cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ Rapport de ZHPDiag v2014.3.19.14 - Nicolas Coolman (19/03/2014)
~ Lancé par Utilisateur (19/03/2014 15:50:36)
~ Adresse du Site Web http://nicolascoolman.webs.com
~ Forums gratuits d'Assistance à la désinfection : http://nicolascoolman.webs.com/apps/links/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Deactivate by program


---\\ Navigateurs Internet
MSIE: Internet Explorer v10.0.9200.16844
MFIE: Mozilla Firefox 27.0.1 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Français
Windows Vista (TM) Ultimate, 32-bit Service Pack 1 (Build 6000)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_COA_SLP channel
Windows ID Activation : OK
~ Windows Partial Key : XB44B
Windows License : OK
~ Windows Remaining Initializations Number : 3
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK

---\\ Logiciels de protection du système
avast! Internet Security v9.0.2013
Malwarebytes Anti-Malware version 1.75.0.1300
Spybot - Search & Destroy v2.1.19

---\\ Logiciels d'optimisation du système

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Flash Player 12 Plugin
Adobe Reader XI
Java 7 Update 25

---\\ Informations sur le système
~ Processor: x86 Family 6 Model 37 Stepping 2, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3063 MB (67% free)
System Restore: Activé (Enable)
System drive C: has 357 GB (76%) free of 466 GB

---\\ Mode de connexion au système
~ Computer Name: UTILISATEUR-PC
~ User Name: Utilisateur
~ All Users Names: Utilisateur, UpdatusUser, HomeGroupUser$, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Utilisateur\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Utilisateur\AppData\Roaming\
~ %Desktop% : C:\Users\Utilisateur\Desktop\
~ %Favorites% : C:\Users\Utilisateur\Favorites\
~ %LocalAppData% : C:\Users\Utilisateur\AppData\Local\
~ %StartMenu% : C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 357 Go of 466 Go)
D: CD-ROM drive (Not Inserted)
E: Hard drive, Flash drive, Thumb drive (Free 272 Go of 596 Go)
F: Floppy drive, Flash card reader, USB Key (Not Inserted)
G: Floppy drive, Flash card reader, USB Key (Not Inserted)
H: CD-ROM drive (Free 0 Go of 0 Go)
I: Floppy drive, Flash card reader, USB Key (Free 2 Go of 2 Go)
Q: Hard drive, Flash drive, Thumb drive (Free 0 Go of 0 Go)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified =>Hijacker.Application
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 50 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 06:30:54.) -- C:\Windows\Explorer.exe [2616320]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]
[MD5.9284BA6C27D360D71A5C0ECC8456E78E] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.23/02/2014 - 07:54:46.) -- C:\Windows\System32\wininet.dll [1767936]
[MD5.6D13E1406F50C66E2A95D97F22C47560] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/11/2010 - 22:29:06.) -- C:\Windows\System32\Winlogon.exe [286720]
[MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 22:29:24.) -- C:\Windows\System32\sppcomapi.dll [193536]
[MD5.F81BB7E487EDCEAB630A7EE66CF23913] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.14/09/2013 - 01:48:58.) -- C:\Windows\system32\Drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:26:15.) -- C:\Windows\system32\Drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:11:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [70656]
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\Cdrom.sys [108544]
[MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 22:29:07.) -- C:\Windows\system32\Drivers\DfsC.sys [78336]
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:11:24.) -- C:\Windows\system32\Drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 00:54:29.) -- C:\Windows\system32\Drivers\IpNat.sys [101888]
[MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:17:22.) -- C:\Windows\system32\Drivers\MRxSmb.sys [123904]
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 22:29:08.) -- C:\Windows\system32\Drivers\netBT.sys [187904]
[MD5.5E43D2B0EE64123D4880DFA6626DEFDE] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 14:45:29.) -- C:\Windows\system32\Drivers\ntfs.sys [1211752]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 00:45:35.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.14/07/2009 - 00:54:34.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [78848]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 00:53:41.) -- C:\Windows\system32\Drivers\smb.sys [71168]
[MD5.B459575348C20E8121D6039DA063C704] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 22:29:07.) -- C:\Windows\system32\Drivers\tdx.sys [74752]
[MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\volsnap.sys [245632]
~ Generic Processes: Scanned in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 2/379
~ Mes musiques (My Musics) : 6/74
~ Mes Videos (My Videos) : 1/452
~ Mes Favoris (My Favorites) : 1/25
~ Mes Documents (My Documents) : 1/843
~ Mon Bureau (My Desktop) : 1/3535
~ Menu demarrer (Programs) : 1/40
~ Hidden Files: Scanned in 00mn 06s



---\\ Processus lancés
[MD5.DB7E59960FD5534458AE3D84230A0FB1] - (...) -- C:\UsbFix\UsbFix.exe [1597440] [PID.2140]
[MD5.A63DC5C2EA944E6657203E0C8EDEAF61] - (.Microsoft Corporation - COM Surrogate.) -- C:\Windows\system32\DllHost.exe [7168] [PID.1996]
[MD5.7BDBFD996CE815F8AB380A298F18F87B] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8360448] [PID.1908]
[MD5.E6A8ED576AB1DAF196E204BCF52DDA18] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 331.6.) -- C:\Windows\system32\nvvsvc.exe [664352] [PID.780]
[MD5.A9D26626BEADF5A0641BF6B5095EF309] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [414496] [PID.804]
[MD5.4B47085D81383C884F46E313E4913CA8] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [932640] [PID.1280]
[MD5.CC42F104172B4A62793083D380867317] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344] [PID.1484]
[MD5.3B5DA02DEA6910A709F19180746FF0CE] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [113704] [PID.1680]
[MD5.0796C1E47ADB9825269E64B9DAB4E741] - (.Teruten - FsUsbDevice.) -- C:\Windows\system32\FsUsbExService.exe [233472] [PID.696]
[MD5.65085456FD9A74D7F1A999520C299ECB] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376] [PID.1200]
[MD5.71CE3312CBFBA3C17C8FCBC569DC52D9] - (.NeoRouter Inc. - NeoRouter Client Service.) -- C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe [1898320] [PID.1624]
[MD5.95AA9E165C7DE1B64A11E8B18E91E499] - (.Safer-Networking Ltd. - Spybot-S&D 2 Scanner Service.) -- C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560] [PID.1952]
[MD5.19D34534176E62F35DDB7DC7B7FF2A87] - (.Microsoft Corporation - Microsoft Application Virtualization Virtua.) -- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe [207528] [PID.2848]
[MD5.1AEBDC693C74EA55FE05D51FA6573EBC] - (.Microsoft Corporation - Microsoft Application Virtualization Client.) -- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe [523944] [PID.2952]
[MD5.6AE8E702D1027A9627DDE2B77BB9992B] - (.Safer-Networking Ltd. - Windows Security Center integration..) -- C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928] [PID.3076]
[MD5.FD557A50A65E44041CD2FCEF4BEB04DB] - (.Microsoft Corporation - Microsoft Office Client Virtualization Serv.) -- C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.exe [822504] [PID.3276]
[MD5.358A9CCA612C68EB2F07DDAD4CE1D8D7] - (.Microsoft Corporation - Microsoft Office Software Protection Platfo.) -- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.exe [4640000] [PID.3364]
[MD5.CF87A1DE791347E75B98885214CED2B8] - (.Microsoft Corporation - Service de la plateforme de protection logi.) -- C:\Windows\system32\sppsvc.exe [3179520] [PID.3364]
[MD5.813B806949EE12980BA93771637D0315] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1364256] [PID.1344]
~ Processes Running: Scanned in 00mn 01s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Google Store v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé)
G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] Adblock Plus v.1.7.2, (Activé)
G2 - GCE: Preference [User Data\Default] [deegloljmdbfbjhlimieancmcfombgjj] Good Noows v.3.6.100 (Activé)
G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [ffdcfjdljhbehggjdkdioajnknjcpbjb] Download Accelerator Plus (DAP) v.2.1.0.1, (Activé)
G2 - GCE: Preference [User Data\Default] [gfdkimpbcpahaombhbimeihdjnejgicl] Feedback v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [gheikhdfflhlbemfmhcfpeblehemeklp] Planetarium v.1.1.2 (Activé)
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock v.2.6.16, (Activé)
G2 - GCE: Preference [User Data\Default] [hfeonckpgplpefbagdnejdgokiihhifm] Le Petit Érudit v.1.7 (Activé)
G2 - GCE: Preference [User Data\Default] [hjaooagfdhdhmbfchnkhggjmacjlacla] Tabs to the front! v.0.2.4 (Activé)
G2 - GCE: Preference [User Data\Default] [jbolfgndggfhhpbnkgnpjkfhinclbigj] Freemake Video Converter v.1.0.0 (Désactivé)
G2 - GCE: Preference [User Data\Default] [jfmjfhklogoienhpfnppmbcbjfjnkonk] RealPlayer HTML5Video Downloader Extension v.1.5 (Désactivé)
G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mihcahmgecmbnbcchbopgniflfhgnkff] Vérificateur de messages Google v.4.4.0 (Activé)
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Wallet v.0.0.6.0 (Activé)
G2 - GCE: Preference [User Data\Default] [penkfbldfkaelnnhblmfmajlggdielfm] Greyscale v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé)
G2 - GCE: Preference [User Data\Default] [pmcdjmebmeoobmdghjbjhbifoocbcmaj] Learn Spanish - Qué Onda v.1.77.1 (Activé)
~ Google Browser: 21 Scanned in 00mn 02s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 11.0.06.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll =>.©
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files\Mozilla Firefox\Plugins\nppl3260.dll =>.©
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\nprjplug.dll =>.©
P2 - FPN:Firefox Plugin Navigator . (.RealPlayer - RealPlayer Download Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\nprpplugin.dll =>.©
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll
P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 12.0.) -- C:\Windows\system32\Adobe\Director\np32dsw_1200112.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (...) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@canon.com/EPPEX] - (.CANON INC. - CANON iMAGE GATEWAY Album Plugin Utility Module.) -- C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.dll
P2 - FPN: [HKLM] [@google.com/npPicasa3,version=3.0.0] - (.Google, Inc. - Picasa plugin.) -- C:\Program Files\Google\Picasa3\npPicasa3.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.25.2] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Windows\system32\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.25.2] - (.Oracle Corporation - Next Generation Java Plug-in 10.25.2 for Mozilla browsers.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@microsoft.com/GENUINE] - (.Microsoft Corporation - Windows Activation Technologies Plugin for Mozilla.) -- C:\Windows\system32\Wat\npWatWeb.dll
P2 - FPN: [HKLM] [@microsoft.com/SharePoint,version=14.0] - (.Microsoft Corporation - The plug-in allows you to open and edit files using Microsoft Office a.) -- C:\Program Files\Microsoft Office\Office14\NPSPWRAP.dll
P2 - FPN: [HKLM] [@nokia.com/EnablerPlugin] - (.Pas de propriétaire - Nokia Suite Enabler Plugin.) -- C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll
P2 - FPN: [HKLM] [@nvidia.com/3DVision] - (.NVIDIA Corporation - NVIDIA 3D Vision plugin for Mozilla browsers.) -- C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
P2 - FPN: [HKLM] [@nvidia.com/3DVisionStreaming] - (.NVIDIA Corporation - NVIDIA 3D Vision Streaming plugin for Mozilla browsers.) -- C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
P2 - FPN: [HKLM] [@real.com/nppl3260;version=15.0.5.109] - (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- c:\program files\real\realplayer\Netscape6\nppl3260.dll
P2 - FPN: [HKLM] [@real.com/nprjplug;version=15.0.5.109] - (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- c:\program files\real\realplayer\Netscape6\nprjplug.dll
P2 - FPN: [HKLM] [@real.com/nprpchromebrowserrecordext;version=15.0.5.109] - (.RealNetworks, Inc. - RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
P2 - FPN: [HKLM] [@real.com/nprphtml5videoshim;version=15.0.5.109] - (.RealNetworks, Inc. - RealPlayer(tm) HTML5VideoShim Plug-In.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
P2 - FPN: [HKLM] [@real.com/nprpplugin;version=15.0.5.109] - (.RealPlayer - RealPlayer Download Plugin.) -- c:\program files\real\realplayer\Netscape6\nprpplugin.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.1] - (.VideoLAN - VLC media player Web Plugin 2.1.0.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll =>.VideoLAN
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.2] - (.VideoLAN - VLC media player Web Plugin 2.1.0.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll =>.VideoLAN
P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 11.0.06.) -- C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
P2 - FPN: [HKCU] [egtcps.com/captures] - (...) -- C:\Program Files\EagleGet\captures.dll (.not file.)
~ Firefox Browser: 29 Scanned in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.google.com
R3 - URLSearchHook: (no name) - {81fae9c9-cfbd-4cb3-8322-412e72f55f65} . (...) (No version) -- (.not file.)
R3 - URLSearchHook: (no name) - {ef79f67a-6ad7-4715-a0f8-932fca442023} . (...) (No version) -- (.not file.)
R3 - URLSearchHook: (no name) - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} . (...) (No version) -- (.not file.)
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (...) (No version) -- (.not file.)
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ IE Browser: 17 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = localhost:21320
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 19



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealPlayer - RealPlayer Download and Record Plugin.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll =>.©
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} . (.pdfforge GbR - PDF Architect Helper.) -- C:\Program Files\PDF Architect\PDFIEHelper.dll =>.©
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll =>.©
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.©
O2 - BHO: FlashGetBHO - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} . (.Trend Media Group - FlashGet Browser Helper Object.) -- C:\Users\Utilisateur\AppData\Roaming\FlashGetBHO\FlashGetBHO.dll =>.©
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll =>.©
~ BHO: 12 Scanned in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: avast! Online Security - [HKLM]{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E} Clé orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{C55BBCD6-41AD-48AD-9953-3609C48EACC7} Clé orpheline
~ Toolbar: Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: Aurora.lnk . (.Mozilla Corporation - Aurora.) -- C:\Program Files\Aurora\firefox.exe
O4 - GS\Desktop [Public]: avast! Internet Security.lnk . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - GS\Desktop [Public]: avast! SafeZone.lnk . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - GS\Desktop [Public]: Freemake Video Converter.lnk . (.Freemake - Freemake Video Converter.) -- C:\Program Files\Freemake\Freemake Video Converter\FreemakeVideoConverter.exe
O4 - GS\Desktop [Public]: Glary Utilities 4.lnk . (.Glarysoft Ltd - Glary Utilities 4.) -- C:\Program Files\Glary Utilities 4\Integrator.exe
O4 - GS\Desktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
O4 - GS\Desktop [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation
O4 - GS\Desktop [Public]: Nokia Suite.lnk . (.Nokia - Nokia Suite.) -- C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe
O4 - GS\Desktop [Public]: Spybot-S&D Start Center.lnk . (.Safer-Networking Ltd. - Start Center.) -- C:\Program Files\Spybot - Search & Destroy 2\SDWelcome.exe
O4 - GS\Desktop [Public]: Trojan Remover.lnk . (.Simply Super Software - Trojan Remover.) -- C:\Program Files\Trojan Remover\Rmvtrjan.exe
O4 - GS\Desktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player 2.1.2.) -- C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN
O4 - GS\Program [Public]: Adobe Reader XI.lnk . (...) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico
O4 - GS\Program [Public]: Apple Software Update.lnk . (...) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc
O4 - GS\Program [Public]: Aurora.lnk . (.Mozilla Corporation - Aurora.) -- C:\Program Files\Aurora\firefox.exe
O4 - GS\Program [Public]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe
O4 - GS\Program [Public]: GIMP 2.lnk . (.Spencer Kimball, Peter Mattis and the GIMP - GNU Image Manipulation Program.) -- C:\Program Files\GIMP 2\bin\gimp-2.8.exe
O4 - GS\Program [Public]: Glary Utilities 4.lnk . (.Glarysoft Ltd - Glary Utilities 4.) -- C:\Program Files\Glary Utilities 4\Integrator.exe
O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\Program [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation
O4 - GS\Program [Public]: Power Video Downloader.lnk . (.T4Esoft - Descarga videos desde miles de webs.) -- C:\Program Files\Power Video Downloader\Power Video Downloader.exe
O4 - GS\Program [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Spybot-S&D Start Center.lnk . (.Safer-Networking Ltd. - Start Center.) -- C:\Program Files\Spybot - Search & Destroy 2\SDWelcome.exe
O4 - GS\Program [Public]: Visionneuse Microsoft PowerPoint .lnk . (...) -- C:\Windows\Installer\{95140000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe
O4 - GS\Program [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) -- C:\Windows\system32\WindowsAnytimeUpgradeUI.exe
O4 - GS\Program [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Création de DVD Windows.) -- C:\Program Files\DVD Maker\DVDMaker.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) -- C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) -- C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) -- C:\Windows\system32\mblctr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Mise en route.) -- C:\Windows\system32\OobeFldr.dll =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) -- C:\Windows\system32\perfmon.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) -- C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\system32\taskschd.msc
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) -- C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) -- C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\QuickLaunch [Utilisateur]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe
O4 - GS\QuickLaunch [Utilisateur]: Glary Utilities 4.lnk . (.Glarysoft Ltd - Glary Utilities 4.) -- C:\Program Files\Glary Utilities 4\Integrator.exe
O4 - GS\QuickLaunch [Utilisateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [Utilisateur]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation
O4 - GS\QuickLaunch [Utilisateur]: Picasa 3.lnk . (.Google Inc. - Picasa.) -- C:\Program Files\Google\Picasa3\Picasa3.exe
O4 - GS\QuickLaunch [Utilisateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
O4 - GS\TaskBar [Utilisateur]: Aurora.lnk . (.Mozilla Corporation - Aurora.) -- C:\Program Files\Aurora\firefox.exe
O4 - GS\TaskBar [Utilisateur]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Utilisateur]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe
O4 - GS\TaskBar [Utilisateur]: Chameleon Shutdown.lnk . (.NeoSoft Tools - It allows you to switch off, restart, hiber.) -- C:\Program Files\Chameleon Shutdown\shutdown.exe
O4 - GS\TaskBar [Utilisateur]: Freemake Video Converter.lnk . (.Freemake - Freemake Video Converter.) -- C:\Program Files\Freemake\Freemake Video Converter\FreemakeVideoConverter.exe
O4 - GS\TaskBar [Utilisateur]: gimp-2.8 - Raccourci.lnk . (.Spencer Kimball, Peter Mattis and the GIMP - GNU Image Manipulation Program.) -- C:\Program Files\GIMP 2\bin\gimp-2.8.exe
O4 - GS\TaskBar [Utilisateur]: Microsoft Excel Starter 2010.lnk . (.Microsoft Corporation - Microsoft Office Client Virtualization Hand.) -- C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVH.exe
O4 - GS\TaskBar [Utilisateur]: Microsoft Word Starter 2010.lnk . (.Microsoft Corporation - Microsoft Office Client Virtualization Hand.) -- C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVH.exe
O4 - GS\TaskBar [Utilisateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\TaskBar [Utilisateur]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Utilisateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Utilisateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
O4 - GS\Program [Utilisateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Accessories [Utilisateur]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Utilisateur]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Utilisateur]: Run.lnk - Clé orpheline
O4 - GS\Accessories [Utilisateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Utilisateur]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\SystemTools [Utilisateur]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\SendTo [Utilisateur]: Disque de données .lnk . (...) -- C:\Program Files\Complex\JetBee\jetbee.exe (.not file.)
O4 - GS\SendTo [Utilisateur]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe
O4 - GS\SendTo [Utilisateur]: Freemake Video Converter.lnk . (.Freemake - Freemake Video Converter.) -- C:\Program Files\Freemake\Freemake Video Converter\FreemakeVideoConverter.exe
O4 - GS\SendTo [Utilisateur]: Media Center (2).lnk . (.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\Desktop [Utilisateur]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe
O4 - GS\Desktop [Utilisateur]: FreeOCR.lnk . (...) -- C:\FreeOCR\FreeOCR.exe
O4 - GS\Desktop [Utilisateur]: HideIPVPN.lnk . (.HideIPVPN Team - Starter.) -- C:\Program Files\HideIPVPN\HideIPVPN.exe
O4 - GS\Desktop [Utilisateur]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) -- C:\Program Files\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
O4 - GS\Desktop [Utilisateur]: UsbFix.lnk . (...) -- C:\UsbFix\UsbFix.exe
O4 - GS\Desktop [Utilisateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\Desktop [Utilisateur]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\QuickLaunch [UpdatusUser]: FlashGet3.lnk . (...) -- C:\Program Files\FlashGet Network\FlashGet 3\Flashget3.exe (.not file.)
O4 - GS\QuickLaunch [UpdatusUser]: Picasa 3.lnk . (.Google Inc. - Picasa.) -- C:\Program Files\Google\Picasa3\Picasa3.exe
O4 - GS\QuickLaunch [UpdatusUser]: Power Video Downloader.lnk . (.T4Esoft - Descarga videos desde miles de webs.) -- C:\Program Files\Power Video Downloader\Power Video Downloader.exe
O4 - GS\Accessories [UpdatusUser]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [UpdatusUser]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [UpdatusUser]: Run.lnk - Clé orpheline
O4 - GS\Accessories [UpdatusUser]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [UpdatusUser]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\SendTo [UpdatusUser]: Freemake Video Converter.lnk . (.Freemake - Freemake Video Converter.) -- C:\Program Files\Freemake\Freemake Video Converter\FreemakeVideoConverter.exe
O4 - GS\Desktop [UpdatusUser]: Download Accelerator Plus (DAP).lnk . (...) -- C:\Program Files\DAP\DAP.exe (.not file.)
O4 - GS\Desktop [UpdatusUser]: FlashGet3.lnk . (...) -- C:\Program Files\FlashGet Network\FlashGet 3\Flashget3.exe (.not file.)
O4 - GS\Desktop [UpdatusUser]: HideIPVPN.lnk . (.HideIPVPN Team - Starter.) -- C:\Program Files\HideIPVPN\HideIPVPN.exe
O4 - GS\Desktop [UpdatusUser]: HijackThis.lnk . (...) -- C:\Program Files\Trend Micro\HijackThis\HijackThis.exe (.not file.)
O4 - GS\Desktop [UpdatusUser]: My DAP Downloads.lnk - Clé orpheline
O4 - GS\Desktop [UpdatusUser]: PhotoFiltre 7.lnk . (...) -- C:\Program Files\PhotoFiltre 7\PhotoFiltre7.exe (.not file.)
O4 - GS\Desktop [UpdatusUser]: Power Video Downloader.lnk . (.T4Esoft - Descarga videos desde miles de webs.) -- C:\Program Files\Power Video Downloader\Power Video Downloader.exe
O4 - GS\Desktop [UpdatusUser]: Proxifier.lnk . (...) -- C:\Program Files\Proxifier\Proxifier.exe (.not file.)
~ Global Startup: 102 Scanned in 00mn 02s



