94F3.pf
O45 - LFCP:[MD5.E10A9360F5FDF9DCEB4D964B36E779A9] - 27/10/2013 - 12:32:59 ---A- - C:\Windows\Prefetch\VSSVC.EXE-04D079CC.pf
O45 - LFCP:[MD5.E4FCEAD7C8401701DE1722E257D3FB9E] - 27/10/2013 - 12:33:34 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-8FD92526.pf
O45 - LFCP:[MD5.B7C191AC6DE46EACB9C1ACFB23C7FC28] - 29/10/2013 - 12:17:09 ---A- - C:\Windows\Prefetch\SEARCHINDEXER.EXE-77D27BAC.pf
O45 - LFCP:[MD5.3B71EC8BE78817AE8792896ED5D4F64F] - 29/10/2013 - 12:26:14 ---A- - C:\Windows\Prefetch\IELOWUTIL.EXE-79D45B69.pf
O45 - LFCP:[MD5.8B508BE09B6AD098480FE94515BCB085] - 29/10/2013 - 12:47:57 ---A- - C:\Windows\Prefetch\ADOBEARM.EXE-ACA00A4A.pf
O45 - LFCP:[MD5.64CDF511CEE62993C8F40CC1CE25B752] - 29/10/2013 - 16:00:32 ---A- - C:\Windows\Prefetch\WMPNETWK.EXE-BD0344CA.pf
O45 - LFCP:[MD5.6B0391114307F4B03C3891D0F926C13A] - 29/10/2013 - 16:00:34 ---A- - C:\Windows\Prefetch\ALG.EXE-5BBFFD2F.pf
O45 - LFCP:[MD5.42F15C5BB547FFD8036C1AF34BAD5C2E] - 30/10/2013 - 10:09:53 ---A- - C:\Windows\Prefetch\WSQMCONS.EXE-E2CE6542.pf
O45 - LFCP:[MD5.831A89B9F775E8FEFAA459992D5DF7C3] - 30/10/2013 - 15:02:34 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-B590F488.pf
O45 - LFCP:[MD5.0B4173761811EFD7D8F8DE1AF2BE40C5] - 30/10/2013 - 23:22:24 ---A- - C:\Windows\Prefetch\GOOGLETALKPLUGIN.EXE-F2B06610.pf
O45 - LFCP:[MD5.8B785A8713D105D0B5E94690C2733E14] - 31/10/2013 - 09:08:54 ---A- - C:\Windows\Prefetch\LSSRVC.EXE-AA69E98A.pf
O45 - LFCP:[MD5.8E22F8BA3A5051FF16EAA2396168EF37] - 31/10/2013 - 09:08:54 ---A- - C:\Windows\Prefetch\LXDVCOMS.EXE-59F73033.pf
O45 - LFCP:[MD5.209B9C37FC7B9DD6DCCF129BED487E74] - 31/10/2013 - 09:08:54 ---A- - C:\Windows\Prefetch\LXDVSERV.EXE-592556E6.pf
O45 - LFCP:[MD5.D08643CEB499FA50508A755DF6F526FC] - 31/10/2013 - 09:08:54 ---A- - C:\Windows\Prefetch\NASVC.EXE-0AD2C6C7.pf
O45 - LFCP:[MD5.4AD236EE8EB25DBE4B0C68EFC6CDB6EB] - 31/10/2013 - 09:08:54 ---A- - C:\Windows\Prefetch\SRVLNCH.EXE-5281C489.pf
O45 - LFCP:[MD5.8A1B65840EB7B81532B255CD9F67FE19] - 31/10/2013 - 09:36:02 ---A- - C:\Windows\Prefetch\FREEMAKEVIDEODOWNLOADER.EXE-F3F0D5C1.pf
O45 - LFCP:[MD5.BB9927402FE13E230C9314B6C03C734C] - 31/10/2013 - 09:36:10 ---A- - C:\Windows\Prefetch\FREEMAKEVD.EXE-0456BF65.pf
O45 - LFCP:[MD5.2A8A74BC45B615BAE425848269692876] - 31/10/2013 - 09:38:19 ---A- - C:\Windows\Prefetch\CVTRES.EXE-08B82D67.pf
O45 - LFCP:[MD5.CCBE38C33012EBC0C25F57EF84A0C2DC] - 31/10/2013 - 09:38:20 ---A- - C:\Windows\Prefetch\CSC.EXE-F7BE4369.pf
O45 - LFCP:[MD5.63C09AF4D6FF882B1BE5DF0B4E97E1B5] - 31/10/2013 - 10:33:36 ---A- - C:\Windows\Prefetch\AGENTSVR.EXE-2DB83BDE.pf
O45 - LFCP:[MD5.FE7A53373F6E2B42F2A7FDD9B367ADA9] - 31/10/2013 - 10:49:49 ---A- - C:\Windows\Prefetch\MSFEEDSSYNC.EXE-1F01ED17.pf
O45 - LFCP:[MD5.0AA200790AEBC0D5A286F7D6B0B2A2CF] - 31/10/2013 - 12:27:30 ---A- - C:\Windows\Prefetch\WSPLAYER.EXE-B8621CE3.pf
O45 - LFCP:[MD5.982AB4ADD9DE8578B288D927C4D7DF47] - 31/10/2013 - 12:27:44 ---A- - C:\Windows\Prefetch\WSTASKLOAD.EXE-85EEDE31.pf
O45 - LFCP:[MD5.AAAEF0892659B56D4B3AFA14FE6990EA] - 31/10/2013 - 12:42:48 ---A- - C:\Windows\Prefetch\WLXPHOTOGALLERY.EXE-2B2BE26F.pf
O45 - LFCP:[MD5.53536C454179B7508BC836923BC15D85] - 31/10/2013 - 13:50:15 ---A- - C:\Windows\Prefetch\FACEBOOKUPDATE.EXE-54EE5A79.pf
O45 - LFCP:[MD5.3AE90A06172E1C39AE7A4694E6C69EB0] - 31/10/2013 - 15:05:23 ---A- - C:\Windows\Prefetch\WUDFHOST.EXE-81420B07.pf
O45 - LFCP:[MD5.1E69F684DE82E37D016FC8FC35EF2B41] - 31/10/2013 - 15:14:38 ---A- - C:\Windows\Prefetch\DROPBOXPROXY.EXE-13B1C9FF.pf
O45 - LFCP:[MD5.A4B2C3952050AE76D692D0636C3D9629] - 31/10/2013 - 15:18:32 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-4255072227-2134163802-563611887-1000.db
O45 - LFCP:[MD5.57F642EE0A38EFDE067CA33CCB44E47F] - 31/10/2013 - 15:18:32 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-4255072227-2134163802-563611887-1000.db
O45 - LFCP:[MD5.813F1BF65A2D0655C0B355CD45233C73] - 31/10/2013 - 16:23:53 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-368890F5.pf
O45 - LFCP:[MD5.F5C68D64F48D30C0A4A817D6186D8DE5] - 31/10/2013 - 16:36:44 ---A- - C:\Windows\Prefetch\WINWORD.EXE-BC50C012.pf
O45 - LFCP:[MD5.1F42A55F9D8F29BA7D156D03E22FA7BC] - 31/10/2013 - 16:46:09 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-B7E27BE5.pf
O45 - LFCP:[MD5.4BC4077D81DDB0211243AB9840314437] - 31/10/2013 - 16:54:51 ---A- - C:\Windows\Prefetch\MCUPDATE.EXE-AF07FDE6.pf
O45 - LFCP:[MD5.8494795E817B26DE8A961DF141F40089] - 31/10/2013 - 16:56:03 ---A- - C:\Windows\Prefetch\CCC.EXE-ECD4BD27.pf
O45 - LFCP:[MD5.A4FB49C0F9C1FF970B9011FB38E89BE0] - 31/10/2013 - 16:57:30 ---A- - C:\Windows\Prefetch\WSCSTUB.EXE-472FCA07.pf
O45 - LFCP:[MD5.4D5A8E5673082C5654815F2B2689F61D] - 31/10/2013 - 16:59:20 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-E447C111.pf
O45 - LFCP:[MD5.4D48C029CEE71188D10559B00068B8DC] - 31/10/2013 - 17:03:35 ---A- - C:\Windows\Prefetch\ACRORD32.EXE-33939BD1.pf
O45 - LFCP:[MD5.65B2CEA614E3BAEC5378203D182189AD] - 31/10/2013 - 17:14:40 ---A- - C:\Windows\Prefetch\CONIME.EXE-B273009A.pf
O45 - LFCP:[MD5.A3E7815B7B820B623A113425AEF7269E] - 31/10/2013 - 17:14:47 ---A- - C:\Windows\Prefetch\CONSENT.EXE-65F6206D.pf
O45 - LFCP:[MD5.55594FA78CB05D709A85C3A6924DEE11] - 31/10/2013 - 17:14:52 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-893DDF55.pf
O45 - LFCP:[MD5.850DFDF7C4E3E31FAB0290F428028A18] - 31/10/2013 - 17:17:13 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-1BEE4A84.pf
O45 - LFCP:[MD5.BD68B924574BC39AC680E5EED5E2B5FE] - 31/10/2013 - 17:17:14 ---A- - C:\Windows\Prefetch\CCSVCHST.EXE-E14213DD.pf
O45 - LFCP:[MD5.A2B79D5C5819330141D21687F042E487] - 31/10/2013 - 17:18:48 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-031B6478.pf
O45 - LFCP:[MD5.5C5AC0A81E01B3F102D488A8407D1778] - 31/10/2013 - 17:18:51 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin
O45 - LFCP:[MD5.C3533A68CEC8306C2AB45542D17632F8] - 31/10/2013 - 17:18:52 ---A- - C:\Windows\Prefetch\AgRobust.db
O45 - LFCP:[MD5.C64CB6409EE1F91D8D3F09B3C9AB88FD] - 31/10/2013 - 17:19:05 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db
O45 - LFCP:[MD5.0DC2D66F9F10315983F7D967EEC8AC72] - 31/10/2013 - 17:19:08 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db
O45 - LFCP:[MD5.5C90EB3EEC1C418A90D4AF1BC3B37FF5] - 31/10/2013 - 17:19:08 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db
O45 - LFCP:[MD5.52BE7EDB1BE7F37E17EDCD27BD7DA326] - 31/10/2013 - 17:23:32 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf
O45 - LFCP:[MD5.A70AFA17FBA9FE50C8D3A142AA0461D2] - 31/10/2013 - 17:24:00 ---A- - C:\Windows\Prefetch\KBD.EXE-958C92DC.pf
O45 - LFCP:[MD5.6B23874248174DA4613369B604C93A23] - 31/10/2013 - 17:24:01 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-135A30D8.pf
O45 - LFCP:[MD5.D5137207B1DE3736BB59E2DD41B96B55] - 31/10/2013 - 17:24:21 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-FAA88858.pf
O45 - LFCP:[MD5.7FD7FFA2FE330A4B4CD959EC905786CA] - 31/10/2013 - 17:24:32 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-8973CEDD.pf
O45 - LFCP:[MD5.19B4D094A4DFFC452BEE4AAB423D5D97] - 31/10/2013 - 17:24:45 ---A- - C:\Windows\Prefetch\HPHC_SERVICE.EXE-B8B935C8.pf
O45 - LFCP:[MD5.15AE484728FD7924EB6471F4823DBB24] - 31/10/2013 - 17:26:29 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-3645A3C5.pf
O45 - LFCP:[MD5.203A320FD425F95ECE391360F4454E73] - 31/10/2013 - 17:26:42 ---A- - C:\Windows\Prefetch\UNSECAPP.EXE-CD982D99.pf
O45 - LFCP:[MD5.F24A06C190C28D363F62F576F66A2104] - 31/10/2013 - 17:27:16 ---A- - C:\Windows\Prefetch\FREEMAKEERRORREPORTER.EXE-FE15BDA8.pf
O45 - LFCP:[MD5.0655C74F70F77B6595707C1FF2596D92] - 31/10/2013 - 17:27:17 ---A- - C:\Windows\Prefetch\CLTLMH.EXE-0D7A8C5C.pf
O45 - LFCP:[MD5.2213A23933861B3D73CA57B63833E3FE] - 31/10/2013 - 17:27:23 ---A- - C:\Windows\Prefetch\WPFFONTCACHE_V0400.EXE-408E90AE.pf
O45 - LFCP:[MD5.E3D1B87A2216EBC96007489D0EE314DC] - 31/10/2013 - 17:27:25 ---A- - C:\Windows\Prefetch\UI0DETECT.EXE-B742F20E.pf
O45 - LFCP:[MD5.C643D87E261AC7F15A43E6EC20FB2023] - 31/10/2013 - 17:34:13 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-EB1B961A.pf
O45 - LFCP:[MD5.7DDB4DC9A6B4C0A4469B0FCAA9CAB666] - 31/10/2013 - 17:34:47 ---A- - C:\Windows\Prefetch\WERMGR.EXE-2A1BCBC7.pf
O45 - LFCP:[MD5.4D9117F5F8CCD0AA5C807B8ACB002172] - 31/10/2013 - 17:34:56 ---A- - C:\Windows\Prefetch\WERCON.EXE-FE5CD389.pf
O45 - LFCP:[MD5.A5CE7834141B4CEEB5E168B9B34972EE] - 31/10/2013 - 17:36:52 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-E2054E7F.pf
O45 - LFCP:[MD5.5DCA8A4B1212CB7EFFE65A0C427F5662] - 31/10/2013 - 17:36:57 ---A- - C:\Windows\Prefetch\TASKENG.EXE-5BAF290C.pf
O45 - LFCP:[MD5.B6B2F5ABC3185AF5657A20EAFAE7C640] - 31/10/2013 - 17:38:00 ---A- - C:\Windows\Prefetch\LXDVMON.EXE-368D5719.pf
O45 - LFCP:[MD5.056BFA23D442D64B077C607434FD7AA5] - 31/10/2013 - 17:38:01 ---A- - C:\Windows\Prefetch\APP4R.EXE-3ABF9D7C.pf
O45 - LFCP:[MD5.C877A1F7AA5FC852F4CBAF17F410B980] - 31/10/2013 - 17:38:02 ---A- - C:\Windows\Prefetch\LXDVAMON.EXE-CB0C0A6E.pf
O45 - LFCP:[MD5.3EF14516AFEACD8796217A601FB9CCBD] - 31/10/2013 - 17:38:03 ---A- - C:\Windows\Prefetch\FRUN.EXE-6CFFFA70.pf
O45 - LFCP:[MD5.8177C5CA70F7A31A834C9E80CDCB53C6] - 31/10/2013 - 17:40:49 ---A- - C:\Windows\Prefetch\VERCLSID.EXE-4D95F5A7.pf
O45 - LFCP:[MD5.7ADC1FB4A4F9900F7DDB2380215D9950] - 31/10/2013 - 17:44:44 ---A- - C:\Windows\Prefetch\SYMERR.EXE-75571DC2.pf
O45 - LFCP:[MD5.AEFA82700A238FB371C1CD5056203284] - 31/10/2013 - 17:46:12 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-43972D0F.pf
O45 - LFCP:[MD5.4BB626BA4C1A5EEEEC5694AB107F14EB] - 31/10/2013 - 17:49:37 ---A- - C:\Windows\Prefetch\CMD.EXE-89305D47.pf
O45 - LFCP:[MD5.D555A8F147E2BC2BE3E9E9A4C23CEBD7] - 31/10/2013 - 17:51:56 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-71214090.pf
O45 - LFCP:[MD5.4E8F24635805DAC9CFD0534669EA0252] - 31/10/2013 - 17:52:01 ---A- - C:\Windows\Prefetch\INCDGUISRV.EXE-29D0537E.pf
O45 - LFCP:[MD5.6BBA373A89DFD2D6CCC259B5B67456E2] - 31/10/2013 - 17:52:08 ---A- - C:\Windows\Prefetch\MOBSYNC.EXE-D8BC6ED2.pf
O45 - LFCP:[MD5.70D9D31AE61B734E8FAC3BFA9507D2EB] - 31/10/2013 - 17:52:09 ---A- - C:\Windows\Prefetch\WMPLAYER.EXE-9DE758AE.pf
O45 - LFCP:[MD5.D09FAC0BED7EF43634FE9441D8DEB499] - 31/10/2013 - 17:53:10 ---A- - C:\Windows\Prefetch\FLASHPLAYERUPDATESERVICE.EXE-0CF170F4.pf
O45 - LFCP:[MD5.6E1769FCB1AF8D4BC068BA388905E4E0] - 31/10/2013 - 17:53:27 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-369DF1CD.pf
O45 - LFCP:[MD5.F3EFC1EB7B5FC28EFA4CDA39CC2EC5F9] - 31/10/2013 - 17:54:10 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-08C109D7.pf
O45 - LFCP:[MD5.255771830F0A1C95554F7C7E58A6A8D4] - 31/10/2013 - 17:55:27 ---A- - C:\Windows\Prefetch\CHROME.EXE-0548EF22.pf
O45 - LFCP:[MD5.EB88D13B0C26B37E85E4C48A138EE941] - 31/10/2013 - 17:55:57 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-AA7A1FDD.pf
O45 - LFCP:[MD5.EA0968D2F32ADD1C2DD1E178F2336994] - 31/10/2013 - 17:55:57 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-AFAD3EF9.pf
~ Prefetcher: 105 Scanned in 00mn 05s



---\\ D�ni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'�diteur de configuration de s�curit� Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de s�curit� Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
~ LSA: 7 Scanned in 00mn 00s



---\\ Contr�le du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ CSB: 13 Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"VIDC.I420"="lvcodec2.dll" . (.Logitech Inc. - Video Codec.) -- C:\Windows\System32\lvcodec2.dll
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak�.) -- C:\Windows\System32\iccvid.dll
O52 - TDSD: \Drivers32\"msacm.l3codecp"="l3codecp.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Audio Layer-3 Codec for MSACM.) -- C:\Windows\System32\l3codecp.acm
O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Intel Corporation - Intel Indeo� video 5.10.) -- C:\Windows\System32\ir50_32.dll
O52 - TDSD: \Drivers32\"vidc.iv41"="ir41_32.ax" . (.Intel Corporation - Intel Indeo� Video 4.5.) -- C:\Windows\System32\ir41_32.ax
O52 - TDSD: \Drivers32\"vidc.iv31"="ir32_32.dll" . (.Intel(R) Corporation - Pas de description.) -- C:\Windows\System32\ir32_32.dll
O52 - TDSD: \Drivers32\"vidc.iv32"="ir32_32.dll" . (.Intel(R) Corporation - Pas de description.) -- C:\Windows\System32\ir32_32.dll
O52 - TDSD: \Drivers32\"msacm.voxacm160"="vct3216.acm" . (.Voxware, Inc. - Voxware Audio Compression Manager Driver.) -- C:\Windows\System32\vct3216.acm
O52 - TDSD: \Drivers32\"vidc.VP60"="C:\Windows\system32\vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\Windows\system32\vp6vfw.dll
O52 - TDSD: \Drivers32\"vidc.VP61"="C:\Windows\system32\vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\Windows\system32\vp6vfw.dll
O52 - TDSD: \Drivers32\"vidc.mjpg"="bdmjpeg.dll" . (...) -- C:\Windows\System32\bdmjpeg.dll
O52 - TDSD: \Drivers32\"vidc.mpeg"="bdmpegv.dll" . (...) -- C:\Windows\System32\bdmpegv.dll
O52 - TDSD: \Drivers32\"msacm.bdmpeg"="bdmpega.acm" . (...) -- C:\Windows\System32\bdmpega.acm
O52 - TDSD: \Drivers32\"vidc.yv12"="yv12vfw.dll" . (.www.helixcommunity.org - Helix YV12 YUV Codec.) -- C:\Windows\System32\yv12vfw.dll
O52 - TDSD: \Drivers32\"VIDC.FFDS"="ff_vfw.dll" . (.Pas de propri�taire - ffdshow VFW.) -- C:\Windows\System32\ff_vfw.dll
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"ir50_32.dll"="Indeo� Video 5,10" . (.Intel Corporation - Intel Indeo� video 5.10.) -- C:\Windows\System32\ir50_32.dll
O52 - TDSD: \drivers.desc\"iyvu9_32.dll"="Indeo� video Raw YVU9 by Intel" . (...) -- C:\Windows\System32\iyvu9_32.dll
O52 - TDSD: \drivers.desc\"C:\Windows\system32\Iac25_32.ax"="Indeo� audio software" . (.Intel Corporation - Indeo� audio software.) -- C:\Windows\system32\Iac25_32.ax
O52 - TDSD: \drivers.desc\"vct3216.acm"="Voxware Compression Toolkit" . (.Voxware, Inc. - Voxware Audio Compression Manager Driver.) -- C:\Windows\System32\vct3216.acm
O52 - TDSD: \drivers.desc\"vp6vfw.dll"="EA VP6 Codec" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\Windows\System32\vp6vfw.dll
O52 - TDSD: \drivers.desc\"bdmjpeg.dll"="Bandi Motion Jpeg" . (...) -- C:\Windows\System32\bdmjpeg.dll
O52 - TDSD: \drivers.desc\"bdmpegv.dll"="Bandi MPEG-1 Video" . (...) -- C:\Windows\System32\bdmpegv.dll
O52 - TDSD: \drivers.desc\"bdmpega.acm"="Bandi MPEG-1 Audio" . (...) -- C:\Windows\System32\bdmpega.acm
O52 - TDSD: \drivers.desc\"ff_vfw.dll"="ffdshow video encoder" . (.Pas de propri�taire - ffdshow VFW.) -- C:\Windows\System32\ff_vfw.dll
~ TDSD: 26 Scanned in 00mn 02s



