cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ Rapport de ZHPDiag v2014.4.12.22 - Nicolas Coolman (12/04/2014)
~ Lancé par garpat (13/04/2014 11:13:31)
~ Adresse du Site Web http://nicolascoolman.webs.com
~ Forums gratuits d'Assistance à la désinfection : http://nicolascoolman.webs.com/apps/links/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Deactivate by program


---\\ Navigateurs Internet
MSIE: Internet Explorer v11.0.9600.17031 (Defaut)
GCIE: Google Chrome v34.0.1847.116

---\\ Informations sur les produits Windows
~ Langage: Français
Windows 8.1 Pro, 64-bit (Build 9600)
Windows Server License Manager Script : OK
~ Windows(R) Operating System, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : WQG67
Windows License : OK
~ Windows Remaining Initializations Number : 999
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection du système
Malwarebytes Anti-Malware version 2.0.1.1004
Windows Defender W8

---\\ Logiciels d'optimisation du système

---\\ Logiciels de partage PeerToPeer
eMule

---\\ Surveillance de Logiciels
Java 7 Update 51

---\\ Informations sur le système
~ Processor: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 4006 MB (65% free)
System Restore: Activé (Enable)
System drive C: has 139 GB (70%) free of 196 GB

---\\ Mode de connexion au système
~ Computer Name: PC-BUREAU
~ User Name: garpat
~ All Users Names: garpat, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\garpat\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\garpat\AppData\Roaming\
~ %Desktop% : C:\Users\garpat\Desktop\
~ %Favorites% : C:\Users\garpat\Favorites\
~ %LocalAppData% : C:\Users\garpat\AppData\Local\
~ %StartMenu% : C:\Users\garpat\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 139 Go of 196 Go)
D: Hard drive, Flash drive, Thumb drive (Free 236 Go of 244 Go)
E: Hard drive, Flash drive, Thumb drive (Free 154 Go of 233 Go)
F: Hard drive, Flash drive, Thumb drive (Free 201 Go of 233 Go)
G: CD-ROM drive (Not Inserted)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 46 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.81394C91B7B5A7C799E249AE82491F13] - (.Microsoft Corporation - Explorateur Windows.) (.04/03/2014 - 13:25:49.) -- C:\Windows\Explorer.exe [2373784]
[MD5.48CFA7BE561A7BE144C29BB912055016] - (.Microsoft Corporation - Application de démarrage de Windows.) (.22/08/2013 - 10:58:29.) -- C:\Windows\System32\Wininit.exe [144384]
[MD5.65C36A29A131A3A5D64B29FAC4EF6DD6] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.22/02/2014 - 10:11:56.) -- C:\Windows\System32\wininet.dll [2262016]
[MD5.306EB21E5B480AE9065EA55AC8C35936] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.22/02/2014 - 10:45:48.) -- C:\Windows\System32\Winlogon.exe [562176]
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) (.21/12/2013 - 09:54:07.) -- C:\Windows\System32\sppcomapi.dll [447488]
[MD5.239268BAB58EAE9A3FF4E08334C00451] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.22/08/2013 - 14:25:35.) -- C:\Windows\system32\Drivers\AFD.sys [567296]
[MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.22/08/2013 - 13:43:41.) -- C:\Windows\system32\Drivers\atapi.sys [26464]
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) (.22/08/2013 - 12:40:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [88576]
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.22/08/2013 - 09:46:35.) -- C:\Windows\system32\Drivers\Cdrom.sys [164352]
[MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.06/03/2014 - 10:22:50.) -- C:\Windows\system32\Drivers\DfsC.sys [134144]
[MD5.03909BDBFF0DCACCABF2B2D4ADEE44DC] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.22/08/2013 - 12:38:38.) -- C:\Windows\system32\Drivers\HDAudBus.sys [78336]
[MD5.84CFC5EFA97D0C965EDE1D56F116A541] - (.Microsoft Corporation - Pilote de port i8042.) (.22/08/2013 - 12:39:15.) -- C:\Windows\system32\Drivers\i8042prt.sys [107520]
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) (.27/11/2013 - 13:02:29.) -- C:\Windows\system32\Drivers\IpNat.sys [142848]
[MD5.C997E6A37BA8915224B3FB5024A34F69] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.06/03/2014 - 10:20:23.) -- C:\Windows\system32\Drivers\MRxSmb.sys [402944]
[MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) (.22/08/2013 - 12:37:02.) -- C:\Windows\system32\Drivers\netBT.sys [282624]
[MD5.1C80517BE6836A812F6A9B99B8321351] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.20/03/2014 - 04:41:24.) -- C:\Windows\system32\Drivers\ntfs.sys [2013016]
[MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) (.22/08/2013 - 12:40:02.) -- C:\Windows\system32\Drivers\Parport.sys [94208]
[MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.22/08/2013 - 12:35:51.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [120832]
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.14/11/2013 - 08:16:42.) -- C:\Windows\system32\Drivers\rdpdr.sys [195584]
[MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) (.22/08/2013 - 14:25:35.) -- C:\Windows\system32\Drivers\tdx.sys [107520]
[MD5.3595FBDF25F8BA6256072D103937D7D6] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.22/02/2014 - 16:44:13.) -- C:\Windows\system32\Drivers\volsnap.sys [311640]
~ Generic Processes: Scanned in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 2/295
~ Mes musiques (My Musics) : 1/25
~ Mes Videos (My Videos) : 1/421
~ Mes Favoris (My Favorites) : 1/23
~ Mes Documents (My Documents) : 1/214
~ Mon Bureau (My Desktop) : 1/214
~ Menu demarrer (Programs) : 1/24
~ Hidden Files: Scanned in 00mn 01s



---\\ Processus lancés
[MD5.EE73B56ED71EB6383F25FA5468923BB2] - (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144] [PID.2744]
[MD5.64A5D30EF57D4214DC9B27798DE2B19E] - (.Microsoft Corporation - Microsoft Office Outlook.) -- C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.exe [13018808] [PID.2256]
[MD5.7EE22E13DEC8A6D18F4643C1EA34B0F0] - (.Virage Logic Corporation / Sonic Focus - ASUS_MATray.exe.) -- C:\Program Files (x86)\ASUS\SonicMaster\SonicMasterTray.exe [984400] [PID.3364]
[MD5.B4E6C1B28AF8806008CB654C716ABAFA] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392] [PID.1124]
[MD5.EA5B870671079786F335AC7C10846C4F] - (.Adobe Systems Incorporated - AAM Updates Notifier Application.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe [295584] [PID.3268]
[MD5.3EBF452B807F412EC0F19141ADA060E5] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\IEXPLORE.exe [811696] [PID.4344]
[MD5.F69C58BEEEA291A6781903A4E3019593] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8211456] [PID.1608]
~ Processes Running: Scanned in 00mn 00s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\garpat\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
G0 - GCSP: Preference [User Data\Default][HomePage] http://search.conduit.com
G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Google Store v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Documents Google v.0.5 (Activé)
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Drive v.6.3 (Activé)
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé)
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activé)
G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [gfdkimpbcpahaombhbimeihdjnejgicl] Feedback v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mfffpogegjflfpflabcdkioaeobkgjik] GaiaAuthExtension v.0.0.1, (Activé)
G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [neajdppkdcdipfabeoofebfddakdcjhd] Google Network Speech v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [nkeimhogjdpnpccoofpliimaahmaaome] Hangout Services v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Wallet v.0.0.6.1 (Activé)
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé)

---\\ Liste des dossiers d'extension Google Chrome
G2 - EXT: C:\Users\garpat\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [Documents Google]
G2 - EXT: C:\Users\garpat\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [Google Drive]
G2 - EXT: C:\Users\garpat\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [YouTube]
G2 - EXT: C:\Users\garpat\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [Recherche Google]
G2 - EXT: C:\Users\garpat\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [Google Wallet]
G2 - EXT: C:\Users\garpat\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [Gmail]

~ Google Lines Browser: 23 Scanned in 00mn 02s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.30214.0.) -- C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll
~ Firefox Browser: 1 Scanned in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.17031 (winblue_gdr.140221-1952)) -- C:\Windows\SysWOW64\ieframe.dll
~ IE Browser: 21 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback> =>Hijacker.Proxy
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Amazon 1Button App for IE [64Bits] - {26B19FA4-E8A1-4A1B-A163-1A1E46F830DD} Clé orpheline
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: (no name) [64Bits] - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} Clé orpheline
~ BHO: 4 Scanned in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Easy Photo Print - [HKLM]{9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.SEIKO EPSON CORPORATION - Epson Easy Photo Print (TBL x64).) -- C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll
~ Toolbar: Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: 3D Vision Photo Viewer.lnk . (.NVIDIA Corporation - NVIDIA 3D Vision Photo Viewer.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe
O4 - GS\Desktop [Public]: ASUS SonicMaster.lnk . (.Acresso Software Inc. - InstallShield.) -- C:\WINDOWS\Installer\{09BCB9CE-964B-4BDA-AE46-B5A0ABEF1D3F}\SonicMaster.exe1_2FB5EF81A81643E584B5EF7AA82D06FF.exe
O4 - GS\Desktop [Public]: aTube Catcher.lnk . (.DsNET - aTube Catcher to download and convert video.) -- C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe
O4 - GS\Desktop [Public]: eMule.lnk . (.http://www.emule-project.net - eMule.) -- C:\Program Files (x86)\eMule\emule.exe
O4 - GS\Desktop [Public]: Epson Easy Photo Print.lnk . (.SEIKO EPSON CORPORATION - Pas de description.) -- C:\Program Files (x86)\EPSON Software\Easy Photo Print\EPQuicker.exe
O4 - GS\Desktop [Public]: EPSON Scan.lnk . (.SEIKO EPSON CORP. - EPSON Scan.) -- C:\Windows\twain_32\escndv\escndv.exe
O4 - GS\Desktop [Public]: GeForce Experience.lnk . (.NVIDIA - NVIDIA GeForce Experience.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\GFExperience.exe
O4 - GS\Desktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Public]: Google Earth.lnk . (.Google - Google Earth.) -- C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe =>.Google Inc
O4 - GS\Desktop [Public]: Image Converter.lnk . (...) -- C:\Program Files (x86)\Image Converter\Image Converter\imageconverter.exe
O4 - GS\Desktop [Public]: iTunes.lnk . (.Apple Inc. - iTunes.) -- C:\Program Files (x86)\iTunes\iTunes.exe
O4 - GS\Desktop [Public]: Jouer à Caesar IV !.lnk . (.Tilted Mill - C4Exec.) -- C:\Program Files (x86)\Sierra\Caesar IV\C4exec.exe
O4 - GS\Desktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
O4 - GS\Desktop [Public]: Pinnacle VideoSpin.lnk . (.Pinnacle Systems - Pinnacle VideoSpin program file.) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe
O4 - GS\Desktop [Public]: Video Search.lnk . (.DsNET - aTube Catcher to download and convert video.) -- C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe
O4 - GS\Desktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player 2.1.2.) -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN
O4 - GS\Program [Public]: Adobe Bridge CS3.lnk . (.Adobe Systems, Inc. - Adobe Bridge.) -- C:\Program Files (x86)\Adobe\Adobe Bridge CS3\Bridge.exe =>.Adobe Systems Incorporated
O4 - GS\Program [Public]: Adobe Device Central CS3.lnk . (.Adobe Systems - Adobe Device Central CS3.) -- C:\Program Files (x86)\Adobe\Adobe Device Central CS3\DeviceCentral.exe =>.Adobe Systems Incorporated
O4 - GS\Program [Public]: Adobe Dreamweaver CS3.lnk . (.Adobe Systems, Inc. - Adobe Dreamweaver CS3.) -- C:\Program Files (x86)\Adobe\Adobe Dreamweaver CS3\Dreamweaver.exe
O4 - GS\Program [Public]: Adobe Dreamweaver CS6.lnk . (.Adobe Systems, Inc. - Adobe Dreamweaver CS6.) -- C:\Program Files (x86)\Adobe\Adobe Dreamweaver CS6\Dreamweaver.exe
O4 - GS\Program [Public]: Adobe ExtendScript Toolkit 2.lnk . (.Adobe Systems, Incorporated - ExtendScript Toolkit 2 and Debugger.) -- C:\Program Files (x86)\Adobe\Adobe Utilities\ExtendScript Toolkit 2\ExtendScript Toolkit 2.exe =>.Adobe Systems Incorporated
O4 - GS\Program [Public]: Adobe ExtendScript Toolkit CS6.lnk . (.Adobe Systems Incorporated - ExtendScript Toolkit CS6 and Debugger (32 b.) -- C:\Program Files (x86)\Adobe\Adobe Utilities - CS6\ExtendScript Toolkit CS6\ExtendScript Toolkit.exe =>.Adobe Systems Incorporated
O4 - GS\Program [Public]: Adobe Extension Manager CS3.lnk . (.Adobe Systems Incorporated - Extension Manager.) -- C:\Program Files (x86)\Adobe\Adobe Extension Manager\Extension Manager.exe
O4 - GS\Program [Public]: Adobe Extension Manager CS6.lnk . (.Adobe Systems Incorporated - Adobe Extension Manager CS6.) -- C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Adobe Extension Manager CS6.exe
O4 - GS\Program [Public]: Adobe Help.lnk . (...) -- C:\Program Files (x86)\Adobe\Adobe Help\Adobe Help.exe
O4 - GS\Program [Public]: Adobe Widget Browser.lnk . (...) -- C:\Program Files (x86)\Adobe\Adobe Widget Browser\Adobe Widget Browser.exe
O4 - GS\Program [Public]: Apple Software Update.lnk . (...) -- C:\WINDOWS\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc
O4 - GS\Program [Public]: Browser Choice.lnk . (...) -- C:\WINDOWS\BrowserChoice\html\default.html
O4 - GS\Program [Public]: Camera.lnk . (.Microsoft Corporation - Camera.) -- C:\WINDOWS\Camera\Camera.exe
O4 - GS\Program [Public]: Desktop.lnk - Clé orpheline
O4 - GS\Program [Public]: FileManager.lnk . (.Microsoft Corporation - OneDrive.) -- C:\WINDOWS\FileManager\FileManager.exe
O4 - GS\Program [Public]: PhotosApp.lnk . (.Microsoft Corporation - Photos.) -- C:\WINDOWS\FileManager\PhotosApp.exe
O4 - GS\Program [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Store.lnk . (...) -- C:\WINDOWS\WinStore\WinStore.htm
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\WINDOWS\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (...) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe (.not file.)