---\\ Applications lancées au démarrage du sytème (O4)
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
~ Application: Scanned in 00mn 00s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll =>.©
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll =>.©
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll =>.©
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll =>.©
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.©
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll =>.©
O10 - Broken Internet access because of LSP provider (.not file.) -- PrxerNsp.dll =>.©
~ Winsock: 7 Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{0C6E323A-9703-4A6B-B133-37CE1FF2BABB}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{5C78625B-7A44-48B9-A492-6168C644B542}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{7201D4FE-DA97-4D8C-8BBB-01E7320E1741}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9A3B3F2-8917-4F62-8D7B-4909944DA5A4}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{0C6E323A-9703-4A6B-B133-37CE1FF2BABB}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{5C78625B-7A44-48B9-A492-6168C644B542}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{7201D4FE-DA97-4D8C-8BBB-01E7320E1741}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{F9A3B3F2-8917-4F62-8D7B-4909944DA5A4}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{0C6E323A-9703-4A6B-B133-37CE1FF2BABB}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{5C78625B-7A44-48B9-A492-6168C644B542}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{7201D4FE-DA97-4D8C-8BBB-01E7320E1741}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{F9A3B3F2-8917-4F62-8D7B-4909944DA5A4}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: SDWinLogon . (...) -- SDWinLogon.dll
~ Winlogon: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.©
O23 - Service: avast! Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe =>.©
O23 - Service: FsUsbExService (FsUsbExService) . (.Teruten - FsUsbDevice.) - C:\Windows\system32\FsUsbExService.exe =>.©
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe =>.©
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe =>.©
O23 - Service: NeoRouter Client Service (NRClientService) . (.NeoRouter Inc. - NeoRouter Client Service.) - C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 331.6.) - C:\Windows\system32\nvvsvc.exe =>.©
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe =>.©
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) . (.Safer-Networking Ltd. - Spybot-S&D 2 Scanner Service.) - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe =>.©
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) . (.Safer-Networking Ltd. - Spybot-S&D 2 Background update service.) - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe =>.©
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) . (.Safer-Networking Ltd. - Windows Security Center integration..) - C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.©
~ Services: 12 Scanned in 00mn 05s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.) =>.©
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk * ) - File not found
O34 - HKLM BootExecute: (BootDefrag.exe) - File not found
~ BEX: 2 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GlaryInitialize 4.job [332]
[MD5.00000000000000000000000000000000] [APT] [Ad-Aware Antivirus Scheduled Scan] (...) -- C:\Program Files\AD-AWA~1\AdAwareLauncher.exe (.not file.) [0]
[MD5.9D96B0D5855FD1B98023B3EEC9F06786] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [257928] =>.©
[MD5.D4F602B1F775B5827932D3C5B04A3FD2] [APT] [AutoKMS] (...) -- C:\Windows\AutoKMS\AutoKMS.exe [3372032] =>Trojan.Trojan.Keygen
[MD5.F82F374417148CF545221DD88876219F] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [783728] =>.©
[MD5.00000000000000000000000000000000] [APT] [Express Files Updater] (...) -- C:\Program Files\ExpressFiles\EFupdater.exe (.not file.) [0] =>Adware.ExpressFiles
[MD5.754D5DFC05107382F06F225BEC270A47] [APT] [GlaryInitialize 4] (.Glarysoft Ltd.) -- C:\Program Files\Glary Utilities 4\Initialize.exe [99616] =>.©
[MD5.D0983CEA470D273370492D358D69E61B] [APT] [GU4SkipUAC] (.Glarysoft Ltd.) -- C:\Program Files\Glary Utilities 4\Integrator.exe [783648] =>.©
[MD5.00000000000000000000000000000000] [APT] [HostsGuard] (...) -- C:\Program Files\Hosts_Anti_Adwares_PUPs\HOSTS_Anti-Adware.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [Jaksta Media Recorder 97ad876a-c852-413f-8426-b8081ef72af6] (...) -- C:\Program Files\Jaksta Technologies\Jaksta Media Recorder\jmrp.exe (.not file.) [0]
[MD5.F6CC2FD47787F6E7045D544E1B568458] [APT] [RealUpgradeLogonTaskS-1-5-21-494048827-1650175510-1422529119-1000] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [178840] =>.©
[MD5.F6CC2FD47787F6E7045D544E1B568458] [APT] [RealUpgradeScheduledTaskS-1-5-21-494048827-1650175510-1422529119-1000] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [178840] =>.©
[MD5.00000000000000000000000000000000] [APT] [YourFile DownloaderUpdate] (...) -- C:\Program Files\YourFileDownloader\YourFileUpdater.exe (.not file.) [0] =>PUP.YourFileDownloader
[MD5.00000000000000000000000000000000] [APT] [{0A267822-6323-4C92-9B13-E814BD3809F2}] (...) -- C:\Users\Utilisateur\Downloads\nero-burning-rom_nero_burning_rom_12.0.02900_francais_402162.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{0CB10F2F-9759-4C59-B5F9-24C606BAF180}] (...) -- C:\Users\Utilisateur\Downloads\Acer eRecovery 2.5.4012\eRecovery_v2.5.4012.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{14920D6D-2EF8-4273-BC2E-C5FF1A02413A}] (...) -- C:\Users\Utilisateur\Videos\u torrent films t‚l‚charg‚s\Suburban Mysteries - Le Passe Enfoui.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{2439B3CA-B49D-4A55-92D2-2626E9B122D3}] (...) -- C:\Users\Utilisateur\AppData\Local\Temp\Temp1_General-CleanTool.zip\General-CleanTool.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{46D6E613-4FBA-442D-A646-CAC485045C80}] (...) -- C:\Program Files\MyTorrentClient\Halite.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{48308566-4638-495B-ADA3-2B35FC8F6F63}] (...) -- C:\Program Files\MyTorrentClient\Halite.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{499B9A51-CAF4-4428-BA1E-DB08704CA9B9}] (...) -- C:\USERS\Utilisateur\APPDATA\LOCAL\TEMP\wz4c31\auxsetup.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{49FC6E54-1ABF-49CB-8353-0C434E0AE578}] (...) -- C:\Program Files\Mystery Case Files - 13th Skull\Uninstall.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{51446945-8B5E-43FD-83CB-BFE5B7F394B1}] (...) -- C:\USERS\Utilisateur\APPDATA\LOCAL\TEMP\wz6a1d\auxsetup.exe (.not file.) [0]
[MD5.DE76D8D3E89686D2842520CC0D55AF44] [APT] [{5195697E-4A74-4A76-A00D-2858CF1D90D4}] (.VS Revo Group.) -- C:\Program Files\VS Revo Group\Revo Uninstaller\Revouninstaller.exe [3161648] =>.©
[MD5.00000000000000000000000000000000] [APT] [{563356CA-0045-4EEE-AD15-C5EC87397BA8}] (...) -- C:\Users\Utilisateur\Desktop\Power_Video_Downloader.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{5BDB177C-A995-4841-8A5C-93B6EF990D61}] (...) -- C:\Users\Utilisateur\Downloads\Elcomsoft Advanced Archive Password Recovery Professional v4.53\setup.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{749D2F9D-8C07-474D-81D9-8D6A16F82EE0}] (...) -- C:\Users\Utilisateur\Downloads\Nero_KwikMedia-12.0.02100_free.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{8C779E7A-022C-41AF-AF07-651898956E69}] (...) -- C:\USERS\Utilisateur\APPDATA\LOCAL\TEMP\wzc5f9\Surface - Le Jumeau de l'Autre Monde Edition Collector\Uninstall.exe (.not file.) [0]
[MD5.C155A13687144076286989EF078112C2] [APT] [{9C1FA848-303B-4790-9D41-6A10E78CB4EF}] (.Nicolas Coolman.) -- C:\Program Files\ZHPDiag\ZHPFix\ZHPhep.exe [1917440] =>.©
[MD5.00000000000000000000000000000000] [APT] [{9E0A9923-F6D7-49BB-886B-44C3B6C90AC7}] (...) -- C:\Users\Utilisateur\Downloads\windows_8_transformation_pack_3_0_by_dncube-d4ohwa5\Win8TP3\Win8TP3setup.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{A381394E-D6F2-42FE-B758-E1788459364F}] (...) -- C:\Users\Utilisateur\Desktop\Nero_KwikMedia-12.0.01300_free.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{A7277E11-F1C7-4812-B168-65C55A2A0894}] (...) -- C:\Users\Utilisateur\Videos\u torrent films t‚l‚charg‚s\Nero Burning ROM 12.0.00300 + Key\Nero_BurningROM-12.0.00300_trial.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{B818ACEC-2E5C-4A03-AFD0-DF19C4F361FB}] (...) -- C:\Users\Utilisateur\Downloads\windows_8_transformation_pack_3_0_by_dncube-d4ohwa5\Win8TP3\Win8TP3setup.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{C9052A9B-D1DB-470A-839F-19738813C9B6}] (...) -- C:\Users\Utilisateur\Downloads\windows_8_transformation_pack_3_0_by_dncube-d4ohwa5\Win8TP3\Win8TP3setup.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{DA55B9C2-3B5F-4486-83C7-E71BEA0C921B}] (...) -- C:\Program Files\VS Revo Group\Revo Uninstaller Pro\x86\RevoUninPro.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{E065BC0E-E5E0-4C49-8E8F-1C1CBB63DB35}] (...) -- C:\Users\Utilisateur\Downloads\startuplite-setup-1.07.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{E86A3A13-67E6-4C5D-9F63-E0BFC1FD229D}] (...) -- C:\Program Files\Mystery Case Files - 13th Skull\Uninstall.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{EBD696FE-6414-4E6C-8E9A-054D8D74B96A}] (...) -- C:\Users\Utilisateur\Downloads\StealthBastard-1.08.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{EE0FFCD4-A4ED-4119-8642-319462753307}] (...) -- C:\Users\Utilisateur\Downloads\3d_chess_unlimited_share.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{F06995CC-8B50-47AD-993C-3DE440D763A2}] (...) -- C:\USERS\Utilisateur\APPDATA\LOCAL\TEMP\wz42eb\auxsetup.exe (.not file.) [0]
[MD5.C155A13687144076286989EF078112C2] [APT] [{F2B90ABB-A9CF-43BD-A4CA-A629D4982C4D}] (.Nicolas Coolman.) -- C:\Program Files\ZHPDiag\ZHPhep.exe [1917440] =>.©
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984] =>.©
[MD5.01F441F655D8CC4214BDF411D39D04AF] [APT] [Check for updates] (.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe [3881928] =>.©
[MD5.A58EAD767EAE964ED463FEDF25E750A2] [APT] [Refresh immunization] (.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe [3609552] =>.©
[MD5.03250DB0886A23B1F6C077C5D9F152B0] [APT] [Scan the system] (.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe [3859928] =>.©
~ Scheduled Task: 48 Scanned in 00mn 04s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.©
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.©
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll =>.©
O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.©
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll =>.©
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.©
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.©
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe =>.©
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll =>.©
~ Active Setup: 9 Scanned in 00mn 00s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys =>.©
O41 - Driver: (aswKbd) . (.AVAST Software - avast! Keyboard Filter Driver.) - C:\Windows\system32\drivers\aswKbd.sys =>.©
O41 - Driver: (aswNdisFlt) . (.AVAST Software - avast! Filtering NDIS driver.) - C:\Windows\System32\DRIVERS\aswNdisFlt.sys =>.©
O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\drivers\aswRdr2.sys =>.©
O41 - Driver: (aswSnx) . (.AVAST Software - avast! Virtualization Driver.) - C:\Windows\system32\drivers\aswSnx.sys =>.©
O41 - Driver: (aswSP) . (.AVAST Software - avast! self protection module.) - C:\Windows\system32\drivers\aswSP.sys =>.©
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys =>.©
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys =>.©
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys =>.©
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys =>.©
O41 - Driver: (HssDRV6) . (.AnchorFree Inc. - Hotspot Shield Routing Driver.) - C:\Windows\System32\DRIVERS\hssdrv6.sys =>.©
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\System32\DRIVERS\mssmbios.sys =>.©
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys =>.©
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys =>.©
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys =>.©
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys =>.©
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys =>.©
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys =>.©
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys =>.©
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys =>.©
O41 - Driver: (Serial) . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) - C:\Windows\System32\DRIVERS\serial.sys =>.©
O41 - Driver: (StarPortLite) . (.Rocket Division Software - StarPort Storage Controller Lite.) - C:\Windows\System32\DRIVERS\StarPortLite.sys =>.©
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys =>.©
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys =>.©
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys =>.©
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys =>.©
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys =>.©
~ Drivers: 81 Scanned in 00mn 00s