---\\ Enum�ration des cl�s de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\System32\credssp.dll
~ MSCP: 2 Scanned in 00mn 00s



---\\ Enum�ration des cl�s de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=2
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLinkedConnections"=1
O55 - MWPS:[HKCU\...\Policies\System] - "DisableRegistryTools"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableTaskMgr"=0
~ MWPS: 19 Scanned in 00mn 00s



---\\ Enum�ration des cl�s de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveAutoRun"=3
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=0
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoResolveTrack"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "BindDirectlyToPropertySetStorage"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveAutoRun"=3
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveTypeAutoRun"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoResolveTrack"=1
~ MWPE Keys: 7 Scanned in 00mn 00s



---\\ Liste des pilotes du syst�me (SDL) (O58)
O58 - SDL:[MD5.2EDC5BBAC6C651ECE337BDE8ED97C9FB] - 02/11/2006 - 10:51:38 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [420968]
O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 02/11/2006 - 08:09:42 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029]
~ Drivers: 19 Scanned in 00mn 00s



---\\ Derniers fichiers modifi�s ou cr�es (Utilisateur) (O61)
O61 - LFC: 28/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extension Cookies [9216]
O61 - LFC: 28/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-devtools_devtools_0.localstorage [5120]
O61 - LFC: 28/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\GPAJ8N7Z\8F903698240FE799F61EEDA8595181137B996156.heu [152]
O61 - LFC: 28/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Browser\Local Storage\sp_f407c294ce628ba069aa58fe7523f44781ce2902.share_0.localstorage [3072]
O61 - LFC: 28/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Browser\Local Storage\sp_f407c294ce628ba069aa58fe7523f44781ce2902.share_0.localstorage-journal [3608]
O61 - LFC: 28/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\06\0677b41b40baa4bdee7162b4c218e9daacbb0f4e.file [3196388]
O61 - LFC: 28/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\0a\0a8bb08493edc5290b338f4c6108e04bfd5a9cd7.file [1886564]
O61 - LFC: 28/10/2013 - 17:57:40 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\16\16716b29e00d1786a79fcf48c95e142ca6e01c02.file [2462374]
O61 - LFC: 28/10/2013 - 17:57:40 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\19\19c31e4d1d90e011c60ab61818755d6ff67e4531.file [3798979]
O61 - LFC: 28/10/2013 - 17:57:41 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\24\2489dcd17c132701063b6d37de14f8b3507d6dae.file [33001]
O61 - LFC: 28/10/2013 - 17:57:41 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\24\24c0887f129028300de77a14ad4d71b653987590.file [33724]
O61 - LFC: 28/10/2013 - 17:57:41 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\27\27c04e3be841c267217f1e4baddfa783263c33e9.file [55991]
O61 - LFC: 28/10/2013 - 17:57:42 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\2d\2df6971aa07710d632ab33f32cc962dae538faa5.file [36425]
O61 - LFC: 28/10/2013 - 17:57:46 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\40\40c07cee64d9e014849bff69ac8e9fae738ca1f1.file [3196388]
O61 - LFC: 28/10/2013 - 17:57:46 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\46\4660b75ef4ac966b681d8f8a072dae5ae5a86fa3.file [1886564]
O61 - LFC: 28/10/2013 - 17:57:48 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\4f\4ff95e0310e9996a6269a734c80c558a3d1bbdf9.file [71126]
O61 - LFC: 28/10/2013 - 17:57:48 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\50\502260a4bd27bff50a82ca6a9bb3576d169f26ca.file [3921325]
O61 - LFC: 28/10/2013 - 17:57:48 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\51\510a326627b3bf5283139b72187b3e15bb1a884c.file [3921325]
O61 - LFC: 28/10/2013 - 17:57:48 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\53\53803fdd440243baa1bc7e1ed5b9d7b05b184054.file [3196388]
O61 - LFC: 28/10/2013 - 17:57:49 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\59\59d7c12effc0b7d8962af6b9ea2762193c5a896a.file [31915]
O61 - LFC: 28/10/2013 - 17:57:50 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\5e\5ef36b131f810c3484eacb17116a750303f14f8b.file [2237828]
O61 - LFC: 28/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\61\61c3168b7a4cb71e6f3bde4f8c68e00352573445.file [2237828]
O61 - LFC: 28/10/2013 - 17:57:52 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\6b\6bcb80871bba1a265271beb5e004e054dc4186b1.file [3196388]
O61 - LFC: 28/10/2013 - 17:57:54 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\7a\7a5c73c3b1aa8c484d766f74210601c6485b832b.file [420368]
O61 - LFC: 28/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\87\87864fcb33be43489b0f2cfa4e9a76019f5d3a6a.file [3798979]
O61 - LFC: 28/10/2013 - 17:57:56 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\92\920195ab17b2d38dac322c693cae9ed21d437ce2.file [3921325]
O61 - LFC: 28/10/2013 - 17:57:56 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\95\954891037cfd1777db7b1b1a0faa75a0b362505b.file [2237828]
O61 - LFC: 28/10/2013 - 17:57:57 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\97\971c6d1146d837d257217860acdd0d7171097926.file [28295]
O61 - LFC: 28/10/2013 - 17:57:57 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\98\98c70b94c3b2942c682d6df0e9559f493b8de43d.file [30137]
O61 - LFC: 28/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\9d\9d7c99f50eb3c1e3c9b43187e2955e1cb5246ac9.file [3798979]
O61 - LFC: 28/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\9d\9df6d6ef21a31bf44126be6333cebf01147b3903.file [2237828]
O61 - LFC: 28/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a0\a0c3c33b3c25ee5c2c310ed9096ddeefcf0ed948.file [23819]
O61 - LFC: 28/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a2\a28e62dc2d92bd01be5ca1937f92736a6909bbfe.file [2462374]
O61 - LFC: 28/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ac\ac98bd1a37efbe6bf29cb9a871cd3855ebb00856.file [15958]
O61 - LFC: 28/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\af\afad0c0d88b032366b8d41a9338c2f5475a8f8e3.file [2741]
O61 - LFC: 28/10/2013 - 17:58:00 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\b7\b7654866adf65762676e23fc45ec189d21dca46e.file [1886564]
O61 - LFC: 28/10/2013 - 17:58:00 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\b9\b9d7d872d98e767a0d4d12059dee586fe85e8285.file [2462374]
O61 - LFC: 28/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c2\c243d48a360df5c05368d175ec7b169ca26dfed9.file [2462374]
O61 - LFC: 28/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e6\e61b099653d39ee5398f9ce679077d384170dd1a.file [3921325]
O61 - LFC: 28/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e6\e63e40786c9a3b2e06359cc2e2e7e9091948d211.file [3798979]
O61 - LFC: 28/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ed\edee031b88d800475f219b2c14031ec1befd9c14.file [391933]
O61 - LFC: 28/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\f2\f20bd583d877952b4987d02c3f87e9a3b484ee01.file [78403]
O61 - LFC: 28/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\f5\f560adae9b02104eb514f040717e34bc43ea8cb4.file [15379]
O61 - LFC: 28/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\fd\fd1c8a2901a2cbb97a2cdf492c8446bfb76fbd0d.file [1886564]
O61 - LFC: 28/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\fe\fee1cce090122d1c8aa7329f520153ef17026ce8.file [51933]
O61 - LFC: 28/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\526ea462 [1376]
O61 - LFC: 28/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526d9bfc [156]
O61 - LFC: 28/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526e2c6d [124]
O61 - LFC: 28/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526e2cbb [144]
O61 - LFC: 28/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526e2eea [156]
O61 - LFC: 28/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526e96c4 [124]
O61 - LFC: 28/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526e9761 [144]
O61 - LFC: 28/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526e98d1 [156]
O61 - LFC: 28/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526eb455 [152]
O61 - LFC: 29/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ciagpekplgpbepdgggflgmahnjgiaced_0.localstorage [3072]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_32\pnacl_public_pnacl_json [439]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_32\pnacl_public_x86_32_crtbeginS_o [1836]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_32\pnacl_public_x86_32_crtbegin_for_eh_o [1476]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_32\pnacl_public_x86_32_crtbegin_o [1564]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_32\pnacl_public_x86_32_crtendS_o [982]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_32\pnacl_public_x86_32_crtend_o [981]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_32\pnacl_public_x86_32_ld_nexe [1861104]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_32\pnacl_public_x86_32_libcrt_platform_a [4064]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_32\pnacl_public_x86_32_libgcc_a [36774]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_32\pnacl_public_x86_32_libgcc_eh_a [148206]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_32\pnacl_public_x86_32_libpnacl_irt_shim_a [147038]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_32\pnacl_public_x86_32_libpnacl_irt_shim_dummy_a [1310]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_32\pnacl_public_x86_32_pnacl_llc_nexe [8173104]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\manifest.fingerprint [66]
O61 - LFC: 29/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\manifest.json [572]
O61 - LFC: 29/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\00\0053eb1069bbc63c9d491d697b333abe8d2c8515.file [2775]
O61 - LFC: 29/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\00\00e240a4ee8bd2f1f95ebdd02b24bc7e48393ea7.file [39550]
O61 - LFC: 29/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\01\011d1addf1534fb7956550aed2332cdf9950de3d.file [15977]
O61 - LFC: 29/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\02\023a5228ed47d8e05660bd54e03586f7dfdca5da.file [2030106]
O61 - LFC: 29/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\02\0290d511da79590bee8cc38889669979b2dd5d46.file [1747950]
O61 - LFC: 29/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\02\02c919079ec521f0bc94e9531df39422f48ecac1.file [45757]
O61 - LFC: 29/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\04\046fc27eaa7dfccaef34287ddfaa6555f3adc5cb.file [69723]
O61 - LFC: 29/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\04\0474ded9cd5547ea44fe33dab8b9708c7354ff9c.file [2151329]
O61 - LFC: 29/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\05\0509ea52dd973e6e10328ededdb43a7e1868b426.file [25968]
O61 - LFC: 29/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\06\060530942ddb0895244c0c49eb78843b3f294bf8.file [36698]
O61 - LFC: 29/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\07\07bdb342264685ff58beb9668f386910f13f4743.file [21627]
O61 - LFC: 29/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\08\08ef39debccb00d8626ed94315835713841642e9.file [2535718]
O61 - LFC: 29/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\0d\0dd46d133ace61711719953ef8e0caba8e72bdac.file [1597]
O61 - LFC: 29/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\0f\0f0ae6c8dd67812ead0ad3ebd71b21965ea684b8.file [2374035]
O61 - LFC: 29/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\12\12a0213dd3432ad8f5880d08f381ed9e4b1c3cdd.file [1577089]
O61 - LFC: 29/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\14\1405d16d4b7ba10c639b922a8e3c10e869c00e54.file [1619]
O61 - LFC: 29/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\15\15618c6e1246c2299e77f49954ecd19b1bf0791c.file [47039]
O61 - LFC: 29/10/2013 - 17:57:40 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\19\195bf1bb5fd402401272c1d1e36a669f583ba7dd.file [56541]
O61 - LFC: 29/10/2013 - 17:57:40 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\19\19892c7f7fe496045c74a7bfc674aa178aceb4be.file [32942]
O61 - LFC: 29/10/2013 - 17:57:40 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\1a\1afeb643551865f8f0afc00044373b8e52cb2685.file [445556]
O61 - LFC: 29/10/2013 - 17:57:41 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\1e\1e70a901d699b55067fbf66f078f6b281d146cec.file [3154630]
O61 - LFC: 29/10/2013 - 17:57:41 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\20\205bce521ee1a55c068d58c39b4369d8869e424d.file [3154630]
O61 - LFC: 29/10/2013 - 17:57:41 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\20\20f7dd5006495db5befb31f52190884e37b4d2bd.file [44893]
O61 - LFC: 29/10/2013 - 17:57:41 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\22\22373b174652163bb3142186e35a61236bc02ebe.file [18456]
O61 - LFC: 29/10/2013 - 17:57:41 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\24\24f8e1e5d25c16521398324c13739bf8736f34bd.file [1966196]
O61 - LFC: 29/10/2013 - 17:57:41 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\27\27938efba95a88cfd6769bbb17e5730689c6c81e.file [35904]
O61 - LFC: 29/10/2013 - 17:57:42 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\2c\2c710dc3656e9957b29eeb6c0e9c61a77075d45b.file [1722447]
O61 - LFC: 29/10/2013 - 17:57:42 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\2e\2eab1f9c4cdde61306716923b59009b602db6c45.file [616144]
O61 - LFC: 29/10/2013 - 17:57:42 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\2f\2fa96a710153267fb8d6d52f0677aebd374d224c.file [59350]
O61 - LFC: 29/10/2013 - 17:57:42 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\2f\2fbdeab055c29fdcc4904745be2ffd9c91c424c2.file [33602]
O61 - LFC: 29/10/2013 - 17:57:44 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\36\36c219070ecf54bf8567994ab7b85ae5c0aac426.file [1988660]
O61 - LFC: 29/10/2013 - 17:57:44 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\39\39086858e8a7a2b7bb3396a68bb78f14fa638f38.file [42230]
O61 - LFC: 29/10/2013 - 17:57:44 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\39\39d475af2e39cdfea9e07a29013faa3edd3beffd.file [39789]
O61 - LFC: 29/10/2013 - 17:57:45 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\3e\3e53307f0e2a8da95fdbafb4a27b29973a60a0e9.file [2258263]
O61 - LFC: 29/10/2013 - 17:57:45 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\40\404995dd41640ab6d336ccf9b1190021cb2fe29f.file [2535718]
O61 - LFC: 29/10/2013 - 17:57:46 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\41\41313ed6de88eba2c08add2ca5688be79cc9e256.file [52592]
O61 - LFC: 29/10/2013 - 17:57:46 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\41\419e93c1b783516a62e7a3fc2bc44e536dd02618.file [2428]
O61 - LFC: 29/10/2013 - 17:57:46 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\43\43240433548c7a11796229a022cf5980f8e2bdd8.file [48164]
O61 - LFC: 29/10/2013 - 17:57:46 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\43\4331741f9a1f883f102ae978af363dea452ab02f.file [1966196]
O61 - LFC: 29/10/2013 - 17:57:46 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\44\445c3987acee4b0b3ee72ce4b114c24f20a35dca.file [18787]
O61 - LFC: 29/10/2013 - 17:57:46 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\44\44ef41cf7018884c3042ff97effa3ad966a25fbf.file [28112]
O61 - LFC: 29/10/2013 - 17:57:46 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\46\46964b264479d16fcced9ed98970c81ba6fe2ab7.file [50250]
O61 - LFC: 29/10/2013 - 17:57:47 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\47\4757447e7bc057cafb9de0f12780bda587f5a5a8.file [22940]
O61 - LFC: 29/10/2013 - 17:57:47 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\49\4909fe2a95b7db6b5e3cbd3856ea4774e24c39ac.file [1577089]
O61 - LFC: 29/10/2013 - 17:57:47 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\4b\4b1aa57eea2a6ea25043327d3c8f45b7a53df5f3.file [1988660]
O61 - LFC: 29/10/2013 - 17:57:47 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\4d\4d265945690c88d1da6a189bafb0f7879b480817.file [20144]
O61 - LFC: 29/10/2013 - 17:57:47 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\4d\4d2b805cac04b6f3c36e4b34a130754b873a2c63.file [1747950]
O61 - LFC: 29/10/2013 - 17:57:47 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\4e\4e6980fee90ba23fb1f92378c1cfefd3476af9fb.file [2963]
O61 - LFC: 29/10/2013 - 17:57:48 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\4e\4e6f8c779a3641a08e24049d83846426cf183a8f.file [1434663]
O61 - LFC: 29/10/2013 - 17:57:48 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\4e\4edd8da942f05be41c6095c4383dc43a62872feb.file [1161678]
O61 - LFC: 29/10/2013 - 17:57:48 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\51\51c7f1cb8098b9adda3ea5d6b8c82feb862a9618.file [30664]
O61 - LFC: 29/10/2013 - 17:57:49 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\54\546ad00482c796e46c32363e698fc8e1ccca9894.file [35407]
O61 - LFC: 29/10/2013 - 17:57:49 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\55\551e9f432929a88273474e78235a432de69fa890.file [30526]
O61 - LFC: 29/10/2013 - 17:57:49 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\57\5747eeb5bc225bb7f11346d1719667dfc99a6d10.file [23263]
O61 - LFC: 29/10/2013 - 17:57:49 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\58\58088dac9ca26a3735e2b585e533cb59b067e4f5.file [2151329]
O61 - LFC: 29/10/2013 - 17:57:49 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\58\58bb409889589b4bd5881ba8e26b611167314c36.file [616144]
O61 - LFC: 29/10/2013 - 17:57:49 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\59\59b331d2ad85a56337463657853fe677c93812c1.file [1434663]
O61 - LFC: 29/10/2013 - 17:57:50 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\5a\5ad3b7a71ce5844d383ab02bcbd165e886bfa257.file [1624924]
O61 - LFC: 29/10/2013 - 17:57:50 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\5c\5c399dd79c40e74b34c0153045a3b94941a9e4c8.file [3132084]
O61 - LFC: 29/10/2013 - 17:57:50 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\5f\5f0398a5bb5630147e86fc21450462e00429bf40.file [2374035]
O61 - LFC: 29/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\61\61c116dbda523166eae50e3a8fba286f0779c270.file [1896677]
O61 - LFC: 29/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\61\61e809599a2b44fec9b41e045fb8ba2e17992e7d.file [48011]
O61 - LFC: 29/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\62\623326fcc974fe3a15b6c3b5f19b6b0b7c5adc89.file [33336]
O61 - LFC: 29/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\63\63800b1d62630fbe8d1a1a0ff2d5a50bdf0a398f.file [3132084]
O61 - LFC: 29/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\63\63a9e82b2b6247c3d355eeb7b55e50b512b7d668.file [1577089]
O61 - LFC: 29/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\65\65608a0f343c065147721092374b0739d9067e65.file [1722447]
O61 - LFC: 29/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\66\66ebe4ee89a59dbe7ce6922de4a6c3c4569c9e09.file [3132084]
O61 - LFC: 29/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\6a\6a71f04d6fe9515b832600eb8442ddca59ccbdf4.file [616144]
O61 - LFC: 29/10/2013 - 17:57:52 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\6b\6b79645a165870eff409ea2bc271c8e09cbc82b3.file [3020]
O61 - LFC: 29/10/2013 - 17:57:53 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\76\76b364b54fd349712fa2d5b1efb83664670f028d.file [1778]
O61 - LFC: 29/10/2013 - 17:57:53 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\77\7772b2d3e1a1232acc6f9e5f935f4336a05c9abd.file [445556]
O61 - LFC: 29/10/2013 - 17:57:54 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\7a\7a571ead70dd3c40ad18b6b9bf944136ff5c5338.file [35432]
O61 - LFC: 29/10/2013 - 17:57:54 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\7a\7a7b5a120db9b8d58436c20f95c9c09de9f8c1cb.file [2030106]
O61 - LFC: 29/10/2013 - 17:57:54 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\7c\7c1b83899b359c9fb4645b574e4dc2461e8de527.file [19703]
O61 - LFC: 29/10/2013 - 17:57:54 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\7f\7fbcf78ac33b4eb2f313b7273e1e65e2f467e21f.file [1722447]
O61 - LFC: 29/10/2013 - 17:57:54 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\81\81fccee056f64bc6ae80d8cbfa9b7ff38c1a44a3.file [1988660]
O61 - LFC: 29/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\82\8215fc65fb2adde5cee588c14d1d0dca1dbd5570.file [1434663]
O61 - LFC: 29/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\84\845dc7ba64bc3ab89152471eaecad7a074219dce.file [77737]
O61 - LFC: 29/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\87\87da61b46775dabd71e9d486de66560d88d152e9.file [30782]
O61 - LFC: 29/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\88\888384ef529edce9f84bb51921bf5f96ba140c25.file [6667]
O61 - LFC: 29/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\88\88ea579ceaca925d1bdb61bb09854ffb52f4caef.file [2658393]
O61 - LFC: 29/10/2013 - 17:57:56 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\91\91bf43a6ef5bea3f069677f12ec030c721e6419a.file [58599]
O61 - LFC: 29/10/2013 - 17:57:56 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\96\96315cb7e65f7e4a208c83db23c0e1a392f96b2a.file [52871]
O61 - LFC: 29/10/2013 - 17:57:57 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\97\979ec797a77121d9d8df9432fbf0d288ea36d70f.file [3874]
O61 - LFC: 29/10/2013 - 17:57:57 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\9b\9b819dde48722223af55e222ae5c4c32eb228789.file [3964]
O61 - LFC: 29/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\9c\9c1abd54b4c743c6dd9cda6e4a025f21ebad1c84.file [2030106]
O61 - LFC: 29/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\9c\9c5ff791c4735d7c38962ae415208beedd71719e.file [40827]
O61 - LFC: 29/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\9d\9de7db096d71c075ae26d9701b69778f7be2037e.file [2151329]
O61 - LFC: 29/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\9e\9e5b4746429a31c5526f3e1aaef89474219e6cb6.file [31308]
O61 - LFC: 29/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\9e\9ed759fcb40cf765cd7c00fb2b58007dc01fd11c.file [2258263]
O61 - LFC: 29/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a0\a0058e4fd27b35f70e01004692dd2ec2905629ba.file [1434663]
O61 - LFC: 29/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a0\a088eb3cefce26691cb26e67c456b34a23df927d.file [1722447]
O61 - LFC: 29/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a3\a3b24a8decd92e5906a789fd388cb5a39f35c80e.file [1624924]
O61 - LFC: 29/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a3\a3eb8e06f2c1eac3eea69a9c573807a19885e8a2.file [1747950]
O61 - LFC: 29/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a4\a4a0d15ade5957b54b9067b94001ab93802c4994.file [445556]
O61 - LFC: 29/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a5\a54207ff3d75e87bc5e4620174dc81c0e2626bf4.file [29705]
O61 - LFC: 29/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a6\a6429387a0744ee877afdabc660ef7acd14f1090.file [2151329]
O61 - LFC: 29/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a7\a74d742c783830c199b3778111961106bd6345e4.file [52291]
O61 - LFC: 29/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a9\a99ce719fb9d4d1a888eb45a29ba7fbd5d17cea2.file [27884]
O61 - LFC: 29/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\aa\aa82ba527351a4c2d22f0746568cc69c6893e8b6.file [2030106]
O61 - LFC: 29/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ad\ad770d9c818382f0f154fed2a6490ec940387049.file [2032825]
O61 - LFC: 29/10/2013 - 17:58:00 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\b3\b3b1aca2619ec395731088269a122568404e967d.file [2374035]
O61 - LFC: 29/10/2013 - 17:58:00 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\b3\b3c2a6e2c5226c9f86b1b73212d15ff5b753b5de.file [1966196]
O61 - LFC: 29/10/2013 - 17:58:00 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\b6\b64ccfd9664d79cc3880eabebbeb143a4220bc04.file [616144]
O61 - LFC: 29/10/2013 - 17:58:00 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\b6\b68715d0273eb6bb18472c8011e9f31e4de94bd1.file [3154630]
O61 - LFC: 29/10/2013 - 17:58:00 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\b6\b6e0028fad36551cc9f669474416d11164411410.file [2926]
O61 - LFC: 29/10/2013 - 17:58:00 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\b8\b8a0b46a5358bf75e61dd42aa3a85c5ede70a9f6.file [2374035]
O61 - LFC: 29/10/2013 - 17:58:00 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\bb\bb3291246c304884cf184d393a56168a8dcc8a1f.file [29560]
O61 - LFC: 29/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\be\bef76637c90ef39152d25a6c24c1d8accd92970d.file [1988660]
O61 - LFC: 29/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c0\c0c49b56033c946d59b82a5dd42a351e435fa811.file [5902]
O61 - LFC: 29/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c0\c0f852f58573be56192bb0f6d09b60e51eae3c93.file [43310]
O61 - LFC: 29/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c4\c40fe931498c32b1aef9fcb98c77f83c4a61f585.file [23844]
O61 - LFC: 29/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c4\c41a17256876efabbd571f5701276719fd970bb6.file [1234]
O61 - LFC: 29/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c4\c4d0e62c928da5fa8391fe0dbdaf03ee87561b9b.file [1896677]
O61 - LFC: 29/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c6\c6e194c199e5539690b798ceb394ae6c9e6384f8.file [19450]
O61 - LFC: 29/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c7\c7fa20bb4e642189e66e222ac31980fd44588314.file [2658393]
O61 - LFC: 29/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c8\c8d3b30978b6f9279999010fdcf99c8a6dec20c4.file [2535718]
O61 - LFC: 29/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ca\caacb169040879af95f420a9322e8c6df6193234.file [36114]
O61 - LFC: 29/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\cb\cb01df8574016c019a7554264e9dbe9214729a2a.file [54790]
O61 - LFC: 29/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\cb\cb04b8e4e0de8ba6b673839b9e37bb4b2f4ccccb.file [2535718]
O61 - LFC: 29/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\cc\cc8a305b51e7dcdf41ffaeb2fa470b7614aa1d9e.file [51568]
O61 - LFC: 29/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\cd\cdb9785947508bda7d4470d94e795dde062c3684.file [2548]
O61 - LFC: 29/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d0\d0d678b6d2f71973c5cd9f03c9c5677e5465b50e.file [47630]
O61 - LFC: 29/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d2\d2f1853955c094da94796a3c65fb7a7789c9fcc9.file [1624924]
O61 - LFC: 29/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d4\d411ec14889ea7028df8bb9589718c27cce1d19a.file [1577089]
O61 - LFC: 29/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d5\d5eb016ccedef393ae703e7e0c221dacfb99376c.file [3077]
O61 - LFC: 29/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d6\d6b39249611e8be7ae0cd1cd6e92b74a4b83678d.file [2258263]
O61 - LFC: 29/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d7\d7c2c180fdc822fa74b1293dcf4fd220d6f8d1dc.file [1896677]
O61 - LFC: 29/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d8\d831cfec7c520e58ee3cb83be83428df12d30092.file [1454]
O61 - LFC: 29/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\db\db06447a10bd687ab9048951c3ce16a2a7aa117b.file [1624924]
O61 - LFC: 29/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\db\dbcbb481375e7846bd503b773a4f622b679146cf.file [17814]
O61 - LFC: 29/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\de\dea84f90b179585b741bf355a6ce93c24f1604c7.file [30950]
O61 - LFC: 29/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\df\df70f0de6e225398d0fcef0947ff20ae988ba991.file [2534]
O61 - LFC: 29/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e0\e075dca8de86b67035cbe72b1551eb4495da0639.file [3154630]
O61 - LFC: 29/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e1\e1587ce04e893690dce3c4c4c99901b8543ead48.file [29408]
O61 - LFC: 29/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e1\e16f6e72de128e8f28ff4807c5080be6d47dad52.file [3132084]
O61 - LFC: 29/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e8\e8b50377e9264472a6814a43b6c2b15b1f28c071.file [1966196]
O61 - LFC: 29/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ea\ead4c33e45183b1ef0f1eb75c56d2b99ac1cb89a.file [2258263]
O61 - LFC: 29/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\eb\eba7552435edb19fe662d092f2edd267a39d1098.file [445556]
O61 - LFC: 29/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ec\ec7b7667bd559515584283d92851252181a042c3.file [2658393]
O61 - LFC: 29/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ec\eca45d8bfef786c96fe63a41d566c06dc5f0d219.file [1747950]
O61 - LFC: 29/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ee\ee14dd9e4526b3c441802abbc664a473e5209680.file [19707]
O61 - LFC: 29/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ee\eee1bebe5f839a7ce668bca7baff23c5ffb136fc.file [54531]
O61 - LFC: 29/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\f2\f2ee98dd403f2952b975afaca50a0c242aec9e82.file [21930]
O61 - LFC: 29/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\f9\f9955da9a41e129a3a3d85c53445a5a9758e8a96.file [2747]
O61 - LFC: 29/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\fb\fb5a0b2c2dcccf3118412e0c39a5799a806ab870.file [2658393]
O61 - LFC: 29/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\fe\fe454766512919fa3b1d0fec389393245455e728.file [1896677]
O61 - LFC: 29/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\fe\fed24345a1934efc1fc359ceac97d018d40870b1.file [4163]
O61 - LFC: 29/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Wondershare\WSHelper\ProductUpdateList.xml [41]
O61 - LFC: 29/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Wondershare\WSHelper\TipsList.xml [41]
O61 - LFC: 29/10/2013 - 17:58:08 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Adobe\Acrobat\10.0\JSCache\GlobSettings [24]
O61 - LFC: 29/10/2013 - 17:58:08 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Adobe\Acrobat\10.0\Security\CRLCache\48B76449F3D5FEFA1133AA805E420F0FCA643651.crl [898]
O61 - LFC: 29/10/2013 - 17:58:08 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Adobe\Acrobat\10.0\Security\CRLCache\A9B8213768ADC68AF64FCC6409E8BE414726687F.crl [36163]
O61 - LFC: 29/10/2013 - 17:58:08 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Adobe\Acrobat\10.0\Security\services_rdr.dat [10240]
O61 - LFC: 29/10/2013 - 17:58:08 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Adobe\Acrobat\10.0\Security\services_rdri.dat [24152]
O61 - LFC: 29/10/2013 - 17:58:08 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Adobe\Acrobat\10.0\Security\services_rdrk.dat [180]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\526fd5a2 [1376]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\526fdd17 [1360]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\526feac1 [1360]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\526febbd [1360]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\526fedc0 [1376]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\526ffabd [1376]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526f6fc2 [124]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526f709a [144]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526f98cd [124]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526f99b2 [144]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526f9b53 [156]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526fccb3 [124]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526fcd89 [144]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526fcf74 [168]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526fd12b [156]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526fd39f [156]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526fd3c5 [160]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\526fd59b [156]
O61 - LFC: 29/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\527029cf [156]
O61 - LFC: 29/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\Douleurs.lnk [692]
O61 - LFC: 29/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\Les 8 r�gles alimentaires les plus importantes.lnk [1015]
O61 - LFC: 29/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\Sant�.lnk [583]
O61 - LFC: 29/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\aliments.lnk [692]
O61 - LFC: 29/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Spotify\Users\114141947-user\hulkscrobble.bnk [4]
O61 - LFC: 29/10/2013 - 17:58:21 ---A- . (...) -- C:\Users\kathy\Documents\asrv\reclist.txt [0]