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) -- C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\WINDOWS\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) -- C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\WINDOWS\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\QuickLaunch [garpat]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [garpat]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [garpat]: Microsoft Office Outlook.lnk . (.Microsoft Corporation - Microsoft Office Outlook.) -- C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.exe =>.Microsoft Corporation
O4 - GS\TaskBar [garpat]: File Explorer.lnk - Clé orpheline
O4 - GS\TaskBar [garpat]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\Program [garpat]: Create Amazing Presentations.lnk - Clé orpheline
O4 - GS\Program [garpat]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Program [garpat]: myCANAL.lnk . (.Microsoft Corporation - Microsoft Silverlight Out-of-Browser Launch.) -- C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe
O4 - GS\Accessories [garpat]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Desktop [garpat]: Challenge.lnk . (...) -- F:\Documents\Challenge.xlsx
O4 - GS\Desktop [garpat]: Create Amazing Presentations.lnk - Clé orpheline
O4 - GS\Desktop [garpat]: Dreamweaver C3.lnk . (.Adobe Systems, Inc. - Adobe Dreamweaver CS3.) -- C:\Program Files (x86)\Adobe\Adobe Dreamweaver CS3\Dreamweaver.exe
O4 - GS\Desktop [garpat]: Dreamweaver C6.lnk . (.Adobe Systems, Inc. - Adobe Dreamweaver CS6.) -- C:\Program Files (x86)\Adobe\Adobe Dreamweaver CS6\Dreamweaver.exe
O4 - GS\Desktop [garpat]: Driver Genius.lnk . (...) -- C:\Program Files (x86)\Driver-Soft\DriverGenius\DriverGenius.exe (.not file.)
O4 - GS\Desktop [garpat]: Décompresseur 7zFM.lnk . (.Igor Pavlov - 7-Zip File Manager.) -- C:\Program Files (x86)\7-Zip\7zFM.exe
O4 - GS\Desktop [garpat]: EXCEL.lnk . (.Microsoft Corporation - Microsoft Office Excel.) -- C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.exe
O4 - GS\Desktop [garpat]: iexplore.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\Desktop [garpat]: MdP.lnk . (...) -- F:\Documents\MdP.xls
O4 - GS\Desktop [garpat]: myCANAL.lnk . (.Microsoft Corporation - Microsoft Silverlight Out-of-Browser Launch.) -- C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe
O4 - GS\Desktop [garpat]: OUTLOOK.lnk . (.Microsoft Corporation - Microsoft Office Outlook.) -- C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.exe =>.Microsoft Corporation
O4 - GS\Desktop [garpat]: PC Speed Maximizer Pro.lnk . (.Smart PC Solutions - Fix PC problems and optimize performance.) -- C:\Program Files (x86)\PC Speed Maximizer Pro\PCSpeedMaximizerPro.exe =>Rogue.PCSpeedMaximizer
O4 - GS\Desktop [garpat]: WINWORD.lnk . (.Microsoft Corporation - Microsoft Office Word.) -- C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.exe
O4 - GS\Desktop [garpat]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\Desktop [garpat]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman
~ Global Startup: 71 Scanned in 00mn 01s



---\\ Applications lancées au démarrage du système (O4)
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp
O4 - HKLM\..\Run: [RtHDVBg] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
O4 - HKLM\..\Run: [itype] . (.Microsoft Corporation - IType.exe.) -- C:\Program Files\Microsoft IntelliType Pro\itype.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
O4 - HKCU\..\Run: [PC Speed Maximizer Pro] . (.Smart PC Solutions - Fix PC problems and optimize performance.) -- C:\Program Files (x86)\PC Speed Maximizer Pro\SPMProLauncher.exe =>Rogue.PCSpeedMaximizer
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHBE.exe =>.Epson Seiko Corporation
O4 - HKCU\..\Run: [EPLTarget\P0000000000000001] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHBE.exe =>.Epson Seiko Corporation
O4 - HKLM\..\Wow6432Node\Run: [SonicMasterTray] . (.Virage Logic Corporation / Sonic Focus - ASUS_MATray.exe.) -- C:\Program Files (x86)\ASUS\SonicMaster\SonicMasterTray.exe
O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe
O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe
O4 - HKLM\..\Wow6432Node\Run: [WebInternetSecurity] C:\Program Files (x86)\Webinternetsecurity\WebInternetSecurity.exe (.not file.) =>Spyware.Binternet
O4 - HKUS\S-1-5-21-1842527055-1789191225-3077704259-1001\..\Run: [PC Speed Maximizer Pro] . (.Smart PC Solutions - Fix PC problems and optimize performance.) -- C:\Program Files (x86)\PC Speed Maximizer Pro\SPMProLauncher.exe =>Rogue.PCSpeedMaximizer
O4 - HKUS\S-1-5-21-1842527055-1789191225-3077704259-1001\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHBE.exe =>.Epson Seiko Corporation
O4 - HKUS\S-1-5-21-1842527055-1789191225-3077704259-1001\..\Run: [EPLTarget\P0000000000000001] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHBE.exe =>.Epson Seiko Corporation
~ Application: Scanned in 00mn 00s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\WINDOWS\system32\napinsp.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\WINDOWS\system32\pnrpnsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\WINDOWS\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\WINDOWS\system32\NLAapi.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\WINDOWS\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll
~ Winsock: 7 Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{C5C8FC6F-E018-46D3-BF21-6F2DBEBAADCC}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{C5C8FC6F-E018-46D3-BF21-6F2DBEBAADCC}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY - ABBYY network license server.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 334.8.) - C:\WINDOWS\system32\nvvsvc.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
~ Services: 7 Scanned in 00mn 02s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1084]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1088]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984]
~ Scheduled Task: 6 Scanned in 00mn 02s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll
~ Active Setup: 9 Scanned in 00mn 00s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: C:\Windows\System32\drivers\ahcache.sys (ahcache) . (.Microsoft Corporation - Application Compatibility Cache.) - C:\Windows\System32\DRIVERS\ahcache.sys
O41 - Driver: (BasicDisplay) . (.Microsoft Corporation - Microsoft Basic Display Driver.) - C:\Windows\system32\drivers\BasicDisplay.sys
O41 - Driver: (BasicRender) . (.Microsoft Corporation - Microsoft Basic Render Driver.) - C:\Windows\system32\drivers\BasicRender.sys
O41 - Driver: cdrom.inf (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys
O41 - Driver: C:\Windows\System32\cscsvc.dll (CSC) . (.Microsoft Corporation - Windows Client Side Caching Driver.) - C:\Windows\System32\drivers\csc.sys
O41 - Driver: C:\Windows\System32\drivers\dam.sys (dam) . (.Microsoft Corporation - DAM Kernel Driver.) - C:\Windows\System32\drivers\dam.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (Dfsc) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: mssmbios.inf (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: netnb.inf (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: npsvctrig.inf (npsvctrig) . (.Microsoft Corporation - Named pipe service triggers.) - C:\Windows\system32\drivers\npsvctrig.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: (nvkflt) . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) - C:\Windows\system32\DRIVERS\nvkflt.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys
O41 - Driver: C:\Windows\System32\drivers\vwififlt.sys (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\system32\DRIVERS\vwififlt.sys
~ Drivers: 36 Scanned in 00mn 00s



---\\ Logiciels installés (O42)
O42 - Logiciel: 7-Zip 9.20 - (...) [HKLM][64Bits] -- 7-Zip
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM][64Bits] -- ABBYY FineReader 9.0 Sprint
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM][64Bits] -- {F9000000-0018-0000-0000-074957833700}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {B92C2C6C-F70E-497B-88A7-1FEF9888272B}
O42 - Logiciel: Adobe Anchor Service CS3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {90176341-0A8B-4CCC-A78D-F862228A6B95}
O42 - Logiciel: Adobe Asset Services CS3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}
O42 - Logiciel: Adobe Bridge CS3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {9C9824D9-9000-4373-A6A5-D0E5D4831394} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Bridge Start Meeting - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {08B32819-6EEF-4057-AEDA-5AB681A36A23} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe CMaps - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {A2B242BD-FF8D-4840-9DAA-9170EABEC59C}
O42 - Logiciel: Adobe Camera Raw 4.0 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}
O42 - Logiciel: Adobe Default Language CS3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {B9B35331-B7E4-4E5C-BF4C-7BC87856124D}
O42 - Logiciel: Adobe Device Central CS3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {8D2BA474-F406-4710-9AE4-D4F22D21F0DD} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Dreamweaver CS3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe_ad19d2ae8332572b119cf35fd0a30d8
O42 - Logiciel: Adobe Dreamweaver CS3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {4BDB76C6-902E-41D5-9064-68768E02886B}
O42 - Logiciel: Adobe Dreamweaver CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {A4ED5E53-7AA0-11E1-BF04-B2D4D4A5360E}
O42 - Logiciel: Adobe ExtendScript Toolkit 2 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {C2D69781-F392-4118-A5A7-C7E9C38DBFC2} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Extension Manager CS3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BE5F3842-8309-4754-92D5-83E02E6077A3}
O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AF37176A-78CA-545B-34EF-8B6A21514DD1}
O42 - Logiciel: Adobe Help Viewer CS3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {04AF207D-9A77-465A-8B76-991F6AB66245}
O42 - Logiciel: Adobe PDF Library Files - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {D2559B88-CC9D-4B48-81BB-F492BAA9C48C}
O42 - Logiciel: Adobe Setup - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {D2E18162-47FB-4216-8AB3-F420C1AF75A4}
O42 - Logiciel: Adobe Type Support - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {8E6808E2-613D-4FCD-81A2-6C8FA8E03312}
O42 - Logiciel: Adobe Update Manager CS3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {E69AE897-9E0B-485C-8552-7841F48D42D8}
O42 - Logiciel: Adobe Version Cue CS3 Client - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {D0DFF92A-492E-4C40-B862-A74A173C25C5} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Widget Browser - (.Adobe Systems Incorporated..) [HKLM][64Bits] -- com.adobe.WidgetBrowser
O42 - Logiciel: Adobe Widget Browser - (.Adobe Systems Incorporated..) [HKLM][64Bits] -- {EFBE6DD5-B224-96E5-72B9-68D328CB12A6}
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {21FC2093-6E43-460B-B9B0-5F5AA35BBB0F}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {FE86CB0C-FCB3-4358-B4B0-B0A41E33B3DD}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: Caesar IV - (.Tilted Mill Entertainment.) [HKLM][64Bits] -- {B7666229-351B-47D9-AA6F-DF777CF04BBF}
O42 - Logiciel: Download Navigator - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {E728441A-7820-4B1C-87C9-DE7BE37B2953}
O42 - Logiciel: Désinstaller l'imprimante EPSON SX440 Series - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON SX440 Series
O42 - Logiciel: EPSON Printer Finder - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}
O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON Scanner
O42 - Logiciel: Epson Easy Photo Print 2 - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {FFF841F3-9A15-4F61-BD16-C19F132E5A27}
O42 - Logiciel: Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) - (.SEIKO EPSON CORPORATION2.) [HKLM][64Bits] -- {B2D55EB8-32C5-4B43-9006-9E97DECBA178}
O42 - Logiciel: Epson Event Manager - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}
O42 - Logiciel: EpsonNet Print - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {3E31400D-274E-4647-916C-2CACC3741799}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}
O42 - Logiciel: Image Converter - (.Image Converter.) [HKLM][64Bits] -- Image Converter Image Converter
O42 - Logiciel: Image Editor Packages - (...) [HKCU][64Bits] -- Image Editor Packages
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Java 7 Update 51 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217051FF}
O42 - Logiciel: Malwarebytes Anti-Malware version 2.0.1.1004 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Microsoft IntelliType Pro 8.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft IntelliType Pro 8.2
O42 - Logiciel: Microsoft IntelliType Pro 8.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8219EDCB-CE5A-4348-B056-AAC0FE4E99D0}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: MySQL Connector/ODBC 3.51 - (.MySQL AB.) [HKLM][64Bits] -- {0CB3C535-1171-4A20-B549-E2CB5DEB9723}
O42 - Logiciel: NVIDIA GeForce Experience 1.8.2.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.13.1220 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {80407BA7-7763-4395-AB98-5233F1B34E65}
O42 - Logiciel: NVIDIA Pilote 3D Vision 334.89 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.30.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver
O42 - Logiciel: NVIDIA Pilote graphique 334.89 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo
O42 - Logiciel: NVIDIA Virtual Audio 1.2.20 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver
O42 - Logiciel: PC Speed Maximizer Pro v3.1 - (.Smart PC Solutions.) [HKLM][64Bits] -- PC Speed Maximizer Pro_is1 =>Rogue.PCSpeedMaximizer
O42 - Logiciel: Pinnacle VideoSpin - (.Pinnacle Systems.) [HKLM][64Bits] -- {FEB15887-0932-4D2D-BB85-6AC03FBF1AA8}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: SonicMaster - (.Synopsys.) [HKLM][64Bits] -- {09BCB9CE-964B-4BDA-AE46-B5A0ABEF1D3F}
O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM][64Bits] -- {933B4015-4618-4716-A828-5289FC03165F}
O42 - Logiciel: VLC media player 2.1.2 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: aTube Catcher - (.DsNET Corp.) [HKLM][64Bits] -- aTube Catcher
O42 - Logiciel: eMule - (...) [HKLM][64Bits] -- eMule
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {96B53CA8-5ABB-49D8-96F1-F6C0D73A76C6}
O42 - Logiciel: myCANAL - (.player.canalplus.fr.) [HKCU][64Bits] -- 3864849910.player.canalplus.fr
O42 - Logiciel: sweet-page uninstaller - (.sweet-page.) [HKLM][64Bits] -- sweet-page uninstaller =>PUP.SweetPage
~ Logic: 25 Scanned in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\7-Zip]
[HKCU\Software\ABBYY]
[HKCU\Software\AVAST Software]
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\Buzz_it]
[HKCU\Software\AppDataLow\Software\JavaSoft]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Cygwin]
[HKCU\Software\DivXNetworks]
[HKCU\Software\EPSON]
[HKCU\Software\Filseclab]
[HKCU\Software\Freemake]
[HKCU\Software\GNU]
[HKCU\Software\Gabest]
[HKCU\Software\Google]
[HKCU\Software\IPACS]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\Licenses]
[HKCU\Software\Macromedia]
[HKCU\Software\Mine]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\NVIDIA Corporation]
[HKCU\Software\Netscape]
[HKCU\Software\ODBC]
[HKCU\Software\PC Speed Maximizer Pro] =>Rogue.PCSpeedMaximizer
[HKCU\Software\Pinnacle Systems]
[HKCU\Software\Policies]
[HKCU\Software\RapidSolution]
[HKCU\Software\Realtek]
[HKCU\Software\RegisteredApplications]
[HKCU\Software\SEIKO EPSON CORPORATION]
[HKCU\Software\SecuROM]
[HKCU\Software\Software]
[HKCU\Software\Streaming Video Recorder]
[HKCU\Software\TeleCharger]
[HKCU\Software\Trolltech]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\WOWSlider.com]
[HKCU\Software\Wow6432Node]
[HKCU\Software\Xilisoft]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\eMule]
[HKCU\Software\kde.org]
[HKLM\Software\AGEIA Technologies]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\DTS]
[HKLM\Software\DivX]
[HKLM\Software\EPSON]
[HKLM\Software\EpsonNet]
[HKLM\Software\GEAR Software]
[HKLM\Software\Google]
[HKLM\Software\Intel]
[HKLM\Software\Khronos]
[HKLM\Software\Macromedia]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\ODBC]
[HKLM\Software\Policies]
[HKLM\Software\RapidSolution]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\SonicFocus]
[HKLM\Software\Waves Audio]
[HKLM\Software\Wow6432Node\ABBYY]
[HKLM\Software\Wow6432Node\AGEIA Technologies]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\AdwCleaner]
[HKLM\Software\Wow6432Node\AppDataLow]
[HKLM\Software\Wow6432Node\Apple Computer, Inc.]