---\\ Logiciels installés (O42)
O42 - Logiciel: 54M Wireless USB Adapter - (.USB.) [HKLM] -- {59061D20-CFC3-4C2E-8B41-9243678ACE8D} =>.©
O42 - Logiciel: 7-Zip 9.20 - (...) [HKLM] -- 7-Zip =>.©
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR =>.©
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {52E225FC-FCB4-41F7-837B-6E37FB05BD7B} =>.©
O42 - Logiciel: Adobe Flash Player 12 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.©
O42 - Logiciel: Adobe Flash Player 12 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin =>.©
O42 - Logiciel: Adobe Reader XI (11.0.06) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} =>.©
O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player =>.©
O42 - Logiciel: Angry Birds Star Wars - (.Rovio Entertainment Ltd..) [HKLM] -- {C336AA55-BBA3-4908-886F-25CF6D302D13} =>.©
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {5D09C772-ECB3-442B-9CC6-B4341C78FDC2} =>.©
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {E14ADE0E-75F3-4A46-87E5-26692DD626EC} =>.©
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.©
O42 - Logiciel: Aurora 29.0a2 (x86 fr) - (.Mozilla.) [HKLM] -- Aurora 29.0a2 (x86 fr) =>.©
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 =>.©
O42 - Logiciel: Canon Easy-PhotoPrint EX - (...) [HKLM] -- Easy-PhotoPrint EX =>.©
O42 - Logiciel: Canon MG5100 series MP Drivers - (...) [HKLM] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5100_series =>.©
O42 - Logiciel: Canon MP Navigator EX 4.0 - (...) [HKLM] -- MP Navigator EX 4.0 =>.©
O42 - Logiciel: Canon My Printer - (...) [HKLM] -- CanonMyPrinter =>.©
O42 - Logiciel: Chameleon Shutdown 1.2.2.40 - (.NeoSoft Tools.) [HKLM] -- Chameleon Shutdown =>.©
O42 - Logiciel: Clavier+ 10.6.3 - (.Guillaume Ryder.) [HKLM] -- Clavier+_is1 =>.©
O42 - Logiciel: FreeOCR v4.2 - (...) [HKLM] -- freeocr_is1 =>.©
O42 - Logiciel: Freemake Video Converter version 4.1.3 - (.Ellora Assets Corporation.) [HKLM] -- Freemake Video Converter_is1 =>.©
O42 - Logiciel: GIMP 2.8.4 - (.The GIMP Team.) [HKLM] -- GIMP-2_is1 =>.©
O42 - Logiciel: GemPcCCID - (.Gemalto.) [HKLM] -- {8BD3AFAF-636E-4516-A7E8-D57CCDBE28B8} =>.©
O42 - Logiciel: Glary Utilities PRO 4.7 - (.Glarysoft Ltd.) [HKLM] -- Glary Utilities 4 =>.©
O42 - Logiciel: HideIPVPN 3.0.0.2 - (...) [HKLM] -- HideIPVPN
O42 - Logiciel: Java 7 Update 25 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217025FF} =>.©
O42 - Logiciel: JavaFX 2.1.1 - (.Oracle Corporation.) [HKLM] -- {1111706F-666A-4037-7777-211328764D10} =>.©
O42 - Logiciel: MSVC80_x86_v2 - (.Nokia.) [HKLM] -- {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6} =>.©
O42 - Logiciel: MSVC90_x86 - (.Nokia.) [HKLM] -- {AF111648-99A1-453E-81DD-80DBBF6DAD0D} =>.©
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.©
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.©
O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1 =>.©
O42 - Logiciel: Mises à jour NVIDIA 1.15.2 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.©
O42 - Logiciel: Mozilla Firefox 27.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 27.0.1 (x86 fr) =>.©
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.©
O42 - Logiciel: Mozilla Thunderbird 24.3.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird 24.3.0 (x86 fr) =>.©
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.12.1031 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.©
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {8B922CF8-8A6C-41CE-A858-F1755D7F5D29} =>.©
O42 - Logiciel: NVIDIA Pilote 3D Vision 331.65 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision =>.©
O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 314.07 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB =>.©
O42 - Logiciel: NVIDIA Pilote graphique 331.65 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.©
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM] -- NVIDIAStereo =>.©
O42 - Logiciel: NeoRouter - (...) [HKLM] -- NeoRouter
O42 - Logiciel: Nokia Connectivity Cable Driver - (.Nokia.) [HKLM] -- {29373274-977E-413C-A4DE-DC0F8E80C429} =>.©
O42 - Logiciel: Nokia Suite - (.Nokia.) [HKLM] -- Nokia Suite =>.©
O42 - Logiciel: Nokia Suite - (.Nokia.) [HKLM] -- {EDB188F5-D8E8-42EE-89E0-F212DA48CB81} =>.©
O42 - Logiciel: PC Connectivity Solution - (.Nokia.) [HKLM] -- {6D01D1B1-17BD-4F10-BB11-F08F0C47D42B} =>.©
O42 - Logiciel: PDF Architect - (.pdfforge.) [HKLM] -- {30B41B7A-3C9D-44DE-A7A1-949011F33CC3} =>.©
O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} =>.©
O42 - Logiciel: Package de pilotes Windows - Nokia pccsmcfd “LegacyDriver” (05/31/2012 7.1 - (.Nokia.) [HKLM] -- 17D063A0A9F5D5A225B76B1D9BCB5ADBE85C8382 =>.©
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3 =>.©
O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM] -- RealPlayer 15.0 =>.©
O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB} =>.©
O42 - Logiciel: Realtek Ethernet Controller Driver For Windows 7 - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.©
O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM] -- Revo Uninstaller =>.©
O42 - Logiciel: Spybot - Search & Destroy - (.Safer-Networking Ltd..) [HKLM] -- {B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1 =>.©
O42 - Logiciel: Telecharger et Installer Packages - (...) [HKCU] -- Telecharger et Installer Packages =>.©
O42 - Logiciel: Trojan Remover 6.9.1 - (.Simply Super Software.) [HKLM] -- Trojan Remover_is1 =>.©
O42 - Logiciel: VLC media player 2.1.2 - (.VideoLAN.) [HKLM] -- VLC media player =>.©
O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM] -- {95140000-00AF-040C-0000-0000000FF1CE} =>.©
O42 - Logiciel: WinPcap 4.1.3 - (.Riverbed Technology, Inc..) [HKLM] -- WinPcapInst =>.©
O42 - Logiciel: WinRAR 5.00 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.©
O42 - Logiciel: Windows Mobile Device Updater Component - (.Microsoft Corporation.) [HKLM] -- {F2CB8C3C-9C9E-4FAB-9067-655601C5F748} =>.©
O42 - Logiciel: Zune - (.Microsoft Corporation.) [HKLM] -- Zune =>.©
O42 - Logiciel: Zune - (.Microsoft Corporation.) [HKLM] -- {9B75648B-6C30-4A0D-9DE6-0D09D20AF5A5} =>.©
O42 - Logiciel: Zune Language Pack (CHS) - (.Microsoft Corporation.) [HKLM] -- {2A9DFFD8-4E09-4B91-B957-454805B0D7C4} =>.©
O42 - Logiciel: Zune Language Pack (CHT) - (.Microsoft Corporation.) [HKLM] -- {A5A53EA8-A11E-49F0-BDF5-AE536426A31A} =>.©
O42 - Logiciel: Zune Language Pack (CSY) - (.Microsoft Corporation.) [HKLM] -- {A8F2E50B-86E2-4D96-9BD2-9758BCC6F9B3} =>.©
O42 - Logiciel: Zune Language Pack (DAN) - (.Microsoft Corporation.) [HKLM] -- {8B112338-2B08-4851-AF84-E7CAD74CEB32} =>.©
O42 - Logiciel: Zune Language Pack (DEU) - (.Microsoft Corporation.) [HKLM] -- {BE236D9A-52EC-4A17-82DA-84B5EAD31E3E} =>.©
O42 - Logiciel: Zune Language Pack (ELL) - (.Microsoft Corporation.) [HKLM] -- {3589A659-F732-4E65-A89A-5438C332E59D} =>.©
O42 - Logiciel: Zune Language Pack (ESP) - (.Microsoft Corporation.) [HKLM] -- {6B33492E-FBBC-4EC3-8738-09E16E395A10} =>.©
O42 - Logiciel: Zune Language Pack (FIN) - (.Microsoft Corporation.) [HKLM] -- {B4870774-5F3A-46D9-9DFE-06FB5599E26B} =>.©
O42 - Logiciel: Zune Language Pack (FRA) - (.Microsoft Corporation.) [HKLM] -- {C68D33B1-0204-4EBE-BC45-A6E432B1D13A} =>.©
O42 - Logiciel: Zune Language Pack (HUN) - (.Microsoft Corporation.) [HKLM] -- {C6BE19C6-B102-4038-B2A6-1C313872DBB4} =>.©
O42 - Logiciel: Zune Language Pack (IND) - (.Microsoft Corporation.) [HKLM] -- {92ECE3F9-591E-4C12-8A62-B9FCE38BF646} =>.©
O42 - Logiciel: Zune Language Pack (ITA) - (.Microsoft Corporation.) [HKLM] -- {C5D37FFA-7483-410B-982B-91E93FD3B7DA} =>.©
O42 - Logiciel: Zune Language Pack (JPN) - (.Microsoft Corporation.) [HKLM] -- {D8A781C9-3892-4E2E-9320-480CF896CFBB} =>.©
O42 - Logiciel: Zune Language Pack (KOR) - (.Microsoft Corporation.) [HKLM] -- {51C839E1-2BE4-4E77-A1BA-CCEA5DAFA741} =>.©
O42 - Logiciel: Zune Language Pack (MSL) - (.Microsoft Corporation.) [HKLM] -- {76BA306B-2AA0-47C0-AB6B-F313AB56C136} =>.©
O42 - Logiciel: Zune Language Pack (NLD) - (.Microsoft Corporation.) [HKLM] -- {6740BCB0-5863-47F4-80F4-44F394DE4FE2} =>.©
O42 - Logiciel: Zune Language Pack (NOR) - (.Microsoft Corporation.) [HKLM] -- {5DEFD397-4012-46C3-B6DA-E8013E660772} =>.©
O42 - Logiciel: Zune Language Pack (PLK) - (.Microsoft Corporation.) [HKLM] -- {8960A0A1-BB5A-479E-92CF-65AB9D684B43} =>.©
O42 - Logiciel: Zune Language Pack (PTB) - (.Microsoft Corporation.) [HKLM] -- {07EEE598-5F21-4B57-B40B-46592625B3D9} =>.©
O42 - Logiciel: Zune Language Pack (PTG) - (.Microsoft Corporation.) [HKLM] -- {5C93E291-A1CC-4E51-85C6-E194209FCDB4} =>.©
O42 - Logiciel: Zune Language Pack (RUS) - (.Microsoft Corporation.) [HKLM] -- {57C51D56-B287-4C11-9192-EC3C46EF76A4} =>.©
O42 - Logiciel: Zune Language Pack (SVE) - (.Microsoft Corporation.) [HKLM] -- {6EB931CD-A7DA-4A44-B74A-89C8EB50086F} =>.©
O42 - Logiciel: avast! Internet Security v9.0.2013 - (.Avast Software.) [HKLM] -- avast =>.©
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {91FD46D2-4FB7-4A51-8637-556E1BE1DB7C} =>.©
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.©
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent =>.©
~ Logic: 47 Scanned in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\7-Zip] =>.©
[HKCU\Software\AVAST Software] =>.©
[HKCU\Software\AVS4YOU] =>.©
[HKCU\Software\Adobe] =>.©
[HKCU\Software\Alawar] =>.©
[HKCU\Software\AppDataLow\RealNetworks] =>.©
[HKCU\Software\AppDataLow\Software\Adobe] =>.©
[HKCU\Software\AppDataLow\Software\GetGo Software] =>.©
[HKCU\Software\AppDataLow\Software\JavaSoft] =>.©
[HKCU\Software\AppDataLow\Software\iGraal]
[HKCU\Software\AppDataLow] =>.©
[HKCU\Software\Apple Computer, Inc.] =>.©
[HKCU\Software\Apple Inc.] =>.©
[HKCU\Software\Ashampoo] =>.©
[HKCU\Software\Astonsoft] =>.©
[HKCU\Software\Axmapresse] =>.©
[HKCU\Software\Big Fish Games, Inc.] =>.©
[HKCU\Software\Big Fish Games] =>.©
[HKCU\Software\BitTorrent] =>.©
[HKCU\Software\Bytescout] =>.©
[HKCU\Software\Canneverbe Limited] =>.©
[HKCU\Software\CanonBJ] =>.©
[HKCU\Software\Canon] =>.©
[HKCU\Software\Classes] =>.©
[HKCU\Software\Clients] =>.©
[HKCU\Software\Cocoon Software] =>.©
[HKCU\Software\Commercial Research] =>.©
[HKCU\Software\DSS] =>.©
[HKCU\Software\DVD Decrypter] =>.©
[HKCU\Software\DVDVideoSoft] =>.©
[HKCU\Software\Digital River] =>.©
[HKCU\Software\DivX] =>.©
[HKCU\Software\DownloadManager] =>.©
[HKCU\Software\EagleGet] =>.©
[HKCU\Software\Extensoft] =>.©
[HKCU\Software\FlashGet Network] =>.©
[HKCU\Software\FreeDownloadManager.ORG] =>.©
[HKCU\Software\Freemake] =>.©
[HKCU\Software\Freeware] =>.©
[HKCU\Software\GNU] =>.©
[HKCU\Software\Gabest] =>.©
[HKCU\Software\Gemalto] =>.©
[HKCU\Software\GlarySoft] =>.©
[HKCU\Software\Gogii] =>.©
[HKCU\Software\Google] =>.©
[HKCU\Software\GridinSoft] =>.©
[HKCU\Software\Hamster] =>.©
[HKCU\Software\Initex Software] =>.©
[HKCU\Software\Intel\Indeo\4.1] =>.©
[HKCU\Software\JavaSoft] =>.©
[HKCU\Software\Licenses] =>.©
[HKCU\Software\MCAFEE] =>.©
[HKCU\Software\MPEG4E.COM] =>.©
[HKCU\Software\Macromedia] =>.©
[HKCU\Software\Macrovision] =>.©
[HKCU\Software\Malwarebytes' Anti-Malware] =>.©
[HKCU\Software\Marseillesoft] =>.©
[HKCU\Software\MicroWorld] =>.©
[HKCU\Software\Mirage] =>.©
[HKCU\Software\MozillaPlugins] =>.©
[HKCU\Software\Mozilla] =>.©
[HKCU\Software\NCH Swift Sound] =>.©
[HKCU\Software\NVIDIA Corporation] =>.©
[HKCU\Software\Nero] =>.©
[HKCU\Software\Netscape] =>.©
[HKCU\Software\Nico Mak Computing] =>.©
[HKCU\Software\Nokia] =>.©
[HKCU\Software\ODBC] =>.©
[HKCU\Software\OpenOffice.org] =>.©
[HKCU\Software\Opera Software] =>.©
[HKCU\Software\PC SOFT] =>.©
[HKCU\Software\PDF Architect] =>.©
[HKCU\Software\PDFCreator] =>.©
[HKCU\Software\Policies] =>.©
[HKCU\Software\ProgSense] =>.©
[HKCU\Software\RagTime.de]
[HKCU\Software\RealNetworks] =>.©
[HKCU\Software\Ripp-it] =>.©
[HKCU\Software\Rocket Division Software] =>.©
[HKCU\Software\SRS Labs] =>.©
[HKCU\Software\Safer Networking Limited] =>.©
[HKCU\Software\Samsung] =>.©
[HKCU\Software\Screentime Media] =>.©
[HKCU\Software\Simply Super Software] =>.©
[HKCU\Software\Smart Soft] =>.©
[HKCU\Software\SoftVTU] =>.©
[HKCU\Software\SpeedBit]
[HKCU\Software\Swisscom] =>.©
[HKCU\Software\TeleCharger] =>.©
[HKCU\Software\TeleCharger_v2] =>.©
[HKCU\Software\The Silicon Realms Toolworks] =>.©
[HKCU\Software\Trolltech] =>.©
[HKCU\Software\Usbfix] =>.©
[HKCU\Software\VB and VBA Program Settings] =>.©
[HKCU\Software\VOS] =>.©
[HKCU\Software\VSO] =>.©
[HKCU\Software\VSRevoGroup] =>.©
[HKCU\Software\VirtualDub.org] =>.©
[HKCU\Software\WLAN Optimizer .NET] =>.©
[HKCU\Software\WinRAR SFX] =>.©
[HKCU\Software\WinRAR] =>.©
[HKCU\Software\WinZip Computing] =>.©
[HKCU\Software\ZebHelpProcess Helper] =>.©
[HKCU\Software\ZebraNetworkSystems] =>.©
[HKCU\Software\Zyrax Software] =>.©
[HKCU\Software\brizsoft] =>.©
[HKCU\Software\ej-technologies] =>.©
[HKCU\Software\mixidj LTD] =>Toolbar.MixiDJ
[HKCU\Software\mquadr.at] =>.©
[HKCU\Software\sysinternals] =>.©
[HKCU\Software\telecharger-gratuit] =>.©
[HKCU\Software\yahoo] =>.©
[HKLM\Software\7-Zip] =>.©
[HKLM\Software\AGEIA Technologies] =>.©
[HKLM\Software\ATI Technologies] =>.©
[HKLM\Software\AVAST Software] =>.©
[HKLM\Software\AVS4YOU] =>.©
[HKLM\Software\Acer] =>.©
[HKLM\Software\Adobe] =>.©
[HKLM\Software\AdwCleaner] =>.©
[HKLM\Software\Aimersoft] =>.©
[HKLM\Software\Alawar] =>.©
[HKLM\Software\AppDataLow] =>.©
[HKLM\Software\Apple Computer, Inc.] =>.©
[HKLM\Software\Apple Inc.] =>.©
[HKLM\Software\Big Fish Games] =>.©
[HKLM\Software\Bunndle] =>.©
[HKLM\Software\CBSTEST] =>.©
[HKLM\Software\CDDB] =>.©
[HKLM\Software\Canneverbe Limited] =>.©
[HKLM\Software\Canon] =>.©
[HKLM\Software\Classes] =>.©
[HKLM\Software\Clients] =>.©
[HKLM\Software\DVDVideoSoft] =>.©
[HKLM\Software\DivXNetworks] =>.©
[HKLM\Software\DivX] =>.©
[HKLM\Software\Extensoft] =>.©
[HKLM\Software\FlashGet Network] =>.©
[HKLM\Software\Freemake] =>.©
[HKLM\Software\GEAR Software] =>.©
[HKLM\Software\GlarySoft] =>.©
[HKLM\Software\Glorylogic] =>.©
[HKLM\Software\Google] =>.©
[HKLM\Software\HamsterSoft] =>.©
[HKLM\Software\IncrediMail]
[HKLM\Software\Initex Software] =>.©
[HKLM\Software\InstallShield] =>.©
[HKLM\Software\Intel] =>.©
[HKLM\Software\InterVideo] =>.©
[HKLM\Software\JavaSoft] =>.©
[HKLM\Software\JreMetrics] =>.©
[HKLM\Software\KasperskyLab] =>.©
[HKLM\Software\Khronos] =>.©
[HKLM\Software\Licenses] =>.©
[HKLM\Software\Lidan] =>.©
[HKLM\Software\Macromedia] =>.©
[HKLM\Software\Macrovision] =>.©
[HKLM\Software\Malwarebytes' Anti-Malware (Trial)] =>.©
[HKLM\Software\Malwarebytes' Anti-Malware] =>.©
[HKLM\Software\McAfee.com] =>.©
[HKLM\Software\MicroWorld] =>.©
[HKLM\Software\MozillaPlugins] =>.©
[HKLM\Software\Mozilla] =>.©
[HKLM\Software\NCH Swift Sound] =>.©
[HKLM\Software\NVIDIA Corporation] =>.©
[HKLM\Software\NeoSoftTools] =>.©
[HKLM\Software\Nero] =>.©
[HKLM\Software\Nico Mak Computing] =>.©
[HKLM\Software\Nokia Mobile Phones] =>.©
[HKLM\Software\Nokia] =>.©
[HKLM\Software\ODBC] =>.©
[HKLM\Software\Oracle] =>.©
[HKLM\Software\PC Connectivity Solution] =>.©
[HKLM\Software\PCSuite] =>.©
[HKLM\Software\PCTools]
[HKLM\Software\PDF Architect] =>.©
[HKLM\Software\PDFCreator] =>.©
[HKLM\Software\Policies] =>.©
[HKLM\Software\RTLSetup] =>.©
[HKLM\Software\RagTime.de]
[HKLM\Software\RealNetworks] =>.©
[HKLM\Software\Realtek] =>.©
[HKLM\Software\RegisteredApplications] =>.©
[HKLM\Software\RichFX] =>.©
[HKLM\Software\Rocket Division Software] =>.©
[HKLM\Software\Rovio Entertainment Ltd.] =>.©
[HKLM\Software\SBAMSvc] =>.©
[HKLM\Software\Safer Networking Limited] =>.©
[HKLM\Software\Simply Super Software] =>.©
[HKLM\Software\SoftVTU] =>.©
[HKLM\Software\Sonic] =>.©
[HKLM\Software\SpeedBit]
[HKLM\Software\Symantec] =>.©
[HKLM\Software\SysCodecID] =>.©
[HKLM\Software\VSO] =>.©
[HKLM\Software\VideoLAN] =>.©
[HKLM\Software\Volatile] =>.©
[HKLM\Software\WOW6432Node] =>.©
[HKLM\Software\WebSupergoo] =>.©
[HKLM\Software\WinPcap] =>.©
[HKLM\Software\WinRAR] =>.©
[HKLM\Software\Xing Technology Corp.] =>.©
[HKLM\Software\ZebraNetworkSystems] =>.©
[HKLM\Software\instinno] =>.©
[HKLM\Software\mozilla.org] =>.©
[HKLM\Software\mquadr.at] =>.©
[HKLM\Software\oxxogames] =>.©
[HKLM\Software\tpfmon] =>.©
~ Key Software: 350 Scanned in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 30/08/2012 - 08:15:00 - [3,348] ----D C:\Program Files\7-Zip =>.©
O43 - CFD: 16/09/2012 - 06:12:38 - [603,686] ----D C:\Program Files\Ad-Aware Antivirus =>.©
O43 - CFD: 06/03/2013 - 18:03:25 - [120,822] ----D C:\Program Files\Adobe =>.©
O43 - CFD: 27/01/2013 - 12:49:16 - [0] ----D C:\Program Files\Anuman Interactive =>.©
O43 - CFD: 19/05/2013 - 15:13:45 - [2,316] ----D C:\Program Files\Apple Software Update =>.©
O43 - CFD: 27/03/2013 - 15:47:13 - [6,312] ----D C:\Program Files\Appnimi
O43 - CFD: 13/03/2014 - 04:14:16 - [70,140] ----D C:\Program Files\Aurora =>.©
O43 - CFD: 16/10/2013 - 10:21:10 - [8,322] ----D C:\Program Files\Auto Shutdown Pro
O43 - CFD: 26/11/2011 - 14:43:03 - [625,968] ----D C:\Program Files\AVAST Software =>.©
O43 - CFD: 30/08/2012 - 05:12:50 - [0,009] ----D C:\Program Files\BoontyGames =>.©
O43 - CFD: 26/11/2011 - 15:47:26 - [326,379] ----D C:\Program Files\Canon =>.©
O43 - CFD: 11/03/2014 - 04:26:49 - [12,027] ----D C:\Program Files\CDBurnerXP =>.©
O43 - CFD: 02/09/2013 - 14:06:41 - [5,293] ----D C:\Program Files\Chameleon Shutdown =>.©
O43 - CFD: 25/02/2014 - 16:47:39 - [445,972] ----D C:\Program Files\Common Files =>.©
O43 - CFD: 25/12/2013 - 12:25:29 - [0,764] ----D C:\Program Files\DIFX =>.©
O43 - CFD: 21/11/2010 - 01:39:40 - [79,371] ----D C:\Program Files\DVD Maker =>.©
O43 - CFD: 28/03/2013 - 11:54:27 - [0] ----D C:\Program Files\ElcomSoft =>.©
O43 - CFD: 15/06/2013 - 10:26:49 - [13,543] ----D C:\Program Files\Emoticon
O43 - CFD: 24/11/2013 - 05:33:38 - [0,253] ----D C:\Program Files\Free Easy CD DVD Burner =>.©
O43 - CFD: 17/11/2013 - 06:34:31 - [0,116] ----D C:\Program Files\Free Video Converter =>.©
O43 - CFD: 14/07/2012 - 12:15:41 - [111,841] ----D C:\Program Files\Freemake =>.©
O43 - CFD: 31/01/2014 - 06:26:00 - [0,105] ----D C:\Program Files\Gemalto =>.©
O43 - CFD: 02/07/2012 - 07:09:24 - [221,143] ----D C:\Program Files\GIMP 2 =>.©
O43 - CFD: 24/11/2013 - 06:07:40 - [0,062] ----D C:\Program Files\Glary Utilities 3 =>.©
O43 - CFD: 13/03/2014 - 12:46:17 - [26,153] ----D C:\Program Files\Glary Utilities 4 =>.©
O43 - CFD: 04/01/2014 - 18:10:32 - [76,996] ----D C:\Program Files\Google =>.©
O43 - CFD: 26/02/2014 - 17:56:13 - [0,004] ----D C:\Program Files\GridinSoft Trojan Killer =>.©
O43 - CFD: 09/07/2012 - 11:57:31 - [38,067] ----D C:\Program Files\Hamster Soft =>.©
O43 - CFD: 28/02/2014 - 19:01:03 - [3,699] ----D C:\Program Files\HideIPVPN
O43 - CFD: 22/01/2014 - 17:39:51 - [7,611] --H-D C:\Program Files\InstallShield Installation Information =>.©
O43 - CFD: 02/09/2013 - 18:00:07 - [1,143] ----D C:\Program Files\Internet Download Manager =>.©
O43 - CFD: 15/03/2014 - 03:37:55 - [6,013] ----D C:\Program Files\Internet Explorer =>.©
O43 - CFD: 08/07/2012 - 03:58:54 - [0,787] ----D C:\Program Files\iNTERNET Turbo
O43 - CFD: 02/07/2013 - 02:09:48 - [1,765] ----D C:\Program Files\iPod =>.©
O43 - CFD: 02/07/2013 - 02:10:03 - [156,219] ----D C:\Program Files\iTunes =>.©
O43 - CFD: 02/07/2013 - 02:05:06 - [122,152] ----D C:\Program Files\Java =>.©
O43 - CFD: 30/08/2012 - 05:15:52 - [0,283] ----D C:\Program Files\Jeux.fr =>.©
O43 - CFD: 26/02/2014 - 17:56:02 - [0] ----D C:\Program Files\Malware Eraser =>.©
O43 - CFD: 27/02/2014 - 05:19:32 - [13,277] ----D C:\Program Files\Malwarebytes' Anti-Malware =>.©
O43 - CFD: 23/12/2011 - 04:56:10 - [2,414] ----D C:\Program Files\MarkAny =>.©
O43 - CFD: 11/09/2013 - 17:11:59 - [10,025] ----D C:\Program Files\Microsoft Application Virtualization Client =>.©
O43 - CFD: 21/11/2010 - 01:39:35 - [140,966] ----D C:\Program Files\Microsoft Games =>.©
O43 - CFD: 12/12/2012 - 16:59:23 - [34,128] ----D C:\Program Files\Microsoft Office =>.©
O43 - CFD: 12/12/2012 - 16:46:01 - [0,023] ----D C:\Program Files\Microsoft.NET =>.©
O43 - CFD: 27/03/2013 - 13:31:45 - [0,062] ----D C:\Program Files\mixiedj
O43 - CFD: 13/03/2014 - 17:39:26 - [52,506] ----D C:\Program Files\Mozilla Firefox =>.©
O43 - CFD: 15/03/2014 - 03:30:35 - [0,216] ----D C:\Program Files\Mozilla Maintenance Service =>.©
O43 - CFD: 02/03/2014 - 10:47:06 - [49,039] ----D C:\Program Files\Mozilla Thunderbird =>.©
O43 - CFD: 14/07/2009 - 05:52:30 - [0,025] ----D C:\Program Files\MSBuild =>.©
O43 - CFD: 26/02/2014 - 16:57:47 - [66,358] ----D C:\Program Files\MSECache =>.©
O43 - CFD: 25/12/2013 - 12:26:26 - [132,247] ----D C:\Program Files\Nokia =>.©
O43 - CFD: 22/01/2014 - 17:53:47 - [1787,547] ----D C:\Program Files\NVIDIA Corporation =>.©
O43 - CFD: 03/07/2012 - 14:52:12 - [23,946] ----D C:\Program Files\Opera =>.©
O43 - CFD: 30/11/2012 - 03:18:51 - [33,205] ----D C:\Program Files\Oracle =>.©
O43 - CFD: 25/12/2013 - 12:25:17 - [15,194] ----D C:\Program Files\PC Connectivity Solution =>.©
O43 - CFD: 30/01/2013 - 16:31:45 - [92,727] ----D C:\Program Files\PDF Architect =>.©
O43 - CFD: 14/09/2013 - 16:01:06 - [24,848] ----D C:\Program Files\PDFCreator =>.©
O43 - CFD: 03/01/2014 - 18:09:02 - [7,244] ----D C:\Program Files\Power Video Downloader =>.©
O43 - CFD: 04/07/2012 - 15:21:16 - [191,752] ----D C:\Program Files\Real =>.©
O43 - CFD: 26/11/2011 - 01:12:10 - [1,955] ----D C:\Program Files\Realtek =>.©
O43 - CFD: 14/07/2009 - 05:52:30 - [37,357] ----D C:\Program Files\Reference Assemblies =>.©
O43 - CFD: 17/12/2012 - 07:14:12 - [2,502] ----D C:\Program Files\RiccoVPN
O43 - CFD: 15/07/2013 - 03:10:54 - [64,021] ----D C:\Program Files\Rovio =>.©
O43 - CFD: 26/01/2014 - 07:18:49 - [24,904] ----D C:\Program Files\Samsung =>.©
O43 - CFD: 31/12/2011 - 07:03:11 - [0,002] ----D C:\Program Files\Seagate =>.©
O43 - CFD: 04/07/2012 - 15:23:23 - [6,827] ----D C:\Program Files\SpeedBit Video Accelerator
O43 - CFD: 24/11/2013 - 06:27:39 - [2,214] ----D C:\Program Files\Spybot - Search & Destroy =>.©
O43 - CFD: 28/02/2014 - 19:04:03 - [179,453] ----D C:\Program Files\Spybot - Search & Destroy 2 =>.©
O43 - CFD: 03/12/2011 - 16:41:22 - [3,567] ----D C:\Program Files\TLKGAMES =>.©
O43 - CFD: 26/02/2014 - 17:46:20 - [19,251] ----D C:\Program Files\Trojan Remover =>.©
O43 - CFD: 24/11/2013 - 05:29:03 - [0,282] ----D C:\Program Files\Ubisoft =>.©
O43 - CFD: 02/07/2012 - 19:23:25 - [1,104] --H-D C:\Program Files\Uninstall Information =>.©
O43 - CFD: 26/11/2011 - 14:29:10 - [0,243] ----D C:\Program Files\USB
O43 - CFD: 04/07/2012 - 08:41:34 - [13,520] ----D C:\Program Files\VideoConverter =>.©
O43 - CFD: 21/11/2013 - 19:43:24 - [98,613] ----D C:\Program Files\VideoLAN =>.©
O43 - CFD: 05/01/2014 - 07:00:02 - [0] ----D C:\Program Files\ViDown
O43 - CFD: 26/02/2014 - 04:56:07 - [6,523] ----D C:\Program Files\VS Revo Group =>.©
O43 - CFD: 04/01/2014 - 18:22:14 - [2,783] ----D C:\Program Files\vso =>.©
O43 - CFD: 10/07/2013 - 15:58:27 - [2,909] ----D C:\Program Files\Windows Defender =>.©
O43 - CFD: 10/07/2013 - 15:58:27 - [6,688] ----D C:\Program Files\Windows Journal =>.©
O43 - CFD: 21/11/2010 - 01:30:45 - [5,895] ----D C:\Program Files\Windows Mail =>.©
O43 - CFD: 13/12/2013 - 04:52:30 - [6,298] ----D C:\Program Files\Windows Media Player =>.©
O43 - CFD: 28/08/2013 - 09:24:15 - [11,632] ----D C:\Program Files\Windows NT =>.©
O43 - CFD: 21/11/2010 - 01:30:45 - [4,213] ----D C:\Program Files\Windows Photo Viewer =>.©
O43 - CFD: 20/11/2010 - 22:33:48 - [0,181] ----D C:\Program Files\Windows Portable Devices =>.©
O43 - CFD: 21/11/2010 - 01:30:45 - [6,575] ----D C:\Program Files\Windows Sidebar =>.©
O43 - CFD: 08/01/2014 - 15:53:03 - [0,229] ----D C:\Program Files\WinPcap =>.©
O43 - CFD: 25/11/2013 - 04:12:59 - [4,604] ----D C:\Program Files\WinRAR =>.©
O43 - CFD: 22/08/2012 - 17:08:25 - [0,016] ----D C:\Program Files\WinZip =>.©
O43 - CFD: 28/02/2014 - 15:56:53 - [16,667] ----D C:\Program Files\ZebraNetworkSystems =>.©
O43 - CFD: 19/03/2014 - 15:50:29 - [23,839] ----D C:\Program Files\ZHPDiag =>.©
O43 - CFD: 19/05/2013 - 14:01:18 - [96,209] ----D C:\Program Files\Zune =>.©
O43 - CFD: 06/03/2013 - 18:03:26 - [6,301] ----D C:\Program Files\Common Files\Adobe =>.©