O61 - LFC: 29/10/2013 - 17:58:25 ---A- . (...) -- C:\Users\kathy\Documents\ordi\cc_20131029_180425.reg [998]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbfongnabbfejdhkfkikcfjfhacdopai\1.0_0\Cached Theme.pak [2572698]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbfongnabbfejdhkfkikcfjfhacdopai\1.0_0\images\Thumbs.db [7168]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbfongnabbfejdhkfkikcfjfhacdopai\1.0_0\images\theme_frame.png [149954]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbfongnabbfejdhkfkikcfjfhacdopai\1.0_0\images\theme_ntp_background.png [1595266]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbfongnabbfejdhkfkikcfjfhacdopai\1.0_0\images\theme_tab_background.png [154177]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbfongnabbfejdhkfkikcfjfhacdopai\1.0_0\manifest.json [1497]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\background.js [22394]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\block.html [2093]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\block.js [3118]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\firstRun.html [6204]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\firstRun.js [7433]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\i18n.js [3911]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\icons\abp-128.png [15615]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\icons\abp-16.png [834]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\icons\abp-19-whitelisted.png [562]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\icons\abp-19.png [868]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\icons\abp-32.png [2350]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\icons\abp-48.png [3639]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\icons\notification-critical.png [3415]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\icons\notification-information.png [3409]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\include.postload.js [20453]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\include.preload.js [3577]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\images\ui-bg_flat_0_aaaaaa_40x100.png [180]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\images\ui-bg_flat_75_ffffff_40x100.png [178]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\images\ui-bg_glass_55_fbf9ee_1x400.png [120]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\images\ui-bg_glass_65_ffffff_1x400.png [105]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\images\ui-bg_glass_75_dadada_1x400.png [111]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\images\ui-bg_glass_75_e6e6e6_1x400.png [110]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\images\ui-bg_glass_95_fef1ec_1x400.png [119]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\images\ui-bg_highlight-soft_75_cccccc_1x100.png [101]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\images\ui-icons_222222_256x240.png [4369]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\images\ui-icons_2e83ff_256x240.png [4369]
O61 - LFC: 30/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\images\ui-icons_454545_256x240.png [4369]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\images\ui-icons_888888_256x240.png [4369]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\images\ui-icons_cd0a0a_256x240.png [4369]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\css\smoothness\jquery-ui-1.8.16.custom.css [22785]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\js\jquery-1.7.1.min.js [93868]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\jquery-ui\js\jquery-ui-1.8.16.custom.min.js [30148]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\lib\adblockplus.js [106980]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\lib\basedomain.js [6188]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\lib\compat.js [5449]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\lib\info.js [1113]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\lib\io.js [5545]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\lib\jsbn.js [17236]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\lib\publicSuffixList.js [134254]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\lib\punycode.js [14067]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\lib\rsa.js [5420]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\lib\sha1.js [3600]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\manifest.json [1708]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\notification.html [613]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\notification.js [2727]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\options.html [8140]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\options.js [19843]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\popup.html [4208]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\popup.js [3830]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\popupBlocker.js [1982]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\abp-icon-big.png [15201]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\arrow-down.png [452]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\arrow-up.png [478]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\background-candomore.png [246]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\background-main.png [260]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\background-share.png [252]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\background.png [255]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\donate.png [160]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\features\malware.png [3335]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\features\social.png [4260]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\features\tracking.png [3562]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\firstRun.css [13221]
O61 - LFC: 30/10/2013 - 17:57:26 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\fonts\CreteRound-Italic.otf [43152]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\ar\messages.json [16407]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\bg\messages.json [21056]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\bn\messages.json [10250]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\ca\messages.json [9270]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\cs\messages.json [10137]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\da\messages.json [8352]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\de\messages.json [9192]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\el\messages.json [23217]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\en_GB\messages.json [5459]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\en_US\messages.json [9955]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\es\messages.json [9161]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\fonts\CreteRound-Regular.otf [40968]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\social\facebook.png [3861]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\social\googleplus.png [4009]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\social\renren.png [2619]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\social\twitter.png [3944]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\skin\social\weibo.png [3497]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\stats.js [3920]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\subscriptions.xml [5439]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\utils.js [837]
O61 - LFC: 30/10/2013 - 17:57:27 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\webrequest.js [6072]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\es_419\messages.json [9410]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\et\messages.json [3304]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\fa\messages.json [9571]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\fi\messages.json [9510]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\fil\messages.json [595]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\fr\messages.json [9572]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\he\messages.json [17025]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\hr\messages.json [8206]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\hu\messages.json [10297]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\id\messages.json [8811]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\it\messages.json [9263]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\ja\messages.json [13332]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\ko\messages.json [11997]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\lt\messages.json [8266]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\lv\messages.json [8649]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\ms\messages.json [4584]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\nb\messages.json [1028]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\nl\messages.json [8815]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\pl\messages.json [9648]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\pt_BR\messages.json [9399]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\pt_PT\messages.json [9118]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\ro\messages.json [9380]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\ru\messages.json [21674]
O61 - LFC: 30/10/2013 - 17:57:28 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\sk\messages.json [9841]
O61 - LFC: 30/10/2013 - 17:57:29 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\sl\messages.json [5850]
O61 - LFC: 30/10/2013 - 17:57:29 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\sr\messages.json [17900]
O61 - LFC: 30/10/2013 - 17:57:29 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\sv\messages.json [8987]
O61 - LFC: 30/10/2013 - 17:57:29 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\ta\messages.json [9123]
O61 - LFC: 30/10/2013 - 17:57:29 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\te\messages.json [9934]
O61 - LFC: 30/10/2013 - 17:57:29 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\th\messages.json [14606]
O61 - LFC: 30/10/2013 - 17:57:29 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\tr\messages.json [9853]
O61 - LFC: 30/10/2013 - 17:57:29 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\uk\messages.json [21320]
O61 - LFC: 30/10/2013 - 17:57:29 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\vi\messages.json [7660]
O61 - LFC: 30/10/2013 - 17:57:29 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\zh_CN\messages.json [10390]
O61 - LFC: 30/10/2013 - 17:57:29 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0\_locales\zh_TW\messages.json [10598]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\CHANGELOG [27863]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\LICENSE [35121]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\adblock_start_chrome.js [4020]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\adblock_start_common.js [6889]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\background.js [33408]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\bandaids.js [3693]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\button\popup.css [1371]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\button\popup.html [3732]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\button\popup.js [6220]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\filtering\domainset.js [3646]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\filtering\fifocache.js [922]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\filtering\filternormalizer.js [8094]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\filtering\filteroptions.js [1398]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\filtering\filterset.js [6060]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\filtering\filtertypes.js [10076]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\filtering\myfilters.js [24736]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\functions.js [6395]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\idlehandler.js [1999]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\img\icon128.png [9863]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\img\icon16.png [753]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\img\icon16_grayscale.png [3067]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\img\icon16_grayscale@2x.png [3563]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\img\icon19-grayscale.png [869]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\img\icon19-whitelisted.png [1829]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\img\icon19.png [689]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\img\icon24.png [2299]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\img\icon32.png [1904]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\img\icon38-grayscale.png [2877]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\img\icon38-whitelisted.png [3968]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\img\icon38.png [2712]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\img\icon48.png [3307]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\css\images\ui-bg_flat_55_999999_40x100.png [180]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\css\images\ui-bg_flat_75_aaaaaa_40x100.png [180]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\css\images\ui-bg_glass_45_0078ae_1x400.png [136]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\css\images\ui-bg_glass_55_f8da4e_1x400.png [131]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\css\images\ui-bg_glass_75_79c9ec_1x400.png [132]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\css\images\ui-bg_gloss-wave_50_38cfff_500x100.png [89]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\css\images\ui-bg_gloss-wave_75_2191c0_500x100.png [89]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\css\images\ui-bg_inset-hard_100_fcfdfd_1x100.png [88]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\css\images\ui-icons_056b93_256x240.png [5355]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\css\images\ui-icons_d8e7f3_256x240.png [4369]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\css\jquery-ui.custom.css [21592]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\css\override-page.css [2764]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\jquery-ui.custom.min.js [55999]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\jquery.cookie.js [4246]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\jquery\jquery.min.js [93868]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\manifest.json [2448]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\options\customize.html [5800]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\options\customize.js [7750]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\options\filters.html [1558]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\options\filters.js [22465]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\options\general.html [1605]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\options\general.js [1721]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\options\index.html [1956]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\options\index.js [2086]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\options\options.css [2328]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\pages\adreport.html [8530]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\pages\adreport.js [10206]
O61 - LFC: 30/10/2013 - 17:57:30 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\pages\resourceblock.html [7787]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\README.markdown [88]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\ar\messages.json [91496]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\bg\messages.json [99060]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\ca\messages.json [55046]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\cs\messages.json [57789]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\da\messages.json [53754]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\de\messages.json [55050]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\el\messages.json [95022]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\en\messages.json [51280]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\es\messages.json [53268]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\fi\messages.json [54450]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\fr\messages.json [54895]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\he\messages.json [80231]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\hr\messages.json [53753]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\hu\messages.json [55137]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\id\messages.json [53062]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\it\messages.json [53484]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\ja\messages.json [63820]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\ko\messages.json [60411]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\nb\messages.json [53222]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\nl\messages.json [52773]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\pl\messages.json [55526]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\pt_BR\messages.json [55059]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\pt_PT\messages.json [54437]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\ro\messages.json [54772]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\ru\messages.json [102031]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\sk\messages.json [57331]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\sl\messages.json [54145]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\sr\messages.json [53968]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\sv\messages.json [54313]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\te\messages.json [92885]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\tr\messages.json [58042]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\uk\messages.json [93413]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\zh_CN\messages.json [56762]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\pages\resourceblock.js [26884]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\pages\subscribe.html [1076]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\pages\subscribe.js [1203]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\port.js [13137]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\stats.js [7128]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\uiscripts\blacklisting\blacklistui.js [14897]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\uiscripts\blacklisting\clickwatcher.js [5439]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\uiscripts\blacklisting\elementchain.js [1344]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\uiscripts\blacklisting\overlay.js [1095]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\uiscripts\blacklisting\rightclick_hook.js [402]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\uiscripts\load_jquery_ui.js [1510]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\uiscripts\send_content_to_back.js [1586]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\uiscripts\top_open_blacklist_ui.js [1620]
O61 - LFC: 30/10/2013 - 17:57:31 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\uiscripts\top_open_whitelist_ui.js [5409]
O61 - LFC: 30/10/2013 - 17:57:32 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.11_0\_locales\zh_TW\messages.json [56616]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\njgpiocdhdmnglomggfjkkonjjfahnom\1.0.0.7_0\IDsafe.png [3906]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\njgpiocdhdmnglomggfjkkonjjfahnom\1.0.0.7_0\manifest.json [645]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\oecmlnmneeeeiccpcohlffnipjhngmdk\2_0\Cached Theme.pak [4425622]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\oecmlnmneeeeiccpcohlffnipjhngmdk\2_0\images\theme_frame.png [166081]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\oecmlnmneeeeiccpcohlffnipjhngmdk\2_0\images\theme_ntp_background.png [3321100]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\oecmlnmneeeeiccpcohlffnipjhngmdk\2_0\images\theme_tab_background.png [169]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\oecmlnmneeeeiccpcohlffnipjhngmdk\2_0\images\theme_toolbar.png [250187]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extensions\oecmlnmneeeeiccpcohlffnipjhngmdk\2_0\manifest.json [1247]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\chdboodilddefglllfoimeceomkpmkbi\LOG.old [629]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage [2554880]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\GPAJ8N7Z\381814F6F5270FFBB27E244D6138BC023AF911D5.heu [152]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\GPAJ8N7Z\440AE73B017A477382DEFF7C0DBE4896FED21079.heu [152]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\GPAJ8N7Z\6344DCC80A9A6A3676DCEA0C92C8C45EFD2F3220.heu [152]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\GPAJ8N7Z\6DDB94AE3365798230849FA0F931AC132FE417D1.heu [152]
O61 - LFC: 30/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\GPAJ8N7Z\871F12AF0853C06E4EB80A1CCAB295CEADBB817A.heu [152]
O61 - LFC: 30/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\GPAJ8N7Z\C3306B26751D6A80EB1FCB651912469AE18819AB.heu [152]
O61 - LFC: 30/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\offline.bnk [3691]
O61 - LFC: 30/10/2013 - 17:57:40 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\1a\1aa6623590bc54605434f79676e1ad5e551d47e8.file [43029]
O61 - LFC: 30/10/2013 - 17:57:40 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\1c\1cd71bdc91ca650e8280c6964854ce0743b248c1.file [28163]
O61 - LFC: 30/10/2013 - 17:57:44 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\3a\3acace0b495af39949f2507fefa9f9c9d1e21013.file [34487]
O61 - LFC: 30/10/2013 - 17:57:45 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\3e\3e5ad41c9cef7b0f3b21158a158f12cd495a3cd9.file [134031]
O61 - LFC: 30/10/2013 - 17:57:46 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\44\44d9b925ea3352b3bd202b2d6fbff6f62f416e4a.file [36600]
O61 - LFC: 30/10/2013 - 17:57:48 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\4e\4ea1a62e76ba319a9712f8339df5f6ead480934f.file [49343]
O61 - LFC: 30/10/2013 - 17:57:49 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\58\58b117bbb7c643ccd30558a4d46d88a9a76da323.file [29364]
O61 - LFC: 30/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\66\668a2c82c14154a212ee2a5964f01a931b201042.file [54719]
O61 - LFC: 30/10/2013 - 17:57:52 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\6c\6c3db0b33dd905926971bdb3588b18be406b21b4.file [37740]
O61 - LFC: 30/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\83\83aa1a7da43abb3db7b1c2dcde3a6aefb5368a72.file [27630]
O61 - LFC: 30/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\85\856c37230e090af06937e2f31c87cad1298a0a4c.file [31849]
O61 - LFC: 30/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\8a\8aab44c9ca7ace19ba7beeba9ddbc34cb814e099.file [45965]
O61 - LFC: 30/10/2013 - 17:57:56 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\93\936b624eff5f82507f10e9202deecd80567d704f.file [48987]
O61 - LFC: 30/10/2013 - 17:57:57 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\97\97ce4d049ec2131b613cc20fae53128fd235be91.file [420033]
O61 - LFC: 30/10/2013 - 17:57:57 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\98\9896ef02aff79084b73fd22e8c11bf580d36c2ea.file [18687]
O61 - LFC: 30/10/2013 - 17:58:00 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\b3\b3fa5d578c5c7146f23b682b770c74026a0cce35.file [21422]
O61 - LFC: 30/10/2013 - 17:58:00 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\bc\bcbe3f46b555799eab2a95654394b2ef7bb74af0.file [26466]
O61 - LFC: 30/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e9\e9e50aef0663d3c722a698c11fbd866fddb477bb.file [1161691]
O61 - LFC: 30/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\fa\fafbaf57ff77e017583115c8c783515c3c102792.file [53704]
O61 - LFC: 30/10/2013 - 17:58:06 ---A- . (.Macrovision Europe Ltd..) -- C:\Users\kathy\AppData\Local\Temp\BoontyGames.0001 [59964]
O61 - LFC: 30/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\527161e9 [1392]
O61 - LFC: 30/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\52716deb [1376]
O61 - LFC: 30/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\5270ca76 [124]
O61 - LFC: 30/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\5270cabc [144]
O61 - LFC: 30/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\5270d834 [156]
O61 - LFC: 30/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\5270d8fe [160]
O61 - LFC: 30/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\5270dea5 [160]
O61 - LFC: 30/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\5270e0b2 [172]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\527110d6 [124]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52711122 [144]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52711892 [160]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52711a65 [160]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52711ac0 [156]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52711f46 [160]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52716bc9 [156]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\HpUpdate\HpUpdate.hidden [0]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\HpUpdate\HpUpdate.session [580]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\HpUpdate\rpspackages.cache [4]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\141467255927908.lnk [828]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\Araign�e.lnk [600]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\Coeur.lnk [673]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\Crise cardiaque sans douleur chez les femmes.lnk [986]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\Enseignement de l.lnk [778]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\Herbs plants.lnk [821]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\It.lnk [898]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\Maux de gorge.lnk [717]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\Oil of Oregano.lnk [984]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\chocolat.lnk [801]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\crise.lnk [700]
O61 - LFC: 30/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\nectar pour maux de gorge.lnk [935]
O61 - LFC: 30/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Spotify\Users\114141947-user\prefs [587]
O61 - LFC: 30/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\TheGreatPharaoh\options.dat [48]
O61 - LFC: 30/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\TheGreatPharaoh\profile.dat [2444]
O61 - LFC: 30/10/2013 - 17:58:21 ---A- . (...) -- C:\Users\kathy\Documents\Bandicam\bandicam 2013-10-30 10-36-18-325.avi [407244]
O61 - LFC: 30/10/2013 - 17:58:25 ---A- . (...) -- C:\Users\kathy\Documents\ordi\cc_20131030_102641.reg [1082]
O61 - LFC: 30/10/2013 - 17:58:27 ---A- . (...) -- C:\Users\kathy\Documents\Oregano Vs. Amoxicillin.flv [6037959]
O61 - LFC: 31/10/2013 - 17:57:24 ---A- . (...) -- C:\Users\kathy\AppData\Local\AMD\Fuel\ClientProxyLog.txt [2]
O61 - LFC: 31/10/2013 - 17:57:24 ---A- . (...) -- C:\Users\kathy\AppData\Local\AMD\Fuel\ClientProxyLog_1.txt [2]
O61 - LFC: 31/10/2013 - 17:57:24 ---A- . (...) -- C:\Users\kathy\AppData\Local\AMD\Fuel\ClientProxyLog_2.txt [2]
O61 - LFC: 31/10/2013 - 17:57:24 ---A- . (...) -- C:\Users\kathy\AppData\Local\AMD\Fuel\ClientProxyLog_3.txt [2]
O61 - LFC: 31/10/2013 - 17:57:24 ---A- . (...) -- C:\Users\kathy\AppData\Local\ATI\ACE\Manifest.Bin [26821]
O61 - LFC: 31/10/2013 - 17:57:24 ---A- . (...) -- C:\Users\kathy\AppData\Local\ATI\ACE\Manifest.xml [19261]
O61 - LFC: 31/10/2013 - 17:57:24 ---A- . (...) -- C:\Users\kathy\AppData\Local\ATI\ACE\Profiles.xml [14199]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Archived History [57344]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Archived History-journal [512]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Bookmarks [774840]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Bookmarks.bak [774840]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Cookies [1134592]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Cookies-journal [16384]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\CURRENT [16]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG [0]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG.old [151]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\MANIFEST-001501 [1470]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extension State\CURRENT [16]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG [0]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old [151]
O61 - LFC: 31/10/2013 - 17:57:25 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-002824 [486]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Favicons [24393728]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Favicons-journal [16384]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\CURRENT [16]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\LOG [269]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\LOG.old [148]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\MANIFEST-000799 [251]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\History [3112960]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache [434326]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\History-journal [16384]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\chdboodilddefglllfoimeceomkpmkbi\CURRENT [16]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\chdboodilddefglllfoimeceomkpmkbi\LOG [629]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\chdboodilddefglllfoimeceomkpmkbi\MANIFEST-000076 [241]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_apps.facebook.com_0.localstorage [3072]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_apps.facebook.com_0.localstorage-journal [3608]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage [4096]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage-journal [4640]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Login Data [20480]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Login Data-journal [4624]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Managed Mode Settings [8]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor [16384]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor-journal [3608]
O61 - LFC: 31/10/2013 - 17:57:33 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Origin Bound Certs [35840]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KSW9ZEGV\bw1.midasplayer.com\swf\bubblewitch.swf\bw_1102498305.sol [65]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KSW9ZEGV\macromedia.com\support\flashplayer\sys\#bw1.midasplayer.com\settings.sol [89]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KSW9ZEGV\macromedia.com\support\flashplayer\sys\#p1.badoocdn.com\settings.sol [85]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KSW9ZEGV\macromedia.com\support\flashplayer\sys\#static.anonymousdmp.com\settings.sol [93]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KSW9ZEGV\macromedia.com\support\flashplayer\sys\settings.sol [515]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KSW9ZEGV\p1.badoocdn.com\statf.sol [42]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KSW9ZEGV\static.anonymousdmp.com\pus.sol [68]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Preferences [160542]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\QuotaManager [24576]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Session Storage\CURRENT [16]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG [0]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG.old [272]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000562 [304]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Shortcuts [45056]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal [12824]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Sync Data\SyncData.sqlite3 [6082560]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Sync Data\SyncData.sqlite3-journal [16384]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Top Sites [86016]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Top Sites-journal [12824]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity [1598]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Visited Links [0]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Web Data [311296]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal [6680]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Local State [59162]