[HKLM\Software\Wow6432Node\Apple Inc.]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\DivXNetworks]
[HKLM\Software\Wow6432Node\DivX]
[HKLM\Software\Wow6432Node\EPSON]
[HKLM\Software\Wow6432Node\EpsonNet]
[HKLM\Software\Wow6432Node\FAST Multimedia]
[HKLM\Software\Wow6432Node\Filseclab]
[HKLM\Software\Wow6432Node\Freemake]
[HKLM\Software\Wow6432Node\GEAR Software]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\InstallShield]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\JavaSoft]
[HKLM\Software\Wow6432Node\JreMetrics]
[HKLM\Software\Wow6432Node\Khronos]
[HKLM\Software\Wow6432Node\Licenses]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\Macrovision]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\MySQL AB]
[HKLM\Software\Wow6432Node\NVIDIA Corporation]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\Pegasus Imaging]
[HKLM\Software\Wow6432Node\Pinnacle Systems]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\RapidSolution]
[HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\SEIKO EPSON CORPORATION2]
[HKLM\Software\Wow6432Node\SEIKO EPSON CORPORATION]
[HKLM\Software\Wow6432Node\Shmoopy]
[HKLM\Software\Wow6432Node\Sierra]
[HKLM\Software\Wow6432Node\Sony Corporation]
[HKLM\Software\Wow6432Node\Tilted Mill Entertainment]
[HKLM\Software\Wow6432Node\VideoLAN]
[HKLM\Software\Wow6432Node]
~ Key Software: 219 Scanned in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 27/03/2014 - 11:44:56 - [3,348] ----D C:\Program Files (x86)\7-Zip
O43 - CFD: 20/01/2014 - 15:22:47 - [173,313] ----D C:\Program Files (x86)\ABBYY FineReader 9.0 Sprint
O43 - CFD: 27/03/2014 - 14:32:13 - [841,687] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 19/02/2014 - 13:19:07 - [0] ----D C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 02/03/2014 - 18:49:35 - [0] ----D C:\Program Files (x86)\Amazon
O43 - CFD: 16/02/2014 - 19:35:29 - [2,316] ----D C:\Program Files (x86)\Apple Software Update =>.Apple Inc
O43 - CFD: 21/01/2014 - 17:45:37 - [3,342] ----D C:\Program Files (x86)\ASUS
O43 - CFD: 29/01/2014 - 13:33:45 - [0] ----D C:\Program Files (x86)\Audials
O43 - CFD: 16/02/2014 - 19:35:05 - [0,602] ----D C:\Program Files (x86)\Bonjour
O43 - CFD: 19/03/2014 - 18:57:26 - [990,196] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 20/03/2014 - 21:46:41 - [0] ----D C:\Program Files (x86)\DivX
O43 - CFD: 02/02/2014 - 01:40:41 - [39,129] ----D C:\Program Files (x86)\DsNET Corp
O43 - CFD: 10/04/2014 - 15:15:49 - [10,222] ----D C:\Program Files (x86)\eMule
O43 - CFD: 20/01/2014 - 15:15:27 - [7,907] ----D C:\Program Files (x86)\epson
O43 - CFD: 20/01/2014 - 15:26:05 - [100,945] ----D C:\Program Files (x86)\EPSON Software
O43 - CFD: 10/04/2014 - 10:55:15 - [0] ----D C:\Program Files (x86)\Freemake
O43 - CFD: 10/04/2014 - 10:55:36 - [0] ----D C:\Program Files (x86)\FreeTime
O43 - CFD: 11/04/2014 - 00:55:08 - [537,454] ----D C:\Program Files (x86)\Google
O43 - CFD: 27/03/2014 - 13:42:55 - [15,612] ----D C:\Program Files (x86)\Image Converter
O43 - CFD: 27/02/2014 - 17:23:29 - [87,863] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 22/01/2014 - 19:09:26 - [33,430] ----D C:\Program Files (x86)\Intel
O43 - CFD: 10/04/2014 - 13:38:52 - [6,282] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 16/02/2014 - 19:36:57 - [186,239] ----D C:\Program Files (x86)\iTunes
O43 - CFD: 23/01/2014 - 10:33:13 - [121,300] ----D C:\Program Files (x86)\Java
O43 - CFD: 11/04/2014 - 17:01:01 - [46,018] ----D C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 22/01/2014 - 10:37:16 - [422,063] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 14/03/2014 - 12:08:35 - [40,879] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 19/01/2014 - 12:34:01 - [0,014] ----D C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 20/01/2014 - 13:33:46 - [3,554] ----D C:\Program Files (x86)\Microsoft Works
O43 - CFD: 10/04/2014 - 13:11:02 - [7,797] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 02/02/2014 - 00:50:52 - [0] ----D C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 22/01/2014 - 18:13:46 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 19/02/2014 - 13:20:13 - [192,901] ----D C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 02/02/2014 - 00:42:11 - [0,001] ----D C:\Program Files (x86)\pazera-software
O43 - CFD: 22/01/2014 - 17:52:57 - [28,637] ----D C:\Program Files (x86)\PC Speed Maximizer Pro =>Rogue.PCSpeedMaximizer
O43 - CFD: 18/02/2014 - 12:00:38 - [142,482] ----D C:\Program Files (x86)\Pinnacle
O43 - CFD: 21/01/2014 - 17:44:39 - [12,690] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 22/01/2014 - 18:13:46 - [36,661] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 27/03/2014 - 12:33:55 - [0] ----D C:\Program Files (x86)\Shmoopy
O43 - CFD: 27/02/2014 - 17:23:30 - [1248,187] ----D C:\Program Files (x86)\Sierra
O43 - CFD: 21/01/2014 - 17:47:02 - [0] --H-D C:\Program Files (x86)\Temp
O43 - CFD: 05/02/2014 - 01:57:37 - [153,916] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 14/03/2014 - 10:51:32 - [1,156] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 14/11/2013 - 09:13:28 - [5,449] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 10/04/2014 - 13:38:41 - [3,148] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 10/04/2014 - 13:38:41 - [0,212] ----D C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 22/08/2013 - 17:36:30 - [7,175] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 14/11/2013 - 09:13:28 - [5,118] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 10/04/2014 - 13:38:41 - [0,212] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 21/01/2014 - 19:39:50 - [0] -SH-D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 22/08/2013 - 17:36:30 - [0] ----D C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 20/02/2014 - 20:58:46 - [1,754] ----D C:\Program Files (x86)\Xilisoft
O43 - CFD: 13/04/2014 - 11:13:26 - [23,697] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 20/01/2014 - 15:21:14 - [7,724] ----D C:\Program Files (x86)\Common Files\ABBYY
O43 - CFD: 27/03/2014 - 14:32:19 - [520,363] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 29/01/2014 - 14:01:28 - [46,039] ----D C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 16/02/2014 - 19:36:16 - [122,245] ----D C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 19/01/2014 - 12:34:00 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 20/03/2014 - 21:46:40 - [0,008] ----D C:\Program Files (x86)\Common Files\DivX Shared
O43 - CFD: 20/01/2014 - 15:14:48 - [1,609] ----D C:\Program Files (x86)\Common Files\EPSON
O43 - CFD: 21/01/2014 - 17:44:25 - [2,009] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 23/01/2014 - 10:33:29 - [1,191] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 21/01/2014 - 16:19:46 - [0,625] ----D C:\Program Files (x86)\Common Files\Macrovision Shared
O43 - CFD: 10/04/2014 - 13:09:56 - [246,579] ----D C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 22/08/2013 - 17:36:33 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 21/01/2014 - 19:39:49 - [41,411] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 18/02/2014 - 12:00:38 - [0,302] ----D C:\Program Files (x86)\Common Files\Yahoo!
O43 - CFD: 16/02/2014 - 19:36:58 - [2,774] ----D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 20/01/2014 - 15:21:14 - [1,552] ----D C:\ProgramData\ABBYY
O43 - CFD: 29/03/2014 - 11:07:16 - [0,007] ----D C:\ProgramData\Adobe
O43 - CFD: 16/02/2014 - 19:35:27 - [47,327] ----D C:\ProgramData\Apple
O43 - CFD: 16/02/2014 - 19:36:16 - [68,792] ----D C:\ProgramData\Apple Computer
O43 - CFD: 22/08/2013 - 16:45:52 - [0] -SH-D C:\ProgramData\Application Data
O43 - CFD: 11/04/2014 - 00:38:33 - [20,311] ----D C:\ProgramData\AVAST Software
O43 - CFD: 19/01/2014 - 12:03:20 - [0] -SH-D C:\ProgramData\Bureau
O43 - CFD: 22/08/2013 - 16:45:52 - [0] -SH-D C:\ProgramData\Desktop
O43 - CFD: 20/03/2014 - 21:46:41 - [0,066] ----D C:\ProgramData\DivX
O43 - CFD: 22/08/2013 - 16:45:52 - [0] -SH-D C:\ProgramData\Documents
O43 - CFD: 21/01/2014 - 17:29:11 - [0,001] ----D C:\ProgramData\DriverGenius
O43 - CFD: 19/03/2014 - 21:33:16 - [0] ----D C:\ProgramData\eMule
O43 - CFD: 20/01/2014 - 15:19:42 - [8,342] ----D C:\ProgramData\EPSON
O43 - CFD: 27/02/2014 - 15:44:07 - [0] ----D C:\ProgramData\Firefly Studios
O43 - CFD: 31/01/2014 - 18:59:47 - [0] ----D C:\ProgramData\Flash Video Capture Data
O43 - CFD: 21/01/2014 - 16:50:09 - [0,007] ----D C:\ProgramData\FLEXnet
O43 - CFD: 10/04/2014 - 10:55:24 - [0] ----D C:\ProgramData\Freemake
O43 - CFD: 27/02/2014 - 17:20:00 - [0,052] ----D C:\ProgramData\InstallShield
O43 - CFD: 11/04/2014 - 17:00:56 - [56,009] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 19/01/2014 - 12:03:20 - [0] -SH-D C:\ProgramData\Menu Démarrer
O43 - CFD: 29/01/2014 - 14:21:05 - [769,853] -S--D C:\ProgramData\Microsoft
O43 - CFD: 10/04/2014 - 09:53:36 - [0,059] ----D C:\ProgramData\Microsoft Help
O43 - CFD: 19/01/2014 - 12:03:20 - [0] -SH-D C:\ProgramData\Modèles
O43 - CFD: 12/04/2014 - 22:46:24 - [2,277] ----D C:\ProgramData\NVIDIA
O43 - CFD: 19/02/2014 - 13:26:42 - [4,358] ----D C:\ProgramData\NVIDIA Corporation
O43 - CFD: 23/01/2014 - 10:33:36 - [0] ----D C:\ProgramData\Oracle
O43 - CFD: 18/02/2014 - 11:58:41 - [0,025] ----D C:\ProgramData\Pinnacle
O43 - CFD: 18/02/2014 - 12:08:03 - [714,038] ----D C:\ProgramData\Pinnacle VideoSpin
O43 - CFD: 21/01/2014 - 19:39:53 - [0,039] ----D C:\ProgramData\PRICache
O43 - CFD: 29/01/2014 - 13:33:47 - [2,791] ----D C:\ProgramData\RapidSolution
O43 - CFD: 27/03/2014 - 12:00:32 - [0,002] ----D C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 14/11/2013 - 09:16:58 - [0,001] ----D C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 21/01/2014 - 19:32:37 - [0,009] ----D C:\ProgramData\SonicFocus
O43 - CFD: 22/08/2013 - 16:45:52 - [0] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 23/01/2014 - 10:33:30 - [0] ----D C:\ProgramData\Sun
O43 - CFD: 10/04/2014 - 15:17:33 - [0] ---AD C:\ProgramData\TEMP
O43 - CFD: 22/08/2013 - 16:45:52 - [0] -SH-D C:\ProgramData\Templates
O43 - CFD: 20/01/2014 - 15:19:41 - [0,004] ----D C:\ProgramData\UDL
O43 - CFD: 07/04/2014 - 15:06:11 - [8,518] ----D C:\Users\garpat\AppData\Roaming\Adobe
O43 - CFD: 29/01/2014 - 01:14:30 - [0,002] ----D C:\Users\garpat\AppData\Roaming\Apowersoft
O43 - CFD: 20/03/2014 - 10:28:44 - [2,392] ----D C:\Users\garpat\AppData\Roaming\Apple Computer
O43 - CFD: 16/02/2014 - 19:18:43 - [0,065] ----D C:\Users\garpat\AppData\Roaming\atunes
O43 - CFD: 27/03/2014 - 15:09:49 - [0] ----D C:\Users\garpat\AppData\Roaming\chc
O43 - CFD: 27/03/2014 - 15:09:49 - [0,025] ----D C:\Users\garpat\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
O43 - CFD: 19/03/2014 - 18:58:01 - [0,001] ----D C:\Users\garpat\AppData\Roaming\DivX