O43 - CFD: 23/10/2013 - 07:59:48 - [45,972] ----D C:\Program Files\Common Files\Adobe AIR =>.©
O43 - CFD: 18/11/2013 - 14:36:13 - [2,617] ----D C:\Program Files\Common Files\Aimersoft =>.©
O43 - CFD: 02/07/2013 - 02:09:48 - [107,230] ----D C:\Program Files\Common Files\Apple =>.©
O43 - CFD: 24/11/2013 - 05:17:58 - [0,171] ----D C:\Program Files\Common Files\AVSMedia =>.©
O43 - CFD: 26/11/2011 - 15:22:11 - [0,001] ----D C:\Program Files\Common Files\CANON =>.©
O43 - CFD: 12/12/2012 - 16:59:24 - [0,095] ----D C:\Program Files\Common Files\DESIGNER =>.©
O43 - CFD: 01/09/2013 - 06:15:04 - [0,561] ----D C:\Program Files\Common Files\EagleGet =>.©
O43 - CFD: 11/07/2012 - 16:31:36 - [2,262] ----D C:\Program Files\Common Files\InstallShield =>.©
O43 - CFD: 02/07/2013 - 02:05:29 - [1,189] ----D C:\Program Files\Common Files\Java =>.©
O43 - CFD: 15/12/2012 - 17:19:37 - [178,288] ----D C:\Program Files\Common Files\microsoft shared =>.©
O43 - CFD: 25/02/2014 - 16:47:39 - [0] ----D C:\Program Files\Common Files\MicroWorld =>.©
O43 - CFD: 22/01/2014 - 17:38:16 - [11,747] ----D C:\Program Files\Common Files\nero =>.©
O43 - CFD: 25/12/2013 - 12:26:31 - [11,540] ----D C:\Program Files\Common Files\Nokia =>.©
O43 - CFD: 01/02/2013 - 06:35:48 - [0] ----D C:\Program Files\Common Files\PC Tools =>.©
O43 - CFD: 04/07/2012 - 15:28:52 - [4,145] ----D C:\Program Files\Common Files\PX Storage Engine =>.©
O43 - CFD: 14/07/2009 - 03:37:05 - [0,003] ----D C:\Program Files\Common Files\Services =>.©
O43 - CFD: 14/07/2009 - 03:37:05 - [39,200] ----D C:\Program Files\Common Files\SpeechEngines =>.©
O43 - CFD: 01/09/2013 - 05:16:09 - [2,414] ----D C:\Program Files\Common Files\SpeedBit
O43 - CFD: 19/09/2012 - 07:08:25 - [15,805] ----D C:\Program Files\Common Files\System =>.©
O43 - CFD: 31/12/2011 - 06:54:21 - [16,097] ----D C:\Program Files\Common Files\Wise Installation Wizard =>.©
O43 - CFD: 04/07/2012 - 15:21:14 - [0,336] ----D C:\Program Files\Common Files\xing shared =>.©
O43 - CFD: 02/07/2013 - 02:10:03 - [2,446] ----D C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1 =>.©
O43 - CFD: 22/04/2013 - 05:11:04 - [177,286] ----D C:\ProgramData\Adobe =>.©
O43 - CFD: 14/09/2013 - 04:28:55 - [2,176] ----D C:\ProgramData\albumphoto =>.©
O43 - CFD: 19/05/2013 - 15:13:38 - [32,861] ----D C:\ProgramData\Apple =>.©
O43 - CFD: 19/05/2013 - 15:14:02 - [58,094] ----D C:\ProgramData\Apple Computer =>.©
O43 - CFD: 21/10/2013 - 16:16:51 - [323,849] ----D C:\ProgramData\AVAST Software =>.©
O43 - CFD: 26/02/2014 - 18:51:25 - [0] ----D C:\ProgramData\Canneverbe Limited =>.©
O43 - CFD: 26/11/2011 - 15:15:24 - [23,776] --H-D C:\ProgramData\CanonBJ =>.©
O43 - CFD: 03/02/2012 - 15:47:18 - [0] ----D C:\ProgramData\CanonIJ =>.©
O43 - CFD: 03/09/2012 - 06:47:33 - [0] --H-D C:\ProgramData\CanonIJEGV =>.©
O43 - CFD: 02/12/2011 - 05:12:31 - [0] --H-D C:\ProgramData\CanonIJEPPEX =>.©
O43 - CFD: 26/11/2011 - 16:17:32 - [0] --H-D C:\ProgramData\CanonIJMyPrinter =>.©
O43 - CFD: 05/03/2014 - 17:53:17 - [0,055] ----D C:\ProgramData\CanonIJPLM =>.©
O43 - CFD: 03/02/2012 - 15:46:32 - [0,002] --H-D C:\ProgramData\CanonIJScan =>.©
O43 - CFD: 26/11/2011 - 16:17:39 - [0,002] --H-D C:\ProgramData\CanonIJSolutionMenuEX =>.©
O43 - CFD: 26/11/2011 - 15:22:02 - [0,065] ----D C:\ProgramData\CanonIJWSpt =>.©
O43 - CFD: 05/07/2013 - 02:56:27 - [0,016] ----D C:\ProgramData\ClubSanDisk =>.©
O43 - CFD: 12/07/2012 - 15:41:04 - [0,002] ----D C:\ProgramData\DAEMON Tools Lite =>.©
O43 - CFD: 04/12/2012 - 10:56:35 - [0,106] ----D C:\ProgramData\DivX =>.©
O43 - CFD: 30/06/2012 - 14:33:19 - [0,164] ----D C:\ProgramData\Fenomen Games =>.©
O43 - CFD: 09/12/2011 - 17:34:39 - [0,001] ----D C:\ProgramData\FLEXnet =>.©
O43 - CFD: 27/08/2013 - 13:06:22 - [0,589] ----D C:\ProgramData\Free Download Manager =>.©
O43 - CFD: 02/02/2013 - 11:14:24 - [11,253] ----D C:\ProgramData\Freemake =>.©
O43 - CFD: 16/09/2012 - 06:12:33 - [0,006] ----D C:\ProgramData\GFI Software =>.©
O43 - CFD: 24/11/2013 - 06:09:11 - [2,517] ----D C:\ProgramData\GlarySoft =>.©
O43 - CFD: 06/09/2012 - 11:39:47 - [12,539] ----D C:\ProgramData\Lavasoft =>.©
O43 - CFD: 26/02/2014 - 09:09:48 - [0] ----D C:\ProgramData\Licenses =>.©
O43 - CFD: 26/11/2011 - 14:46:11 - [16,932] ----D C:\ProgramData\Malwarebytes =>.©
O43 - CFD: 14/02/2013 - 15:42:26 - [0,093] ----D C:\ProgramData\McAfee =>.©
O43 - CFD: 28/02/2014 - 19:04:02 - [1592,992] -S--D C:\ProgramData\Microsoft =>.©
O43 - CFD: 12/12/2012 - 16:46:24 - [0,054] ----D C:\ProgramData\Microsoft Help =>.©
O43 - CFD: 05/03/2014 - 12:38:02 - [0,002] ----D C:\ProgramData\Microsoft Toolkit =>.©
O43 - CFD: 26/02/2014 - 17:58:09 - [129,285] ----D C:\ProgramData\MicroWorld =>.©
O43 - CFD: 27/04/2012 - 13:53:47 - [0,035] ----D C:\ProgramData\Mozilla =>.©
O43 - CFD: 24/11/2013 - 05:47:37 - [0,003] ----D C:\ProgramData\Nero =>.©
O43 - CFD: 25/12/2013 - 12:27:05 - [69,553] ----D C:\ProgramData\Nokia =>.©
O43 - CFD: 25/12/2013 - 12:23:41 - [447,151] ----D C:\ProgramData\NokiaInstallerCache =>.©
O43 - CFD: 19/03/2014 - 15:46:33 - [5,115] ----D C:\ProgramData\NVIDIA =>.©
O43 - CFD: 12/11/2013 - 18:22:35 - [3,323] ----D C:\ProgramData\NVIDIA Corporation =>.©
O43 - CFD: 22/01/2014 - 17:56:03 - [0,009] ----D C:\ProgramData\PC Suite =>.©
O43 - CFD: 07/01/2013 - 12:04:54 - [0] ----D C:\ProgramData\PDF Architect =>.©
O43 - CFD: 03/09/2013 - 17:20:39 - [67,179] ----D C:\ProgramData\RagTime
O43 - CFD: 06/10/2013 - 09:56:34 - [2,473] ----D C:\ProgramData\Real =>.©
O43 - CFD: 03/01/2014 - 18:20:50 - [0,556] ----D C:\ProgramData\Samsung =>.©
O43 - CFD: 26/02/2014 - 09:08:50 - [20,144] ----D C:\ProgramData\Simply Super Software =>.©
O43 - CFD: 01/09/2013 - 05:16:10 - [12,523] ----D C:\ProgramData\SpeedBit
O43 - CFD: 01/03/2014 - 05:35:10 - [1231,580] ----D C:\ProgramData\Spybot - Search & Destroy =>.©
O43 - CFD: 25/12/2011 - 03:45:27 - [0] ----D C:\ProgramData\Sun =>.©
O43 - CFD: 28/02/2014 - 18:51:30 - [0] ---AD C:\ProgramData\TEMP =>.©
O43 - CFD: 07/07/2012 - 16:29:57 - [0,027] ----D C:\ProgramData\VideoConverter =>.©
O43 - CFD: 27/02/2014 - 04:44:08 - [0] ----D C:\ProgramData\VirtualizedApplications =>.©
O43 - CFD: 26/01/2014 - 07:12:39 - [16,220] ----D C:\ProgramData\VS Revo Group =>.©
O43 - CFD: 03/01/2014 - 17:27:01 - [1,565] ----D C:\ProgramData\VSO =>.©
O43 - CFD: 12/12/2012 - 08:50:59 - [0] ----D C:\ProgramData\vsosdk =>.©
O43 - CFD: 30/01/2013 - 16:31:46 - [0] ----D C:\ProgramData\WinZip =>.©
O43 - CFD: 28/02/2014 - 15:56:00 - [0,001] ----D C:\ProgramData\ZebraNetworkSystems =>.©
O43 - CFD: 26/02/2014 - 05:18:15 - [1,063] ----D C:\Users\Utilisateur\AppData\Roaming\0T1N1C1T1Q2Y1L2Z
O43 - CFD: 02/09/2013 - 17:47:43 - [0,064] ----D C:\Users\Utilisateur\AppData\Roaming\Absolute Uninstaller =>.©
O43 - CFD: 13/09/2012 - 06:34:14 - [0,092] ----D C:\Users\Utilisateur\AppData\Roaming\Ad-Aware Antivirus =>.©
O43 - CFD: 27/02/2014 - 05:11:57 - [21,600] ----D C:\Users\Utilisateur\AppData\Roaming\Adobe =>.©
O43 - CFD: 12/09/2013 - 15:27:31 - [1,664] ----D C:\Users\Utilisateur\AppData\Roaming\AlawarEntertainment =>.©
O43 - CFD: 21/11/2013 - 19:50:40 - [0,025] ----D C:\Users\Utilisateur\AppData\Roaming\AnvSoft =>.©
O43 - CFD: 19/05/2013 - 15:20:01 - [1024,090] ----D C:\Users\Utilisateur\AppData\Roaming\Apple Computer =>.©
O43 - CFD: 07/01/2013 - 11:58:56 - [6,631] ----D C:\Users\Utilisateur\AppData\Roaming\APP_NAME_NON_STRING =>.©
O43 - CFD: 17/02/2013 - 07:51:36 - [14,114] ----D C:\Users\Utilisateur\AppData\Roaming\Artifex Mundi =>.©
O43 - CFD: 08/05/2012 - 10:01:31 - [0,124] ----D C:\Users\Utilisateur\AppData\Roaming\Artogon =>.©
O43 - CFD: 12/07/2012 - 06:58:35 - [0,968] ----D C:\Users\Utilisateur\AppData\Roaming\Ashampoo =>.©
O43 - CFD: 22/10/2013 - 04:03:23 - [5,948] ----D C:\Users\Utilisateur\AppData\Roaming\AVAST Software =>.©
O43 - CFD: 28/08/2013 - 09:24:23 - [0,017] ----D C:\Users\Utilisateur\AppData\Roaming\avidemux =>.©
O43 - CFD: 23/10/2013 - 16:29:50 - [3,216] ----D C:\Users\Utilisateur\AppData\Roaming\AVS4YOU =>.©
O43 - CFD: 28/08/2013 - 09:24:21 - [40,647] ----D C:\Users\Utilisateur\AppData\Roaming\Azureus =>.©
O43 - CFD: 19/02/2013 - 09:39:00 - [0,349] ----D C:\Users\Utilisateur\AppData\Roaming\Big Fish Games =>.©
O43 - CFD: 16/02/2014 - 06:53:29 - [0,060] ----D C:\Users\Utilisateur\AppData\Roaming\BITS =>.©
O43 - CFD: 04/03/2013 - 10:21:07 - [6,519] ----D C:\Users\Utilisateur\AppData\Roaming\BlamGames =>.©
O43 - CFD: 16/12/2012 - 18:35:18 - [0,013] ----D C:\Users\Utilisateur\AppData\Roaming\Blue Tea Games =>.©
O43 - CFD: 18/02/2013 - 16:31:13 - [5,400] ----D C:\Users\Utilisateur\AppData\Roaming\Boomzap =>.©
O43 - CFD: 02/07/2012 - 13:57:28 - [0,002] ----D C:\Users\Utilisateur\AppData\Roaming\Canneverbe Limited =>.©
O43 - CFD: 19/06/2013 - 10:06:59 - [0,080] ----D C:\Users\Utilisateur\AppData\Roaming\Canon =>.©
O43 - CFD: 02/07/2012 - 06:49:18 - [0,018] ----D C:\Users\Utilisateur\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant =>.©
O43 - CFD: 30/10/2013 - 05:17:22 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\Creevity Mp3 Cover Downloader
O43 - CFD: 28/08/2013 - 09:24:21 - [0,876] ----D C:\Users\Utilisateur\AppData\Roaming\DAEMON Tools Lite =>.©
O43 - CFD: 27/02/2013 - 17:01:05 - [33,970] ----D C:\Users\Utilisateur\AppData\Roaming\DailyMagic =>.©
O43 - CFD: 19/05/2012 - 04:53:29 - [0,316] ----D C:\Users\Utilisateur\AppData\Roaming\DarkParablesBriarRose_BFG_SE =>.©
O43 - CFD: 12/09/2012 - 10:12:15 - [0,082] ----D C:\Users\Utilisateur\AppData\Roaming\Deep Shadows =>.©
O43 - CFD: 07/12/2012 - 14:13:35 - [0,001] ----D C:\Users\Utilisateur\AppData\Roaming\DeepBurner =>.©
O43 - CFD: 02/09/2013 - 18:17:17 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\DMCache =>.©
O43 - CFD: 22/01/2014 - 17:56:06 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\dvdcss =>.©
O43 - CFD: 01/07/2013 - 18:01:01 - [0,001] ----D C:\Users\Utilisateur\AppData\Roaming\dvdisaster
O43 - CFD: 24/11/2013 - 06:12:30 - [2,486] ----D C:\Users\Utilisateur\AppData\Roaming\DVDVideoSoft =>.©
O43 - CFD: 23/11/2013 - 16:58:18 - [1,606] ----D C:\Users\Utilisateur\AppData\Roaming\Eipix =>.©
O43 - CFD: 13/02/2013 - 16:32:41 - [4,338] ----D C:\Users\Utilisateur\AppData\Roaming\EleFun Games =>.©
O43 - CFD: 15/12/2012 - 17:22:43 - [26,465] ----D C:\Users\Utilisateur\AppData\Roaming\Elephant Games =>.©
O43 - CFD: 19/01/2013 - 17:48:14 - [0,001] ----D C:\Users\Utilisateur\AppData\Roaming\EQATEC Analytics =>.©
O43 - CFD: 16/04/2012 - 11:02:14 - [0,285] ----D C:\Users\Utilisateur\AppData\Roaming\ERS G-Studio =>.©
O43 - CFD: 16/11/2012 - 09:22:02 - [8,763] ----D C:\Users\Utilisateur\AppData\Roaming\ERS Game Studios =>.©
O43 - CFD: 16/02/2014 - 06:53:06 - [0,279] ----D C:\Users\Utilisateur\AppData\Roaming\FlashGet =>.©
O43 - CFD: 16/02/2014 - 06:53:11 - [0,538] ----D C:\Users\Utilisateur\AppData\Roaming\FlashGetBHO =>.©
O43 - CFD: 16/02/2014 - 06:53:14 - [0,237] ----D C:\Users\Utilisateur\AppData\Roaming\FlashgetSetup =>.©
O43 - CFD: 13/04/2012 - 14:56:10 - [4,097] ----D C:\Users\Utilisateur\AppData\Roaming\flashInstallFR =>.©
O43 - CFD: 18/12/2012 - 16:27:28 - [0,002] ----D C:\Users\Utilisateur\AppData\Roaming\Free PDF to Word Converter =>.©
O43 - CFD: 27/10/2013 - 12:16:25 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\FreeBurner =>.©
O43 - CFD: 06/07/2012 - 08:08:37 - [0,050] ----D C:\Users\Utilisateur\AppData\Roaming\FreeFLVConverter =>.©
O43 - CFD: 28/08/2013 - 09:24:21 - [0,001] ----D C:\Users\Utilisateur\AppData\Roaming\FreeVideoConverter =>.©
O43 - CFD: 21/05/2012 - 13:13:35 - [0,713] ----D C:\Users\Utilisateur\AppData\Roaming\Friday's games =>.©
O43 - CFD: 17/03/2012 - 18:10:40 - [3,118] ----D C:\Users\Utilisateur\AppData\Roaming\Frogwares =>.©
O43 - CFD: 20/05/2012 - 13:42:08 - [9,271] ----D C:\Users\Utilisateur\AppData\Roaming\GameInvest =>.©
O43 - CFD: 24/02/2013 - 14:45:39 - [0,306] ----D C:\Users\Utilisateur\AppData\Roaming\Games =>.©
O43 - CFD: 31/08/2013 - 18:13:01 - [0,049] ----D C:\Users\Utilisateur\AppData\Roaming\GetGo Software =>.©
O43 - CFD: 24/11/2013 - 06:07:40 - [50,817] ----D C:\Users\Utilisateur\AppData\Roaming\GlarySoft =>.©
O43 - CFD: 07/10/2013 - 15:40:03 - [0,043] ----D C:\Users\Utilisateur\AppData\Roaming\Gogii =>.©
O43 - CFD: 06/07/2012 - 16:34:31 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\HamsterSoft =>.©
O43 - CFD: 02/07/2012 - 14:05:07 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\Hitivi =>.©
O43 - CFD: 22/03/2012 - 16:24:08 - [0,551] ----D C:\Users\Utilisateur\AppData\Roaming\HitPoint Studios =>.©
O43 - CFD: 14/09/2013 - 16:04:48 - [0,003] ----D C:\Users\Utilisateur\AppData\Roaming\IDM =>.©
O43 - CFD: 27/03/2013 - 15:25:53 - [1,646] ----D C:\Users\Utilisateur\AppData\Roaming\igraal
O43 - CFD: 26/02/2012 - 15:40:00 - [27,547] ----D C:\Users\Utilisateur\AppData\Roaming\Jetdogs Studios =>.©
O43 - CFD: 22/01/2014 - 17:56:05 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\KastorAllVideoDownloader =>.©
O43 - CFD: 27/02/2013 - 09:09:51 - [1,831] ----D C:\Users\Utilisateur\AppData\Roaming\LestaStudio =>.©
O43 - CFD: 12/12/2012 - 17:55:52 - [2,241] ----D C:\Users\Utilisateur\AppData\Roaming\LibreOffice =>.©
O43 - CFD: 02/07/2012 - 14:12:56 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\log =>.©
O43 - CFD: 26/11/2011 - 15:02:09 - [0,073] ----D C:\Users\Utilisateur\AppData\Roaming\Macromedia =>.©
O43 - CFD: 02/04/2012 - 14:40:20 - [0,079] ----D C:\Users\Utilisateur\AppData\Roaming\MagicIndie =>.©
O43 - CFD: 18/01/2014 - 06:02:49 - [67,423] ----D C:\Users\Utilisateur\AppData\Roaming\Malwarebytes =>.©
O43 - CFD: 06/03/2013 - 10:04:20 - [0,959] ----D C:\Users\Utilisateur\AppData\Roaming\Mariaglorum =>.©
O43 - CFD: 28/02/2014 - 09:50:17 - [16,563] -S--D C:\Users\Utilisateur\AppData\Roaming\Microsoft =>.©
O43 - CFD: 26/02/2014 - 18:02:30 - [110,997] ----D C:\Users\Utilisateur\AppData\Roaming\Mozilla =>.©
O43 - CFD: 28/08/2013 - 09:24:22 - [0,203] ----D C:\Users\Utilisateur\AppData\Roaming\Nero =>.©
O43 - CFD: 03/01/2014 - 19:59:23 - [0,269] ----D C:\Users\Utilisateur\AppData\Roaming\Nokia =>.©
O43 - CFD: 26/02/2014 - 17:58:12 - [0,018] ----D C:\Users\Utilisateur\AppData\Roaming\NVIDIA =>.©
O43 - CFD: 26/11/2011 - 14:49:26 - [10,063] ----D C:\Users\Utilisateur\AppData\Roaming\OpenOffice.org =>.©
O43 - CFD: 03/07/2012 - 14:44:27 - [0,563] ----D C:\Users\Utilisateur\AppData\Roaming\Opera =>.©
O43 - CFD: 17/01/2013 - 11:04:57 - [5,632] ----D C:\Users\Utilisateur\AppData\Roaming\Orbit =>.©
O43 - CFD: 30/04/2012 - 09:56:22 - [0,007] ----D C:\Users\Utilisateur\AppData\Roaming\Orneon =>.©
O43 - CFD: 25/12/2013 - 12:33:30 - [1,377] ----D C:\Users\Utilisateur\AppData\Roaming\PC Suite =>.©
O43 - CFD: 16/10/2013 - 10:34:18 - [0,040] ----D C:\Users\Utilisateur\AppData\Roaming\PDF Architect =>.©
O43 - CFD: 27/09/2013 - 19:16:02 - [15,740] ----D C:\Users\Utilisateur\AppData\Roaming\PlayFavoriteGames =>.©
O43 - CFD: 25/02/2012 - 18:22:25 - [0,026] ----D C:\Users\Utilisateur\AppData\Roaming\PlayPond =>.©
O43 - CFD: 30/01/2013 - 11:27:45 - [0,005] ----D C:\Users\Utilisateur\AppData\Roaming\Product_RM =>.©
O43 - CFD: 23/12/2012 - 07:43:28 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\ProgSense =>.©
O43 - CFD: 14/09/2013 - 02:44:40 - [0,301] ----D C:\Users\Utilisateur\AppData\Roaming\RagTime
O43 - CFD: 26/02/2014 - 17:58:12 - [5,668] ----D C:\Users\Utilisateur\AppData\Roaming\Real =>.©
O43 - CFD: 20/03/2013 - 10:43:31 - [0,001] ----D C:\Users\Utilisateur\AppData\Roaming\Red Dot =>.©
O43 - CFD: 12/02/2012 - 17:05:07 - [0,018] ----D C:\Users\Utilisateur\AppData\Roaming\RobinsonCrusoe =>.©
O43 - CFD: 28/08/2013 - 09:24:23 - [0,007] ----D C:\Users\Utilisateur\AppData\Roaming\Rovio =>.©
O43 - CFD: 15/07/2013 - 03:11:43 - [28,804] ----D C:\Users\Utilisateur\AppData\Roaming\Rovio Entertainment Ltd =>.©
O43 - CFD: 03/01/2014 - 18:20:45 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\Samsung =>.©
O43 - CFD: 14/09/2013 - 16:04:48 - [0,094] ----D C:\Users\Utilisateur\AppData\Roaming\Scribus =>.©
O43 - CFD: 25/02/2012 - 16:40:07 - [0,009] ----D C:\Users\Utilisateur\AppData\Roaming\SerpentOfIsis =>.©
O43 - CFD: 12/11/2012 - 12:28:55 - [0,010] ----D C:\Users\Utilisateur\AppData\Roaming\Skunk Studios =>.©
O43 - CFD: 28/05/2012 - 05:45:36 - [0,338] ----D C:\Users\Utilisateur\AppData\Roaming\SMIGames =>.©
O43 - CFD: 18/03/2014 - 18:37:59 - [6,533] ----D C:\Users\Utilisateur\AppData\Roaming\SoftGrid Client =>.©
O43 - CFD: 22/11/2012 - 07:04:53 - [0,377] ----D C:\Users\Utilisateur\AppData\Roaming\Specialbit =>.©
O43 - CFD: 19/06/2013 - 16:23:05 - [7,430] ----D C:\Users\Utilisateur\AppData\Roaming\Sunward Games =>.©
O43 - CFD: 16/04/2012 - 16:12:19 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\SunwardGames =>.©
O43 - CFD: 11/09/2012 - 11:17:06 - [0,005] ----D C:\Users\Utilisateur\AppData\Roaming\TestApp =>.©
O43 - CFD: 02/03/2014 - 10:47:14 - [14,914] ----D C:\Users\Utilisateur\AppData\Roaming\Thunderbird =>.©
O43 - CFD: 30/08/2012 - 05:48:52 - [0,207] ----D C:\Users\Utilisateur\AppData\Roaming\TikisLab =>.©
O43 - CFD: 18/03/2012 - 16:53:31 - [2,784] ----D C:\Users\Utilisateur\AppData\Roaming\Top Evidence =>.©
O43 - CFD: 04/06/2013 - 09:52:35 - [12,649] ----D C:\Users\Utilisateur\AppData\Roaming\U3 =>.©
O43 - CFD: 18/03/2014 - 18:37:56 - [8,524] ----D C:\Users\Utilisateur\AppData\Roaming\uTorrent =>.©
O43 - CFD: 17/03/2014 - 15:55:02 - [0,083] ----D C:\Users\Utilisateur\AppData\Roaming\vlc =>.©
O43 - CFD: 04/01/2014 - 18:22:12 - [0,006] ----D C:\Users\Utilisateur\AppData\Roaming\Vso =>.©
O43 - CFD: 06/07/2012 - 20:17:33 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\WinRAR =>.©
O43 - CFD: 26/02/2013 - 10:42:46 - [11,458] ----D C:\Users\Utilisateur\AppData\Roaming\World-LooM =>.©
O43 - CFD: 28/02/2014 - 15:55:58 - [13,245] ----D C:\Users\Utilisateur\AppData\Roaming\ZebraNetworkSystems =>.©
O43 - CFD: 19/03/2014 - 15:51:07 - [0,417] ----D C:\Users\Utilisateur\AppData\Roaming\ZHP =>.©
O43 - CFD: 17/01/2014 - 04:04:43 - [32,593] ----D C:\Users\Utilisateur\AppData\Local\Adobe =>.©
O43 - CFD: 18/11/2013 - 14:36:13 - [0] ----D C:\Users\Utilisateur\AppData\Local\Aimersoft =>.©
O43 - CFD: 04/03/2014 - 05:11:28 - [0] ----D C:\Users\Utilisateur\AppData\Local\Apple =>.©
O43 - CFD: 19/05/2013 - 15:14:38 - [8,532] ----D C:\Users\Utilisateur\AppData\Local\Apple Computer =>.©
O43 - CFD: 28/08/2013 - 09:24:20 - [0,347] ----D C:\Users\Utilisateur\AppData\Local\ashampoo =>.©
O43 - CFD: 02/12/2011 - 05:12:31 - [0,030] ----D C:\Users\Utilisateur\AppData\Local\Canon Easy-PhotoPrint EX =>.©
O43 - CFD: 27/08/2013 - 09:58:39 - [1,288] ----D C:\Users\Utilisateur\AppData\Local\Clavier+ =>.©
O43 - CFD: 17/03/2014 - 04:58:38 - [1,377] ----D C:\Users\Utilisateur\AppData\Local\CrashDumps =>.©
O43 - CFD: 06/03/2014 - 07:37:39 - [2,307] ----D C:\Users\Utilisateur\AppData\Local\Diagnostics =>.©
O43 - CFD: 05/07/2013 - 02:38:53 - [30,856] ----D C:\Users\Utilisateur\AppData\Local\Downloaded Installations =>.©
O43 - CFD: 16/03/2014 - 06:56:47 - [0,176] ----D C:\Users\Utilisateur\AppData\Local\ElevatedDiagnostics =>.©
O43 - CFD: 02/07/2012 - 07:25:56 - [1,262] ----D C:\Users\Utilisateur\AppData\Local\fontconfig =>.©
O43 - CFD: 30/04/2013 - 16:39:53 - [0,001] ----D C:\Users\Utilisateur\AppData\Local\FreemakeVideoConverter =>.©
O43 - CFD: 19/06/2013 - 14:22:27 - [0,001] ----D C:\Users\Utilisateur\AppData\Local\FreeOCR =>.©
O43 - CFD: 02/07/2012 - 07:25:53 - [0,001] ----D C:\Users\Utilisateur\AppData\Local\gegl-0.2 =>.©
O43 - CFD: 26/02/2014 - 17:58:09 - [51,946] ----D C:\Users\Utilisateur\AppData\Local\Google =>.©
O43 - CFD: 09/07/2012 - 10:21:06 - [0,564] ----D C:\Users\Utilisateur\AppData\Local\Halite =>.©
O43 - CFD: 06/07/2012 - 16:34:28 - [0,233] ----D C:\Users\Utilisateur\AppData\Local\HamsterVideoConverter =>.©
O43 - CFD: 18/12/2012 - 16:42:51 - [0,003] ----D C:\Users\Utilisateur\AppData\Local\Investintech.com Inc =>.©
O43 - CFD: 08/01/2014 - 15:53:10 - [0,015] ----D C:\Users\Utilisateur\AppData\Local\Jaksta_Technologies_Pty_L =>.©
O43 - CFD: 27/02/2014 - 04:40:04 - [0] ----D C:\Users\Utilisateur\AppData\Local\Macromedia =>.©
O43 - CFD: 06/03/2014 - 07:37:12 - [904,053] ----D C:\Users\Utilisateur\AppData\Local\Microsoft =>.©
O43 - CFD: 28/12/2011 - 08:33:18 - [0,013] ----D C:\Users\Utilisateur\AppData\Local\Microsoft Corporation =>.©
O43 - CFD: 13/07/2012 - 08:42:39 - [0,093] ----D C:\Users\Utilisateur\AppData\Local\Microsoft Games =>.©
O43 - CFD: 15/03/2013 - 08:53:38 - [0,327] ----D C:\Users\Utilisateur\AppData\Local\Microsoft Help =>.©
O43 - CFD: 02/09/2013 - 17:40:32 - [211,921] ----D C:\Users\Utilisateur\AppData\Local\Mozilla =>.©
O43 - CFD: 12/10/2013 - 11:34:49 - [0,020] ----D C:\Users\Utilisateur\AppData\Local\Nero =>.©
O43 - CFD: 12/10/2013 - 11:38:20 - [0,001] ----D C:\Users\Utilisateur\AppData\Local\Nero_AG =>.©
O43 - CFD: 25/12/2013 - 12:27:41 - [5,104] ----D C:\Users\Utilisateur\AppData\Local\Nokia =>.©
O43 - CFD: 25/12/2013 - 12:33:26 - [0,001] ----D C:\Users\Utilisateur\AppData\Local\NokiaAccount =>.©
O43 - CFD: 19/06/2013 - 14:08:37 - [0,005] ----D C:\Users\Utilisateur\AppData\Local\ORPALIS =>.©
O43 - CFD: 27/02/2014 - 05:14:07 - [0] ----D C:\Users\Utilisateur\AppData\Local\Programs =>.©
O43 - CFD: 05/07/2013 - 02:56:33 - [0] ----D C:\Users\Utilisateur\AppData\Local\Proxure =>.©
O43 - CFD: 03/01/2014 - 18:20:50 - [0] ----D C:\Users\Utilisateur\AppData\Local\Samsung =>.©
O43 - CFD: 12/12/2012 - 17:01:11 - [5,648] ----D C:\Users\Utilisateur\AppData\Local\SoftGrid Client =>.©
O43 - CFD: 19/03/2014 - 15:50:49 - [0,005] ----D C:\Users\Utilisateur\AppData\Local\Temp =>.©
O43 - CFD: 02/03/2014 - 10:47:14 - [13,776] ----D C:\Users\Utilisateur\AppData\Local\Thunderbird =>.©
O43 - CFD: 07/07/2012 - 17:06:26 - [0,021] ----D C:\Users\Utilisateur\AppData\Local\Video Converter =>.©
O43 - CFD: 27/09/2012 - 10:14:36 - [382,527] ----D C:\Users\Utilisateur\AppData\Local\VirtualStore =>.©
O43 - CFD: 26/01/2014 - 07:12:46 - [113,516] ----D C:\Users\Utilisateur\AppData\Local\VS Revo Group =>.©
O43 - CFD: 02/07/2012 - 07:35:40 - [0,017] ----D C:\Users\Utilisateur\AppData\Local\webkit =>.©
O43 - CFD: 04/07/2012 - 03:57:57 - [0,252] ----D C:\Users\Utilisateur\AppData\Local\WinZip =>.©
O43 - CFD: 14/07/2009 - 05:42:04 - [0,014] R---D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.©
O43 - CFD: 12/09/2013 - 02:35:34 - [0] R---D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.©
O43 - CFD: 02/09/2013 - 14:06:32 - [0,002] ----D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chameleon Shutdown =>.©
O43 - CFD: 15/06/2013 - 10:24:50 - [0,003] ----D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Emoticon
O43 - CFD: 14/07/2012 - 12:15:41 - [0,001] ----D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake =>.©
O43 - CFD: 28/02/2014 - 15:36:05 - [0] ----D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HideIPVPN
O43 - CFD: 14/07/2009 - 05:37:42 - [0,001] R---D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.©
O43 - CFD: 31/08/2013 - 18:19:40 - [0,005] ----D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.©
O43 - CFD: 25/02/2014 - 15:26:35 - [0] R---D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.©
O43 - CFD: 24/11/2013 - 06:33:26 - [0,004] ----D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.©
~ Program Folder: 332 Scanned in 00mn 41s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 13/03/2014 - 12:59:22 ---A- . (...) -- C:\Windows\setuperr.log [0] =>.©
O44 - LFC:[MD5.4E6B6131B5400C145BD6C175B7093751] - 18/03/2014 - 16:13:37 ----- . (...) -- C:\PhysicalDisk0_MBR.bin [512] =>.©
O44 - LFC:[MD5.EC70F0722C39E96B334FB8EB9308AFDF] - 19/03/2014 - 09:35:20 ----- . (...) -- C:\UsbFix [Scan 1] UTILISATEUR-PC.txt [6366]
O44 - LFC:[MD5.A5959E7EFB90AB149DD932ED11422ADA] - 19/03/2014 - 09:37:40 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [6544] =>.©
O44 - LFC:[MD5.77DCF3E67E7D03C7C3D7C22FD0A30EF4] - 19/03/2014 - 15:46:34 ---A- . (...) -- C:\Windows\setupact.log [672] =>.©
O44 - LFC:[MD5.710712E787773637810C838D93FC033E] - 19/03/2014 - 15:48:04 ---A- . (...) -- C:\UsbFix [Clean 2] UTILISATEUR-PC.txt [11503]
~ Files: 38 Scanned in 00mn 07s