O61 - LFC: 31/10/2013 - 17:57:34 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\PnaclTranslationCache\data_0 [8192]
O61 - LFC: 31/10/2013 - 17:57:35 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\PnaclTranslationCache\data_1 [270336]
O61 - LFC: 31/10/2013 - 17:57:35 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\PnaclTranslationCache\data_2 [8192]
O61 - LFC: 31/10/2013 - 17:57:35 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\PnaclTranslationCache\data_3 [8192]
O61 - LFC: 31/10/2013 - 17:57:35 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\PnaclTranslationCache\index [524656]
O61 - LFC: 31/10/2013 - 17:57:35 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom [5986756]
O61 - LFC: 31/10/2013 - 17:57:35 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom Prefix Set [1438436]
O61 - LFC: 31/10/2013 - 17:57:35 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Safe Browsing Cookies [6144]
O61 - LFC: 31/10/2013 - 17:57:35 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Safe Browsing Cookies-journal [2576]
O61 - LFC: 31/10/2013 - 17:57:35 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Safe Browsing Csd Whitelist [135184]
O61 - LFC: 31/10/2013 - 17:57:35 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Safe Browsing Download [932796]
O61 - LFC: 31/10/2013 - 17:57:35 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Safe Browsing Download Whitelist [18884]
O61 - LFC: 31/10/2013 - 17:57:35 ---A- . (...) -- C:\Users\kathy\AppData\Local\Google\Chrome\User Data\Safe Browsing Extension Blacklist [6704]
O61 - LFC: 31/10/2013 - 17:57:36 --HA- . (...) -- C:\Users\kathy\AppData\Local\IconCache.db [3523707]
O61 - LFC: 31/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Browser\Local Storage\sp_05b140dd3b3331aac802c0485c272a36787823b4.feed_0.localstorage [506880]
O61 - LFC: 31/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Browser\Local Storage\sp_05b140dd3b3331aac802c0485c272a36787823b4.feed_0.localstorage-journal [16384]
O61 - LFC: 31/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Browser\Local Storage\sp_a64d391423dedb5f66ebe3affb00a28efa4f5bd4.discover_0.localstorage [18432]
O61 - LFC: 31/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Browser\Local Storage\sp_a64d391423dedb5f66ebe3affb00a28efa4f5bd4.discover_0.localstorage-journal [16384]
O61 - LFC: 31/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Browser\Local Storage\sp_f0014500295de1add53bacfa9fae958c600deea2.notification-popup_0.localstorage [534528]
O61 - LFC: 31/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Browser\Local Storage\sp_f0014500295de1add53bacfa9fae958c600deea2.notification-popup_0.localstorage-journal [16384]
O61 - LFC: 31/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\03\039d90c46124caf6fc1c5603b44faae5dc63b831.file [2372]
O61 - LFC: 31/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\03\03c8ca0478c58ac33588769293a1151edae13067.file [11939]
O61 - LFC: 31/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\04\0434db7614ba7698d38c151773dcdbaedb1886b1.file [2003]
O61 - LFC: 31/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\08\0836249d97f8238621e9ceb5d1f0a99de6efce9d.file [919]
O61 - LFC: 31/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\mercury.db [108517376]
O61 - LFC: 31/10/2013 - 17:57:38 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\mercury.db-wal [18013056]
O61 - LFC: 31/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\09\09ad48598380ab93193188fb99b8c446d0cfba66.file [110408]
O61 - LFC: 31/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\09\09e8b2d8d77612916239ca73a6139964bec16b4a.file [3880]
O61 - LFC: 31/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\0e\0e16603b8f2aa8315e13dec0abf33aa68d5b465d.file [25307]
O61 - LFC: 31/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\10\10d0750a3bd14e96cc062b11eaf77063afc040b9.file [8031]
O61 - LFC: 31/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\13\130076d446731bf759a844e1969a29ccdb6ce1be.file [39021]
O61 - LFC: 31/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\13\13613959ec9f941805dbe74f275c9e3b99adfc8c.file [5050]
O61 - LFC: 31/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\13\1384e3f7a96218b88a65e98e0d63874be7c61e07.file [7333]
O61 - LFC: 31/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\13\1385b626c60160a0f2d213a95862c821d6679d11.file [4552]
O61 - LFC: 31/10/2013 - 17:57:39 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\13\13b3512cd364949210a354c75ce65bd7de3bd7c2.file [57394]
O61 - LFC: 31/10/2013 - 17:57:40 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\17\17f2294608d70829e775f6d5588bd792bc702dea.file [3309]
O61 - LFC: 31/10/2013 - 17:57:40 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\1a\1a8761f96dd002c234eed2534005775eef6a4693.file [4997]
O61 - LFC: 31/10/2013 - 17:57:40 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\1a\1ad0c6b3d7eaf0ee89d5fc99c3bc132f87f35cf9.file [20184]
O61 - LFC: 31/10/2013 - 17:57:40 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\1a\1ad7164ab3c3fdeab5662861c60baf9aab57ae64.file [2645]
O61 - LFC: 31/10/2013 - 17:57:40 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\1d\1d8422403c708d53f618f34fd47f504c0661655d.file [1098]
O61 - LFC: 31/10/2013 - 17:57:41 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\23\2362912d7bb6c784d76794af8760be841c69d955.file [7674]
O61 - LFC: 31/10/2013 - 17:57:41 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\23\2372f697fec36f42a3aaeb0460a97a5334422a2c.file [6094]
O61 - LFC: 31/10/2013 - 17:57:41 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\24\2473eb057cea2e946f631016783ff34447fd5330.file [28957]
O61 - LFC: 31/10/2013 - 17:57:41 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\28\28dc1896ce3884a1bb1eaf74008551be619815c5.file [6041]
O61 - LFC: 31/10/2013 - 17:57:42 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\29\294959b3061e67e334db4c708a0648800d82abd5.file [25717]
O61 - LFC: 31/10/2013 - 17:57:42 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\29\29fc7b38fa6638f50d82b2766b32f69c98ba91d5.file [2826]
O61 - LFC: 31/10/2013 - 17:57:42 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\2a\2a06ab670ee28c463daeabf1980bf9f308226f53.file [14050]
O61 - LFC: 31/10/2013 - 17:57:42 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\2a\2accbdcb8af251a5187a96a4fb9472c7f22748a6.file [986035]
O61 - LFC: 31/10/2013 - 17:57:42 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\2c\2c1d1c559fe5ba0ce4064927689746f813dc62e6.file [45065]
O61 - LFC: 31/10/2013 - 17:57:42 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\2d\2d7db26faf8bdb1cfa2eb1ce9c8606c8c048a0f0.file [1599]
O61 - LFC: 31/10/2013 - 17:57:42 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\2f\2f041e3f2f4f158ee9b35cc6f3aa44aca0e3b695.file [65896]
O61 - LFC: 31/10/2013 - 17:57:43 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\30\305f8c0d57dcf80ca2d93f4790e72309aa2f2af4.file [638]
O61 - LFC: 31/10/2013 - 17:57:43 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\31\31fb04226cf2f2734fe38e16cf23166d28e04c60.file [17199]
O61 - LFC: 31/10/2013 - 17:57:43 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\33\336cb4cad6f505f644fe441bf034f88a8c5f1010.file [20387]
O61 - LFC: 31/10/2013 - 17:57:44 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\35\3538f3463a673b0968083fd79496beea2c90395f.file [33399]
O61 - LFC: 31/10/2013 - 17:57:44 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\39\393e240a6ebd79630188a124c71f1196d4dc1e03.file [4206]
O61 - LFC: 31/10/2013 - 17:57:44 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\39\398bf1e765c9e6027dbb2fb5d9bf3219ae735b6d.file [19039]
O61 - LFC: 31/10/2013 - 17:57:44 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\3a\3a7b511d4247f3909b61a86b79c32133dc64e604.file [6937]
O61 - LFC: 31/10/2013 - 17:57:44 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\3a\3af52203223f7fe904003a60d921e0462e887679.file [8896]
O61 - LFC: 31/10/2013 - 17:57:44 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\3b\3b4d171186643efaa4fb89f7fd7a4bfa89eb9034.file [66236]
O61 - LFC: 31/10/2013 - 17:57:45 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\3e\3e878732760416529ccf3dd8b5de21e05de8f763.file [2596]
O61 - LFC: 31/10/2013 - 17:57:46 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\41\417f142c23d26f021b781fe09eed093af2c39229.file [10762]
O61 - LFC: 31/10/2013 - 17:57:47 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\48\48f0c27c7d8352e69c49b5355c6bd78c2ea3a076.file [4470]
O61 - LFC: 31/10/2013 - 17:57:47 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\49\49d390cf8df617d6507db29b5dd8dcf231547a10.file [13064]
O61 - LFC: 31/10/2013 - 17:57:47 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\4b\4bd95d978ca95d90063915362bc9f1c1860751ba.file [58281]
O61 - LFC: 31/10/2013 - 17:57:47 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\4c\4c6c99ce2b9eeb8947e13fe23bab48f8e8a88023.file [21704]
O61 - LFC: 31/10/2013 - 17:57:48 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\4f\4feb595c69462653c6474c9fae8f52e8570272fa.file [2591]
O61 - LFC: 31/10/2013 - 17:57:48 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\50\501206fdd9af989417c5e87abb6a6cd912954955.file [8957]
O61 - LFC: 31/10/2013 - 17:57:48 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\52\525a3d185f4b61ea0d3729f613b26f959b5c9e2d.file [30988]
O61 - LFC: 31/10/2013 - 17:57:48 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\52\52dcd8f4d0e36a23a86d59d79791d5570f07832a.file [7765]
O61 - LFC: 31/10/2013 - 17:57:50 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\5a\5a93c25e3aa99378db779bcdb14bf6defe3148f0.file [10169]
O61 - LFC: 31/10/2013 - 17:57:50 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\5a\5a9ec8837824bf0b58292f8af2bc347f915ef6d8.file [23089]
O61 - LFC: 31/10/2013 - 17:57:50 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\5b\5bbacdafe27c77ef4e2042368e116b93e1ed856c.file [40990]
O61 - LFC: 31/10/2013 - 17:57:50 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\5c\5cb6f81084b128eedaed0b86a626b0d0b72ef084.file [2848]
O61 - LFC: 31/10/2013 - 17:57:50 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\5d\5d5aaf520154fc41278c72e28aa9cee69d7f3343.file [44384]
O61 - LFC: 31/10/2013 - 17:57:50 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\5f\5f0e6427362359c230d35813e0e8b1c7a15eaf2a.file [275963]
O61 - LFC: 31/10/2013 - 17:57:50 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\5f\5f4cb8c12a4319ca3ee5b5d5632c206061ac79f0.file [22304]
O61 - LFC: 31/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\64\643fadb50a4746fc3460a4ceb7a106cebaa16867.file [43231]
O61 - LFC: 31/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\64\64ddaf755257bfb6dbac8d66c6c98d3425049547.file [34198]
O61 - LFC: 31/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\66\66b3d103701604fc0994a638a845b32535959d1a.file [5616]
O61 - LFC: 31/10/2013 - 17:57:51 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\67\67c6de1a60855aef65f413bd656852ef60ec57c0.file [11335]
O61 - LFC: 31/10/2013 - 17:57:52 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\70\700b14c0c50eefaec825aabcfa73ffbd301b563b.file [4133]
O61 - LFC: 31/10/2013 - 17:57:53 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\71\7169a11ab2837c2896d89641dc1b044bf1f06e35.file [11035]
O61 - LFC: 31/10/2013 - 17:57:53 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\72\72013707468b791f7be8a7eac39baa291540b007.file [1428]
O61 - LFC: 31/10/2013 - 17:57:53 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\72\7212b6a98f58ee2c4744a478f8043572973c9484.file [14450]
O61 - LFC: 31/10/2013 - 17:57:53 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\72\721b9545e4d219ef727c97afca36505581760b91.file [37114]
O61 - LFC: 31/10/2013 - 17:57:53 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\73\73adb4e38fdf1f56690714ae96ae4fbf0a6d6e55.file [30832]
O61 - LFC: 31/10/2013 - 17:57:53 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\74\74a213c5460ad7400ef7d8c058ac29a00da30266.file [4369]
O61 - LFC: 31/10/2013 - 17:57:53 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\76\761dc31a229e466f12667d6c4b7365a6fd547d6f.file [2389]
O61 - LFC: 31/10/2013 - 17:57:53 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\76\76ab0c8659e66308f7e7402cb406a50394dfc2a4.file [5364]
O61 - LFC: 31/10/2013 - 17:57:53 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\77\775d9114785be0631eaf0f58f8b5e60454141f2b.file [170848]
O61 - LFC: 31/10/2013 - 17:57:54 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\77\77f0592cdea8a386ef5d986123396001fe2138ae.file [89768]
O61 - LFC: 31/10/2013 - 17:57:54 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\78\7829f0968a845b13daac6f88cc7dfcc248ce4fa4.file [28143]
O61 - LFC: 31/10/2013 - 17:57:54 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\78\7855763b08bdf99f22a06654e1d0e50bff6b0fee.file [6489]
O61 - LFC: 31/10/2013 - 17:57:54 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\7b\7bb05227709da379a6b03df7672facfe3577b612.file [26975]
O61 - LFC: 31/10/2013 - 17:57:54 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\7b\7bee76413f34ae839af55889812df986d1c47370.file [36821]
O61 - LFC: 31/10/2013 - 17:57:54 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\80\801e21fad24877ccdad566d2f1273afd382139bb.file [23924]
O61 - LFC: 31/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\83\83483e9742655956f2caf696f5f8c8c1f2356d8c.file [7301]
O61 - LFC: 31/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\84\84e22c51cca025016149f958ca034873fc396881.file [4973]
O61 - LFC: 31/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\87\877e4bb02a0d2c9fb3c1d082ebf1e2a3b94bacab.file [46810]
O61 - LFC: 31/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\89\895405c745c6119edf2af1ff6e5393c2949179d7.file [25893]
O61 - LFC: 31/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\8b\8be21dda67cb383a805d81c7f06d8258739450df.file [12652]
O61 - LFC: 31/10/2013 - 17:57:55 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\8c\8c218aa9b115768b3e9dca01a7e278f88455f02f.file [6005]
O61 - LFC: 31/10/2013 - 17:57:56 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\8f\8f0188e81523bf507d1ac3a97f422cefe7b5e044.file [41108]
O61 - LFC: 31/10/2013 - 17:57:56 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\91\9194e272f9f0cd636481f8d91643e1402f79eacc.file [15360]
O61 - LFC: 31/10/2013 - 17:57:56 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\92\92be1e103d2759f7b2b6aca7a74ead13ad859c8a.file [23320]
O61 - LFC: 31/10/2013 - 17:57:56 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\93\938da552ec6ddd329a8e5b26a00417701baaae44.file [11907]
O61 - LFC: 31/10/2013 - 17:57:56 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\94\941eb4072e244fc6fd85fb1222b4f1df97451751.file [2648]
O61 - LFC: 31/10/2013 - 17:57:56 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\97\9704666628d6fecd3456672cdde8d40f94b7ab4a.file [20033]
O61 - LFC: 31/10/2013 - 17:57:57 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\97\9766953b5854791ff4ae4ea7b0837eae3212dab3.file [7769]
O61 - LFC: 31/10/2013 - 17:57:57 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\97\978c7929aa670ee468c33600354ac9cc63461c8e.file [3347]
O61 - LFC: 31/10/2013 - 17:57:57 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\98\9895a44b29c9c0e76391a8aad3b74bc6763c003c.file [6305]
O61 - LFC: 31/10/2013 - 17:57:57 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\9a\9a4423d9127ec41c7579ed7cf0d456c866b112a4.file [2158]
O61 - LFC: 31/10/2013 - 17:57:57 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\9a\9ae62c1b12e60d6e3fd84b302e618704d2ee231d.file [39823]
O61 - LFC: 31/10/2013 - 17:57:57 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\9b\9bd33d267c5f1bd0f7941cdd532515ba9167c07e.file [4565]
O61 - LFC: 31/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a1\a17aaed01395ea6bb3618742a9894ef584624dcb.file [6773]
O61 - LFC: 31/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a2\a25dca32cd262c4700d63d1504dd85eb7938adaf.file [58844]
O61 - LFC: 31/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a2\a271596e53d5fbfe4c908d7f7b51c449e36e94b8.file [13071]
O61 - LFC: 31/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a3\a32d01ce9cd8e57083648f345fe6cf7acc5e0122.file [23115]
O61 - LFC: 31/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a3\a38a00cbb169d3053a6b061604f2cb283115e13d.file [34531]
O61 - LFC: 31/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a5\a529a427729198d849340cef047617bc1a4ebc6d.file [7039]
O61 - LFC: 31/10/2013 - 17:57:58 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a6\a6cbacb4bdc5650d3429fe5c7ca34c4260f8c4c0.file [24153]
O61 - LFC: 31/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\a8\a8dc65e7a1fd8c4798f67a409a41d109b0e6e524.file [26188]
O61 - LFC: 31/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\aa\aa19236367fc7cb8d7e67429be43fda2375a0212.file [24149]
O61 - LFC: 31/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ab\abb77819d903514b1bdb1904416a0f185721c5cf.file [26859]
O61 - LFC: 31/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ab\abf5d1a88851cd17e462dc4c7207b6c1bf1c9b26.file [34892]
O61 - LFC: 31/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ac\ac257e165ae3304710ee08ca3f94f044ca2c8477.file [10552]
O61 - LFC: 31/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ad\ad20e77a3d6091d82b190f17ef51ea00149e331f.file [25337]
O61 - LFC: 31/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ae\aec0c7f1351f85c144ecb5e9b41b90ade919c538.file [3955]
O61 - LFC: 31/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ae\aedb1a6d86be8d36fb6e302de5c9d5eca40b52b1.file [13416]
O61 - LFC: 31/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\af\af8af512bec02859b9b160d6b24ca16dc4aa7abd.file [81815]
O61 - LFC: 31/10/2013 - 17:57:59 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\b1\b16ffae4a0d00098ed888488869a18de61b34113.file [1953]
O61 - LFC: 31/10/2013 - 17:58:00 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\b1\b1b73e208c132240576057d844e57c251acddfbc.file [34598]
O61 - LFC: 31/10/2013 - 17:58:00 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\b8\b86c6a8570f5c12a44cd479ddfea6e2cfcea1b4e.file [12960]
O61 - LFC: 31/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\bd\bdec338099d4273a3034e465fbe6262616fd01a9.file [6223]
O61 - LFC: 31/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c0\c0cd562235516d8d4b03f6426e65fe425ee3dea7.file [1990]
O61 - LFC: 31/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c0\c0dcb73c74cdf3e29bb6279fcc6b57f7af69db8e.file [75162]
O61 - LFC: 31/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c1\c1afde08b495e8d570988e78ca567272c4e2853c.file [32969]
O61 - LFC: 31/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c5\c50b2c4147a6b033154e095f2afd41c662154b12.file [34668]
O61 - LFC: 31/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c6\c6d9091214a356cd3a3964b63ff6d7e057ad481a.file [2327]
O61 - LFC: 31/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c7\c7297d4f830d1c3858151d8408c9cad0ed8f259b.file [50354]
O61 - LFC: 31/10/2013 - 17:58:01 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\c7\c7769b900d053e063ceb9e40e559fff9cb8d6abe.file [17122]
O61 - LFC: 31/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ca\ca574dab3ae811da3f9361f8df34cab473f904a5.file [70635]
O61 - LFC: 31/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\cd\cd592e8f3ae6d1af3871f09b6e42fce30de478f2.file [75167]
O61 - LFC: 31/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\cf\cf11e0973aed45be72c3a87a7b2538dc22950f1f.file [31412]
O61 - LFC: 31/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d0\d0b152722e376998d82de763e67d5cfdbba0d0f8.file [22825]
O61 - LFC: 31/10/2013 - 17:58:02 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d3\d3851c3f652b632f4481ef03b115bff3b9447359.file [46095]
O61 - LFC: 31/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d5\d59de263c955e85746e4093d50c5a5b8b41e417a.file [25285]
O61 - LFC: 31/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d6\d65ed7e401f86f6bd1d1a3417c9271ec33edd168.file [24094]
O61 - LFC: 31/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d8\d87689790fd655f3fb1dd760bb66a6bb5052e948.file [38416]
O61 - LFC: 31/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d8\d8a887081e552dad7f5176a5b8527af748803351.file [16014]
O61 - LFC: 31/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d8\d8b587b1aad599b0f3db5fc76e529772e1cd00e1.file [4353]
O61 - LFC: 31/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\d9\d9b1f4ef700fe906659185af6c28271710b3ce5b.file [17382]
O61 - LFC: 31/10/2013 - 17:58:03 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\da\da57e920037166d27548c5addd272041023983e7.file [101320]
O61 - LFC: 31/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\dc\dcfbc15c21d6108ac37596f02d5bd06718a34937.file [115723]
O61 - LFC: 31/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e0\e0c982e964cf558dacae790f771815f7fae05640.file [9778]
O61 - LFC: 31/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e1\e1c515274d56887db93d88da242e3298c169b8cc.file [14269]
O61 - LFC: 31/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e3\e38826deef8c20b9ae233a864e8ad8e0953e5f9d.file [13456]
O61 - LFC: 31/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e3\e38e3db9d537ffc22cfeea21c9b785f9f7246895.file [7177]
O61 - LFC: 31/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e5\e514d57fb1770ecc4b7a8207f54bb85d08f4c052.file [2844]
O61 - LFC: 31/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e6\e631344b3e9784345b35009fe15492bae4eea5b8.file [28496]
O61 - LFC: 31/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\e7\e763e7377d1f4e0f619825a19f97055b10259c16.file [1199]
O61 - LFC: 31/10/2013 - 17:58:04 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ea\ea51dc535444ab04615905e5826128b0a47165cc.file [12576]
O61 - LFC: 31/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\ef\ef5a1d7bd2dde6a4eb50b815c36e6aa37486a2df.file [7644]
O61 - LFC: 31/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\f5\f575f6ec790a7bc60aaa0e5b4b7ceaebd5a582b0.file [21990]
O61 - LFC: 31/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\f5\f5ea524090432bd6830d233756599c02d552e73d.file [16959]
O61 - LFC: 31/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\f8\f8948d87622826880439e1fbe3bc1c4ad1e573ec.file [8789]
O61 - LFC: 31/10/2013 - 17:58:05 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\f9\f9f0c28fd998ea19af6e5ef824259aa55317c48b.file [3581]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\fa\fa24e8a1d39250bae9fc3609f2ab2d81205aa7c6.file [234897]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\fc\fc2ce8b044fbbd0af92c88ba7bb30803343921ea.file [53142]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\fd\fd9bb142403504e129f37a0eec4ae61189551307.file [919]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Storage\fd\fdc804a696f201fe3ab026826939d587682fcd40.file [37028]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Users\114141947-user\offline2 [15146]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Spotify\Users\114141947-user\offline_lists.bnk [8240]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42\cs.js [728]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42\manifest.json [968]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\bk.js [354]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\manifest.json [645]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\JRT.txt [173560]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\Skype\DbTemp\temp-GJmyc7uKZI9yTBCEaLQeKeVt [0]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\Skype\DbTemp\temp-H2sj9FJSal9DdkLsb4hpmvzr [0]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\jrt\temp\null.txt [0]
O61 - LFC: 31/10/2013 - 17:58:06 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\kathy.bmp [31832]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\TWAIN.LOG [186]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\Twain001.Mtx [2]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\UnityWebPlayer\log\log_3aa5769d427c1b4ca5e02c334d88ebf0.txt [0]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\UnityWebPlayer\log\log_db96b59d507b8641b0fcf0d970f918d6.txt [205]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\UnityWebPlayer\log\manager_454445ddfdac2748a386e0dd6ca226f8.txt [142]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\UnityWebPlayer\log\manager_69d7e29a6fe0b04091398ef3faf94f55.txt [0]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\wmplog00.sqm [1474]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\wmplog01.sqm [1474]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\wmplog02.sqm [1474]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\wmplog03.sqm [1474]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\wmplog04.sqm [1474]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\wmplog05.sqm [1474]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\wmplog06.sqm [1474]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\wmplog07.sqm [1394]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\wmplog08.sqm [1474]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\wmplog09.sqm [1352]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\wmplog10.sqm [1394]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\wmplog11.sqm [1272]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\wmplog12.sqm [1658]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Temp\~WRD0002.doc [14405]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Western Digital\WD SmartWare\WD SmartWare(WDDMStatus).txt [147735]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Windows Live\uxcore_WLXPhotoGallery_00.etl [12288]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (...) -- C:\Users\kathy\AppData\Local\Windows Live\uxcore_WLXPhotoGallery_01.etl [12288]
O61 - LFC: 31/10/2013 - 17:58:07 ---A- . (.Eclipse Foundation.) -- C:\Users\kathy\AppData\Local\Temp\swt-win32-3333.dll [303104]
O61 - LFC: 31/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\ArcSoft\ArcSoft PhotoStudio\5.0\pstudio.mcr [610]
O61 - LFC: 31/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\config.dbx [7168]
O61 - LFC: 31/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\filecache.dbx [3159040]
O61 - LFC: 31/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\host.db [73]
O61 - LFC: 31/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\host.dbx [205]
O61 - LFC: 31/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\5272398b [1376]
O61 - LFC: 31/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\52723e3d [1360]
O61 - LFC: 31/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\52724158 [1392]
O61 - LFC: 31/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\5272496c [1376]
O61 - LFC: 31/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\l\527265ba [1376]
O61 - LFC: 31/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\notifications.dbx [2048]
O61 - LFC: 31/10/2013 - 17:58:10 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\photo.dbx [215040]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52720f3b [124]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52720fdd [144]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\5272168d [172]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52721edd [156]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52722778 [160]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52723f4d [156]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\5272668d [160]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52727918 [160]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52727cd7 [124]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52727d2f [144]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52727f22 [156]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52727fa3 [176]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52728399 [124]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\527283bd [144]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\shellext\l\52728846 [176]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Dropbox\unlink.db [216]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Lexmark Productivity Studio\LXDVPDS.xml [142537]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\Bonjour.lnk [423]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\Bureau.lnk [297]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\La.lnk [804]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\Micro ondes.lnk [707]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\VACCINATIONS.lnk [838]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\vaccins.lnk [685]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Word10.pip [1696]
O61 - LFC: 31/10/2013 - 17:58:11 ---A- . (.kathy.) -- C:\Users\kathy\AppData\Roaming\Microsoft\Word\Enregistrement automatique deDocument2.asd [57344]
O61 - LFC: 31/10/2013 - 17:58:11 --H-- . (...) -- C:\Users\kathy\AppData\Roaming\Microsoft\Office\Fichiers r�cents\index.dat [981]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\narmolanya2\bistats.db [151552]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\narmolanya2\bistats.db-journal [37448]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\narmolanya2\config.xml [9327]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\narmolanya2\dc.db [122880]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\narmolanya2\eas.db [1069056]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\narmolanya2\httpfe\cookies.dat [2]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\narmolanya2\main.db [3842048]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\narmolanya2\main.db-journal [90800]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\narmolanya2\mmanager\mediacache.ldb [40]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\narmolanya2\qikdb\qik_main.db [28672]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\narmolanya2\simcache\streamlist [44]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\narmolanya2\thmanager\thumbcache.ldb [40]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\shared.xml [83499]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\shared_dynco\dc.db [2342912]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Skype\shared_dynco\dc.db-journal [8720]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Spotify\Users\114141947-user\guistate [15883]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Spotify\Users\114141947-user\local-files.bnk [79338]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Spotify\Users\114141947-user\purchased.bnk [178]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Spotify\Users\114141947-user\track-player.bnk [4763]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Spotify\Users\114141947-user\watch-sources.bnk [9603]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Spotify\prefs [925]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Spotify\running [0]
O61 - LFC: 31/10/2013 - 17:58:14 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\Spotify\watchdog.bnk [119]
O61 - LFC: 31/10/2013 - 17:58:15 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\ZHP\Log.txt [22907] =>.Nicolas Coolman
O61 - LFC: 31/10/2013 - 17:58:15 ---A- . (...) -- C:\Users\kathy\AppData\Roaming\ZHP\TestsZHPDiag.txt [2820] =>.Nicolas Coolman
O61 - LFC: 31/10/2013 - 17:58:21 ---A- . (...) -- C:\Users\kathy\Documents\Astrology Forecast for October 30, 2013.flv [53298105]
O61 - LFC: 31/10/2013 - 17:58:23 ---A- . (...) -- C:\Users\kathy\Documents\Freemake\FreemakeVideoDownloader\Persistent\DownloaderPersistentList.xml [145]
O61 - LFC: 31/10/2013 - 17:58:23 ---A- . (...) -- C:\Users\kathy\Documents\Freemake\FreemakeVideoDownloader\Persistent\MainPersistentList.xml [425]
O61 - LFC: 31/10/2013 - 17:58:23 ---A- . (...) -- C:\Users\kathy\Documents\Freemake\FreemakeVideoDownloader\fvd.bin [409]
O61 - LFC: 31/10/2013 - 17:58:24 ---A- . (...) -- C:\Users\kathy\Documents\My Albums\Background.abm [212300]
~ 31 Fichiers temporaires (Temporary files)
~ Files: 900 Scanned in 01mn 07s