O43 - CFD: 20/01/2014 - 16:42:27 - [0,725] ----D C:\Users\garpat\AppData\Roaming\EPSON
O43 - CFD: 27/02/2014 - 16:02:38 - [0] ----D C:\Users\garpat\AppData\Roaming\Firefly Studios
O43 - CFD: 31/01/2014 - 18:59:47 - [0,001] ----D C:\Users\garpat\AppData\Roaming\Flash Video Capture Data
O43 - CFD: 21/01/2014 - 21:02:10 - [0] ----D C:\Users\garpat\AppData\Roaming\Identities
O43 - CFD: 20/01/2014 - 15:15:07 - [0] ----D C:\Users\garpat\AppData\Roaming\InstallShield
O43 - CFD: 19/01/2014 - 13:12:30 - [0,058] ----D C:\Users\garpat\AppData\Roaming\Macromedia
O43 - CFD: 29/01/2014 - 14:02:01 - [0] ----D C:\Users\garpat\AppData\Roaming\main
O43 - CFD: 20/03/2014 - 15:20:29 - [3,113] -S--D C:\Users\garpat\AppData\Roaming\Microsoft
O43 - CFD: 20/03/2014 - 21:44:55 - [0] ----D C:\Users\garpat\AppData\Roaming\NCH Software
O43 - CFD: 20/02/2014 - 21:04:17 - [0] ----D C:\Users\garpat\AppData\Roaming\NVIDIA
O43 - CFD: 22/01/2014 - 17:53:03 - [2,892] ----D C:\Users\garpat\AppData\Roaming\PC Speed Maximizer Pro =>Rogue.PCSpeedMaximizer
O43 - CFD: 27/03/2014 - 14:37:36 - [0] ----D C:\Users\garpat\AppData\Roaming\PDAppFlex
O43 - CFD: 27/03/2014 - 13:43:13 - [1,685] ----D C:\Users\garpat\AppData\Roaming\sweet-page =>PUP.SweetPage
O43 - CFD: 10/04/2014 - 17:01:36 - [0] ----D C:\Users\garpat\AppData\Roaming\vlc
O43 - CFD: 20/02/2014 - 21:04:11 - [0] ----D C:\Users\garpat\AppData\Roaming\Xilisoft
O43 - CFD: 13/04/2014 - 11:13:46 - [0,593] ----D C:\Users\garpat\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 20/01/2014 - 15:22:17 - [1,601] ----D C:\Users\garpat\AppData\Local\ABBYY
O43 - CFD: 13/04/2014 - 10:45:05 - [0,301] ----D C:\Users\garpat\AppData\Local\Adobe
O43 - CFD: 16/02/2014 - 19:35:30 - [0] ----D C:\Users\garpat\AppData\Local\Apple
O43 - CFD: 16/02/2014 - 19:37:19 - [15,318] ----D C:\Users\garpat\AppData\Local\Apple Computer
O43 - CFD: 21/01/2014 - 19:37:15 - [0] -SH-D C:\Users\garpat\AppData\Local\Application Data
O43 - CFD: 02/02/2014 - 00:55:26 - [0] ----D C:\Users\garpat\AppData\Local\cache
O43 - CFD: 29/01/2014 - 14:22:38 - [2,555] ----D C:\Users\garpat\AppData\Local\Canal.MyCanal
O43 - CFD: 12/04/2014 - 22:33:00 - [0,493] ----D C:\Users\garpat\AppData\Local\Diagnostics
O43 - CFD: 18/02/2014 - 11:58:32 - [140,033] ----D C:\Users\garpat\AppData\Local\Downloaded Installations
O43 - CFD: 10/04/2014 - 16:50:05 - [0] -SH-D C:\Users\garpat\AppData\Local\EmieSiteList
O43 - CFD: 10/04/2014 - 16:50:05 - [0] -SH-D C:\Users\garpat\AppData\Local\EmieUserList
O43 - CFD: 19/03/2014 - 21:32:59 - [0,058] ----D C:\Users\garpat\AppData\Local\eMule
O43 - CFD: 21/03/2014 - 12:33:48 - [0,001] ----D C:\Users\garpat\AppData\Local\FreemakeVideoConverter
O43 - CFD: 27/02/2014 - 16:02:44 - [1,454] ----D C:\Users\garpat\AppData\Local\Geckofx
O43 - CFD: 29/01/2014 - 09:14:37 - [565,617] ----D C:\Users\garpat\AppData\Local\Google
O43 - CFD: 21/01/2014 - 19:37:15 - [0] -SH-D C:\Users\garpat\AppData\Local\Historique
O43 - CFD: 03/04/2014 - 11:17:50 - [3,202] ----D C:\Users\garpat\AppData\Local\Magic Hills
O43 - CFD: 12/04/2014 - 22:32:57 - [1558,233] ----D C:\Users\garpat\AppData\Local\Microsoft
O43 - CFD: 30/01/2014 - 20:39:33 - [0,194] ----D C:\Users\garpat\AppData\Local\Microsoft Help
O43 - CFD: 02/03/2014 - 18:24:55 - [1,337] ----D C:\Users\garpat\AppData\Local\MPlayer
O43 - CFD: 19/02/2014 - 13:27:10 - [82,272] ----D C:\Users\garpat\AppData\Local\NVIDIA
O43 - CFD: 19/02/2014 - 13:26:41 - [0,008] ----D C:\Users\garpat\AppData\Local\NVIDIA Corporation
O43 - CFD: 29/01/2014 - 13:39:51 - [449,103] ----D C:\Users\garpat\AppData\Local\Packages
O43 - CFD: 29/01/2014 - 13:39:52 - [0] ----D C:\Users\garpat\AppData\Local\PackageStaging
O43 - CFD: 29/01/2014 - 01:14:15 - [0] ----D C:\Users\garpat\AppData\Local\Programs
O43 - CFD: 29/01/2014 - 13:32:13 - [16,467] ----D C:\Users\garpat\AppData\Local\RapidSolution
O43 - CFD: 02/02/2014 - 00:48:50 - [0] ----D C:\Users\garpat\AppData\Local\Software
O43 - CFD: 13/04/2014 - 11:13:02 - [20,517] ----D C:\Users\garpat\AppData\Local\Temp
O43 - CFD: 21/01/2014 - 19:37:15 - [0] -SH-D C:\Users\garpat\AppData\Local\Temporary Internet Files
O43 - CFD: 16/02/2014 - 19:02:49 - [2,464] ----D C:\Users\garpat\AppData\Local\VirtualStore
O43 - CFD: 12/04/2014 - 22:18:05 - [0,001] ----D C:\Users\garpat\AppData\Local\WebInternetSecurity =>Spyware.Binternet
O43 - CFD: 22/08/2013 - 17:36:32 - [0,004] R---D C:\Users\garpat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 22/08/2013 - 17:36:32 - [0,001] R---D C:\Users\garpat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 10/04/2014 - 13:49:17 - [0] R---D C:\Users\garpat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 21/01/2014 - 19:41:28 - [0,001] ----D C:\Users\garpat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EPSON Software
O43 - CFD: 22/08/2013 - 17:36:32 - [0] ----D C:\Users\garpat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 10/04/2014 - 13:49:17 - [0] R---D C:\Users\garpat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 21/01/2014 - 19:38:26 - [0,006] R---D C:\Users\garpat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
~ Program Folder: 167 Scanned in 00mn 24s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.FD5465B876D55534117963FAAA4B9DFC] - 03/04/2014 - 08:50:58 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25816]
O44 - LFC:[MD5.4A1356200B82B852E137B687F03E8054] - 03/04/2014 - 08:51:04 ---A- . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\Drivers\mbamchameleon.sys [88280]
O44 - LFC:[MD5.3FFFB7F54CD7A792099C10402FCF8F56] - 03/04/2014 - 08:51:22 ---A- . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\Drivers\mwac.sys [63192]
O44 - LFC:[MD5.C56EF94A5E1C20BF4B8AA6698642886F] - 09/04/2014 - 23:58:35 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2724864]
O44 - LFC:[MD5.7871E35AC5640F4296B5C497CCAAA2AF] - 10/04/2014 - 09:04:40 ---A- . (.Microsoft Corporation - IOD Version Map.) -- C:\Windows\System32\iesetup.dll [66048]
O44 - LFC:[MD5.6BD4079F6EC3B875674C9E988AA24CDF] - 10/04/2014 - 09:04:40 ---A- . (.Microsoft Corporation - Traitement de RunOnce complet avec interfac.) -- C:\Windows\System32\iernonce.dll [33792]
O44 - LFC:[MD5.E1593B9C098F079DCED37016DC9DF685] - 10/04/2014 - 09:04:41 ---A- . (.Microsoft Corporation - IE ETW Collector Proxy Stub Resources.) -- C:\Windows\System32\ieetwproxystub.dll [48640]
O44 - LFC:[MD5.F48C144251B36850B67AB8E6D9E20E92] - 10/04/2014 - 09:04:41 ---A- . (.Microsoft Corporation - IE ETW Collector Service.) -- C:\Windows\System32\ieetwcollector.exe [111616]
O44 - LFC:[MD5.4F51BFB5DF7249D1CFC37010895E609C] - 10/04/2014 - 09:04:41 ---A- . (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) -- C:\Windows\System32\ieUnatt.exe [139264]
O44 - LFC:[MD5.C2CB1454F0D6BFDF584395A41C223BDF] - 10/04/2014 - 09:04:41 ---A- . (.Microsoft Corporation - Ressources du service Collecteur ETW d’IE.) -- C:\Windows\System32\ieetwcollectorres.dll [4096]
O44 - LFC:[MD5.B2F436D19A6513345E9F556CE962B84D] - 10/04/2014 - 09:17:26 ---A- . (.Microsoft Corporation - DLL de gestion d'utilisateur local et de co.) -- C:\Windows\System32\msrating.dll [195584]
O44 - LFC:[MD5.C06067A3BDC3AC8300F9D67BB3DC8CB3] - 10/04/2014 - 09:20:46 ---A- . (.Microsoft Corporation - System Settings Handlers Implementation.) -- C:\Windows\System32\SettingsHandlers.dll [2678784]
O44 - LFC:[MD5.2689A9E9EF189534DC2FF5F870E26067] - 10/04/2014 - 09:20:55 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [23549952]
O44 - LFC:[MD5.12B0701B1CEC1A7BB0E4C71D97661E23] - 10/04/2014 - 09:25:53 ---A- . (...) -- C:\Windows\System32\ApnDatabase.xml [387210]
O44 - LFC:[MD5.120F5E7B95CAC233D96E638A2B70EE69] - 10/04/2014 - 09:25:53 ---A- . (.Microsoft Corporation - Chiffrement de lecteur BitLocker : Outil de.) -- C:\Windows\System32\BdeHdCfg.exe [130560]
O44 - LFC:[MD5.7043428E344AF62EC540BDF49317D321] - 10/04/2014 - 09:25:53 ---A- . (.Microsoft Corporation - Outils de préparation de lecteur Windows Bi.) -- C:\Windows\System32\BdeHdCfgLib.dll [99328]
O44 - LFC:[MD5.8DAE6957A4F0EC461575F68239E0A13E] - 10/04/2014 - 09:25:53 ---A- . (.Microsoft Corporation - Policy Storage dll.) -- C:\Windows\System32\l2gpstore.dll [69120]
O44 - LFC:[MD5.71133C77DD8089DA3F74813F90361F81] - 10/04/2014 - 09:25:54 ---A- . (.Microsoft Corporation - Bibliothèque proxy de protection système Mi.) -- C:\Windows\System32\sxproxy.dll [83968]
O44 - LFC:[MD5.C1D7A9932D7F468534F1913FB1F65572] - 10/04/2014 - 09:25:54 ---A- . (.Microsoft Corporation - Définir l’utilitaire d’emplacement réseau.) -- C:\Windows\System32\SetNetworkLocation.dll [40448]
O44 - LFC:[MD5.3E28B99198B514DFEB152EACF913025E] - 10/04/2014 - 09:25:54 ---A- . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\Drivers\mrxsmb10.sys [283648]
O44 - LFC:[MD5.FD9C9E9E3F0ED51502C7E8C066BE26B9] - 10/04/2014 - 09:25:54 ---A- . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\Drivers\IPMIDrv.sys [79360]
O44 - LFC:[MD5.04D6FAB6BE09C83DF591D58E1FBADA59] - 10/04/2014 - 09:25:54 ---A- . (.Microsoft Corporation - WSMAN WMI Provider.) -- C:\Windows\System32\WsmWmiPl.dll [274944]
O44 - LFC:[MD5.938DC1C1D13682C01886F365E6682CA7] - 10/04/2014 - 09:25:54 ---A- . (.Microsoft Corporation - Windows Wireless LAN 802.11 Client Side Hel.) -- C:\Windows\System32\wlanhlp.dll [11264]
O44 - LFC:[MD5.FD786AFD9B85D65E5FD6B86944BB1D9A] - 10/04/2014 - 09:25:54 ---A- . (.Microsoft Corporation - Windows Wireless LAN 802.11 MSM Security Mo.) -- C:\Windows\System32\wlansec.dll [443904]
O44 - LFC:[MD5.EEA0EB275D329DAA7EAA397417477C8F] - 10/04/2014 - 09:25:55 ---A- . (.Microsoft Corporation - Assistant Chiffrement de lecteur BitLocker.) -- C:\Windows\System32\fvewiz.dll [794112]
O44 - LFC:[MD5.1DCD97010190EF9377E77AB0A846C720] - 10/04/2014 - 09:25:55 ---A- . (.Microsoft Corporation - Microsoft Windows Device Property Manager.) -- C:\Windows\System32\DevPropMgr.dll [115200]
O44 - LFC:[MD5.6DEA7E51085C4CEC311DBD5A1AF8C759] - 10/04/2014 - 09:25:56 ---A- . (.Microsoft Corporation - Application d’assistance Netsh de la platef.) -- C:\Windows\System32\nshwfp.dll [717312]
O44 - LFC:[MD5.7563B7860E857D463C407085EC1BE731] - 10/04/2014 - 09:25:56 ---A- . (.Microsoft Corporation - BitLocker Device Encryption Tool.) -- C:\Windows\System32\BitLockerDeviceEncryption.exe [100352]
O44 - LFC:[MD5.9A1ECF6480039B6E2062B739BBD0C4F7] - 10/04/2014 - 09:25:56 ---A- . (.Microsoft Corporation - Client de contrainte de quarantaine de la p.) -- C:\Windows\System32\tsgqec.dll [64512]
O44 - LFC:[MD5.5F58A221937B5D58E33F4B21AEF92210] - 10/04/2014 - 09:25:56 ---A- . (.Microsoft Corporation - DLL de scanneurs périphériques Windows Runt.) -- C:\Windows\System32\Windows.Devices.Scanners.dll [192000]
O44 - LFC:[MD5.CC6F6A993FE36A55AF8207B9393407D6] - 10/04/2014 - 09:25:56 ---A- . (.Microsoft Corporation - Microsoft Windows Location API.) -- C:\Windows\System32\LocationApi.dll [325632]