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.2FF30445DAE904A957970E4528806B11] - 19/03/2014 - 08:58:41 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db
O45 - LFCP:[MD5.8DCD8680C51900288FD471285E9DBF29] - 19/03/2014 - 08:58:41 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db
O45 - LFCP:[MD5.29BA2283F8827BF1422D040AB40C16B2] - 19/03/2014 - 08:58:41 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db
O45 - LFCP:[MD5.53CCCD53785187BB8A6F25511C7A94D3] - 19/03/2014 - 08:58:41 ---A- - C:\Windows\Prefetch\AgRobust.db
O45 - LFCP:[MD5.C315AD33E66E567F137BF97982D34E99] - 19/03/2014 - 09:14:46 ---A- - C:\Windows\Prefetch\Layout.ini
O45 - LFCP:[MD5.A53617979737198D6BB92428273F1F31] - 19/03/2014 - 15:39:31 ---A- - C:\Windows\Prefetch\LongTermHist.db
O45 - LFCP:[MD5.EE26968C4A8A2AFD3F4495442EC1D4DF] - 19/03/2014 - 15:39:31 ---A- - C:\Windows\Prefetch\LongTermHist.db.bt
O45 - LFCP:[MD5.1DA0D3CAF16EAD6E48E310A730A39356] - 19/03/2014 - 15:39:31 ---A- - C:\Windows\Prefetch\LongTermHist.db.dx
O45 - LFCP:[MD5.791E1FAB36BA5A64B61A77069F3F4C89] - 19/03/2014 - 15:41:27 ---A- - C:\Windows\Prefetch\AgCx_SC2.db
O45 - LFCP:[MD5.B8F0EEBA002A5887EB6CC9782B4A75AE] - 19/03/2014 - 15:43:45 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-494048827-1650175510-1422529119-1000.db
O45 - LFCP:[MD5.3C4CAB6E32FA260FB869174E927665D2] - 19/03/2014 - 15:43:45 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-494048827-1650175510-1422529119-1000.db
O45 - LFCP:[MD5.4552E3B586BFDB4BFCCBE217ECA7A291] - 19/03/2014 - 15:45:54 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin
O45 - LFCP:[MD5.EF33DCCE371E497F592A35982F31DC68] - 19/03/2014 - 15:47:53 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-6E88E69C.pf
O45 - LFCP:[MD5.6B0BF2D1D045CD8243AC9E1A7D423525] - 19/03/2014 - 15:47:56 ---A- - C:\Windows\Prefetch\SEARCHINDEXER.EXE-4A6353B9.pf
O45 - LFCP:[MD5.7A88587D4B3AFD93E1EFB9DCCFE48123] - 19/03/2014 - 15:48:01 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf
O45 - LFCP:[MD5.E3E79AD9FB3DB4676959DFA88A30C109] - 19/03/2014 - 15:48:10 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-C775D18D.pf
O45 - LFCP:[MD5.5F5A71BBB02538F90111A1DBBEAD1A8B] - 19/03/2014 - 15:48:12 ---A- - C:\Windows\Prefetch\EXPLORER.EXE-A80E4F97.pf
O45 - LFCP:[MD5.D45E25B691489E38FEFA88F0A896528C] - 19/03/2014 - 15:48:12 ---A- - C:\Windows\Prefetch\WMPNSCFG.EXE-FC0D39BF.pf
O45 - LFCP:[MD5.8C1EB0EA5D6E0D1F17285EB0B9A0611E] - 19/03/2014 - 15:48:21 ---A- - C:\Windows\Prefetch\WMPNETWK.EXE-D9F2A96F.pf
O45 - LFCP:[MD5.3DE9BD69AE7C7135F6B7EDC9DEC429D1] - 19/03/2014 - 15:50:05 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf
O45 - LFCP:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 26/01/2136 - 16:52:38 ----D - C:\Windows\Prefetch\ReadyBoot
~ Prefetcher: 21 Scanned in 00mn 01s