---\\ Liste des outils de d�sinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Liste les services legacy du registre (LALS) (O64)
O64 - Services: CurCS - 21/04/2011 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD
O64 - Services: CurCS - 11/09/2013 - C:\Windows\System32\DRIVERS\atikmdag.sys (amdkmdag) .(.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) - LEGACY_AMDKMDAG
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\Drivers\Beep.sys (Beep) .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP
O64 - Services: CurCS - 23/10/2013 - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.3.1.22\Definitions\BASHDefs\20131022.001\BHDrvx86.sys (BHDrvx86) .(.Symantec Corporation - BASH Driver.) - LEGACY_BHDRVX86
O64 - Services: CurCS - 22/02/2011 - C:\Windows\System32\DRIVERS\bowser.sys (bowser) .(.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) - LEGACY_BOWSER
O64 - Services: CurCS - 16/04/2013 - C:\Windows\system32\drivers\NIS\1404000.028\ccSetx86.sys (ccSet_NIS) .(.Symantec Corporation - Common Client Settings Driver.) - LEGACY_CCSET_NIS
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\DRIVERS\cdfs.sys (cdfs) .(.Microsoft Corporation - CD-ROM File System Driver.) - LEGACY_CDFS
O64 - Services: CurCS - 11/04/2009 - C:\Windows\System32\CLFS.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS
O64 - Services: CurCS - 02/11/2006 - C:\Windows\System32\drivers\crcdisk.sys (crcdisk) .(.Microsoft Corporation - Disk Block Verification Filter Driver.) - LEGACY_CRCDISK
O64 - Services: CurCS - 14/04/2011 - C:\Windows\System32\Drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC
O64 - Services: CurCS - 01/08/2013 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL
O64 - Services: CurCS - 27/08/2013 - C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys (eeCtrl) .(.Symantec Corporation - Symantec Eraser Control Driver.) - LEGACY_EECTRL
O64 - Services: CurCS - 27/08/2013 - C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys (EraserUtilRebootDrv) .(.Symantec Corporation - Symantec Eraser Utility Driver.) - LEGACY_ERASERUTILREBOOTDRV
O64 - Services: CurCS - 11/04/2009 - C:\Windows\System32\Drivers\fastfat.sys (fastfat) .(.Microsoft Corporation - Fast FAT File System Driver.) - LEGACY_FASTFAT
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO
O64 - Services: CurCS - 11/04/2009 - C:\Windows\System32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de syst�me de fichi.) - LEGACY_FLTMGR
O64 - Services: CurCS - 28/05/2010 - C:\Windows\system32\FsUsbExDisk.sys (FsUsbExDisk) .(...) - LEGACY_FSUSBEXDISK
O64 - Services: CurCS - 19/09/2010 - C:\Windows\System32\drivers\HTTP.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP
O64 - Services: CurCS - 29/10/2013 - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.3.1.22\Definitions\IPSDefs\20131030.001\IDSvix86.sys (IDSVix86) .(.Symantec Corporation - IDS Core Driver.) - LEGACY_IDSVIX86
O64 - Services: CurCS - 16/10/2009 - C:\Windows\System32\DRIVERS\InCDFs.sys (InCDFs) .(.Nero AG - InCD File System Driver.) - LEGACY_INCDFS
O64 - Services: CurCS - 16/10/2009 - C:\Windows\System32\DRIVERS\InCDRec.sys (InCDRec) .(.Nero AG - Nero InCD File System Recognizer.) - LEGACY_INCDREC
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\DRIVERS\ipnat.sys (IPNAT) .(.Microsoft Corporation - IP Network Address Translator.) - LEGACY_IPNAT
O64 - Services: CurCS - 04/06/2012 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO
O64 - Services: CurCS - 18/01/2008 - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\drivers\mountmgr.sys (MountMgr) .(.Microsoft Corporation - Mount Point Manager.) - LEGACY_MOUNTMGR
O64 - Services: CurCS - 18/01/2008 - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV
O64 - Services: CurCS - 11/04/2009 - C:\Windows\system32\drivers\mrxdav.sys (MRxDAV) .(.Microsoft Corporation - Windows NT WebDav Minirdr.) - LEGACY_MRXDAV
O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\mrxsmb.sys (mrxsmb) .(.Microsoft Corporation - Windows NT SMB Minirdr.) - LEGACY_MRXSMB
O64 - Services: CurCS - 06/07/2011 - C:\Windows\System32\DRIVERS\mrxsmb10.sys (mrxsmb10) .(.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) - LEGACY_MRXSMB10
O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\mrxsmb20.sys (mrxsmb20) .(.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) - LEGACY_MRXSMB20
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\drivers\msisadrv.sys (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV
O64 - Services: CurCS - 11/04/2009 - C:\Windows\System32\Drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider driver.) - LEGACY_MUP
O64 - Services: CurCS - 16/10/2013 - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.3.1.22\Definitions\VirusDefs\20131030.034\NAVENG.sys (NAVENG) .(.Symantec Corporation - AV Engine.) - LEGACY_NAVENG
O64 - Services: CurCS - 16/10/2013 - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.3.1.22\Definitions\VirusDefs\20131030.034\NAVEX15.sys (NAVEX15) .(.Symantec Corporation - AV Engine.) - LEGACY_NAVEX15
O64 - Services: CurCS - 11/04/2009 - C:\Windows\System32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - NDIS 6.0 wrapper driver.) - LEGACY_NDIS
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS
O64 - Services: CurCS - 11/04/2009 - C:\Windows\System32\DRIVERS\netbt.sys (netbt) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT
O64 - Services: CurCS - 11/02/2011 - C:\Windows\System32\drivers\NPF.sys (NPF) .(.CACE Technologies, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) - LEGACY_NPF
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY
O64 - Services: CurCS - 02/11/2006 - C:\Windows\System32\drivers\nvraid.sys (nvraid) .(.NVIDIA Corporation - NVIDIA� nForce(TM) RAID Driver.) - LEGACY_NVRAID
O64 - Services: CurCS - 02/11/2006 - C:\Windows\System32\drivers\peauth.sys (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH
O64 - Services: CurCS - 11/04/2009 - C:\Windows\System32\drivers\pacer.sys (PSched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\DRIVERS\rasacd.sys (RasAcd) .(.Microsoft Corporation - RAS Automatic Connection Driver.) - LEGACY_RASACD
O64 - Services: CurCS - 11/04/2009 - C:\Windows\System32\DRIVERS\rdbss.sys (rdbss) .(.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - LEGACY_RDBSS
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\drivers\rdpencdd.sys (RDPENCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPENCDD
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR
O64 - Services: CurCS - 02/11/2006 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
O64 - Services: CurCS - 11/04/2009 - C:\Windows\system32\tcpipcfg.dll (Smb) .(.Microsoft Corporation - Objets de configuration du r�seau.) - LEGACY_SMB
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\Drivers\spldr.sys (spldr) .(.Microsoft Corporation - loader for security processor.) - LEGACY_SPLDR
O64 - Services: CurCS - 31/10/2013 - C:\Windows\system32\spoolsv.exe,-1 (Spooler) .(...) - LEGACY_SPOOLER
O64 - Services: CurCS - 16/05/2013 - C:\Windows\system32\Drivers\NIS\1404000.028\SRTSP.sys (SRTSP) .(.Symantec Corporation - Symantec AutoProtect.) - LEGACY_SRTSP
O64 - Services: CurCS - 05/03/2013 - C:\Windows\system32\drivers\NIS\1404000.028\SRTSPX.sys (SRTSPX) .(.Symantec Corporation - Symantec AutoProtect.) - LEGACY_SRTSPX
O64 - Services: CurCS - 18/02/2011 - C:\Windows\System32\DRIVERS\srv.sys (srv) .(.Microsoft Corporation - Server driver.) - LEGACY_SRV
O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srv2.sys (srv2) .(.Microsoft Corporation - Smb 2.0 Server driver.) - LEGACY_SRV2
O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET
O64 - Services: CurCS - 21/05/2013 - C:\Windows\System32\drivers\NIS\1404000.028\SYMDS.sys (SymDS) .(.Symantec Corporation - Symantec Data Store.) - LEGACY_SYMDS
O64 - Services: CurCS - 23/05/2013 - C:\Windows\System32\drivers\NIS\1404000.028\SYMEFA.sys (SymEFA) .(.Symantec Corporation - Symantec Extended File Attributes.) - LEGACY_SYMEFA
O64 - Services: CurCS - 19/06/2013 - C:\Windows\system32\Drivers\SYMEVENT.sys (SymEvent) .(.Symantec Corporation - Symantec Event Library.) - LEGACY_SYMEVENT
O64 - Services: CurCS - 05/03/2013 - C:\Windows\system32\drivers\NIS\1404000.028\Ironx86.sys (SymIRON) .(.Symantec Corporation - Iron Driver.) - LEGACY_SYMIRON
O64 - Services: CurCS - 25/04/2013 - C:\Windows\system32\Drivers\NIS\1404000.028\SYMTDIV.sys (SYMTDIv) .(.Symantec Corporation - Network Dispatch Driver.) - LEGACY_SYMTDIV
O64 - Services: CurCS - 11/04/2009 - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du r�seau.) - LEGACY_TCPIP
O64 - Services: CurCS - 20/09/2010 - C:\Windows\System32\drivers\tcpipreg.sys (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG
O64 - Services: CurCS - 11/04/2009 - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du r�seau.) - LEGACY_TDX
O64 - Services: CurCS - 04/07/2010 - C:\Program Files\Unlocker\UnlockerDriver5.sys (UnlockerDriver5) .(...) - LEGACY_UNLOCKERDRIVER5
O64 - Services: CurCS - 18/01/2008 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE
O64 - Services: CurCS - 11/04/2009 - C:\Windows\System32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Volume Manager Extension Driver.) - LEGACY_VOLMGRX
O64 - Services: CurCS - 21/08/2012 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de clich� instantan� du volume.) - LEGACY_VOLSNAP
O64 - Services: CurCS - 18/01/2008 - C:\Windows\System32\DRIVERS\wanarp.sys (Wanarpv6) .(.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - LEGACY_WANARPV6
O64 - Services: CurCS - 27/06/2013 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - Runtime de l�infrastructure de pilotes en m.) - LEGACY_WDF01000
O64 - Services: CurCS - 26/07/2012 - C:\Windows\system32\drivers\Wudfpf.sys (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF
~ Legacy: 101 Scanned in 00mn 15s