O44 - LFC:[MD5.0D092AAF47629E6FD77597FCA58625EE] - 10/04/2014 - 09:25:56 ---A- . (.Microsoft Corporation - Remote Desktop Services Client for Microsof.) -- C:\Windows\System32\rdvidcrl.dll [1057280]
O44 - LFC:[MD5.1D55DADC22D21883A2F80297F5A5AE48] - 10/04/2014 - 09:25:56 ---A- . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\Drivers\mrxdav.sys [140288]
O44 - LFC:[MD5.ABB7341766902F5AAB45E15F34D19E15] - 10/04/2014 - 09:25:57 ---A- . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\Windows\System32\Drivers\hidclass.sys [111616]
O44 - LFC:[MD5.9F0759C6D691E7030BF33105EDA2C690] - 10/04/2014 - 09:25:57 ---A- . (.Microsoft Corporation - Credential Migration Handler.) -- C:\Windows\System32\CredentialMigrationHandler.dll [30208]
O44 - LFC:[MD5.C76D1DA491995D7108A817714A702133] - 10/04/2014 - 09:25:57 ---A- . (.Microsoft Corporation - DLL du pilote de numérisation WSD.) -- C:\Windows\System32\WSDScDrv.dll [244224]
O44 - LFC:[MD5.DF621C527179BB0A60CDA371AEFD098E] - 10/04/2014 - 09:25:57 ---A- . (.Microsoft Corporation - Driver Installation Module.) -- C:\Windows\System32\drvcfg.exe [57856]
O44 - LFC:[MD5.9F83D40B242C7CD2868DBF7550F3FF4C] - 10/04/2014 - 09:25:57 ---A- . (.Microsoft Corporation - Radio Manager API.) -- C:\Windows\System32\RMapi.dll [86016]
O44 - LFC:[MD5.41CF802064F72E55F50CA0A221FD36D4] - 10/04/2014 - 09:25:57 ---A- . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\Drivers\tcpipreg.sys [49152]
O44 - LFC:[MD5.FF94F2D1E80D09FEE3B90A263759163A] - 10/04/2014 - 09:25:57 ---A- . (.Microsoft Corporation - Windows BitLocker Drive Encryption Base API.) -- C:\Windows\System32\fveapibase.dll [210944]
O44 - LFC:[MD5.81AF2BB862A3C6DDB9F2E3A7956B0417] - 10/04/2014 - 09:25:58 ---A- . (.Microsoft Corporation - Bibliothèque d’API de cluster.) -- C:\Windows\System32\clusapi.dll [425984]
O44 - LFC:[MD5.3B57B197D907425CB92B979132945B7C] - 10/04/2014 - 09:25:58 ---A- . (.Microsoft Corporation - DLL du schéma d’audit de sécurité.) -- C:\Windows\System32\adtschema.dll [731648]
O44 - LFC:[MD5.0633C74EFAAEF72FCC33B86CB86B2ED5] - 10/04/2014 - 09:25:58 ---A- . (.Microsoft Corporation - Outil de diagnostic du service de temps Win.) -- C:\Windows\System32\w32tm.exe [79360]
O44 - LFC:[MD5.8DB8EAB9D0C6A5DF0BDCADEA239220B4] - 10/04/2014 - 09:25:58 ---A- . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidusb.sys [33280]
O44 - LFC:[MD5.B29B13914A2692EA6A6E9E1D6FFB9760] - 10/04/2014 - 09:25:59 ---A- . (.Microsoft Corporation - Moniteur de port d’imprimante WSD.) -- C:\Windows\System32\WSDMon.dll [298496]
O44 - LFC:[MD5.BFBE1C5F57FE7A885673A1962D5532B7] - 10/04/2014 - 09:25:59 ---A- . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\Windows\System32\Drivers\wfplwfs.sys [136024]
O44 - LFC:[MD5.06304D50B5228BF1EB6E829A72A629DB] - 10/04/2014 - 09:26:03 ---A- . (.Microsoft Corporation - Bibliothèque de points de protection partag.) -- C:\Windows\System32\spp.dll [271872]
O44 - LFC:[MD5.A03F362C5557E238CBFA914689C77248] - 10/04/2014 - 09:26:03 ---A- . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\Drivers\dfsc.sys [134144]
O44 - LFC:[MD5.C48CDFD48A43E4AEC8170E1E50A3FACD] - 10/04/2014 - 09:26:03 ---A- . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\Drivers\FWPKCLNT.SYS [428888]
O44 - LFC:[MD5.279DC249C295E8B7CD5FFB966007E1D9] - 10/04/2014 - 09:26:03 ---A- . (.Microsoft Corporation - Module d’installation de pilotes.) -- C:\Windows\System32\drvinst.exe [110592]
O44 - LFC:[MD5.94CD5DE7D2989AA64594F1925339C97E] - 10/04/2014 - 09:26:03 ---A- . (.Microsoft Corporation - Prise en charge d’impression Microsoft Wind.) -- C:\Windows\System32\Windows.Graphics.Printing.dll [542208]
O44 - LFC:[MD5.5ABA673EF6433BE68AAE77AE5C5FAFAA] - 10/04/2014 - 09:26:04 ---A- . (.Microsoft Corporation - API en mode utilisateur FWP/IPsec.) -- C:\Windows\System32\FWPUCLNT.DLL [412672]
O44 - LFC:[MD5.A9B68F20F1E6E62B189C7C4815EB42B9] - 10/04/2014 - 09:26:04 ---A- . (.Microsoft Corporation - DLL de l’API côté client de configuration a.) -- C:\Windows\System32\wlanapi.dll [296960]
O44 - LFC:[MD5.A40262C252A65BAD0186D9DDBB3083DA] - 10/04/2014 - 09:26:04 ---A- . (.Microsoft Corporation - Éditeur de descripteur de sécurité.) -- C:\Windows\System32\aclui.dll [1015808]
O44 - LFC:[MD5.14BEA911F78B44E47CBD18210E541A43] - 10/04/2014 - 09:26:05 ---A- . (.Microsoft Corporation - Canonical Display Driver.) -- C:\Windows\System32\cdd.dll [212992]
O44 - LFC:[MD5.18297BC1CE8A0C0BF9A703A3C45DACC1] - 10/04/2014 - 09:26:05 ---A- . (.Microsoft Corporation - Composant logiciel enfichable Gestion de st.) -- C:\Windows\System32\wlangpui.dll [462336]
O44 - LFC:[MD5.F88CC88F4A6D8476F1664E805CA18CC2] - 10/04/2014 - 09:26:05 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecpkg.sys [180056]
O44 - LFC:[MD5.48F25CC79C6CCFD4B776C8FDA9ED7271] - 10/04/2014 - 09:26:06 ---A- . (.Microsoft Corporation - AppX All User Store DLL.) -- C:\Windows\System32\AppxAllUserStore.dll [160768]
O44 - LFC:[MD5.7A61F17976F7C5077D9862E4EC25BB3E] - 10/04/2014 - 09:26:06 ---A- . (.Microsoft Corporation - Media Foundation ReadWrite DLL.) -- C:\Windows\System32\mfreadwrite.dll [360512]
O44 - LFC:[MD5.3ED1FD93AA4C381A374C3835CF7A5C92] - 10/04/2014 - 09:26:06 ---A- . (.Microsoft Corporation - Microsoft Windows Recovery Info DLL.) -- C:\Windows\System32\ReInfo.dll [201216]
O44 - LFC:[MD5.2DE56913AE88DF760F279264023908BC] - 10/04/2014 - 09:26:06 ---A- . (.Microsoft Corporation - Panneau de configuration d’affichage.) -- C:\Windows\System32\Display.dll [1843712]
O44 - LFC:[MD5.8183820F2D9648A619AA3200EFC62D0B] - 10/04/2014 - 09:26:07 ---A- . (.Microsoft Corporation - DLL d’application d’assistance Windows pour.) -- C:\Windows\System32\pdh.dll [299008]
O44 - LFC:[MD5.2AB2BFD79A560894F6B91F0D79E98A0B] - 10/04/2014 - 09:26:07 ---A- . (.Microsoft Corporation - Extension des modèles d’administration.) -- C:\Windows\System32\AdmTmpl.dll [563200]
O44 - LFC:[MD5.97A8DD53D83D5DAC15EDAB1320D305B4] - 10/04/2014 - 09:26:07 ---A- . (.Microsoft Corporation - Isolation graphique de périphérique audio W.) -- C:\Windows\System32\audiodg.exe [244888]
O44 - LFC:[MD5.CFC52C49BEFE4D70D87FFA900EAB9777] - 10/04/2014 - 09:26:07 ---A- . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\Windows\System32\Drivers\USBHUB3.SYS [467800]
O44 - LFC:[MD5.50874EAD26534D475096765A48B90518] - 10/04/2014 - 09:26:07 ---A- . (.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\System32\MDEServer.exe [334848]
O44 - LFC:[MD5.BC6849C62DB407573C6AD8CB1A4D2628] - 10/04/2014 - 09:26:07 ---A- . (.Microsoft Corporation - Service mode utilisateur de Plug-and-Play.) -- C:\Windows\System32\umpnpmgr.dll [115200]
O44 - LFC:[MD5.16E9AD0F7A34C4F071E40CDD76E7C86D] - 10/04/2014 - 09:26:07 ---A- . (.Microsoft Corporation - Userenv.) -- C:\Windows\System32\userenv.dll [113648]
O44 - LFC:[MD5.19F84D6153C06FE71203517BDAC9EA9F] - 10/04/2014 - 09:26:07 ---A- . (.Microsoft Corporation - Web DAV Client DLL.) -- C:\Windows\System32\davclnt.dll [102912]
O44 - LFC:[MD5.0716EE3C4EECBA2F9118CCA066FC1C9F] - 10/04/2014 - 09:26:07 ---A- . (.Microsoft Corporation - Windows Update Modern WuApp.) -- C:\Windows\System32\WUSettingsProvider.dll [381952]
O44 - LFC:[MD5.4DD9C026AAB3C12A5BF7FF9A0C038422] - 10/04/2014 - 09:26:07 ---A- . (.Microsoft Corporation - Windows Wi-Fi Direct DAF Plugin.) -- C:\Windows\System32\dafWfdProvider.dll [186368]
O44 - LFC:[MD5.F83D49F4B10E813A1F9AC8B92F16592D] - 10/04/2014 - 09:26:08 ---A- . (.Microsoft Corporation - Générateur de points de terminaison du serv.) -- C:\Windows\System32\AudioEndpointBuilder.dll [201216]
O44 - LFC:[MD5.647C7652FA19F98CADF2BFDA2164BFEC] - 10/04/2014 - 09:26:08 ---A- . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\Windows\System32\Drivers\nwifi.sys [443392]
O44 - LFC:[MD5.C8D6344BDE2691A196E61C0D3372EAB7] - 10/04/2014 - 09:26:08 ---A- . (.Microsoft Corporation - Service WSMan.) -- C:\Windows\System32\WsmSvc.dll [2479616]
O44 - LFC:[MD5.E64AD4877B41F1DB4CC3C99BA8372857] - 10/04/2014 - 09:26:10 ---A- . (.Microsoft Corporation - Audio Engine.) -- C:\Windows\System32\AudioEng.dll [463264]
O44 - LFC:[MD5.A4D6061D8B902959534C1E83CC7276A1] - 10/04/2014 - 09:26:10 ---A- . (.Microsoft Corporation - Stratégie de groupe Client de préférences.) -- C:\Windows\System32\gpprefcl.dll [667136]
O44 - LFC:[MD5.C54F6C4594F54BC8F189A6FD4BFB7B2E] - 10/04/2014 - 09:26:11 ---A- . (.Microsoft Corporation - MDMAgent.) -- C:\Windows\System32\MDMAgent.exe [621568]
O44 - LFC:[MD5.AC408FA243471C25CDE435C3B83536A9] - 10/04/2014 - 09:26:11 ---A- . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\Drivers\Classpnp.sys [337752]
O44 - LFC:[MD5.65A3992EC59D8D33D7622E3AF4C50DBF] - 10/04/2014 - 09:26:12 ---A- . (.Microsoft Corporation - API pour les capteurs.) -- C:\Windows\System32\SensorsApi.dll [247296]
O44 - LFC:[MD5.DD5DF99540AB97806DF63B1494C809A8] - 10/04/2014 - 09:26:12 ---A- . (.Microsoft Corporation - Objets de configuration du réseau.) -- C:\Windows\System32\netcfgx.dll [488280]
O44 - LFC:[MD5.B8EB489B9CB8E4E29D3B5FA33F59F7EB] - 10/04/2014 - 09:26:12 ---A- . (.Microsoft Corporation - Telemetry Library for the OneDrive client.) -- C:\Windows\System32\SkyDriveTelemetry.dll [721408]
O44 - LFC:[MD5.F14178562B63C54D3183839F77FB9542] - 10/04/2014 - 09:26:12 ---A- . (.Microsoft Corporation - Windows Wireless LAN 802.11 MSM DLL.) -- C:\Windows\System32\wlanmsm.dll [370176]
O44 - LFC:[MD5.A2BF5D466853422C143571064C7DD94F] - 10/04/2014 - 09:26:13 ---A- . (.Microsoft Corporation - DLL du client de déploiement d’AppX.) -- C:\Windows\System32\AppXDeploymentClient.dll [252928]
O44 - LFC:[MD5.50126883FF1D1F690FE477B0B6593DAA] - 10/04/2014 - 09:26:13 ---A- . (.Microsoft Corporation - OneDrive Sync Engine Host.) -- C:\Windows\System32\SkyDrive.exe [872448]
O44 - LFC:[MD5.466BDC0006103F2547D308DD3CD64398] - 10/04/2014 - 09:26:13 ---A- . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\Drivers\srvnet.sys [245760]
O44 - LFC:[MD5.5BD3A2351BEFCAC8757626271F8EFA89] - 10/04/2014 - 09:26:13 ---A- . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [339456]
O44 - LFC:[MD5.5AEFB4F09549545FA3BBD58A6FFF4962] - 10/04/2014 - 09:26:14 ---A- . (.Microsoft Corporation - AppX Deployment Extensions DLL.) -- C:\Windows\System32\AppXDeploymentExtensions.dll [924160]
O44 - LFC:[MD5.179A41249055D5F039F1B6703F3B6D2B] - 10/04/2014 - 09:26:14 ---A- . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\Drivers\clfs.sys [376152]
O44 - LFC:[MD5.A1C6BA515120C44E8D5A1EA3E927C7C2] - 10/04/2014 - 09:26:14 ---A- . (.Microsoft Corporation - DLL Windows Runtime Sensors.) -- C:\Windows\System32\Windows.Devices.Sensors.dll [291840]
O44 - LFC:[MD5.4627C1FBF2802425A408A2D2AF28CF85] - 10/04/2014 - 09:26:14 ---A- . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\Drivers\cng.sys [565536]