---\\ Export de clé d'application autorisée (O47)
O47 - AAKE:Key Export SP - "C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe" [Enabled] .(.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe =>.©
O47 - AAKE:Key Export SP - "C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe" [Enabled] .(.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe =>.©
O47 - AAKE:Key Export SP - "C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe" [Enabled] .(.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe =>.©
O47 - AAKE:Key Export SP - "C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe" [Enabled] .(.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe =>.©
~ Keys Export: 4 Scanned in 00mn 00s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll =>.©
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll =>.©
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll =>.©
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll =>.©
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll =>.©
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll =>.©
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll =>.©
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll =>.©
~ LSA: 8 Scanned in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys =>.©
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys =>.©
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) =>.©
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys =>.©
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys =>.©
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys =>.©
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys =>.©
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys =>.©
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys =>.©
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys =>.©
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) =>.©
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys =>.©
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys =>.©
~ CSB: 13 Scanned in 00mn 00s



---\\ Clé de registre Shell MountPoints2 (MPKS) (O51)
O51 - MPSK:{9da3b01a-33ab-11e1-9de9-90fba68897a0}\AutoRun\command - Clé orpheline
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm =>.©
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll =>.©
O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Intel Corporation - Intel Indeo® video 5.10.) -- C:\Windows\System32\ir50_32.dll =>.©
O52 - TDSD: \Drivers32\"vidc.iv41"="ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\Windows\System32\ir41_32.ax =>.©
O52 - TDSD: \Drivers32\"vidc.iv32"="ir32_32.dll" . (.Intel(R) Corporation - Pas de description.) -- C:\Windows\System32\ir32_32.dll =>.©
O52 - TDSD: \Drivers32\"vidc.iv31"="ir32_32.dll" . (.Intel(R) Corporation - Pas de description.) -- C:\Windows\System32\ir32_32.dll =>.©
O52 - TDSD: \Drivers32\"msacm.iac2"="C:\Windows\system32\iac25_32.ax" . (.Intel Corporation - Indeo® audio software.) -- C:\Windows\system32\iac25_32.ax =>.©
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm =>.©
O52 - TDSD: \drivers.desc\"C:\Windows\system32\iac25_32.ax"="Indeo® audio software" . (.Intel Corporation - Indeo® audio software.) -- C:\Windows\system32\iac25_32.ax =>.©
~ TDSD: 9 Scanned in 00mn 00s



---\\ Enumération des clés de registre StartupReg (SMSR) (O53)
O53 - SMSR:HKLM\...\startupreg\command . (...) -- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (.not file.) =>.©
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.©
O53 - SMSR:HKLM\...\startupreg\Aimersoft Helper Compact.exe [Key] . (.AimerSoft - AimerSoft Studio.) -- C:\Program Files\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe
O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.©
O53 - SMSR:HKLM\...\startupreg\CanonMyPrinter [Key] . (.CANON INC. - Canon My Printer.) -- C:\Program Files\Canon\MyPrinter\BJMyPrt.exe =>.©
O53 - SMSR:HKLM\...\startupreg\Clavier+ [Key] . (.Guillaume Ryder (http://utilfr42.free.fr) - Clavier+.) -- C:\Users\Utilisateur\AppData\Local\Clavier+\Clavier.exe =>.©
O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.©
O53 - SMSR:HKLM\...\startupreg\KiesPDLR [Key] . (...) -- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (.not file.) =>.©
O53 - SMSR:HKLM\...\startupreg\NokiaSuite.exe [Key] . (.Nokia - Nokia Suite.) -- C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe =>.©
O53 - SMSR:HKLM\...\startupreg\SDTray [Key] . (.Safer-Networking Ltd. - Spybot - Search & Destroy tray access.) -- C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe =>.©
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.©
O53 - SMSR:HKLM\...\startupreg\TkBellExe [Key] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- c:\program files\real\realplayer\Update\realsched.exe =>.©
O53 - SMSR:HKLM\...\startupreg\TrojanScanner [Key] . (.Simply Super Software - Trojan Scanner.) -- C:\Program Files\Trojan Remover\Trjscan.exe
O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
O53 - SMSR:HKLM\...\startupreg\WLAN Optimizer [Key] . (.none - WLAN Optimizer.) -- C:\Users\Utilisateur\Desktop\WLAN Optimizer.exe
O53 - SMSR:HKLM\...\startupreg\Zune Launcher [Key] . (.Microsoft Corporation - Zune Auto-Launcher.) -- C:\Program Files\Zune\ZuneLauncher.exe =>.©
~ SMSR Keys: 27 Scanned in 00mn 00s



---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll =>.©
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll =>.©
~ MSCP: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLinkedConnections"=1
O55 - MWPS:[HKCU\...\Policies\System] - "LogonHoursAction"=2
O55 - MWPS:[HKCU\...\Policies\System] - "DontDisplayLogonHoursWarnings"=1
~ MWPS: 19 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=153
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveTypeAutoRun"=153
~ MWPE Keys: 2 Scanned in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:[MD5.F385467DF95D0A73775CB3B076B8B969] - 21/10/2013 - 16:35:57 ---A- . (...) -- C:\Windows\System32\Drivers\aswRvrt.sys [49944]
O58 - SDL:[MD5.1B0662514A68C3A42E60D240C5ABEF28] - 22/12/2013 - 03:56:43 ---A- . (...) -- C:\Windows\System32\Drivers\aswVmm.sys [180248]
O58 - SDL:[MD5.505506526A9D467307B3C393DEDAF858] - 14/07/2009 - 00:45:01 ---A- . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\Drivers\beep.sys [6144] =>.©
O58 - SDL:[MD5.56801AD62213A41F6497F96DEE83755A] - 13/07/2009 - 23:53:28 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [5248] =>.©
O58 - SDL:[MD5.B918E7C5F9BF77202F89E1A9539F2EB4] - 14/07/2009 - 00:50:57 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmkaud.sys [5120] =>.©
O58 - SDL:[MD5.0ED67910C8C326796FAA00B2BF6D9D3C] - 14/07/2009 - 02:20:28 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [453712]
O58 - SDL:[MD5.8FC3208352DD3912C94367A206AB3F11] - 14/07/2009 - 00:19:19 ---A- . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\Drivers\errdev.sys [7168] =>.©
O58 - SDL:[MD5.C44E3C2BAB6837DB337DDEE7544736DB] - 13/07/2009 - 23:54:14 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [26624]
O58 - SDL:[MD5.457AC1DB3B28DCEE57E1F7CF5DFD775C] - 01/11/2012 - 19:21:56 ---A- . (.AnchorFree Inc. - Hotspot Shield Routing Driver.) -- C:\Windows\System32\Drivers\hssdrv6.sys [35592]
O58 - SDL:[MD5.2AA2C79B9E39C2FCBE0670AECC5B4361] - 27/06/2013 - 10:57:42 ---A- . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\Drivers\idmwfp.sys [104928]
O58 - SDL:[MD5.194722361F31E0CD20A77F8F36AB1830] - 22/12/2006 - 15:13:06 ---A- . (.Pas de propriétaire - ExtSta NDIS 6.0 driver.) -- C:\Windows\System32\Drivers\MRVW23B.sys [231040]
O58 - SDL:[MD5.3E1E5767043C5AF9367F0056295E9F84] - 14/07/2009 - 00:51:08 ---A- . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\Drivers\mshidkmdf.sys [4096] =>.©
O58 - SDL:[MD5.8C0860D6366AAFFB6C5BB9DF9448E631] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\Drivers\mskssrv.sys [8320] =>.©
O58 - SDL:[MD5.3EA8B949F963562CEDBB549EAC0C11CE] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\Drivers\mspclock.sys [5888] =>.©
O58 - SDL:[MD5.F456E973590D663B1073E9C463B40932] - 14/07/2009 - 00:45:07 ---A- . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\Drivers\mspqm.sys [5504] =>.©
O58 - SDL:[MD5.B42C6B921F61A6E55159B8BE6CD54A36] - 14/07/2009 - 00:45:08 ---A- . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\Drivers\mstee.sys [6144] =>.©
O58 - SDL:[MD5.A4ABB21D13528D1BA3ABF484B2DF24FE] - 13/02/2014 - 15:33:58 ---A- . (.NetFilterSDK.com - NetFilter SDK TDI Hook Driver (WPP).) -- C:\Windows\System32\Drivers\netfilter.sys [47488]
O58 - SDL:[MD5.9699486E10F89163979FCD48A40FE805] - 23/01/2013 - 10:31:52 ---A- . (.Nokia - Nokia USB Phone Generic Client.) -- C:\Windows\System32\Drivers\nmwcdnsuc.sys [8576] =>.©
O58 - SDL:[MD5.25401B0C9576C8456B3E0BBD74FF0771] - 01/03/2013 - 02:48:42 ---A- . (.Riverbed Technology, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\Windows\System32\Drivers\npf.sys [36600]
O58 - SDL:[MD5.A57299EDA93CFA25E2DBB0043A3E79BA] - 01/09/2009 - 20:06:02 ---A- . (.NeoRouter Inc. - NeoRouter Virtual Network Driver.) -- C:\Windows\System32\Drivers\nrtap.sys [24576]
O58 - SDL:[MD5.F9756A98D69098DCA8945D62858A812C] - 14/07/2009 - 00:11:12 ---A- . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\Drivers\null.sys [4608] =>.©
O58 - SDL:[MD5.EB0A59F29C19B86479D36B35983DAADC] - 14/07/2009 - 00:45:29 ---A- . (.Microsoft Corporation - Pilote parallèle VDM.) -- C:\Windows\System32\Drivers\parvdm.sys [8704] =>.©
O58 - SDL:[MD5.12D0034FA8EC4B1E768D7D6FF0F306D1] - 23/11/2012 - 16:24:36 ---A- . (...) -- C:\Windows\System32\Drivers\PPFlt.sys [23576]
O58 - SDL:[MD5.23DAE03F29D253AE74C44F99E515F9A1] - 20/11/2010 - 22:29:12 ---A- . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\RDPCDD.sys [6656] =>.©
O58 - SDL:[MD5.5A53CA1598DD4156D44196D200C94B8A] - 14/07/2009 - 01:01:39 ---A- . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\RDPENCDD.sys [6656] =>.©
O58 - SDL:[MD5.44B0A53CD4F27D50ED461DAE0C0B4E1F] - 14/07/2009 - 01:01:41 ---A- . (.Microsoft Corporation - RDP Reflector Driver Miniport.) -- C:\Windows\System32\Drivers\RDPREFMP.sys [7168] =>.©
O58 - SDL:[MD5.564297827D213F52C7A3A2FF749568CA] - 14/07/2009 - 00:55:21 ---A- . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\Drivers\rootmdm.sys [8192] =>.©
O58 - SDL:[MD5.0022CFFF1A41E5CE3A764050A7DDF22A] - 13/07/2012 - 07:44:51 ---A- . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\Drivers\sptd.sys [477240]
O58 - SDL:[MD5.3EED76A0C1412F52860F7E7EAB5AECCA] - 01/08/2011 - 12:44:26 ---A- . (.Pas de propriétaire - SRS Premium Sound driver.) -- C:\Windows\System32\Drivers\SRS_AE_i386.sys [404256]
O58 - SDL:[MD5.DB32D325C192B801DF274BFD12A7E72B] - 14/07/2009 - 02:19:04 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [21072]
O58 - SDL:[MD5.98A1E6BC9F766B0B0A5BF00AF847EF20] - 01/07/2011 - 12:46:40 ---A- . (.The OpenVPN Project - TAP-Win32 Virtual Network Driver.) -- C:\Windows\System32\Drivers\tap0901.sys [26624]
O58 - SDL:[MD5.93260747EA752CA419E817F80E9A7262] - 01/11/2012 - 19:29:22 ---A- . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\Windows\System32\Drivers\taphss6.sys [35592]
O58 - SDL:[MD5.7550AD0C6998BA1CB4843E920EE0FEAC] - 14/07/2009 - 00:51:35 ---A- . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\Drivers\umpass.sys [8192] =>.©
O58 - SDL:[MD5.6E421CCC57059B0186C6259CA3B6DFC9] - 13/12/2012 - 12:50:38 ---A- . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\Drivers\usbaapl.sys [45056]
O58 - SDL:[MD5.74F805AB12EB0E3E49E469F19FF02640] - 27/11/2013 - 02:13:33 ---A- . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\Drivers\usbd.sys [6016] =>.©
O58 - SDL:[MD5.8721F55D8BC9F89E3A63CEBDF5EF4FA3] - 23/01/2013 - 10:31:50 ---A- . (.Nokia - Filter Driver for Nokia USB Phone Bus Driver.) -- C:\Windows\System32\Drivers\usbser_lowerflt.sys [8192] =>.©
O58 - SDL:[MD5.4E66C71D8D010BFB0DF1042D25E9CB0F] - 23/01/2013 - 10:31:50 ---A- . (.Nokia - Filter Driver for Nokia USB Phone Bus Driver.) -- C:\Windows\System32\Drivers\usbser_lowerfltj.sys [8192] =>.©
O58 - SDL:[MD5.8B9A943F3B53861F2BFAF6C186168F79] - 14/07/2009 - 00:53:51 ---A- . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) -- C:\Windows\System32\Drivers\wfplwf.sys [9728] =>.©
O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 13/07/2009 - 22:40:41 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 13/07/2009 - 22:40:44 ---A- . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:[MD5.DDEE99DC54EFA20BD5A442CD733C4462] - 22/05/2013 - 12:34:26 ---A- . (...) -- C:\Windows\System32\FsUsbExDisk.Sys [37344]
O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 13/07/2009 - 22:40:40 ---A- . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 13/07/2009 - 22:40:43 ---A- . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 13/07/2009 - 22:40:43 ---A- . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 13/07/2009 - 22:40:23 ---A- . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 13/07/2009 - 22:40:31 ---A- . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 13/07/2009 - 22:40:35 ---A- . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 13/07/2009 - 22:40:39 ---A- . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 13/07/2009 - 22:40:27 ---A- . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 13/07/2009 - 22:40:11 ---A- . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 13/07/2009 - 22:40:15 ---A- . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 13/07/2009 - 22:40:17 ---A- . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 13/07/2009 - 22:40:19 ---A- . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 13/07/2009 - 22:40:13 ---A- . (...) -- C:\Windows\System32\NTIO804.SYS [34672]
~ Drivers: 19 Scanned in 00mn 03s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 01/01/2028 - 15:53:34 R-HA- . (...) -- C:\Users\Utilisateur\Downloads\Final Cut - Mort a l'Ecran Edition Collector fr.HURLUS\Final Cut - Mort a l'Ecran Edition Collector\CE\HURLUS.txt [20768]
O61 - LFC: 16/03/2014 - 15:52:23 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\default\preferences [91055] =>.©
O61 - LFC: 16/03/2014 - 15:52:55 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-03-16 (05-39-52).txt [1970] =>.©
O61 - LFC: 16/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\adwcleaner.exe [1950720]
O61 - LFC: 16/03/2014 - 15:53:37 ---A- . (...) -- C:\Users\Utilisateur\Videos\Oliver Stone - 01l10 - La Seconde Guerre Mondiale.avi [805868666] =>.©
O61 - LFC: 16/03/2014 - 15:53:37 ---A- . (...) -- C:\Users\Utilisateur\Videos\Oliver Stone - 02l10 - Roosevelt, Truman et Wallace, occasion manquée.avi [800633238] =>.©
O61 - LFC: 16/03/2014 - 15:53:38 ----- . (...) -- C:\Users\Utilisateur\Videos\u torrent fichiers\American.Hustle.2013.FRENCH.BDRip.x264-PRiDEHD.torrent [10177]
O61 - LFC: 16/03/2014 - 15:53:38 ----- . (...) -- C:\Users\Utilisateur\Videos\u torrent fichiers\Une_autre_histoire_de_l_Amerique_Oliver_Stone.torrent [19808]
O61 - LFC: 16/03/2014 - 15:53:38 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent fichiers\Une autre histoire de l'Amérique, par Oliver Stone open.torrent [19652]
O61 - LFC: 16/03/2014 - 15:53:38 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\American.Hustle.2013.FRENCH.BDRip.x264-PRiDEHD\American.Hustle.2013.FRENCH.BDRip.x264-PRiDEHD.mkv [971750935]
O61 - LFC: 16/03/2014 - 15:53:38 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\American.Hustle.2013.FRENCH.BDRip.x264-PRiDEHD\~uTorrentPartFile_39EBC052.dat [108546] =>.©
O61 - LFC: 16/03/2014 - 15:53:42 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une autre histoire de l'Amérique, par Oliver Stone open\Une autre histoire de l'Amérique, par Oliver Stone - 01l10 - La Seconde Guerre Mondiale.mp4.!ut [380419460]
O61 - LFC: 16/03/2014 - 15:53:42 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une autre histoire de l'Amérique, par Oliver Stone open\Une autre histoire de l'Amérique, par Oliver Stone - 02l10 - Roosevelt, Truman et Wallace, occasion manquée.mp4.!ut [378130548]
O61 - LFC: 17/03/2014 - 15:52:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\CrashDumps\explorer.exe.5700.dmp [1443633] =>.©
O61 - LFC: 17/03/2014 - 15:52:25 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\Nokia\Nokia Data Store\DataBase\MDataStore.db3 [1200128] =>.©
O61 - LFC: 17/03/2014 - 15:52:25 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\Nokia\Nokia Data Store\Thumbnail\DataBase\MDataStore.db3 [3737600] =>.©
O61 - LFC: 17/03/2014 - 15:52:25 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\Nokia\Nokia Suite\CDC\statistics.dat [16096] =>.©
O61 - LFC: 17/03/2014 - 15:52:25 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\Nokia\Nokia Suite\Cache\recentMessagesModel.dat [129] =>.©
O61 - LFC: 17/03/2014 - 15:53:14 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dht.dat.old [4118] =>.©
O61 - LFC: 17/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\rss.dat.old [99] =>.©
O61 - LFC: 17/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\CSI.Las.Vegas.S13E14.FRENCH.LD.HDTV.XviD-MiND-SC-Zone-Telechargement.Com.avi [367163627] =>.©
O61 - LFC: 17/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\CSI.Las.Vegas.S13E15.FRENCH.LD.DVDRip.XviD-MiND.zone-telechargement.com.avi [367200556] =>.©
O61 - LFC: 17/03/2014 - 15:53:37 ---A- . (...) -- C:\Users\Utilisateur\Videos\Oliver Stone - 03l10 - La bombe.avi [798801094] =>.©
O61 - LFC: 17/03/2014 - 15:53:37 ---A- . (...) -- C:\Users\Utilisateur\Videos\Oliver Stone - 04l10 - La guerre froide, 1945-1950.avi [799286200] =>.©
O61 - LFC: 17/03/2014 - 15:53:37 ---A- . (...) -- C:\Users\Utilisateur\Videos\The.Wolf.of.Wall.Street.2013.FRENCH.BDRip.x264-AYMO.avi [2033993934] =>.©
O61 - LFC: 17/03/2014 - 15:53:38 ----- . (...) -- C:\Users\Utilisateur\Videos\u torrent fichiers\The.Wolf.of.Wall.Street.2013.FRENCH.BDRip.x264-AYMO.torrent [12614]
O61 - LFC: 17/03/2014 - 15:53:42 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\The.Wolf.of.Wall.Street.2013.FRENCH.BDRip.x264-AYMO\The.Wolf.of.Wall.Street.2013.FRENCH.BDRip.x264-AYMO.mkv [1224917401]
O61 - LFC: 17/03/2014 - 15:53:42 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\The.Wolf.of.Wall.Street.2013.FRENCH.BDRip.x264-AYMO\~uTorrentPartFile_4902C322.dat [124718] =>.©
O61 - LFC: 17/03/2014 - 15:53:42 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une autre histoire de l'Amérique, par Oliver Stone open\Une autre histoire de l'Amérique, par Oliver Stone - 03l10 - La bombe.mp4.!ut [378061244]
O61 - LFC: 17/03/2014 - 15:53:42 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une autre histoire de l'Amérique, par Oliver Stone open\Une autre histoire de l'Amérique, par Oliver Stone - 10l10 - Bush et Obama, l'ère du terrorisme.mp4.!ut [380522248]
O61 - LFC: 17/03/2014 - 15:53:43 R--A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une_autre_histoire_de_l_Amerique_Oliver_Stone\Oliver Stone - 03l10 - La bombe.mp4.!ut [378061244]
O61 - LFC: 17/03/2014 - 15:53:43 R--A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une_autre_histoire_de_l_Amerique_Oliver_Stone\Oliver Stone - 04l10 - La guerre froide, 1945-1950.mp4.!ut [377795016]
O61 - LFC: 18/03/2014 - 15:52:18 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\FreemakeVideoConverter\Configs\conversionConfig [261] =>.©
O61 - LFC: 18/03/2014 - 15:52:18 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\FreemakeVideoConverter\Configs\fileOpeningConfig [261] =>.©
O61 - LFC: 18/03/2014 - 15:52:18 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\FreemakeVideoConverter\Configs\launchConfig [261] =>.©
O61 - LFC: 18/03/2014 - 15:52:18 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\FreemakeVideoConverter\Configs\userConfig [261] =>.©
O61 - LFC: 18/03/2014 - 15:52:56 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Office\Recent\budget.LNK [985] =>.©
O61 - LFC: 18/03/2014 - 15:52:56 --H-- . (...) -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Office\Recent\index.dat [2741] =>.©
O61 - LFC: 18/03/2014 - 15:53:13 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\SoftGrid Client\140066.FRA-90140011-66-40C\UsrVol_sftfs_v1.pkg [5923328] =>.©
O61 - LFC: 18/03/2014 - 15:53:14 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\SoftGrid Client\Icon Cache\icon_ex.dat [2738] =>.©
O61 - LFC: 18/03/2014 - 15:53:14 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\SoftGrid Client\shortcut_ex.dat [17] =>.©
O61 - LFC: 18/03/2014 - 15:53:14 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dht.dat [3962] =>.©
O61 - LFC: 18/03/2014 - 15:53:14 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dht_feed.dat [2] =>.©
O61 - LFC: 18/03/2014 - 15:53:14 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dht_feed.dat.old [2] =>.©
O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\07DF93AB3826DDC6C31958F4FA98A3A3C06F9622 [1150] =>.©
O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\2000A2B87A84B030B1F00701AA87EC78404624E4 [1381] =>.©
O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\2F8895AAB784A79B0CC41A7190CEC7259DBD40E4 [0] =>.©
O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\3D34F7CBF0AB04CAF0C6363657FAD64A15BF33DE [824] =>.©
O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\3D87A68C8B0A703BFC83A64FD3EBE153FEBD259B [0] =>.©
O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\42335698F91E523F7CC09979C734B9F537284AD4 [2] =>.©
O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\4E5A94E8524B6D30BFFEABE38574B96C0F85E4C5 [1150] =>.©
O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\5108DF53CC447C7C85D4E98DC2487135DCD5C35B [1150] =>.©
O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\9FEF9A5FE0C51DAC8E9497D5610AC5E485CF82F1 [240] =>.©
O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\B92BC04FD4EA5A691F8A271243C6669EEA343A4E [1150] =>.©
O61 - LFC: 18/03/2014 - 15:53:15 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\dlimagecache\C49EF3FA8788C2F05BE3028B054F439736440B29 [0] =>.©
O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPADSReport.txt [351] =>.Nicolas Coolman
O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPDiag.txt [300423] =>.Nicolas Coolman
O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\resume.dat [5201] =>.©
O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\resume.dat.old [5218] =>.©
O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\rss.dat [99] =>.©
O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\settings.dat [396847] =>.©
O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\settings.dat.old [396847] =>.©
O61 - LFC: 18/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\updates.dat [724] =>.©
O61 - LFC: 18/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\CSI.Las.Vegas.S13E16.FRENCH.LD.DVDRip.XviD-MiND.zone-telechargement.com.avi [367177239] =>.©
O61 - LFC: 18/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\CSI.Las.Vegas.S13E17.FRENCH.LD.DVDRip.XviD-MiND.zone-telechargement.com.avi [367193814] =>.©
O61 - LFC: 18/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\CSI.Las.Vegas.S13E18.FRENCH.LD.DVDRip.XviD-MiND.zone-telechargement.com.avi [367230274] =>.©
O61 - LFC: 18/03/2014 - 15:53:35 ---A- . (...) -- C:\Users\Utilisateur\Downloads\RogueKiller(1).exe [3901952]
O61 - LFC: 18/03/2014 - 15:53:36 ---A- . (...) -- C:\Users\Utilisateur\Videos\Captain.Phillips.2013.FRENCH.SUBFORCED.BDRip.XviD-FrIeNdS.avi [1416652418] =>.©
O61 - LFC: 18/03/2014 - 15:53:36 ---A- . (...) -- C:\Users\Utilisateur\Videos\a.Oliver Stone - 05l10 - Les années 1950, Eisenhower, la bombe et le tiers-monde.avi [794044586] =>.©
O61 - LFC: 18/03/2014 - 15:53:37 ---A- . (...) -- C:\Users\Utilisateur\Videos\Oliver Stone - 06l10 - JFK, au bord du gouffre.avi [793404654] =>.©
O61 - LFC: 18/03/2014 - 15:53:38 ----- . (...) -- C:\Users\Utilisateur\Videos\u torrent fichiers\Captain Phillips 2013 FRENCH SUBFORCED BDRip XviD-FrIeNdS.torrent [15017]
O61 - LFC: 18/03/2014 - 15:53:38 R--A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Captain Phillips 2013 FRENCH SUBFORCED BDRip XviD-FrIeNdS\Captain.Phillips.2013.FRENCH.SUBFORCED.BDRip.XviD-FrIeNdS.avi [1483014144] =>.©
O61 - LFC: 18/03/2014 - 15:53:43 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une autre histoire de l'Amérique, par Oliver Stone open\~uTorrentPartFile_E10E06B0.dat [230460] =>.©
O61 - LFC: 18/03/2014 - 15:53:43 ---A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une_autre_histoire_de_l_Amerique_Oliver_Stone\~uTorrentPartFile_E10E078F.dat [6718524] =>.©
O61 - LFC: 18/03/2014 - 15:53:43 R--A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une_autre_histoire_de_l_Amerique_Oliver_Stone\Oliver Stone - 02l10 - Roosevelt, Truman et Wallace, occasion manquée.mp4.!ut [378130548]
O61 - LFC: 18/03/2014 - 15:53:43 R--A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une_autre_histoire_de_l_Amerique_Oliver_Stone\Oliver Stone - 05l10 - Les années 1950, Eisenhower, la bombe et le tiers-monde.mp4 [376896201]
O61 - LFC: 18/03/2014 - 15:53:43 R--A- . (...) -- C:\Users\Utilisateur\Videos\u torrent films téléchargés\Une_autre_histoire_de_l_Amerique_Oliver_Stone\Oliver Stone - 06l10 - JFK, au bord du gouffre.mp4 [375907239]
O61 - LFC: 19/03/2014 - 15:52:24 --HA- . (...) -- C:\Users\Utilisateur\AppData\Local\IconCache.db [1165556] =>.©
O61 - LFC: 19/03/2014 - 15:52:26 ---A- . (...) -- C:\Users\Utilisateur\AppData\Local\Temp\FXSAPIDebugLogFile.txt [0]
O61 - LFC: 19/03/2014 - 15:52:42 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\AVAST Software\Avast\Cache\HTMLayout.xml [3732] =>.©
O61 - LFC: 19/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\ZHP\Log.txt [137391] =>.Nicolas Coolman
O61 - LFC: 19/03/2014 - 15:53:16 ---A- . (...) -- C:\Users\Utilisateur\AppData\Roaming\ZHP\TestsZHPDiag.txt [2971] =>.Nicolas Coolman
O61 - LFC: 19/03/2014 - 15:53:34 ---A- . (...) -- C:\Users\Utilisateur\Downloads\Hostages.S01E01.FRENCH.zone-telechargement.com.avi [367659017] =>.©
O61 - LFC: 19/03/2014 - 15:53:35 ---A- . (...) -- C:\Users\Utilisateur\Downloads\Hostages.S01E02.FRENCH.HDTV.XviD-ASPHiXiAS.zone-telechargement.com.avi [367616032] =>.©
O61 - LFC: 19/03/2014 - 15:53:35 ---A- . (...) -- C:\Users\Utilisateur\Downloads\Low.Winter.Sun.US.S01E07.FRENCH.zone-telechargement.com.avi [367404099] =>.©
O61 - LFC: 19/03/2014 - 15:53:35 ---A- . (...) -- C:\Users\Utilisateur\Downloads\Low.Winter.Sun.US.S01E08.FRENCH.zone-telechargement.com.avi [367391251] =>.©
O61 - LFC: 19/03/2014 - 15:53:35 ---A- . (.El Desaparecido - SosVirus.net - UsbFix.net.) -- C:\Users\Utilisateur\Downloads\UsbFix.exe [3099901] =>.©
~ 1 Fichiers temporaires (Temporary files)
~ Files: 87 Scanned in 01mn 37s