---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'�v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'�v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
~ FASS Keys: 19 Scanned in 00mn 00s



---\\ Menu de d�marrage Internet (SMI) (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: prefs.js [kathy - rpy80tth.default] user_pref("weboftrust.search.ask.display", "Ask.com Web Search");
~ Keys: Scanned in 00mn 00s



---\\ Enum�re les service demarr�s par Svchost (SSS) (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Exp�rience d�application.) -- C:\Windows\System32\aelupsvc.dll [24576]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux probl�mes.) -- C:\Windows\System32\wercplsupport.dll [62976]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll [40448]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll [40448]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de strat�gie de groupe.) -- C:\Windows\System32\gpsvc.dll [576512]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [438784]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [315392]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de num�rotation automatique d�acc�s distant.) -- C:\Windows\System32\rasauto.dll [90624]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'acc�s distant.) -- C:\Windows\System32\rasmans.dll [262144]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d�interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d��v�nements syst�me (SENS).) -- C:\Windows\System32\sens.dll [47104]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance � Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [288256]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de t�l�phonie Microsoft� Windows(TM).) -- C:\Windows\System32\tapisrv.dll [242688]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Terminal Server.) -- C:\Windows\System32\termsrv.dll [449024]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise � jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [1933848]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arri�re-plan.) -- C:\Windows\System32\qmgr.dll [758784]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivit� IPv6 sur un r�seau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [200704]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [19968]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d�application.) -- C:\Windows\System32\appinfo.dll [33280]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de d�couverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multim�dias.) -- C:\Windows\System32\mmcss.dll [45056]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153088]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de t�ches.) -- C:\Windows\System32\schedsvc.dll [601600]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Terminal Server.) -- C:\Windows\System32\sessenv.dll [84992]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d�ordinateurs.) -- C:\Windows\System32\browser.dll [81920]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des cl�s.) -- C:\Windows\System32\kmsvc.dll [68096]
~ Services: 31 Scanned in 00mn 03s



---\\ Recherche particuli�re � la racine du syst�me (SPRF) (O84)
[MD5.ECB4503021A3DA40E0625722703E2607] [SPRF][14/11/2010] (...) -- C:\ProgramData\ezsidmv.dat [56]
[MD5.02C25DDC7FA7F36E15E946409906156D] [SPRF][03/10/2011] (...) -- C:\Users\kathy\AppData\Local\d3d8caps.dat [552]
[MD5.8251FBA125BBC76659ADDEA82882C0F3] [SPRF][07/10/2013] (...) -- C:\Users\kathy\AppData\Local\d3d9caps.dat [7944]
[MD5.57B4805E1DA8DD1ADC025EC1748CA0A8] [SPRF][18/09/2010] (.BackWeb - IAdHide.) -- C:\Users\kathy\AppData\Local\TempIadHide3.dll [24576]
[MD5.47025DD5CBA8B43E9D26C960FF5B32A7] [SPRF][19/10/2013] (...) -- C:\Users\kathy\AppData\Local\Temp\Quarantine.exe [344355]
[MD5.804E6B5F713C98B4100EB913B936E2B1] [SPRF][31/10/2013] (.Eclipse Foundation - SWT for Windows native library.) -- C:\Users\kathy\AppData\Local\Temp\swt-win32-3333.dll [303104]
[MD5.B9B0ABB41ABA16E2562B261F5F9D9323] [SPRF][27/08/2009] (...) -- C:\Users\kathy\AppData\Roaming\init.dll [701]
[MD5.D1E65BCAD88E26C6A52308CF0D01D438] [SPRF][15/09/2009] (...) -- C:\Users\kathy\AppData\Roaming\sound.dll [701]
[MD5.1BE2203AB50CAC237FDDF1BCAB819AE2] [SPRF][27/10/2010] (...) -- C:\Users\kathy\AppData\Roaming\SYSTEM32.dll [6]
[MD5.1FDC0AE84DD570A69FA76C8868251E23] [SPRF][21/08/2013] (...) -- C:\Users\kathy\AppData\Roaming\wklnhst.dat [706]
[MD5.8C27D71B2F6719136407C525ECF18D51] [SPRF][31/10/2013] (...) -- C:\Users\kathy\Desktop\adwcleaner.exe [1060070]
[MD5.BB3CB855C5939C6391842EE73F600B9A] [SPRF][31/10/2013] (.Thisisu - Junkware Removal Tool.) -- C:\Users\kathy\Desktop\JRT.exe [1033335]
[MD5.6EA608E6310E24D1AB6E3339A7143D08] [SPRF][31/10/2013] (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Users\kathy\Desktop\ZHPDiag2.exe [6840707]
~ Files: 13 Scanned in 00mn 05s