O44 - LFC:[MD5.BBE15881FE11BE37112F8320C41DAFB9] - 10/04/2014 - 09:26:14 ---A- . (.Microsoft Corporation - Moteur de filtrage de base.) -- C:\Windows\System32\BFE.DLL [827392]
O44 - LFC:[MD5.B2A890D96C05E33FDD2BF3F3D4D0DF92] - 10/04/2014 - 09:26:14 ---A- . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [220160]
O44 - LFC:[MD5.D5C3776CBD8BC307DCCA3FD4CE667A37] - 10/04/2014 - 09:26:14 ---A- . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [324096]
O44 - LFC:[MD5.D790CBCB9C38320B4438D697AA33FF55] - 10/04/2014 - 09:26:14 ---A- . (.Microsoft Corporation - Windows BitLocker Drive Encryption API.) -- C:\Windows\System32\fveapi.dll [720896]
O44 - LFC:[MD5.5BCABCE516486337E39DDD005BCBB1CA] - 10/04/2014 - 09:26:15 ---A- . (.Microsoft Corporation - Microsoft GDI+.) -- C:\Windows\System32\GdiPlus.dll [1656832]
O44 - LFC:[MD5.FE7656474448BE6A6C68E5C9BEB7CA94] - 10/04/2014 - 09:26:15 ---A- . (.Microsoft Corporation - Service de résolution du cache DNS.) -- C:\Windows\System32\dnsrslvr.dll [254464]
O44 - LFC:[MD5.7FC5667DF73D4B04AA457CC3A4180E09] - 10/04/2014 - 09:26:15 ---A- . (.Microsoft Corporation - Windows Overlay Filter.) -- C:\Windows\System32\Drivers\wof.sys [157016]
O44 - LFC:[MD5.7C75BF2879AEAD311DAE25CB5F1A2C83] - 10/04/2014 - 09:26:16 ---A- . (.Microsoft Corporation - API d’Accès réseau à distance.) -- C:\Windows\System32\rasapi32.dll [669696]
O44 - LFC:[MD5.FAF28A6151A26D94555E0EE518762479] - 10/04/2014 - 09:26:16 ---A- . (.Microsoft Corporation - Audio Ks Endpoint.) -- C:\Windows\System32\AUDIOKSE.dll [364640]
O44 - LFC:[MD5.2468C21E34C49E4735B4BA430D448E91] - 10/04/2014 - 09:26:16 ---A- . (.Microsoft Corporation - DLL des services Net Logon.) -- C:\Windows\System32\netlogon.dll [834560]
O44 - LFC:[MD5.4030CB06B8D963A45CED9E60C9F2A11E] - 10/04/2014 - 09:26:16 ---A- . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\Drivers\dxgmms1.sys [379224]
O44 - LFC:[MD5.D75A0A7AE924871148E5FE6B84FC0BFE] - 10/04/2014 - 09:26:16 ---A- . (.Microsoft Corporation - Expérience utilisateur du client Windows Up.) -- C:\Windows\System32\wucltux.dll [1705984]
O44 - LFC:[MD5.C997E6A37BA8915224B3FB5024A34F69] - 10/04/2014 - 09:26:16 ---A- . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\Drivers\mrxsmb.sys [402944]
O44 - LFC:[MD5.88225B3D5685777AFAA1297FD612DF9A] - 10/04/2014 - 09:26:17 ---A- . (.Microsoft Corporation - DirectX Graphics Infrastructure.) -- C:\Windows\System32\dxgi.dll [518552]
O44 - LFC:[MD5.C253B8484DCABB3EBE6D60E67CADB373] - 10/04/2014 - 09:26:17 ---A- . (.Microsoft Corporation - Microsoft DirectComposition Library.) -- C:\Windows\System32\dcomp.dll [356848]
O44 - LFC:[MD5.6031CF57D972421469B15770AF8FF942] - 10/04/2014 - 09:26:17 ---A- . (.Microsoft Corporation - Session audio.) -- C:\Windows\System32\AudioSes.dll [467504]
O44 - LFC:[MD5.42F4D353A2AC24F7112FB4D6BD2D4F7C] - 10/04/2014 - 09:26:18 ---A- . (.Microsoft Corporation - GDI Client DLL.) -- C:\Windows\System32\gdi32.dll [1339240]
O44 - LFC:[MD5.6DD2D6B8CA1250A7C12D0042396D1892] - 10/04/2014 - 09:26:18 ---A- . (.Microsoft Corporation - Media Foundation Simple Video Renderer DLL.) -- C:\Windows\System32\mfsvr.dll [492256]
O44 - LFC:[MD5.E62EAEF0BAC9DD61BF22D4A7F2F18571] - 10/04/2014 - 09:26:18 ---A- . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\Windows\System32\Drivers\srv2.sys [679424]
O44 - LFC:[MD5.06E5962471CFC5890F6B7AB2BF527250] - 10/04/2014 - 09:26:19 ---A- . (.Microsoft Corporation - DLL de l’agent de récupération Microsoft Wi.) -- C:\Windows\System32\ReAgent.dll [950784]
O44 - LFC:[MD5.C58594E368B935CD001FC3F503D23A6B] - 10/04/2014 - 09:26:19 ---A- . (.Microsoft Corporation - DLL de spouleur local.) -- C:\Windows\System32\localspl.dll [1023488]
O44 - LFC:[MD5.B7E51F949ED8C3A75C1D3121AF9A4B6C] - 10/04/2014 - 09:26:19 ---A- . (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [655360]
O44 - LFC:[MD5.2C727D11CDF4F8B2477FC2B1B305ECB9] - 10/04/2014 - 09:26:19 ---A- . (.Microsoft Corporation - Microsoft® Account Provider.) -- C:\Windows\System32\wlidprov.dll [512000]
O44 - LFC:[MD5.E797B1571003E524526F384CE5EE3555] - 10/04/2014 - 09:26:19 ---A- . (.Microsoft Corporation - Système de propriétés Microsoft.) -- C:\Windows\System32\propsys.dll [1466864]
O44 - LFC:[MD5.F3523E611AB0B0977B048263A12DCF2A] - 10/04/2014 - 09:26:20 ---A- . (.Microsoft Corporation - DLL du client API BASE Windows NT.) -- C:\Windows\System32\kernel32.dll [1291200]
O44 - LFC:[MD5.05ED31A8FD97247D5B786F62988F2535] - 10/04/2014 - 09:26:20 ---A- . (.Microsoft Corporation - Media Foundation Media Engine DLL.) -- C:\Windows\System32\MFMediaEngine.dll [958464]
O44 - LFC:[MD5.1B7F53CBD0429CC3EE15A545F5E2BF62] - 10/04/2014 - 09:26:20 ---A- . (.Microsoft Corporation - Microsoft Windows MRM.) -- C:\Windows\System32\MrmCoreR.dll [918528]
O44 - LFC:[MD5.7CDB6060224CFAD4D5AC49FFC5414F41] - 10/04/2014 - 09:26:20 ---A- . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll [939520]
O44 - LFC:[MD5.9A71BD2E4B8EB550D0022AFDF8616014] - 10/04/2014 - 09:26:20 ---A- . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [834048]
O44 - LFC:[MD5.8279E6B065626951DA5F3BD0B4E28001] - 10/04/2014 - 09:26:20 ---A- . (.Microsoft Corporation - Windows Media Runtime DLL.) -- C:\Windows\System32\Windows.Media.dll [1230336]
O44 - LFC:[MD5.B0630FEE31D7A9B73E49A2F31CF61C1C] - 10/04/2014 - 09:26:21 ---A- . (.Microsoft Corporation - DLL du client API BASE Windows NT.) -- C:\Windows\System32\KernelBase.dll [1112536]
O44 - LFC:[MD5.5A917027826D759CC3238C7D3CEC3438] - 10/04/2014 - 09:26:21 ---A- . (.Microsoft Corporation - DLL du service de configuration automatique.) -- C:\Windows\System32\wlansvc.dll [1527296]
O44 - LFC:[MD5.4F6908A61CBC7FD263BB424671431623] - 10/04/2014 - 09:26:21 ---A- . (.Microsoft Corporation - SearchFolder.) -- C:\Windows\System32\SearchFolder.dll [1129472]
O44 - LFC:[MD5.540B29C770E4864C8FB5B6278526776E] - 10/04/2014 - 09:26:22 ---A- . (.Microsoft Corporation - DLL serveur LSA.) -- C:\Windows\System32\lsasrv.dll [1411584]
O44 - LFC:[MD5.CFE7F0267B0C3077042FF291949B5546] - 10/04/2014 - 09:26:22 ---A- . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1063424]
O44 - LFC:[MD5.332E5E35DE9E8175A9550501E57E0612] - 10/04/2014 - 09:26:22 ---A- . (.Microsoft Corporation - Microsoft OLE pour Windows.) -- C:\Windows\System32\ole32.dll [1542768]
O44 - LFC:[MD5.1C80517BE6836A812F6A9B99B8321351] - 10/04/2014 - 09:26:22 ---A- . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\Drivers\ntfs.sys [2013016]
O44 - LFC:[MD5.62E1AE59F9F40BB70C4D7EDCC0CE34F1] - 10/04/2014 - 09:26:22 ---A- . (.Microsoft Corporation - TWINUI.APPCORE.) -- C:\Windows\System32\twinui.appcore.dll [1054208]
O44 - LFC:[MD5.5886CF4473849179FC8D2831CD629340] - 10/04/2014 - 09:26:23 ---A- . (.Microsoft Corporation - Bibliothèque principale du Gestionnaire de.) -- C:\Windows\System32\dwmcore.dll [2133504]
O44 - LFC:[MD5.F7529BD3FFAC9C33D15F6DE3B7353B03] - 10/04/2014 - 09:26:23 ---A- . (.Microsoft Corporation - DLL du serveur de déploiement d’AppX.) -- C:\Windows\System32\AppXDeploymentServer.dll [1306624]
O44 - LFC:[MD5.8E5C2B32EE4166A3084B133183A00F2A] - 10/04/2014 - 09:26:23 ---A- . (.Microsoft Corporation - Direct3D 11 Runtime.) -- C:\Windows\System32\d3d11.dll [2141912]
O44 - LFC:[MD5.C7D252742946DD395670649742FBD73D] - 10/04/2014 - 09:26:24 ---A- . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys [1557848]
O44 - LFC:[MD5.81394C91B7B5A7C799E249AE82491F13] - 10/04/2014 - 09:26:24 ---A- . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe [2373784]
O44 - LFC:[MD5.6EF180C3695A4C1745F4A32E1D9EE8A9] - 10/04/2014 - 09:26:24 ---A- . (.Microsoft Corporation - Interface utilisateur d’authentification Wi.) -- C:\Windows\System32\authui.dll [2641920]
O44 - LFC:[MD5.1B2CAD40A6FD2E9DC336F3A338293B29] - 10/04/2014 - 09:26:25 ---A- . (.Microsoft Corporation - MSXML 6.0.) -- C:\Windows\System32\msxml6.dll [2331000]
O44 - LFC:[MD5.398990EFC34218C3B6C4E6384502083B] - 10/04/2014 - 09:26:26 ---A- . (.Microsoft Corporation - Contrôle d’édition de texte enrichi, v7.5.) -- C:\Windows\System32\msftedit.dll [2900992]
O44 - LFC:[MD5.C5746CE22A4338896338A48687CB9345] - 10/04/2014 - 09:26:26 ---A- . (.Microsoft Corporation - Microsoft OneDrive Sync Engine.) -- C:\Windows\System32\SyncEngine.dll [4268544]
O44 - LFC:[MD5.FEEFE783D87C9063CDAC6DBDCF95F533] - 10/04/2014 - 09:26:26 ---A- . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\Drivers\tcpip.sys [2519384]
O44 - LFC:[MD5.2B12310DF8299D5ED5978FFBE3DA80B1] - 10/04/2014 - 09:26:29 ---A- . (.Microsoft Corporation - Client ActiveX des services Bureau à distan.) -- C:\Windows\System32\mstscax.dll [6641152]
O44 - LFC:[MD5.EE95B732BB098C5E874D53AD1E00EF51] - 10/04/2014 - 09:26:32 ---A- . (.Microsoft Corporation - TWINUI.) -- C:\Windows\System32\twinui.dll [13286400]
O44 - LFC:[MD5.6374C4EE20389CBB6AEF2BE468856177] - 10/04/2014 - 09:26:33 ---A- . (.Microsoft Corporation - NT Kernel & System.) -- C:\Windows\System32\ntoskrnl.exe [7425368]
O44 - LFC:[MD5.80F4C728FC12B324156486806AB3357E] - 10/04/2014 - 09:26:33 ---A- . (.Microsoft Corporation - Windows.UI.Search.) -- C:\Windows\System32\Windows.UI.Search.dll [8653824]
O44 - LFC:[MD5.8596E6030C8DE66439DDF21C7F7B5006] - 10/04/2014 - 09:26:34 ---A- . (.Microsoft Corporation - Windows Search URI Handler.) -- C:\Windows\System32\Windows.Shell.Search.UriHandler.dll [40960]
O44 - LFC:[MD5.411550CE9952B9B30C5A82CDDAD623C0] - 10/04/2014 - 09:26:37 ---A- . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [21232792]
O44 - LFC:[MD5.E5DA9DD3E5972CE969EA445492954280] - 10/04/2014 - 09:26:39 ---A- . (.Microsoft Corporation - Windows.UI.Xaml dll.) -- C:\Windows\System32\Windows.UI.Xaml.dll [16875520]
O44 - LFC:[MD5.385AF1C48CE3E86B37B9E66749FFEC1B] - 10/04/2014 - 10:43:54 ---A- . (...) -- C:\Windows\System32\srms.dat [50053]
O44 - LFC:[MD5.E7B53AF004BEE5112F787A6E5B04D737] - 10/04/2014 - 10:44:03 ---A- . (...) -- C:\Windows\System32\connectedsearch-results.searchconnector-ms [11109]
O44 - LFC:[MD5.5C615EB69963F31CB9034702169ABCCB] - 10/04/2014 - 10:44:04 ---A- . (.Microsoft Corporation - Commande TCP/IP Finger.) -- C:\Windows\System32\finger.exe [15360]
O44 - LFC:[MD5.EA3E41DCEA0F503073CBCE9C3A166DD1] - 10/04/2014 - 10:44:05 ---A- . (.Microsoft Corporation - Object Control Viewer.) -- C:\Windows\System32\occache.dll [147968]
O44 - LFC:[MD5.3917A6F3DAAB7D70B5C01E55C6880DD2] - 10/04/2014 - 10:44:05 ---A- . (.Microsoft Corporation - Windows BitLocker Drive Encryption OneDrive.) -- C:\Windows\System32\fveskybackup.dll [54784]
O44 - LFC:[MD5.FA89BD2A29A00016E248D14EBAA421C3] - 10/04/2014 - 10:44:06 ---A- . (.Microsoft Corporation - Microsoft Windows Media Component Removal F.) -- C:\Windows\System32\msdxm.ocx [6144]