---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: UsbFix - (.El Desaparecido - www.usbfix.net - www.sosvirus.net.) [HKLM] -- Usbfix
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Liste les services legacy du registre (LALS) (O64)
O64 - Services: CurCS - 14/09/2013 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD =>.©
O64 - Services: CurCS - 25/01/2014 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT =>.©
O64 - Services: CurCS - 21/02/2014 - C:\Windows\System32\DRIVERS\aswNdisFlt.sys (aswNdisFlt) .(.AVAST Software - avast! Filtering NDIS driver.) - LEGACY_ASWNDISFLT =>.©
O64 - Services: CurCS - 21/10/2013 - C:\Windows\system32\drivers\aswRdr2.sys (aswRdr) .(.AVAST Software - avast! WFP Redirect Driver.) - LEGACY_ASWRDR =>.©
O64 - Services: CurCS - 21/10/2013 - C:\Windows\System32\Drivers\aswRvrt.sys (aswRvrt) .(...) - LEGACY_ASWRVRT =>.©
O64 - Services: CurCS - 25/01/2014 - C:\Windows\system32\drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX =>.©
O64 - Services: CurCS - 25/01/2014 - C:\Windows\system32\drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP =>.©
O64 - Services: CurCS - 25/01/2014 - C:\Windows\system32\drivers\aswStm.sys (aswStm) .(.AVAST Software - Stream Filter.) - LEGACY_ASWSTM =>.©
O64 - Services: CurCS - 22/12/2013 - C:\Windows\System32\Drivers\aswVmm.sys (aswVmm) .(...) - LEGACY_ASWVMM =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\atapi.sys (atapi) .(.Microsoft Corporation - ATAPI IDE Miniport Driver.) - LEGACY_ATAPI =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\Beep.sys (Beep) .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP =>.©
O64 - Services: CurCS - 26/02/2014 - C:\Windows\System32\drivers\BootDefragDriver.sys (BootDefragDriver) .(.Glarysoft Ltd - Boot Defrag Driver.) - LEGACY_BOOTDEFRAGDRIVER =>.©
O64 - Services: CurCS - 04/07/2012 - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\cdfs.sys (cdfs) .(.Microsoft Corporation - CD-ROM File System Driver.) - LEGACY_CDFS =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS =>.©
O64 - Services: CurCS - 04/07/2013 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE =>.©
O64 - Services: CurCS - 01/08/2013 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\fastfat.sys (fastfat) .(.Microsoft Corporation - Fast FAT File System Driver.) - LEGACY_FASTFAT =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR =>.©
O64 - Services: CurCS - 22/05/2013 - C:\Windows\system32\FsUsbExDisk.sys (FsUsbExDisk) .(...) - LEGACY_FSUSBEXDISK =>.©
O64 - Services: CurCS - 24/01/2013 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL =>.©
O64 - Services: CurCS - 01/11/2012 - C:\Windows\System32\DRIVERS\hssdrv6.sys (HssDRV6) .(.AnchorFree Inc. - Hotspot Shield Routing Driver.) - LEGACY_HSSDRV6 =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY =>.©
O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD =>.©
O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecpkg.sys (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV =>.©
O64 - Services: CurCS - 04/04/2013 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10 =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20 =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\msisadrv.sys (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\nwifi.sys (NativeWifiP) .(.Microsoft Corporation - Pilote de miniport WiFi natif.) - LEGACY_NATIVEWIFIP =>.©
O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\DRIVERS\ndisuio.sys (Ndisuio) .(.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) - LEGACY_NDISUIO =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT =>.©
O64 - Services: CurCS - 01/03/2013 - C:\Windows\System32\drivers\npf.sys (NPF) .(.Riverbed Technology, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) - LEGACY_NPF =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pcw.sys (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\peauth.sys (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR =>.©
O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV =>.©
O64 - Services: CurCS - 26/06/2013 - C:\Windows\System32\DRIVERS\Sftfswin7.sys (Sftfs) .(.Microsoft Corporation - Microsoft Application Virtualization File S.) - LEGACY_SFTFS =>.©
O64 - Services: CurCS - 26/06/2013 - C:\Windows\System32\DRIVERS\Sftplaywin7.sys (Sftplay) .(.Microsoft Corporation - Microsoft Application Virtualization System.) - LEGACY_SFTPLAY =>.©
O64 - Services: CurCS - 26/06/2013 - C:\Windows\System32\DRIVERS\Sftredirwin7.sys (Sftredir) .(.Microsoft Corporation - Microsoft Application Virtualization System.) - LEGACY_SFTREDIR =>.©
O64 - Services: CurCS - 26/06/2013 - C:\Windows\System32\DRIVERS\Sftvolwin7.sys (Sftvol) .(.Microsoft Corporation - Microsoft Application Virtualization Volume.) - LEGACY_SFTVOL =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\spldr.sys (spldr) .(.Microsoft Corporation - loader for security processor.) - LEGACY_SPLDR =>.©
O64 - Services: CurCS - 13/07/2012 - C:\Windows\system32\Drivers\sptd.sys (sptd) .(.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) - LEGACY_SPTD =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2 =>.©
O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP =>.©
O64 - Services: CurCS - 03/10/2012 - C:\Windows\System32\drivers\tcpipreg.sys (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX =>.©
O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6 =>.©
O64 - Services: CurCS - 25/06/2013 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000 =>.©
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\wfplwf.sys (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF =>.©
~ Legacy: 102 Scanned in 00mn 00s



---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.©
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.©
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.©
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe =>.©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.©
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.exe =>.©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe =>.©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.©
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.©
~ FASS Keys: 11 Scanned in 00mn 00s



---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] ${searchCLSID} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {0DB68DB5-8952-451E-A334-E367AB0553EE} - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKCU] {F57821DB-FB05-4106-A683-EBDD7EC482A0} - (DVDvideoSoft 2.0 Customized Web Search) - http://search.conduit.com
~ Keys: Scanned in 00mn 00s



---\\ Enumère les fichiers Crack & Keygen (CKF) (O82)
C:\Users\Utilisateur\Videos\u torrent films téléchargés\Trojan Remover 6.9.6 (Full Version with Keygen)\Trojan Remover 6.9.6 (Full Version with Keygen).rar.!ut
C:\Users\Utilisateur\Videos\u torrent films téléchargés\Trojan Remover 6.9.6 (Full Version with Keygen)\Trojan Remover 6.9.6 (Full Version with Keygen).rar.!ut
~ Files: Scanned in 00mn 10s



---\\ Enumère les service demarrés par Svchost (SSS) (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [67584] =>.©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [67584] =>.©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] =>.©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] =>.©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [679424] =>.©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [473600] =>.©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [90624] =>.©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] =>.©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] =>.©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [49664] =>.©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [242176] =>.©
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [521216] =>.©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\system32\wuaueng.dll [1933848] =>.©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [585728] =>.©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] =>.©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [21504] =>.©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] =>.©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [49664] =>.©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] =>.©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352] =>.©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] =>.©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [71168] =>.©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [113664] =>.©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] =>.©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] =>.©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.©

~ Services: 32 Scanned in 00mn 00s



---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.254FBCA565E049648B0CCE2CEADF05D2] [SPRF][04/01/2014] (...) -- C:\Users\Utilisateur\AppData\Roaming\inst.exe [87608]
[MD5.5B6C11DE7E839C05248CED8825470FEF] [SPRF][04/01/2014] (.VSO Software - low level access layer for CD/DVD/BD devices.) -- C:\Users\Utilisateur\AppData\Roaming\pcouffin.sys [47360] =>.©
[MD5.D60C1B509A62E349F92B528AF6C24DD9] [SPRF][15/07/2013] (.Rovio - Pas de description.) -- C:\Users\Utilisateur\Desktop\AngryBirdsStarWarsInstaller_1-1-2.exe [72352576] =>.©
[MD5.E998F77C0943056319A6A46C330606A4] [SPRF][07/08/2009] (.none - WLAN Optimizer.) -- C:\Users\Utilisateur\Desktop\WLAN Optimizer.exe [109056]
~ Files: 4 Scanned in 00mn 03s