---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Serveur DCOM des journaux et alertes de performance.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Serveur DCOM des journaux et alertes de performance.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "WMP-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Service Partage r�seau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Service Partage r�seau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Partage r�seau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Partage r�seau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Service Partage r�seau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Service Partage r�seau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Partage r�seau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Partage r�seau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-In-TCP" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Media Center.) -- C:\Windows\ehome\ehshell.exe
O87 - FAEL: "MCX-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Media Center.) -- C:\Windows\ehome\ehshell.exe
O87 - FAEL: "MCX-QWave-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-QWave-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-QWave-In-TCP" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-QWave-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Media Center.) -- C:\Windows\ehome\ehshell.exe
O87 - FAEL: "MCX-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Media Center.) -- C:\Windows\ehome\ehshell.exe
O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MCX-Prov-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe
O87 - FAEL: "WinCollab-DFSR-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - R�plication DFS.) -- C:\Windows\system32\dfsr.exe
O87 - FAEL: "WinCollab-DFSR-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - R�plication DFS.) -- C:\Windows\system32\dfsr.exe
O87 - FAEL: "WinCollab-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe =>.Microsoft Corporation
O87 - FAEL: "WinCollab-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe =>.Microsoft Corporation
O87 - FAEL: "WinCollab-In-UDP" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe =>.Microsoft Corporation
O87 - FAEL: "WinCollab-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe =>.Microsoft Corporation
O87 - FAEL: "WinCollab-P2P-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WinCollab-P2P-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Collab-P2PHost-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Voisinage imm�diat.) -- C:\Windows\system32\p2phost.exe
O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Voisinage imm�diat.) -- C:\Windows\system32\p2phost.exe
O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Voisinage imm�diat.) -- C:\Windows\system32\p2phost.exe
O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Voisinage imm�diat.) -- C:\Windows\system32\p2phost.exe
O87 - FAEL: "Collab-PNRP-In-UDP" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contr�leur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contr�leur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "BITSSVC-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "BITSSVC-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "BITSSVC-RPC-In-TCP" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "BITSSVC-RPCSS-In-TCP" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Programme DTCconsole MS.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Programme DTCconsole MS.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Programme DTCconsole MS.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Programme DTCconsole MS.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Serveur COM d�assistance � distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Serveur COM d�assistance � distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance � distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Assistance � distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Assistance � distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Assistance � distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "RemoteAssistance-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus h�te de l�infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus h�te de l�infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NetPres-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation
O87 - FAEL: "NetPres-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation
O87 - FAEL: "NetPres-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation
O87 - FAEL: "NetPres-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation
O87 - FAEL: "NetPres-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation
O87 - FAEL: "NetPres-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCP-In" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-DHCP-Out" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-Teredo-In" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-Teredo-Out" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus de l�autorit� de s�curit� locale.) -- C:\Windows\system32\lsass.exe
O87 - FAEL: "{7D1A7E43-64C7-43E6-BED2-69B784429912}" | In - None - P6 - TRUE | .(.CyberLink Corp. - PowerDirector.) -- c:\Program Files\Cyberlink\PowerDirector\PDR.exe
O87 - FAEL: "{3E824AC5-58DF-4723-8B8B-0DF284501B48}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\System32\svchost.exe
O87 - FAEL: "{149F4A1B-CDCF-482C-95CB-B7FB8E6B08FE}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Sync.) -- C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe
O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-syst�me spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Private - P6 - FALSE | .(.Microsoft Corporation - Application sous-syst�me spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "{4B5E4F70-9FD4-4C09-871C-2BB51BD182D0}" | In - None - P6 - TRUE | .(.Microsoft Corporation - SMSvcHost.exe.) -- c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
O87 - FAEL: "{87834B85-331D-4EE7-B3C7-B1E398BAA2C1}" | In - None - P6 - TRUE | .(.Microsoft Corporation - Windows Live Communications Platform.) -- C:\Program Files\Windows Live\Contacts\wlcomm.exe
O87 - FAEL: "{20427BA6-7AA3-4BAD-AEF6-31083FAE26DF}" | In - None - P6 - TRUE | .(.Microsoft Corporation - Mesh Operating Environment.) -- C:\Program Files\Windows Live\Mesh\MOE.exe
O87 - FAEL: "{27E743C5-507C-4B0A-9425-D0A2B2C23BEF}" | In - None - P6 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O87 - FAEL: "TCP Query User{91D6D3F0-D445-46E5-9E6C-359E702EEDA3}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" | In - Public - P6 - TRUE | .(...) -- C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe
O87 - FAEL: "UDP Query User{6494BD9B-4502-44DD-B41D-475B7F4CFCDE}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" | In - Public - P17 - TRUE | .(...) -- C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe
O87 - FAEL: "TCP Query User{B3431246-DF14-418E-8A32-7840862AD253}C:\program files\google\google earth\client\googleearth.exe" | In - Public - P6 - TRUE | .(.Google - Google Earth.) -- C:\program files\google\google earth\client\googleearth.exe =>.Google Inc
O87 - FAEL: "UDP Query User{9E2BF274-68E6-4EF6-ADFC-81C1FFF8ED54}C:\program files\google\google earth\client\googleearth.exe" | In - Public - P17 - TRUE | .(.Google - Google Earth.) -- C:\program files\google\google earth\client\googleearth.exe =>.Google Inc
O87 - FAEL: "{5B962BCF-C877-4A63-B323-1CF9721B540F}" | In - None - P17 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
O87 - FAEL: "{3F39EF23-F80E-47F3-AFE6-0D1835EE58B7}" | In - Public - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{EA653EE7-3E2B-4C6B-8377-78C47CFDCB41}" | In - Public - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{4AA80B96-9B90-4492-B991-1DE67898DE6F}" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-syst�me spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "{F62BC496-7CA9-437A-8858-CE91E2350BDF}" | In - Public - P6 - TRUE | .(.ABBYY (BIT Software) - FineScanManager.) -- C:\Program Files\Abbyy FineReader 6.0 Sprint\Scan\ScanMan6.exe
O87 - FAEL: "{17953662-E8D1-4851-A608-692FC1B553A2}" | In - Public - P17 - TRUE | .(.ABBYY (BIT Software) - FineScanManager.) -- C:\Program Files\Abbyy FineReader 6.0 Sprint\Scan\ScanMan6.exe
O87 - FAEL: "{54E89F17-14F1-40AF-98EC-2BA3D7A9329D}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{151FC539-9B2E-4663-8FAE-3B4393B427EE}" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{9DE60550-16D3-4577-A229-C4E8611C6070}" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{E067856C-5D25-4602-A15D-FFDA7AB35071}" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{59E5FD92-E70D-4E6D-A614-E70CCF362DBC}" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{E8693F26-C156-42F7-8C29-D9274C2EECC2}" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{AD44AED0-C6E5-474C-8656-B56FFEFD4FA3}" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{729E377F-D7B7-4F4F-ACCD-C5B8FC0EE1EA}" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "{8C5BB985-72E4-4809-9E2D-19930775FC6F}" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus h�te pour les services Windows.) -- C:\Windows\system32\svchost.exe
O87 - FAEL: "TCP Query User{BC0F9D91-1767-4B6E-A73D-137B92813301}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" | In - Private - P6 - TRUE | .(...) -- C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe
O87 - FAEL: "UDP Query User{0E2F7FB5-0C33-4628-B9EE-E875FC725A84}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" | In - Private - P17 - TRUE | .(...) -- C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe
O87 - FAEL: "TCP Query User{02B06E68-5D59-4307-B71E-3C5AB4B286D4}C:\program files\lexmark x5400 series\lxdvmon.exe" | In - Private - P6 - TRUE | .(.Pas de propri�taire - Printer Device Monitor.) -- C:\program files\lexmark x5400 series\lxdvmon.exe
O87 - FAEL: "UDP Query User{82433A8F-E80E-4671-9158-A318F3E2CFD3}C:\program files\lexmark x5400 series\lxdvmon.exe" | In - Private - P17 - TRUE | .(.Pas de propri�taire - Printer Device Monitor.) -- C:\program files\lexmark x5400 series\lxdvmon.exe
O87 - FAEL: "TCP Query User{C5DED683-57FD-4411-B947-DB45DE1E7AA8}C:\_otl\movedfiles\07222012_182814\c_users\kathy\appdata\roaming\spotify\spotify.exe" | In - Private - P6 - TRUE | .(.Spotify Ltd.) -- C:\_otl\movedfiles\07222012_182814\c_users\kathy\appdata\roaming\spotify\spotify.exe
O87 - FAEL: "UDP Query User{D2082054-927B-4DA2-9DED-3244CE8FDC80}C:\_otl\movedfiles\07222012_182814\c_users\kathy\appdata\roaming\spotify\spotify.exe" | In - Private - P17 - TRUE | .(.Spotify Ltd.) -- C:\_otl\movedfiles\07222012_182814\c_users\kathy\appdata\roaming\spotify\spotify.exe
O87 - FAEL: "TCP Query User{EC7CDDC3-CD2E-4E51-9E0B-9EFF96CC4A9C}C:\users\kathy\appdata\roaming\dropbox\bin\dropbox.exe" | In - Private - P6 - TRUE | .(.Dropbox, Inc. - Dropbox.) -- C:\users\kathy\appdata\roaming\dropbox\bin\dropbox.exe
O87 - FAEL: "UDP Query User{AC8C13D9-7175-4597-829F-A08F506D563C}C:\users\kathy\appdata\roaming\dropbox\bin\dropbox.exe" | In - Private - P17 - TRUE | .(.Dropbox, Inc. - Dropbox.) -- C:\users\kathy\appdata\roaming\dropbox\bin\dropbox.exe
O87 - FAEL: "{230B3F88-3316-49E5-9F21-DB3BF768B55B}" | In - Public - P6 - TRUE | .(.Musiccity Co.Ltd. - MUZAoDApp Module.) -- C:\Windows\System32\muzapp.exe
O87 - FAEL: "{F46B1BFE-CEF7-4A7C-9DFD-270DD57A9E5F}" | In - Public - P17 - TRUE | .(.Musiccity Co.Ltd. - MUZAoDApp Module.) -- C:\Windows\System32\muzapp.exe
O87 - FAEL: "{E062CCB8-E7CC-4682-B682-E7264CCE9238}" | In - None - P17 - TRUE | .(.Skype Limited - Facebook Video Calling.) -- C:\Users\kathy\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe
O87 - FAEL: "{0985F822-B7C6-4275-98CF-E6EF41861009}" | In - Public - P6 - TRUE | .(.Pas de propri�taire - Printer Device Monitor.) -- C:\Program Files\Lexmark X5400 Series\lxdvmon.exe
O87 - FAEL: "{7DED6938-62F2-4AEA-9032-7688D617A1B3}" | In - Public - P17 - TRUE | .(.Pas de propri�taire - Printer Device Monitor.) -- C:\Program Files\Lexmark X5400 Series\lxdvmon.exe
O87 - FAEL: "{E2B0E61B-114B-4B26-8619-5ED2EA9ADC3B}" | In - Public - P6 - TRUE | .(.Pas de propri�taire - Printer Card Transfer Monitor.) -- C:\Program Files\Lexmark X5400 Series\lxdvamon.exe
O87 - FAEL: "{2E3E619C-9CA0-4156-8A20-713239AC49CF}" | In - Public - P17 - TRUE | .(.Pas de propri�taire - Printer Card Transfer Monitor.) -- C:\Program Files\Lexmark X5400 Series\lxdvamon.exe
O87 - FAEL: "{C946F9B3-9271-46DE-B926-441EB27CDDE4}" | In - Public - P6 - TRUE | .(.Pas de propri�taire - Printing Application.) -- C:\Program Files\Lexmark X5400 Series\frun.exe
O87 - FAEL: "{EC3454F5-2871-4AB7-8960-D7778B083E59}" | In - Public - P17 - TRUE | .(.Pas de propri�taire - Printing Application.) -- C:\Program Files\Lexmark X5400 Series\frun.exe
O87 - FAEL: "{6887AB4C-B53A-4275-A57B-1C965D437F30}" | In - Public - P6 - TRUE | .(.Pas de propri�taire - Printer Communication System.) -- C:\Windows\System32\lxdvcoms.exe
O87 - FAEL: "{0C7ACAC0-AFAA-4734-8AAA-1F338E5692F0}" | In - Public - P17 - TRUE | .(.Pas de propri�taire - Printer Communication System.) -- C:\Windows\System32\lxdvcoms.exe
O87 - FAEL: "{4A2C931A-D770-4A56-9235-F82160A02194}" | In - Public - P6 - TRUE | .(.Pas de propri�taire - Printer Status Window Interface.) -- C:\Windows\System32\spool\drivers\w32x86\3\lxdvpswx.exe
O87 - FAEL: "{BD6FA94E-A1F7-4C04-BB3D-4685A805AACF}" | In - Public - P17 - TRUE | .(.Pas de propri�taire - Printer Status Window Interface.) -- C:\Windows\System32\spool\drivers\w32x86\3\lxdvpswx.exe
O87 - FAEL: "{F5E15ECB-383E-4E17-A29C-8634BCDB3B75}" | In - Public - P6 - TRUE | .(.Lexmark International, Inc. - Lexmark Connect Time Executable.) -- C:\Windows\System32\spool\drivers\w32x86\3\lxdvtime.exe
O87 - FAEL: "{401322C5-EE46-45BA-A5BE-D66C04CEF527}" | In - Public - P17 - TRUE | .(.Lexmark International, Inc. - Lexmark Connect Time Executable.) -- C:\Windows\System32\spool\drivers\w32x86\3\lxdvtime.exe
O87 - FAEL: "{9AD49E5D-D070-4EAE-A7FE-A3F3A0CD991D}" | In - Public - P6 - TRUE | .(.Dropbox, Inc. - Dropbox.) -- C:\Users\kathy\AppData\Roaming\Dropbox\bin\Dropbox.exe
O87 - FAEL: "{2C686680-6F14-4937-B33D-F2529E774D9F}" | In - Public - P17 - TRUE | .(.Dropbox, Inc. - Dropbox.) -- C:\Users\kathy\AppData\Roaming\Dropbox\bin\Dropbox.exe
~ Firewall: 218 Scanned in 00mn 03s