O44 - LFC:[MD5.144E6549AAA4966F36160588907A45FB] - 10/04/2014 - 10:44:06 ---A- . (.Microsoft Corporation - Windows Services Instrumentation Module.) -- C:\Windows\System32\winbici.dll [115712]
O44 - LFC:[MD5.831554BF01444B50E489315ABADC12D2] - 10/04/2014 - 10:44:07 ---A- . (.Microsoft Corporation - Application Experience Program Inventory Co.) -- C:\Windows\System32\aeinv.dll [527360]
O44 - LFC:[MD5.FA89BD2A29A00016E248D14EBAA421C3] - 10/04/2014 - 10:44:07 ---A- . (.Microsoft Corporation - Microsoft Windows Media Component Removal F.) -- C:\Windows\System32\dxmasf.dll [6144]
O44 - LFC:[MD5.797DE44BF9DF0231E9D39E3FA7B5898E] - 10/04/2014 - 10:44:07 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\ext-ms-win-ntuser-private-l1-1-0.dll [3584]
O44 - LFC:[MD5.7E757E3635CD441B2A8D8CB4B507CB40] - 10/04/2014 - 10:44:08 ---A- . (.Microsoft Corporation - COM proxy server for lpksetup.exe.) -- C:\Windows\System32\lpksetupproxyserv.dll [8704]
O44 - LFC:[MD5.7CEA4BDCFD24CEFFD2689162876F12E8] - 10/04/2014 - 10:44:08 ---A- . (.Microsoft Corporation - Shim Engine DLL.) -- C:\Windows\System32\shimeng.dll [7168]
O44 - LFC:[MD5.22E1B49330D76F27FD0A13AD16A16A56] - 10/04/2014 - 10:44:08 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\ext-ms-win-ntuser-private-l1-1-1.dll [8192]
O44 - LFC:[MD5.61695710BD16FCCFFD22B425692EF83A] - 10/04/2014 - 10:44:09 ---A- . (.Microsoft Corporation - File History Service Control Library.) -- C:\Windows\System32\fhsvcctl.dll [20992]
O44 - LFC:[MD5.9F6F3B62C502F35153E3837E219DC841] - 10/04/2014 - 10:44:12 ---A- . (.Microsoft Corporation - Shell setup helper.) -- C:\Windows\System32\shsetup.dll [113152]
O44 - LFC:[MD5.19A6B3C62F673903C75B46279C20E10B] - 10/04/2014 - 10:44:13 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\ext-ms-win-kernel32-package-l1-1-1.dll [3584]
O44 - LFC:[MD5.9D6F2CDA0D23E1494C55E7ABB0FB35BC] - 10/04/2014 - 10:44:15 ---A- . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\System32\dataclen.dll [39936]
O44 - LFC:[MD5.E267BC3EEF80CC447680593038D10B0B] - 10/04/2014 - 10:44:16 ---A- . (.Microsoft Corporation - Agent AIT (Application Impact Telemetry).) -- C:\Windows\System32\aitagent.exe [156160]
O44 - LFC:[MD5.499CFCE4CCA7CC4D3FA07251C86A8641] - 10/04/2014 - 10:44:17 --HA- . (.Microsoft Corporation - ApiSet Stub DLL.) -- C:\Windows\System32\ext-ms-win-session-winsta-l1-1-0.dll [5632]
O44 - LFC:[MD5.F1DB86EA935C13CDFF27AB957297136A] - 10/04/2014 - 10:44:18 ---A- . (...) -- C:\Windows\System32\connectedsearch-suggestions.searchconnector-ms [7762]
O44 - LFC:[MD5.735AB5AF130DD05B7CAD21EB8898B10A] - 10/04/2014 - 10:44:18 ---A- . (.Microsoft Corporation - Gestionnaire de menu contextuel de stockage.) -- C:\Windows\System32\StorageContextHandler.dll [71680]
O44 - LFC:[MD5.1FDF29F970E2E843B4DC5D0626D0EDD5] - 10/04/2014 - 10:44:19 ---A- . (...) -- C:\Windows\System32\connectedsearch-zeroinput.searchconnector-ms [7130]
O44 - LFC:[MD5.BEDB85FBE0B6577A2A46866DE398D9A3] - 10/04/2014 - 10:44:19 ---A- . (.Microsoft Corporation - HôteClassementGlobal.) -- C:\Windows\System32\GlobCollationHost.dll [323584]
O44 - LFC:[MD5.570C0052EAF82BA7C4D95EA04201F7D2] - 10/04/2014 - 10:44:19 ---A- . (.Microsoft Corporation - Windows Optional Component Setup API.) -- C:\Windows\System32\ocsetapi.dll [162816]
O44 - LFC:[MD5.DE461B86C05946D10E519F512D09E389] - 10/04/2014 - 10:44:20 ---A- . (...) -- C:\Windows\System32\RacRules.xml [100197]
O44 - LFC:[MD5.1F90F231C1E2B6D19B3A7C10BBF2B42F] - 10/04/2014 - 10:44:21 ---A- . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [220160]
O44 - LFC:[MD5.663FFD3EACC593EA1AC809114BE5CBDC] - 10/04/2014 - 10:44:22 ---A- . (.Microsoft Corporation - Panneau de configuration de Dossiers de tra.) -- C:\Windows\System32\WorkfoldersControl.dll [761856]
O44 - LFC:[MD5.C6D2D89195A236DA1FB6717628EB4DC8] - 10/04/2014 - 10:44:24 ---A- . (.Microsoft Corporation - Microsoft® HTML Editing Component.) -- C:\Windows\System32\mshtmled.dll [84992]
O44 - LFC:[MD5.AACECE80A24B309935DF4023F25C129E] - 10/04/2014 - 10:44:24 ---A- . (.Microsoft Corporation - SettingSync Policy.) -- C:\Windows\System32\SettingSyncPolicy.dll [30208]
O44 - LFC:[MD5.2BE71A590E07E855B1ACEA857ECA1FB8] - 10/04/2014 - 10:44:25 ---A- . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [173568]
O44 - LFC:[MD5.2C96BD8FF43C76E306AEAB8F5AA5271C] - 10/04/2014 - 10:44:27 ---A- . (.Microsoft Corporation - Bulk File Operations Host Process.) -- C:\Windows\System32\BulkOperationHost.exe [76288]
O44 - LFC:[MD5.98A755F17458A425CCE6389346BA6540] - 10/04/2014 - 10:44:41 ---A- . (.Microsoft Corporation - Microsoft Windows ® WinRT core library.) -- C:\Windows\System32\wincorlib.dll [355328]
O44 - LFC:[MD5.18A7DA255768719CD475F86A6C9350CA] - 10/04/2014 - 10:44:46 ---A- . (.Microsoft Corporation - DLL d’exécution de l’infrastructure de test.) -- C:\Windows\System32\Windows.ApplicationModel.Store.TestingFramework.dll [249344]
O44 - LFC:[MD5.AE279702A8549E0EB2008501AEE4A9F2] - 10/04/2014 - 10:44:47 ---A- . (.Microsoft Corporation - Nettoyage de la mise à jour.) -- C:\Windows\System32\scavengeui.dll [112640]
O44 - LFC:[MD5.58B1CE1AF4B629F92639D0E502508AAC] - 10/04/2014 - 10:44:49 ---A- . (.Microsoft Corporation - ConfigureExpandedStorage.) -- C:\Windows\System32\ConfigureExpandedStorage.dll [59392]
O44 - LFC:[MD5.DBB297B0850F160AA635F37D1210F216] - 10/04/2014 - 10:44:57 ---A- . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\DevicePairing.dll [504832]
O44 - LFC:[MD5.817005B17E25BD6E2369635D5A33DA51] - 10/04/2014 - 10:44:58 ---A- . (.Microsoft Corporation - Association Endpoint(AEP) Roaming Monitor a.) -- C:\Windows\System32\AepRoam.dll [55296]
O44 - LFC:[MD5.BA47711E618A43B6464F354483E91E40] - 10/04/2014 - 10:44:58 ---A- . (.Microsoft Corporation - Panneau de configuration Personnalisation.) -- C:\Windows\System32\themecpl.dll [2566656]
O44 - LFC:[MD5.F7041B2A7CA6CF4AE84DBFDA5A528865] - 10/04/2014 - 10:44:59 ---A- . (.Microsoft Corp. - Module de défragmenteur de disque.) -- C:\Windows\System32\Defrag.exe [183808]
O44 - LFC:[MD5.CEA27892349131C8705F88D24B65A8E6] - 10/04/2014 - 10:44:59 ---A- . (.Microsoft Corporation - LockScreenContent Host.) -- C:\Windows\System32\LockScreenContentHost.dll [27136]
O44 - LFC:[MD5.77D31321788337630FFA15D40FBB2FAA] - 10/04/2014 - 10:45:00 ---A- . (.Microsoft Corporation - Fournisseur de volume dynamique du service.) -- C:\Windows\System32\vdsdyn.dll [589312]
O44 - LFC:[MD5.7D2E7D61830872279617C8030FE71FC1] - 10/04/2014 - 10:45:00 ---A- . (.Microsoft Corporation - Windows SKU Library.) -- C:\Windows\System32\winsku.dll [316416]
O44 - LFC:[MD5.562A3AB5CC3CA265D0C213B2B2D3B2E4] - 10/04/2014 - 10:45:01 ---A- . (.Microsoft Corporation - Windows Script Host Runtime Library.) -- C:\Windows\System32\wshom.ocx [145408]
O44 - LFC:[MD5.959534ACF085C137D2D094384EF89C45] - 10/04/2014 - 10:45:02 ---A- . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [81408]
O44 - LFC:[MD5.32890534D93EAAB2DD048E30A99F2F70] - 10/04/2014 - 10:45:03 ---A- . (.Microsoft Corporation - Tâches de fond de la protection du système.) -- C:\Windows\System32\SrTasks.exe [57344]
O44 - LFC:[MD5.09CBB2EE26F9273FB3163DC939FB1C65] - 10/04/2014 - 10:45:06 ---A- . (.Microsoft Corporation - JP Japanese Keyboard Layout for Fujitsu FMV.) -- C:\Windows\System32\f3ahvoas.dll [41472]
O44 - LFC:[MD5.A221A2982E9FF3360FA6F0292C080519] - 10/04/2014 - 10:45:08 ---A- . (.Microsoft Corporation - 32-bit to 16-bit Metafile Conversion DLL.) -- C:\Windows\System32\mf3216.dll [56320]
O44 - LFC:[MD5.CD05BEF06D01444E3AE4145FA18D5538] - 10/04/2014 - 10:45:08 ---A- . (.Microsoft Corporation - System settings common handler group.) -- C:\Windows\System32\SystemSettings.Handlers.dll [468480]
O44 - LFC:[MD5.B117A586AF354814BA3BF653A8DBBEBB] - 10/04/2014 - 10:45:09 ---A- . (.Microsoft Corporation - Microsoft Search Hooks.) -- C:\Windows\System32\msshooks.dll [13824]
O44 - LFC:[MD5.962D2CB61A17AE290D2ABDDEA39D2BD7] - 10/04/2014 - 10:45:11 ---A- . (.Microsoft Corporation - Optimiseur de lecteur Microsoft®.) -- C:\Windows\System32\dfrgui.exe [575488]
O44 - LFC:[MD5.29CAE508CE19CFE9EBCBCDDA43DD1F94] - 10/04/2014 - 10:45:12 ---A- . (.Microsoft Corporation - Windows Update client proxy stub.) -- C:\Windows\System32\wups.dll [54272]
O44 - LFC:[MD5.5DB4DFF11E4B8EE396237FD717498643] - 10/04/2014 - 10:45:14 ---A- . (.Microsoft Corporation - DLL d’exécution du Windows Store.) -- C:\Windows\System32\Windows.ApplicationModel.Store.dll [299008]
O44 - LFC:[MD5.6523161D8468E0C685EC04DD32BAC18B] - 10/04/2014 - 10:45:14 ---A- . (.Microsoft Corporation - Générateur/exécuteur de la file d’attente d.) -- C:\Windows\System32\ActionQueue.dll [224256]
O44 - LFC:[MD5.28EE7EA21F969D7AA096DFD751E5F2CD] - 10/04/2014 - 10:45:14 ---A- . (.Microsoft Corporation - Offline registry DLL.) -- C:\Windows\System32\offreg.dll [60416]
O44 - LFC:[MD5.B3FDE405C043BE9AA9193D1430FE7418] - 10/04/2014 - 10:45:15 ---A- . (.Microsoft Corporation - Agent de récupération Microsoft Windows.) -- C:\Windows\System32\ReAgentc.exe [25088]
O44 - LFC:[MD5.F29E3F32935AE2146B21CBFDD916CFF5] - 10/04/2014 - 10:45:15 ---A- . (.Microsoft Corporation - Windows Update Application Launcher.) -- C:\Windows\System32\wuapp.exe [35840]
O44 - LFC:[MD5.93B934AE4F812AECBA5254DBB07B29DA] - 10/04/2014 - 10:45:17 ---A- . (.Microsoft Corporation - Bibliothèque de configuration de la protect.) -- C:\Windows\System32\srrstr.dll [248832]
O44 - LFC:[MD5.8CFA00C8103F9132990CEF8B655EA666] - 10/04/2014 - 10:45:19 ---A- . (.Microsoft Corporation - DLL PLAYTODEVICE.) -- C:\Windows\System32\PlayToDevice.dll [269312]
O44 - LFC:[MD5.76B7BB05C1BCC11C69162FB7C2CE8901] - 10/04/2014 - 10:45:20 ---A- . (.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\System32\dasHost.exe [92160]
O44 - LFC:[MD5.0512FCA695595018A289C032A409EA64] - 10/04/2014 - 10:45:25 ---A- . (.Microsoft Corporation - Setting Synchronization Change Monitor.) -- C:\Windows\System32\SettingMonitor.dll [155136]
O44 - LFC:[MD5.CBC4C3820ACED29A1A772EC6CCF6CD17] - 10/04/2014 - 10:45:26 ---A- . (.Microsoft Corporation - Bibliothèque de tâches de maintenance Plug-.) -- C:\Windows\System32\pnpclean.dll [116736]
O44 - LFC:[MD5.C5784EFEEADA38050706FF368B6DD21F] - 10/04/2014 - 10:45:26 ---A- . (.Microsoft Corporation - Device Association Client DLL.) -- C:\Windows\System32\deviceassociation.dll [38400]
O44 - LFC:[MD5.999C18D37BD4FDEE9A074583F7818FFB] - 10/04/2014 - 10:45:26 ---A- . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\System32\rstrui.exe [271872]
O44 - LFC:[MD5.5B374F8F32C61364AF287165B5B60589] - 10/04/2014 - 10:45:27 ---A- . (.Microsoft Corporation - Diagnostics et récupération Windows.) -- C:\Windows\System32\RelPost.exe [156672]
O44 - LFC:[MD5.2146E40FDBA2FE1E466BE59D3FE2601C] - 10/04/2014 - 10:45:31 ---A- . (.Microsoft Corporation - Outil de ligne de commande des paramètres d.) -- C:\Windows\System32\powercfg.exe [79872]