---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe =>.©
O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe =>.©
O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe =>.©
O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe =>.©
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe =>.©
O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe =>.©
O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe =>.©
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe =>.©
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe =>.©
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe =>.©
O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe =>.©
O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe =>.©
O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe =>.©
O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe =>.©
O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe =>.©
O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe =>.©
O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe =>.©
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe =>.©
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe =>.©
O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe =>.©
O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe =>.©
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe =>.©
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe =>.©
O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe =>.©
O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe =>.©
O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe =>.©
O87 - FAEL: "Collab-P2PHost-In-TCP" | In - None - P6 - TRUE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe =>.©
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMPNSS-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.©
O87 - FAEL: "WMPNSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.©
O87 - FAEL: "WMPNSS-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.©
O87 - FAEL: "WMPNSS-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.©
O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.©
O87 - FAEL: "WMPNSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.©
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.©
O87 - FAEL: "WMPNSS-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.©
O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WMP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "WMP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "WMP-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe =>.©
O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe =>.©
O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe =>.©
O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe =>.©
O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MCX-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.©
O87 - FAEL: "MCX-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.©
O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MCX-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.©
O87 - FAEL: "MCX-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.©
O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe =>.©
O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe =>.©
O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{939D5301-2ECB-4E2B-841B-C8951CA7415D}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "{A01CC783-374E-49C2-935F-73947E7CF67E}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "{EB3A9E19-E705-499D-8EC8-3C1133FFF423}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "{3BA8F178-7FE6-4E1E-B1FD-57AF4A8A6712}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{5A97BCC3-340C-4D82-9824-9EFE3698BA27}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{2BF4C3AF-C9EC-4B87-BFDB-08E3E852D59C}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{5056FBCD-F407-4FEF-B20C-4F701711D441}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{76388978-BB64-4A6B-ACF3-B4C63332860A}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{D5DEB7AD-3C8B-4C0F-B069-C5B3C681AD70}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{2D24B197-DD5B-4360-A492-B857907F67FA}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "{73A9AD4C-9E25-45F8-BCCD-9DBF6C19AD47}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "{5AE131DE-BD83-4F74-8E36-01B25A1BB2E6}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.©
O87 - FAEL: "{16BA9528-D2B8-4937-8C50-7685092F1D86}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.©
O87 - FAEL: "{A8D5E63B-0BE8-469C-BC34-9CB87EE2B917}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.©
O87 - FAEL: "{775CB514-1FEE-4378-A39A-EF1FE8B9DF58}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.©
O87 - FAEL: "{32887126-4048-442E-B63E-A06967CF548D}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.©
O87 - FAEL: "{A24EBA06-5ECF-435F-8755-ECA3329DFD6F}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{DAE44BD1-23E3-48F8-B15D-8014077B85F3}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe =>.©
O87 - FAEL: "{20D9A643-631E-42D4-8080-7D0B1F2D469C}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{D34B7759-1CE6-4977-A699-FB5A8E13646D}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{D3B6054E-8691-4278-B883-3B16C94DE8B7}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{3E604692-A9D0-4F98-B587-1A77B068484C}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{B3621570-04E9-4BA6-A335-364B40114CD8}" | In - Private - P6 - TRUE | .(.Musiccity Co.Ltd. - MUZAoDApp Module.) -- C:\Windows\System32\muzapp.exe =>.©
O87 - FAEL: "{92922969-DCED-4BCD-9F78-0E848ECBF0D7}" | In - Private - P17 - TRUE | .(.Musiccity Co.Ltd. - MUZAoDApp Module.) -- C:\Windows\System32\muzapp.exe =>.©
O87 - FAEL: "{73E7DA1E-78EC-4990-8C00-22E1A4BEAC9D}" | In - None - P6 - TRUE | .(.Microsoft Corporation - SMSvcHost.exe.) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe =>.©
O87 - FAEL: "TCP Query User{BF2652EC-C471-46AA-85A4-35A33E3D719A}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Visual Basic Command Line Compiler.) -- C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe =>.©
O87 - FAEL: "UDP Query User{56A886B2-03CE-4A65-B708-4EA242F449B1}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Visual Basic Command Line Compiler.) -- C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe =>.©
O87 - FAEL: "{4D461B55-FA9D-440E-8925-FB02C8D935C6}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Installateur Windows®.) -- C:\Windows\System32\msiexec.exe =>.©
O87 - FAEL: "{3A98A6B4-E646-4162-9F51-CFC17E5B586F}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Installateur Windows®.) -- C:\Windows\System32\msiexec.exe =>.©
O87 - FAEL: "{26D86806-BE85-4D07-B14A-B60075044EE5}" | In - Private - P6 - TRUE | .(.Opera Software - Opera Internet Browser plugin wrapper.) -- C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe =>.©
O87 - FAEL: "{EFA9CF94-C5F7-4978-B7B0-3D14A6010360}" | In - Private - P17 - TRUE | .(.Opera Software - Opera Internet Browser plugin wrapper.) -- C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe =>.©
O87 - FAEL: "{95B094F5-A317-44C9-83D8-822141B27F5D}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files\TLKGAMES\3D Chess Unlimited Shareware\DXSetup.exe
O87 - FAEL: "{CDC3794D-EB6F-4C41-8295-94E6013A5109}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files\TLKGAMES\3D Chess Unlimited Shareware\DXSetup.exe
O87 - FAEL: "{605FE885-DABF-4DAD-B63C-63F0C694B2BB}" | In - Domain - P6 - FALSE | .(...) -- C:\Program Files\TLKGAMES\3D Chess Unlimited Shareware\DXSetup.exe
O87 - FAEL: "{2A32BE19-5BEA-4B09-A8E7-CA0327EC948F}" | In - Domain - P17 - FALSE | .(...) -- C:\Program Files\TLKGAMES\3D Chess Unlimited Shareware\DXSetup.exe
O87 - FAEL: "RemoteDesktop-UserMode-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "TCP Query User{F112A4FE-CD67-4731-A3B2-D0A645147018}C:\program files\internet explorer\iexplore.exe" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Internet Explorer.) -- C:\program files\internet explorer\iexplore.exe =>.©
O87 - FAEL: "UDP Query User{B7BE050A-8A52-473B-BAAA-5A4462AB595D}C:\program files\internet explorer\iexplore.exe" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Internet Explorer.) -- C:\program files\internet explorer\iexplore.exe =>.©
O87 - FAEL: "{B0F70E67-4D3B-4CAC-9883-ADCEEF8719CB}" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{9436EDE3-6D3C-4166-A499-0BD42BE774AB}" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{B878DDB8-FA17-4848-84A0-0A09B7535BCA}" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Microsoft Zune.) -- C:\Program Files\Zune\Zune.exe =>.©
O87 - FAEL: "{B6CDB632-736B-4F61-B4FB-7492EE91BB22}" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{5749DF81-BDDE-406F-AAC6-A8F69E72A017}" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe =>.©
O87 - FAEL: "{A88A673D-4747-4F50-BBA3-C1FB5E3B131D}" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe =>.©
O87 - FAEL: "{FAEB5379-4E90-4B2C-B911-33DD55BFBD14}" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{017BD84D-0B12-4F24-BB10-2B44D1CD3CE7}" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{A0312D60-8F8F-41F0-8A89-B613E10268CC}" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{5E581B7A-F0C5-4D15-8B6F-2E0A3B1BA4C6}" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{5E5CF868-AF87-4BF0-9BD6-C66E8F3450BF}" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.©
O87 - FAEL: "{68204967-2DB8-470F-910B-E276B68F3D7C}" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.©
O87 - FAEL: "{9B521DAB-EB31-4876-925F-31F7B30F7F60}" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.©
O87 - FAEL: "{B4096E9E-5F92-4629-B77E-43BF81E0F1A2}" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.©
O87 - FAEL: "{56984B25-7D1B-4F85-AFCB-16EAB81AC415}" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{E8268CD4-131F-4E0B-AA5E-10F4458B2C45}" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{3A55D5CA-F671-4ADE-82DA-C5D37CC414E3}" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{43F4A7EB-BCCF-44C3-994F-3EC301F093B0}" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{AEA1CAF4-9EDA-4D79-8161-52F4F3FBDAC6}" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{481F1650-B58C-4E5D-AE2B-4E7DF6F796E9}" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{C6AB5008-EAF7-47B0-A10C-D11838CAD85D}" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.©
O87 - FAEL: "{E863479D-43DA-4BD9-9272-3187B3D13CC4}" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.©
O87 - FAEL: "{F2B5132D-63EE-4FDF-9469-0AB441D8392B}" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.©
O87 - FAEL: "{CC094417-8EE1-4149-8F77-8CF9D2ACD43E}" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service de partage réseau Zune.) -- C:\Program Files\Zune\ZuneNSS.exe =>.©
O87 - FAEL: "{A9EF6D26-51CA-447F-B5E4-CFACC2DC06DE}" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.©
O87 - FAEL: "{1F550823-6608-41B7-A0A2-FE5B919D7467}" | In - None - P6 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe =>.©
O87 - FAEL: "{0624DD69-22D6-49C0-A99E-2B0AEAAEB8F6}" | In - None - P6 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files\iTunes\iTunes.exe =>.©
O87 - FAEL: "{BB0B6251-BFB3-4B34-BA37-E97D0B3BA830}" | In - None - P6 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\uTorrent.exe =>.©
O87 - FAEL: "{C47ED992-EDBD-4D73-A44C-E24F869BAE35}" | In - None - P17 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Utilisateur\AppData\Roaming\uTorrent\uTorrent.exe =>.©
O87 - FAEL: "{32917F73-2CA6-4119-B843-0395B0FE4503}" | In - Private - P6 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe =>.©
O87 - FAEL: "{F87DED98-B4D4-49C5-A774-00F9C7F3B469}" | In - Private - P17 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe =>.©
O87 - FAEL: "{A226094A-AC66-4EA3-96B3-1676C6383C71}" | In - None - P17 - TRUE | .(.Nokia - Nokia Suite.) -- C:\Program Files\nokia\nokia suite\nokiasuite.exe =>.©
O87 - FAEL: "{89C2E01C-5DEC-4066-9815-636CFC4723FD}" |In - None - P17 - TRUE | .(...) -- C:\Program Files\Common Files\nokia\service layer\a\nsl_host_process.exe (.not file.) =>.©
O87 - FAEL: "{DB562C4E-045C-4DBA-97E6-74A54D154FE7}" | In - Private - P6 - TRUE | .(.NeoRouter Inc. - NeoRouter Client Service.) -- C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe
O87 - FAEL: "{3E8D2DA2-BCCA-42FC-A573-F34DD548D2BC}" | In - Private - P17 - TRUE | .(.NeoRouter Inc. - NeoRouter Client Service.) -- C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe
O87 - FAEL: "{49595E75-A32F-4E46-B87A-08439290A236}" | In - Public - P6 - TRUE | .(.NeoRouter Inc. - NeoRouter Client Service.) -- C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe
O87 - FAEL: "{DCF8249A-A750-43EC-AF5C-14846BFEA43C}" | In - Public - P17 - TRUE | .(.NeoRouter Inc. - NeoRouter Client Service.) -- C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe
~ Firewall: 236 Scanned in 00mn 01s



---\\ Enumère les codes produits des logiciels (PUC) (O90)
O90 - PUC: "000021090B00C0400000000000F01FEC" . (.Complément Microsoft Enregistrer en tant que PDF pour programmes Microsoft Office 2007.) -- C:\Windows\Installer\{90120000-00B0-040C-0000-0000000FF1CE}\expdfic.exe =>.©
O90 - PUC: "000021092B00C0400000000000F01FEC" . (.Complément Microsoft Enregistrer en tant que PDF ou XPS pour programmes Microsoft Office 2007.) -- C:\Windows\Installer\{90120000-00B2-040C-0000-0000000FF1CE}\expxic.exe =>.©
O90 - PUC: "1B1D10D6DB7101F4BB110FF8C0744DB2" . (.PC Connectivity Solution.) -- C:\Windows\Installer\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}\ARPPRODUCTICON.exe =>.©
O90 - PUC: "277C90D53BCEB244C96C4B43C187DF2C" . (.Apple Application Support.) -- C:\Windows\Installer\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}\WinInstall.ico =>.©
O90 - PUC: "2D64DF197BF415A4687355E6B11EBDC7" . (.iTunes.) -- C:\Windows\Installer\{91FD46D2-4FB7-4A51-8637-556E1BE1DB7C}\Installer.ico =>.©
O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico =>.©
O90 - PUC: "47237392E779C3144AEDCDF0E8084C92" . (.Nokia Connectivity Cable Driver.) -- C:\Windows\Installer\{29373274-977E-413C-A4DE-DC0F8E80C429}\ARPPRODUCTICON.exe =>.©
O90 - PUC: "55AA633C3ABB809488F652FCD603D231" . (.Angry Birds Star Wars.) -- C:\Windows\Installer\{C336AA55-BBA3-4908-886F-25CF6D302D13}\icon.exe =>.©
O90 - PUC: "5F881BDE8E8DEE24980E2F21AD84BC18" . (.Nokia Suite.) -- C:\Windows\Installer\{EDB188F5-D8E8-42EE-89E0-F212DA48CB81}\ARPPRODUCTICON.exe =>.©
O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.06) - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico =>.©
O90 - PUC: "7C43C21609E58D74B9C5F017D78D7262" . (.swMSM.) -- C:\Windows\Installer\{612C34C7-5E90-47D8-9B5C-0F717DD82726}\ARPPRODUCTICON.exe =>.©
O90 - PUC: "8FC229B8C6A8EC148A851F57D5F7D592" . (.NVIDIA PhysX.) -- C:\Windows\Installer\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}\icon.ico =>.©
O90 - PUC: "A7B14B03D9C3ED447A1A4909113FC33C" . (.PDF Architect.) -- C:\Windows\Installer\{30B41B7A-3C9D-44DE-A7A1-949011F33CC3}\main_icon =>.©
O90 - PUC: "E0EDA41E3F5764A4785E6296D26D62CE" . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{E14ADE0E-75F3-4A46-87E5-26692DD626EC}\Installer.ico =>.©
O90 - PUC: "F6071111A6667304777712318267D401" . (.JavaFX 2.1.1.) -- C:\Windows\Installer\{1111706F-666A-4037-7777-211328764D10}\javaIcon.ico =>.©
~ Update Products: 64 Scanned in 00mn 00s



---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
=>.©
[MD5.6B3B407E30E7D4C46F0F2327D63789FA] [WIS][25/12/2013] (.Nokia - MSVC80_x86_v2.) -- C:\Windows\Installer\1d369d9.msi [12815360] =>.©
[MD5.19A665988BA2E2C24261EEA6AFD1B353] [WIS][25/12/2013] (.Nokia - MSVC90_x86.) -- C:\Windows\Installer\1d369e0.msi [28236288] =>.©
[MD5.44AC5FA411BDC34CF17DB30422612742] [WIS][25/12/2013] (.Nokia - Microsoft_VC100_CRT_SP1.) -- C:\Windows\Installer\1d369e7.msi [503808] =>.©
[MD5.C8ADE4B1732EF1770C5E6B54F892A6A4] [WIS][25/12/2013] (.Nokia - Nokia Connectivity Cable Driver.) -- C:\Windows\Installer\1d369ee.msi [7032832] =>.©
[MD5.10E805D8636B1B3AF596688600EF6EC2] [WIS][25/12/2013] (.Nokia - PC Connectivity Solution.) -- C:\Windows\Installer\1d369f5.msi [26374144] =>.©
[MD5.96D46EB790E2C269871162FB5F9A05E6] [WIS][25/12/2013] (.Nokia - Nokia Suite.) -- C:\Windows\Installer\1d369fd.msi [261939200] =>.©
[MD5.0E67B6EA9B615567F878C1790A5EEF00] [WIS][22/08/2013] (.Gemalto - GemPcCCID Version 2.0.3.) -- C:\Windows\Installer\1e48448.msi [1248256] =>.©
[MD5.22C9E7805145D0A0C4C62DDB591D2DAE] [WIS][27/06/2012] (.Babylon Ltd - BabylonObjectInstaller.) -- C:\Windows\Installer\24a1fee.msi [353280] =>PUP.Babylon
[MD5.22C9E7805145D0A0C4C62DDB591D2DAE] [WIS][27/06/2012] (.Babylon Ltd - BabylonObjectInstaller.) -- C:\Windows\Installer\24a1fee.msi [353280] =>.©
[MD5.E6CEB78DD2DF5FA412B02F07D359A14F] [WIS][13/09/2013] (.Ask.com - Blank Project Template.) -- C:\Windows\Installer\31a5e8b.msi [2717260] =>.©
[MD5.FD2F75F2BBF246D930D5070C485ED932] [WIS][31/01/2014] (.Gemalto - GemPcCCID Version 2.0.1.) -- C:\Windows\Installer\31e321.msi [1265152] =>.©
[MD5.8C74CBC105604D942C29C8486A62B72C] [WIS][03/09/2013] (.RagTime.de Development GmbH - RagTime 6.5.) -- C:\Windows\Installer\39065b.msi [124153856]
[MD5.8C74CBC105604D942C29C8486A62B72C] [WIS][03/09/2013] (.RagTime.de Development GmbH - RagTime 6.5.) -- C:\Windows\Installer\39065b.msi [124153856] =>.©
[MD5.22C9E7805145D0A0C4C62DDB591D2DAE] [WIS][27/06/2012] (.Babylon Ltd - BabylonObjectInstaller.) -- C:\Windows\Installer\7cab42.msi [353280] =>PUP.Babylon
[MD5.22C9E7805145D0A0C4C62DDB591D2DAE] [WIS][27/06/2012] (.Babylon Ltd - BabylonObjectInstaller.) -- C:\Windows\Installer\7cab42.msi [353280] =>.©
[MD5.8016A3D6D4C92179B9065BD4EA14F355] [WIS][19/04/2013] (.Rovio Entertainment Ltd. - Angry Birds Star Wars.) -- C:\Windows\Installer\a397f26.msi [1513984] =>.©
[MD5.6EF2A4AF77CA58F8B0D3FE37A2864D0C] [WIS][06/07/2012] (.Ask.com - Blank Project Template.) -- C:\Windows\Installer\cc7c79.msi [3809280] =>.©
[MD5.03CA60D5185FC77BBABA6F29D89DF029] [WIS][07/01/2013] (.pdfforge - PDF Architect Installer.) -- C:\Windows\Installer\cf3a79.msi [50487296] =>.©
[MD5.A91D34375B4647FF0F57E8076EC72B1B] [WIS][08/08/2012] (.Babylon Ltd - BabylonObjectInstaller.) -- C:\Windows\Installer\e69c56.msi [343040] =>PUP.Babylon
[MD5.E6CEB78DD2DF5FA412B02F07D359A14F] [WIS][09/09/2012] (.Ask.com - Blank Project Template.) -- C:\Windows\Installer\e69c5c.msi [2717260] =>.©
~ WIS: 86 Scanned in 01mn 11s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Disabled 21/12/2013 65432 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - | Demand 12/03/2014 257928 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Disabled 21/12/2012 57008 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SS - | Disabled 20/01/2014 103936 | (Freemake Improver) . (.Freemake.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
SS - | Demand 09/05/2011 136120 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Demand 31/05/2013 553288 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SS - | Auto 04/04/2013 701512 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
SS - | Demand 13/03/2014 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Disabled 22/11/2012 1522312 | (PDF Architect Helper Service) . (.pdfforge GbR.) - C:\Program Files\PDF Architect\HelperService.exe
SS - | Disabled 22/11/2012 905864 | (PDF Architect Service) . (.pdfforge GbR.) - C:\Program Files\PDF Architect\ConversionService.exe
SS - | Demand 01/03/2013 118520 | (rpcapd) . (.Riverbed Technology, Inc..) - C:\Program Files\WinPcap\rpcapd.exe
SS - | Auto 16/05/2013 1033688 | (SDUpdateService) . (.Safer-Networking Ltd..) - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
SS - | Demand 18/04/2013 737616 | (ServiceLayer) . (.Nokia.) - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
SS - | Disabled 04/07/2012 265928 | C:\Program Files\SPEEDB~1\VideoAcceleratorService.exe (VideoAcceleratorService) . (.SpeedBit Ltd..) - C:\Program Files\SpeedBit Video Accelerator\VideoAcceleratorService.exe

SR - | Auto 25/01/2014 50344 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - | Auto 25/01/2014 113704 | (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe
SR - | Auto 22/05/2013 233472 | (FsUsbExService) . (.Teruten.) - C:\Windows\system32\FsUsbExService.exe
SR - | Auto 04/04/2013 418376 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
SR - | Auto 27/11/2013 1898320 | (NRClientService) . (.NeoRouter Inc..) - C:\Program Files\ZebraNetworkSystems\NeoRouter\NRService.exe
SR - | Auto 23/10/2013 664352 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe
SR - | Auto 27/10/2013 1364256 | (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
SR - | Auto 16/05/2013 1817560 | (SDScannerService) . (.Safer-Networking Ltd..) - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
SR - | Auto 15/05/2013 171928 | (SDWSCService) . (.Safer-Networking Ltd..) - C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
SR - | Auto 23/10/2013 414496 | (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
SR - | Auto 14/07/2009 20992 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 14/07/2009 20992 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe

~ Services: Scanned in 01mn 12s



---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Run by Utilisateur at 19/03/2014 15:55:19

device: opened successfully
user: error reading MBR

Disk trace:
error: Read Descripteur non valide
kernel: error reading MBR

~ MBR: 9 Scanned in 00mn 02s



---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by Utilisateur at 19/03/2014 15:55:21

********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin

~ MBR: Scanned in 00mn 04s



---\\ Liste des émulateurs de CD/DVD (MBR Hook)
O58 - SDL:[MD5.0022CFFF1A41E5CE3A764050A7DDF22A] - 13/07/2012 - 07:44:51 ---A- . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\Drivers\sptd.sys [477240]
~ Emulateurs: Scanned in 00mn 04s



---\\ Scan Additionnel (O88)
Database Version : 13031 - (19/03/2014)
Clés trouvées (Keys found) : 30
Valeurs trouvées (Values found) : 2
Dossiers trouvés (Folders found) : 0
Fichiers trouvés (Files found) : 5

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS] =>Trojan.Trojan.Keygen^
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Express Files Updater] =>Adware.ExpressFiles^
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YourFile DownloaderUpdate] =>PUP.YourFileDownloader^
[HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\uTorrent] =>P2P.BitTorrent^
[HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.Ask
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D6533F74-218B-41BE-9D91-5BD471FECFFD}] =>Toolbar.Conduit
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ef79f67a-6ad7-4715-a0f8-932fca442023}] =>Toolbar.Conduit
[HKLM\Software\Classes\BHO.IFlashGetNetscapeEx] =>Adware.BDSearch
[HKLM\Software\Classes\BHO.IFlashGetNetscapeEx.1] =>Adware.BDSearch
[HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\HssSrv] =>Toolbar.Agent
[HKCU\Software\mixidj LTD] =>Adware.SmileyBar
[HKLM\Software\Classes\AppID\{2C254882-699A-464B-95F5-32F003F4F45C}] =>Adware.BDSearch
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10245650-5917-4ff8-BED6-ABB91DD73E47}] =>Adware.BDSearch
[HKLM\Software\Classes\CLSID\{10245650-5917-4ff8-BED6-ABB91DD73E47}] =>Adware.BDSearch
[HKLM\Software\Classes\AppID\FlashgetHook.DLL] =>Adware.BDSearch
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{116ba71c-8187-4f15-9a1f-c9d6289155d1}] =>Adware.BDSearch
[HKLM\Software\Classes\CLSID\{116ba71c-8187-4f15-9a1f-c9d6289155d1}] =>Adware.BDSearch
[HKLM\Software\Classes\CLSID\{A0939A48-0E2F-453F-899C-595F6648EE88}] =>Adware.BDSearch
[HKLM\Software\Classes\Interface\{A0939A48-0E2F-453F-899C-595F6648EE88}] =>Adware.BDSearch
[HKLM\Software\Classes\Interface\{6DD9E779-2707-4BF0-8269-E4C6BD8B39B7}] =>Adware.BDSearch
[HKLM\Software\Classes\Interface\{810B845F-70F3-4B05-9625-3FB37B59A884}] =>Adware.BDSearch
[HKLM\Software\Classes\TypeLib\{DF772EB8-4116-49AE-8FA4-B5B078AA4198}] =>Adware.BDSearch
[HKLM\Software\Classes\FG2CatchUrl.Netscape] =>Adware.BDSearch
[HKLM\Software\Classes\FG2CatchUrl.Netscape.1] =>Adware.BDSearch
[HKLM\Software\Classes\FlashGetHook.FG3DownMgr] =>Adware.BDSearch
[HKLM\Software\Classes\FlashGetHook.FG3DownMgr.1] =>Adware.BDSearch
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011341191}] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011441179}] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311711180}] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311791108}] =>PUP.CrossRider
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified =>Hijacker.Application^
C:\Windows\AutoKMS\AutoKMS.exe =>Trojan.Trojan.Keygen^
C:\Windows\Installer\24a1fee.msi =>PUP.Babylon^
C:\Windows\Installer\7cab42.msi =>PUP.Babylon^
C:\Windows\Installer\e69c56.msi =>PUP.Babylon^
~ Additionnel Scan: 257716 Items scanned in 00mn 24s



---\\ Récapitulatif des détections trouvées sur votre station
~ http://nicolascoolman.webs.com/apps/blog/show/26753274-adware-expressfiles =>Adware.ExpressFiles
~ http://nicolascoolman.webs.com/apps/blog/show/27752690-pup-yourfiledownloader =>PUP.YourFileDownloader
~ http://nicolascoolman.webs.com/apps/blog/show/26627369-toolbar-babylon =>PUP.Babylon
~ http://nicolascoolman.webs.com/apps/blog/show/28927746-toolbar-ask =>Toolbar.Ask
~ http://nicolascoolman.webs.com/apps/blog/show/29507721-toolbar-conduit =>Toolbar.Conduit
~ http://nicolascoolman.webs.com/apps/blog/show/28158343-adware-bdsearch =>Adware.BDSearch
~ http://nicolascoolman.webs.com/apps/blog/show/27530912-adware-smileybar =>Adware.SmileyBar
~ http://nicolascoolman.webs.com/apps/blog/show/27583526-pup-crossrider =>PUP.CrossRider
~ MSI: 8 link(s) detected in 00mn 25s



End of the scan (2114 lines in 05mn 12s)(2)

Publicité


Signaler le contenu de ce document

Publicité