---\\ Enum�re les codes produits des logiciels (PUC) (O90)
O90 - PUC: "000021090200C0400000000000F01FEC" . (.Module de compatibilit� pour Microsoft Office System 2007.) -- C:\Windows\Installer\{90120000-0020-040C-0000-0000000FF1CE}\O12ConvIcon.exe
O90 - PUC: "00002159FA00C0400000000000F01FEC" . (.Microsoft Office PowerPoint Viewer 2007 (French).) -- C:\Windows\Installer\{95120000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe,0 =>.Microsoft Corporation
O90 - PUC: "00006FCA9B229EC4896DC2FC53B9CA70" . (.ABBYY FineReader 6.0 Sprint.) -- C:\Windows\Installer\{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}\ARPPRODUCTICON.exe
O90 - PUC: "0396BA86FFB56FF429B315A61989F46E" . (.Nero BackItUp 10.) -- C:\Windows\Installer\{68AB6930-5BFF-4FF6-923B-516A91984FE6}\ARPPRODUCTICON.exe
O90 - PUC: "06AF0DABFC901144EAA62C48C48821AF" . (.HP Photosmart Essential 2.5.) -- C:\Windows\Installer\{BAD0FA60-09CF-4411-AE6A-C2844C8812FA}\ARPPRODUCTICON.exe =>.Hewlett-Packard Co
O90 - PUC: "076CFAAAB965F2A4284B2449E5D03EFE" . (.Windows Live Writer.) -- C:\Windows\Installer\{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}\ApplicationIcon.ico
O90 - PUC: "098990BCF5D15D11E99A0005AB3E711E" . (.PowerDirector.) -- c:\Windows\Installer\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\ARPPRODUCTICON.exe
O90 - PUC: "09B290582BEA03E2E01F34E26CF1B61D" . (.Catalyst Control Center InstallProxy.) -- C:\Windows\Installer\{85092B90-AEB2-2E30-0EF1-432EC61F6BD1}\ARPPRODUCTICON.exe
O90 - PUC: "0C7EC0FA4E3A37D489B82B1978CEE6A9" . (.QuickTime.) -- C:\Windows\Installer\{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}\Installer.ico
O90 - PUC: "11F12B5E3396B0E42AC597363E0CD711" . (.Windows Live Messenger.) -- C:\Windows\Installer\{E5B21F11-6933-4E0B-A25C-7963E3C07D11}\MsblIco.Exe
O90 - PUC: "168061B30527E1545BEEB829FB037A01" . (.Microsoft Works.) -- C:\Windows\Installer\{3B160861-7250-451E-B5EE-8B92BF30A710}\MSWorks.exe
O90 - PUC: "16B3DA692EAE2E11E9278BCAF689CC3E" . (.Google�Earth.) -- C:\Windows\Installer\{96AD3B61-EAE2-11E2-9E72-B8AC6F98CCE3}\ARPPRODUCTICON.exe
O90 - PUC: "1AE98DF52C99EE04BB5F028F99E17D65" . (.Catalyst Control Center - Branding.) -- C:\Windows\Installer\{5FD89EA1-99C2-40EE-BBF5-20F8991ED756}\ARPPRODUCTICON.exe
O90 - PUC: "1C4235E6CF4867F4A9A36CE5708FE06E" . (.Compl�ment Messenger.) -- C:\Windows\Installer\{6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}\CompanionIcon
O90 - PUC: "1CF55E0ED35CD8F41BB45BC91372748C" . (.LightScribe System Software.) -- C:\Windows\Installer\{E0E55FC1-C53D-4F8D-B14B-B59C312747C8}\ARPPRODUCTICON.exe
O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon
O90 - PUC: "1FA1AE7C809F2380AA25E5BD1E82DFB6" . (.ccc-core-static.) -- C:\Windows\Installer\{C7EA1AF1-F908-0832-AA52-5EDBE128FD6B}\ARPPRODUCTICON.exe
O90 - PUC: "20A845F5CB08D404AB6E0FF5B96F4B94" . (.Nero DiscCopyGadget 10 Help (CHM).) -- C:\Windows\Installer\{5F548A02-80BC-404D-BAE6-F05F9BF6B449}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698
O90 - PUC: "24E34A3785639DD45815AFDC3A365283" . (.HP Advisor.) -- C:\Windows\Installer\{73A43E42-3658-4DD9-8551-FACDA3632538}\ARPPRODUCTICON.exe
O90 - PUC: "26BCC73245483E341B85A3DC104358E2" . (.High-Definition Video Playback.) -- C:\Windows\Installer\{237CCB62-8454-43E3-B158-3ACD0134852E}\ARPPRODUCTICON.exe
O90 - PUC: "2CEFA5889080EC74B8F300EA1CD9DDF5" . (.TSST OEM Content.) -- C:\Windows\Installer\{885AFEC2-0809-47CE-8B3F-00AEC19DDD5F}\ARPPRODUCTICON.exe
O90 - PUC: "37A095983CA9DE848BE3469809D0DEA5" . (.Nero Multimedia Suite 10 Essentials.) -- C:\Windows\Installer\{89590A73-9AC3-48ED-B83E-6489900DED5A}\ARPPRODUCTICON.exe
O90 - PUC: "3910550722C1C544F84A65E451D51B7A" . (.Nero Express 10.) -- C:\Windows\Installer\{70550193-1C22-445C-8FA4-564E155DB1A7}\ARPPRODUCTICON.exe
O90 - PUC: "3E64AFC7F2CC553428EA0621CD6333DF" . (.NVIDIA ForceWare Network Access Manager.) -- C:\Windows\Installer\{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}\ARPPRODUCTICON.exe
O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico =>.Apple Inc
O90 - PUC: "48A1CE29CFF7FD248A6F972CC174565A" . (.Nero DiscCopy Gadget 10.) -- C:\Windows\Installer\{92EC1A84-7FFC-42DF-A8F6-79C21C4765A5}\ARPPRODUCTICON.exe
O90 - PUC: "531940669569DAA41996C9AC62E9BBE3" . (.Nero InfoTool 10 Help (CHM).) -- C:\Windows\Installer\{66049135-9659-4AAD-9169-9CCA269EBB3E}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698
O90 - PUC: "5359474F78B2A8947BD4A0101B473ED6" . (.PC Camera .) -- C:\Windows\Installer\{F4749535-2B87-498A-B74D-0A01B174E36D}\ARPPRODUCTICON.exe
O90 - PUC: "55C3723C4E1EFF14D896108590D08B8D" . (.Nero CoverDesigner 10 Help (CHM).) -- C:\Windows\Installer\{C3273C55-E1E4-41FF-8D69-0158090DB8D8}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698
O90 - PUC: "5E4083CBCC770A74B85D9737552AB63A" . (.WD SmartWare.) -- C:\Windows\Installer\{BC3804E5-77CC-47A0-8BD5-797355A26BA3}\WDSmartWare.exe
O90 - PUC: "68AB67CA7DA73301B744AA0100000010" . (.Adobe Reader X (10.1.8).) -- C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-AA1000000001}\SC_Reader.ico
O90 - PUC: "6C868555BF94F484BB34980856A1B100" . (.Nero BurnRights 10 Help (CHM).) -- C:\Windows\Installer\{555868C6-49FB-484F-BB43-8980651A1B00}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698
O90 - PUC: "7040BB568CC47CD459E2E3FEFD5006A2" . (.Nero Update.) -- C:\Windows\Installer\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}\ARPPRODUCTICON.exe
O90 - PUC: "79D3E6D2FDF13994CA57275FE94C545C" . (.Windows Live Family Safety.) -- C:\Windows\Installer\{2D6E3D97-1FDF-4993-AC75-72F59EC445C5}\fssicon.ico
O90 - PUC: "7AA2849503E3E5B45AF21410ADCC7270" . (.Nero InCD.) -- C:\Windows\Installer\{59482AA7-3E30-4B5E-A52F-4101DACC2707}\ARPPRODUCTICON.exe
O90 - PUC: "7CEBB04F4A2C00A4B942A750A5C22526" . (.Microsoft Office Live Add-in 1.5.) -- C:\Windows\Installer\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}\ProductIcon
O90 - PUC: "8140A81CA2446814FA890DF805452ACF" . (.Nero DiscSpeed 10 Help (CHM).) -- C:\Windows\Installer\{C18A0418-442A-4186-AF98-D08F5054A2FC}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698
O90 - PUC: "8193463375979384297CAE69BC26A189" . (.Nero Express 10 Help (CHM).) -- C:\Windows\Installer\{33643918-7957-4839-92C7-EA96CB621A98}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698
O90 - PUC: "82D6625F2B0E0314FB5CEE51A55D41CD" . (.Apple Application Support.) -- C:\Windows\Installer\{F5266D28-E0B2-4130-BFC5-EE155AD514DC}\WinInstall.ico
O90 - PUC: "907018673D7AD86419761A87C0E167C6" . (.Windows Live FolderShare.) -- C:\Windows\Installer\{76810709-A7D3-468D-9167-A1780C1E766C}\FolderShare48x48.ico
O90 - PUC: "990BFB432B7059E46A3737266D80662A" . (.PSSWCORE.) -- C:\Windows\Installer\{34BFB099-07B2-4E95-A673-7362D60866A2}\ARPPRODUCTICON.exe
O90 - PUC: "9ABF4D9E64BFEC5A5FF215C6B4F83037" . (.ccc-utility.) -- C:\Windows\Installer\{E9D4FBA9-FB46-A5CE-F52F-516C4B8F0373}\ARPPRODUCTICON.exe
O90 - PUC: "9E376936F35D4F440A6484C5A8A6AD51" . (.Paint.NET v3.5.6.) -- C:\Windows\Installer\{639673E9-D53F-44F4-A046-485C8A6ADA15}\_853F67D554F05449430E7E.exe
O90 - PUC: "9F742B68E5D16CCC23081784D6A9E407" . (.ATI Stream SDK v2 Developer.) -- C:\Windows\Installer\{86B247F9-1D5E-CCC6-3280-71486D9A4E70}\ARPPRODUCTICON.exe
O90 - PUC: "A0F18A53AC1AD854F8DCD738E8D359FF" . (.Microsoft WorldWide Telescope.) -- C:\Windows\Installer\{35A81F0A-A1CA-458D-8FCD-7D838E3D95FF}\_A7A1F24988209FFD6FF84A.exe
O90 - PUC: "A72F86956E66E1713511A0477DA4DAB9" . (.ATI Catalyst Install Manager.) -- C:\Windows\Installer\{5968F27A-66E6-171E-5311-0A74D74AAD9B}\ARPPRODUCTICON.exe
O90 - PUC: "A7C380116D0D4AD4C8A3478B83E90CB7" . (.ATI Catalyst Registration.) -- C:\Windows\Installer\{11083C7A-D0D6-4DA4-8C3A-74B8389EC07B}\ARPPRODUCTICON.exe
O90 - PUC: "A9DE3518A49CE6248908E576570CB826" . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{8153ED9A-C94A-426E-9880-5E6775C08B62}\Installer.ico
O90 - PUC: "AA37CCA8115655C71B9AE8D5D1AEAF3A" . (.The Lord of the Rings FREE Trial .) -- C:\Windows\Installer\{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}\ARPPRODUCTICON.exe
O90 - PUC: "B1B2B325BD8D14B409FF4C7D992E57A8" . (.Nero ControlCenter 10 Help (CHM).) -- C:\Windows\Installer\{523B2B1B-D8DB-4B41-90FF-C4D799E2758A}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698
O90 - PUC: "B2F5519759897D9468219D52080EEDB5" . (.Bonjour.) -- C:\Windows\Installer\{79155F2B-9895-49D7-8612-D92580E0DE5B}\Bonjour.ico
O90 - PUC: "B6668C80205C3BA44BBC7DA44CD241EF" . (.Nero BackItUp 10 Help (CHM).) -- C:\Windows\Installer\{08C8666B-C502-4AB3-B4CB-D74AC42D14FE}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698
O90 - PUC: "B722A2918C8AD6C49B9312AFBE00E7E1" . (.Google Drive.) -- C:\Windows\Installer\{192A227B-A8C8-4C6D-B939-21FAEB007E1E}\DriveIcon
O90 - PUC: "BA9E4DE7D5B90835A97B8256ACD10ABD" . (.AMD Fuel.) -- C:\Windows\Installer\{7ED4E9AB-9B5D-5380-9AB7-2865CA1DA0DB}\ARPPRODUCTICON.exe
O90 - PUC: "C040030900063D11C8EF00054038389C" . (.Microsoft Office XP Media Content.) -- C:\Windows\Installer\{9030040C-6000-11D3-8CFE-0050048383C9}\misc.exe,6
O90 - PUC: "C040111900063D11C8EF00054038389C" . (.Microsoft Office XP Professional.) -- C:\Windows\Installer\{9111040C-6000-11D3-8CFE-0050048383C9}\misc.exe,6
O90 - PUC: "C040911900063D11C8EF00054038389C" . (.Microsoft Publisher 2002.) -- C:\Windows\Installer\{9119040C-6000-11D3-8CFE-0050048383C9}\misc.exe,6
O90 - PUC: "C260E0BED575451862288CE44F23CC0F" . (.Catalyst Control Center Graphics Previews Common.) -- C:\Windows\Installer\{EB0E062C-575D-8154-2682-C84EF432CCF0}\ARPPRODUCTICON.exe
O90 - PUC: "C9F7116F5BDA0954B94E217CEB2C7820" . (.Nero StartSmart 10 Help (CHM).) -- C:\Windows\Installer\{F6117F9C-ADB5-4590-9BE4-12C7BEC28702}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698
O90 - PUC: "CE02A2CC8D421694CA5A37071C4B9EBE" . (.Audials.) -- C:\Windows\Installer\{CC2A20EC-24D8-4961-ACA5-7370C1B4E9EB}\AudialsOne_installer.exe
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- c:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon
O90 - PUC: "D7DFC3496335FA7449810E42375A5A71" . (.Nero BurnRights 10.) -- C:\Windows\Installer\{943CFD7D-5336-47AF-9418-E02473A5A517}\ARPPRODUCTICON.exe
O90 - PUC: "E4F094430D84E29428944BB8CE0F35C7" . (.Nero DiscSpeed 10.) -- C:\Windows\Installer\{34490F4E-48D0-492E-8249-B48BECF0537C}\ARPPRODUCTICON.exe
O90 - PUC: "E6A00FCF85BFA774BA9E329270015512" . (.Nero CoverDesigner 10.) -- C:\Windows\Installer\{FCF00A6E-FB58-477A-ABE9-232907105521}\ARPPRODUCTICON.exe
O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype� 6.7.) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe
O90 - PUC: "E984D16F44C6CA94DA20D78ACA7AA356" . (.Nero StartSmart 10.) -- C:\Windows\Installer\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}\ARPPRODUCTICON.exe
O90 - PUC: "F4015DDD44C1BE94E9B692CED57256B8" . (.HP Update.) -- C:\Windows\Installer\{DDD5104F-1C44-49EB-9E6B-29EC5D27658B}\ARPPRODUCTICON.exe
O90 - PUC: "F633BB1185E077948B662FF43A4316B6" . (.HP Active Support Library.) -- c:\Windows\Installer\{11BB336F-0E58-4977-B866-F24FA334616B}\ARPPRODUCTICON.exe
O90 - PUC: "F998BFD62A710F845A33DED88666FC83" . (.Nero Control Center 10.) -- C:\Windows\Installer\{6DFB899F-17A2-48F0-A533-ED8D6866CF38}\ARPPRODUCTICON.exe
O90 - PUC: "FA4B214FC8835FF4B9F233BDC1359635" . (.Nero InfoTool 10.) -- C:\Windows\Installer\{F412B4AF-388C-4FF5-9B2F-33DB1C536953}\ARPPRODUCTICON.exe
O90 - PUC: "FC2F48E068D749F479420564CD9B6134" . (.Mysterious Worlds - The Secret of Oak Island.) -- C:\Windows\Installer\{0E84F2CF-7D86-4F94-9724-5046DCB91643}\Mysterious_Worlds_The_Secret_of_Oak_Island.exe
~ Update Products: 145 Scanned in 00mn 00s



---\\ Enum�re les donn�es de la cl� NameSpace (MNS) (O92)
O92 - MNS: Dossiers Web - {BDEADF00-C265-11D0-BCED-00A0C90AB50F}
~ MNS: 1 Scanned in 00mn 00s



---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
[MD5.E840512525B804019FB2D0584D3CEB97] [WIS][24/10/2013] (.Google - Google Talk Plugin Installer.) -- C:\Windows\Installer\12cccf.msi [455680]
[MD5.DC15F08AE3A9ADA6AB1F7D9BF9485019] [WIS][24/02/2011] (.ATI - Branding.) -- C:\Windows\Installer\13aa87.msi [322048]
[MD5.BD196CC0CD299A0344D9EF3F21633D9E] [WIS][24/02/2011] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\13aa94.msi [185856]
[MD5.DC21805249C97C32DDAF4BD215B7650F] [WIS][24/02/2011] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\13aa9a.msi [187392]
[MD5.A3838DE106D560A6921846E47C3DD42F] [WIS][24/02/2011] (.ATI - Catalyst Control Center Utility Package.) -- C:\Windows\Installer\13aaa0.msi [195584]
[MD5.F761C95D3E2D81D2CE8301EE005907C1] [WIS][24/02/2011] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\13aaa7.msi [1117184]
[MD5.393ADECA51B5D7EE5EC5E31734CAEACA] [WIS][16/10/2013] (.Google, Inc. - Google Drive.) -- C:\Windows\Installer\16a716d.msi [121344]
[MD5.5918A675EF5F0BB10BA71F6F7D7AFAD5] [WIS][24/01/2013] (.LeeGTs Games - Mysterious Worlds - The Secret of Oak Island.) -- C:\Windows\Installer\2551f91.msi [786432]
[MD5.673888934850CF44772C612F083F15B9] [WIS][28/03/2011] (.Engelmann Media GmbH - freeTunes�3.0.) -- C:\Windows\Installer\273f734.msi [1306112]
[MD5.9EB55565A054CB32A6F837CC4D391DC6] [WIS][04/07/2011] (.RapidSolution Software AG - Audials.) -- C:\Windows\Installer\29c481.msi [2491904]
[MD5.527BEF5DC8B02A70A7766B02077D1267] [WIS][01/04/2011] (.RapidSolution Software AG - Audials TV.) -- C:\Windows\Installer\2cc958d.msi [912384]
[MD5.BD645AB1D32F8FED6B11E4EF9BB122F4] [WIS][07/11/2010] (.PC Camera - PC Camera.) -- C:\Windows\Installer\7e4863.msi [6232576]
[MD5.BC308E24DF9624D89C500C227EAF2026] [WIS][25/09/2013] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\8c4b0.msi [1615360]
[MD5.588B5DFAE5BCB99E42E0A7A37D06BCB7] [WIS][27/10/2013] (.MPMAN - MP Manager.) -- C:\Windows\Installer\97e297.msi [1230848]
[MD5.891DF448E50AAEC6B7CFAE8BC2667E06] [WIS][12/11/2012] (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Windows\Installer\c629e.msi [24064] =>Toolbar.Google
~ WIS: 153 Scanned in 00mn 46s



---\\ Etat g�n�ral des services not Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 10/05/2013 65640 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - | Demand 27/10/2013 257416 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SR - | Auto 11/09/2013 217088 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 26/01/2011 284672 | (AMD FUEL Service) . (.Advanced Micro Devices, Inc..) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
SR - | Auto 17/06/2010 140224 | (AMD Reservation Manager) . (.Advanced Micro Devices.) - C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
SR - | Auto 24/10/2011 55144 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 30/08/2011 390504 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SS - | Demand 06/03/2011 69120 | (Boonty Games) . (.BOONTY.) - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
SS - | Demand 26/04/2012 2438696 | (CGVPNCliSrvc) . (.mobile concepts GmbH.) - C:\Program Files\CyberGhost VPN\CGVPNCliService.exe
SR - | Auto 10/08/2009 387616 | (ForceWare Intelligent Application Manager (IAM)) . (...) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
SR - | Auto 26/08/2013 101888 | (Freemake Improver) . (.Freemake.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
SR - | Auto 26/08/2013 9216 | (FreemakeVideoCapture) . (.Ellora Assets Corp..) - C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe
SR - | Auto 28/05/2010 233472 | (FsUsbExService) . (.Teruten.) - C:\Windows\system32\FsUsbExService.exe
SS - | Demand 12/10/2010 206072 | (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files\WildTangent Games\App\GamesAppService.exe
SS - | Auto 18/09/2010 136176 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 18/09/2010 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 12/11/2012 194032 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SR - | Auto 19/09/2007 65536 | (HP Health Check Service) . (.Hewlett-Packard.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
SR - | Auto 16/10/2009 1420592 | (InCDSrv) . (.Nero AG.) - C:\Program Files\Nero\Tools\InCD\InCDSrv.exe
SR - | Auto 04/03/2011 73728 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
SS - | Auto 20/07/2007 141848 | (LVSrvLauncher) . (.Logitech Inc..) - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
SR - | Auto 18/10/2007 98984 | (lxdvCATSCustConnectService) . (.Lexmark International, Inc..) - C:\Windows\system32\spool\DRIVERS\W32X86\3\lxdvserv.exe
SR - | Auto 18/10/2007 594600 | (lxdv_device) . (...) - C:\Windows\system32\lxdvcoms.exe
SR - | Auto 25/11/2011 687400 | (NAUpdate) . (.Nero AG.) - C:\Program Files\Nero\Update\NASvc.exe
SR - | Auto 16/10/2009 53560 | (NeroRegInCDSrv) . (.Nero AG.) - C:\Program Files\Nero\Tools\InCD\NBHRegInCDSrv.exe
SR - | Auto 21/05/2013 144368 | (NIS) . (.Symantec Corporation.) - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe
SR - | Auto 10/08/2009 178720 | (nSvcIp) . (...) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
SS - | Demand 12/12/2007 21280 | C:\Program Files\PC-DOC~1\PCD5SRVC.pkms (PCD5SRVC{BD6912E3-AC9D80E8-05040000}) . (.PC-Doctor, Inc..) - C:\Program Files\PC-Doctor 5 for Windows\pcd5srvc.pkms
SR - | Auto 19/02/2013 203848 | (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe
SS - | Auto 25/07/2013 162672 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SS - | Auto 10/07/1658 0 | (Util SaltarSmart) . (...) - C:\Program Files\SaltarSmart\bin\utilSaltarSmart.exe =>PUP.SaltarSmart
SR - | Auto 09/03/2011 238592 | (WDDMService) . (.WDC.) - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
SR - | Auto 09/03/2011 1060864 | (WDFME) . (...) - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDFME\WDFME.exe
SR - | Auto 09/03/2011 484352 | (WDSC) . (...) - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSC.exe
SS - | Auto 18/01/2008 21504 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 18/01/2008 21504 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 57s



---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
~ MBR: 1 Scanned in 00mn 02s



---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by kathy at 31/10/2013 18:16:32

********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR: Scanned in 00mn 04s



---\\ Scan Additionnel (O88)
Database Version : 12965 - (30/10/2013)
Cl�s trouv�es (Keys found) : 10
Valeurs trouv�es (Values found) : 1
Dossiers trouv�s (Folders found) : 2
Fichiers trouv�s (Files found) : 3

[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4D91-8333-CF10577473F7}] =>Toolbar.Google^
[HKLM\SYSTEM\CurrentControlSet\Services\Util SaltarSmart] =>PUP.SaltarSmart^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Advanced PC Tweaker_is1] =>Rogue.AdvancedPCTweaker^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{18455581-E099-4BA8-BC6B-F34B2F06600C}] =>Toolbar.Google^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2318C2B1-4965-11d4-9B18-009027A5CD4F}] =>Toolbar.Google^
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}] =>Toolbar.Freemake
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}] =>Toolbar.Freemake
[HKLM\Software\Classes\CLSID\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}] =>Toolbar.Freemake
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}] =>Toolbar.Freemake
[HKLM\Software\Classes\AOLTB.AOLToolBand.1] =>Toolbar.Agent
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google^
C:\Users\kathy\AppData\Roaming\Mozilla\Firefox\Profiles\rpy80tth.default\{3112ca9c-de6d-4884-a869-9855de68056c} =>Toolbar.Google^
C:\ProgramData\InstallMate =>PUP.Tarma^
[HKCU\Software\Advanced PC Tweaker] =>Rogue.AdvancedPCTweaker^
[HKCU\Software\PopCap] =>Adware.PopCap^
C:\Windows\Installer\c629e.msi =>Toolbar.Google^
~ Additionnel Scan: 485799 Items scanned in 08mn 33s



---\\ R�capitulatif des d�tections trouv�es sur votre station
~ http://nicolascoolman.webs.com/apps/blog/show/32384220-toolbar-google =>Toolbar.Google
~ http://nicolascoolman.webs.com/apps/blog/show/31882246-rogue-advancedpctweaker =>Rogue.AdvancedPCTweaker
~ http://nicolascoolman.webs.com/apps/blog/show/33293281-pup-saltarsmart =>PUP.SaltarSmart
~ http://nicolascoolman.webs.com/apps/blog/show/26666257-adware-popcap =>Adware.PopCap
~ http://nicolascoolman.webs.com/apps/blog/show/29637859-toolbar-tarma =>PUP.Tarma
~ MSI: 5 link(s) detected in 08mn 34s



End of the scan (3489 lines in 38mn 10s)(0)