O44 - LFC:[MD5.07BBF5F2DF029275C4A2CB16B381133D] - 10/04/2014 - 10:45:32 ---A- . (.Microsoft Corporation - Device Inventory Library.) -- C:\Windows\System32\devinv.dll [385024]
O44 - LFC:[MD5.B867E81F7A7FD95AC894584B9EB10480] - 10/04/2014 - 10:45:32 ---A- . (.Microsoft Corporation - Fichier DLL de l’interface utilisateur des.) -- C:\Windows\System32\werui.dll [173056]
O44 - LFC:[MD5.119E0F7A71775A5CFB208B036ECE35E1] - 10/04/2014 - 10:45:33 ---A- . (...) -- C:\Windows\System32\WimBootCompress.ini [2255]
O44 - LFC:[MD5.0205D31F27DFB30E7192FFAF6EE4C8A7] - 10/04/2014 - 10:45:34 ---A- . (.Microsoft Corporation - DiskPart.) -- C:\Windows\System32\diskpart.exe [146944]
O44 - LFC:[MD5.4DAFE3D3D45F9D487BD6C57B7C76FC88] - 10/04/2014 - 10:45:34 ---A- . (.Microsoft Corporation - Tâche de diagnostic de consommation électri.) -- C:\Windows\System32\energytask.dll [18432]
O44 - LFC:[MD5.F217D2868BF46B4DFE1A7A410CB236BB] - 10/04/2014 - 10:45:35 ---A- . (.Microsoft Corporation - Microsoft ® Console Based Script Host.) -- C:\Windows\System32\cscript.exe [148992]
O44 - LFC:[MD5.EC3CD12410AF8B5DC881BF323423C3F6] - 10/04/2014 - 10:45:35 ---A- . (.Microsoft Corporation - Processus d’ajout de fonctionnalités à Wind.) -- C:\Windows\System32\WindowsAnytimeUpgrade.exe [188416]
O44 - LFC:[MD5.9CC0003FB8ED3763B977B43F1012FF63] - 10/04/2014 - 10:45:35 ---A- . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\Drivers\watchdog.sys [54272]
O44 - LFC:[MD5.DEEAC72E46070C4F8D3905174A23E3BF] - 10/04/2014 - 10:45:36 ---A- . (.Microsoft Corporation - Bibliothèque d’utilitaires du service de di.) -- C:\Windows\System32\vdsutil.dll [130048]
O44 - LFC:[MD5.7D4688ECFA4F61023A23B50F17AB5689] - 10/04/2014 - 10:45:36 ---A- . (.Microsoft Corporation - Compatibility module of SysPrep.) -- C:\Windows\System32\spcompat.dll [94720]
O44 - LFC:[MD5.C33D905BF1738C54560F09ED8AC47023] - 10/04/2014 - 10:45:37 ---A- . (.Microsoft Corporation - Contrôles d’identité.) -- C:\Windows\System32\IdCtrls.dll [95744]
O44 - LFC:[MD5.48385DE15FCE72342DAC5A6AC518AB7E] - 10/04/2014 - 10:45:37 ---A- . (.Microsoft Corporation - Windows User Experience Session Initializat.) -- C:\Windows\System32\UXInit.dll [68096]
O44 - LFC:[MD5.7AA2C803C0D6A07085843D5F6C9E99F2] - 10/04/2014 - 10:45:38 ---A- . (.Microsoft Corporation - Bluetooth Device Association Framework Prov.) -- C:\Windows\System32\dafBth.dll [92672]
O44 - LFC:[MD5.646B7DD5DA46CAB6F48A35BA2786B41A] - 10/04/2014 - 10:45:38 ---A- . (.Microsoft Corporation - File History Event Listener Library.) -- C:\Windows\System32\fhevents.dll [71680]
O44 - LFC:[MD5.E2936E745B84FB5B631E1CB0BCA9B71B] - 10/04/2014 - 10:45:38 ---A- . (.Microsoft Corporation - Résultats de l’ajout de fonctionnalités à W.) -- C:\Windows\System32\WindowsAnytimeUpgradeResults.exe [92160]
O44 - LFC:[MD5.6C9659E72326A34E9CED71E166F1616B] - 10/04/2014 - 10:45:39 ---A- . (.Microsoft Corporation - Flux de connexion DirectAccess.) -- C:\Windows\System32\DAConn.dll [51200]
O44 - LFC:[MD5.A8A7758F4E4043D48A75BD61F0FD5E70] - 10/04/2014 - 10:45:40 ---A- . (.Microsoft Corporation - Migration System Isolation Layer.) -- C:\Windows\System32\migisol.dll [127488]
O44 - LFC:[MD5.42DAF0C2C4461D4611ED271A8694E20A] - 10/04/2014 - 10:45:41 ---A- . (.Microsoft Corporation - BCD Sysprep Plugin.) -- C:\Windows\System32\spbcd.dll [82944]
O44 - LFC:[MD5.E337D5898804BC8EAC8CC7FD31CAAD46] - 10/04/2014 - 10:45:41 ---A- . (.Microsoft Corporation - MUI Callback for Bcd.) -- C:\Windows\System32\setbcdlocale.dll [68096]
O44 - LFC:[MD5.387A1E98BE548E4F199343CBA01E9D6D] - 10/04/2014 - 10:45:42 ---A- . (.Microsoft Corporation - Auto Check Utility.) -- C:\Windows\System32\autochk.exe [890880]
O44 - LFC:[MD5.7A47BC7C0743A5A05CC29E87743FBCDA] - 10/04/2014 - 10:45:42 ---A- . (.Microsoft Corporation - NTFS Utility DLL.) -- C:\Windows\System32\untfs.dll [545280]
O44 - LFC:[MD5.BF4C09EB631C466FDF5E011CAE8B565E] - 10/04/2014 - 10:45:42 ---A- . (.Microsoft Corporation - Windows Update WUDriver Stub.) -- C:\Windows\System32\wudriver.dll [93696]
O44 - LFC:[MD5.80A6E162B5C556E414DE5A02DF11CFD2] - 10/04/2014 - 10:45:43 ---A- . (.Microsoft Corporation - Module PnP de SysPrep.) -- C:\Windows\System32\sppnp.dll [148992]
O44 - LFC:[MD5.9CEC771F2C6882E54C8B4049167B65AB] - 10/04/2014 - 10:45:43 ---A- . (.Microsoft Corporation - Utilitaire Bcdboot.) -- C:\Windows\System32\bcdboot.exe [165376]
O44 - LFC:[MD5.A15E84CB08C697477EAAD8C9344E5DB5] - 10/04/2014 - 10:45:44 ---A- . (.Microsoft Corporation - BootMenuUX.) -- C:\Windows\System32\BootMenuUX.dll [143872]
O44 - LFC:[MD5.62ACCCAD775B64D2BFC3EB3F574CACFA] - 10/04/2014 - 10:45:44 ---A- . (.Microsoft Corporation - EXE de pipeline protégé par Media Foundatio.) -- C:\Windows\System32\mfpmp.exe [28416]
O44 - LFC:[MD5.64DBE5C403B603164AD8FDDFD7CFF8B6] - 10/04/2014 - 10:45:44 ---A- . (.Microsoft Corporation - Réinitialisation du système Windows.) -- C:\Windows\System32\SysResetErr.exe [27480]
O44 - LFC:[MD5.3BC1D1D56637A32CD91C8AE08E2484AA] - 10/04/2014 - 10:45:44 ---A- . (.Microsoft Corporation - Service de biométrie Windows.) -- C:\Windows\System32\wbiosrvc.dll [453632]
O44 - LFC:[MD5.9AB9CD13EA34BDD31EE03DCADD3FCEBA] - 10/04/2014 - 10:45:45 ---A- . (.Microsoft Corporation - Auto File System Conversion Utility.) -- C:\Windows\System32\autoconv.exe [902144]
O44 - LFC:[MD5.424C9777CB8507A6358BC142B7917143] - 10/04/2014 - 10:45:45 ---A- . (.Microsoft Corporation - Auto File System Format Utility.) -- C:\Windows\System32\autofmt.exe [874496]
O44 - LFC:[MD5.09E9F7679FD338DC6DDDF96F4C613E74] - 10/04/2014 - 10:45:45 ---A- . (.Microsoft Corporation - DLL de renouvellement Windows Media.) -- C:\Windows\System32\Windows.Media.Renewal.dll [69632]
O44 - LFC:[MD5.1DEFAA7CE8C496D63EDE8AB7FD8DCB6E] - 10/04/2014 - 10:45:45 ---A- . (.Microsoft Corporation - Panneau de configuration Définition des opt.) -- C:\Windows\System32\sud.dll [610304]
O44 - LFC:[MD5.76C3A3F212D8ABE96B0B4BDA2A67F66F] - 10/04/2014 - 10:45:45 ---A- . (.Microsoft Corporation - Windows.Networking.Sockets.PushEnabledAppli.) -- C:\Windows\System32\Windows.Networking.Sockets.PushEnabledApplication.dll [74752]
O44 - LFC:[MD5.7FB2433AD4F18556CAB45092AF621FA2] - 10/04/2014 - 10:45:46 ---A- . (.Microsoft Corporation - Fournisseur de connexion de plateforme de n.) -- C:\Windows\System32\wpnprv.dll [198656]
O44 - LFC:[MD5.49A5228F730EEA60A01BB34D1A427239] - 10/04/2014 - 10:45:46 ---A- . (.Microsoft Corporation - Interface de ligne de commande pour la sauv.) -- C:\Windows\System32\wbadmin.exe [283136]
O44 - LFC:[MD5.B2D6AED224EA320BB9BE44DD190B95F3] - 10/04/2014 - 10:45:46 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\PrintDialogs.dll [557056]
O44 - LFC:[MD5.22C4A7BCD36100D1655A1CD72327A40D] - 10/04/2014 - 10:45:46 ---A- . (.Microsoft Corporation - Éditeur de données de configuration de déma.) -- C:\Windows\System32\bcdedit.exe [349696]
O44 - LFC:[MD5.081EFB3179E58A757115D129E9DB4631] - 10/04/2014 - 10:45:48 ---A- . (.Microsoft Corporation - Centre de maintenance.) -- C:\Windows\System32\wscui.cpl [1152512]
O44 - LFC:[MD5.A540959E7BF78079C1F1D197BF7E22AE] - 10/04/2014 - 10:45:48 ---A- . (.Microsoft Corporation - Sleep Study Troubleshooter.) -- C:\Windows\System32\slpts.dll [15872]
O44 - LFC:[MD5.3DBC108B5D6D2E1CAA774139955D7CFF] - 10/04/2014 - 10:45:48 ---A- . (.Microsoft Corporation - Windows Update Vista Web Control.) -- C:\Windows\System32\wuwebv.dll [137728]
O44 - LFC:[MD5.12E734CC38BF7B48E0D68139C0484D8D] - 10/04/2014 - 10:45:49 ---A- . (.Microsoft Corporation - LockScreenContent Server.) -- C:\Windows\System32\LockScreenContentServer.exe [38680]
O44 - LFC:[MD5.61E9834E1CA04DB74F0053BD8AE67BFC] - 10/04/2014 - 10:45:49 ---A- . (.Microsoft Corporation - Windows Branding Resources.) -- C:\Windows\System32\winbrand.dll [36352]
O44 - LFC:[MD5.23065815C35146F455985878E0FEA1A8] - 10/04/2014 - 10:45:50 ---A- . (.Microsoft Corporation - API WinRT d’authentification Web.) -- C:\Windows\System32\AuthBroker.dll [124416]
O44 - LFC:[MD5.FCF83E61ECD7D9CE7CCD7F28F9D8342D] - 10/04/2014 - 10:45:51 ---A- . (.Microsoft Corporation - JavaScript Performance Collection Agent.) -- C:\Windows\System32\JavaScriptCollectionAgent.dll [38400]
O44 - LFC:[MD5.4957B27219515B93A508B91068B87BF5] - 10/04/2014 - 10:45:51 ---A- . (.Microsoft Corporation - Service de cliché instantané de volumes Mic.) -- C:\Windows\System32\VSSVC.exe [1436160]
O44 - LFC:[MD5.883B5FE0605EF11BCF90B0117AEBBA07] - 10/04/2014 - 10:45:51 ---A- . (.Microsoft Corporation - Windows Connection Service Provider DLL.) -- C:\Windows\System32\wcmcsp.dll [102912]
O44 - LFC:[MD5.7FFA7836A7268ED8470A02F08B4A84E3] - 10/04/2014 - 10:45:51 ---A- . (.Microsoft Corporation - Windows ® Script Component Runtime.) -- C:\Windows\System32\scrobj.dll [214016]
O44 - LFC:[MD5.D7CE0CB807892C06EB03FC5B28E04D53] - 10/04/2014 - 10:45:52 ---A- . (.Microsoft Corporation - Assistant Connexion à des lecteurs ou des e.) -- C:\Windows\System32\netplwiz.dll [167424]
O44 - LFC:[MD5.434CB271E2A815CCBD437C7AD1BB53C8] - 10/04/2014 - 10:45:52 ---A- . (.Microsoft Corporation - Bibliothèque d’extension de l’onglet Compat.) -- C:\Windows\System32\acppage.dll [53248]
O44 - LFC:[MD5.89421C10560D60B563D62E3D647601EF] - 10/04/2014 - 10:45:52 ---A- . (.Microsoft Corporation - CloudStorageWizard.) -- C:\Windows\System32\CloudStorageWizard.exe [128512]
O44 - LFC:[MD5.80429413A20D67E08207AD73DFE8EEF4] - 10/04/2014 - 10:45:53 ---A- . (.Microsoft Corporation - Bibliothèque principale de Restauration du.) -- C:\Windows\System32\srcore.dll [467456]
O44 - LFC:[MD5.9DDCA7F18983C5410DEFF79F819DF93C] - 10/04/2014 - 10:45:54 ---A- . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\Drivers\http.sys [994136]
O44 - LFC:[MD5.3EF272C510EF337772BF994875FDD4E3] - 10/04/2014 - 10:45:56 ---A- . (.Microsoft Corporation - Korean Word Breaker.) -- C:\Windows\System32\korwbrkr.dll [182272]
O44 - LFC:[MD5.87C750D1E9CC44D0EC47C6B799F41CEB] - 10/04/2014 - 10:45:56 ---A- . (.Microsoft Corporation - Rapport d’erreurs Windows.) -- C:\Windows\System32\WerFaultSecure.exe [36200]
O44 - LFC:[MD5.6FD7B481607E6D8361D10FBAC11FB6DA] - 10/04/2014 - 10:45:57 ---A- . (.Microsoft Corporation - DLL d’application d’assistance Netio.) -- C:\Windows\System32\netiohlp.dll [203264]
O44 - LFC:[MD5.F299BD172B73C6D0E50E6CB6ADC9020C] - 10/04/2014 - 10:45:57 ---A- . (.Microsoft Corporation - Device Broker And Policy COM Server.) -- C:\Windows\System32\deviceaccess.dll [184320]
O44 - LFC:[MD5.8C726499602B715ACABFBD96FDFF8362] - 10/04/2014 - 10:45:58 ---A- . (.Microsoft Corporation - Exchange ActiveSync Windows Runtime DLL.) -- C:\Windows\System32\easwrt.dll [177664]
O44 - LFC:[MD5.5C7B86EE33505E36026AFAAB62DA6364] - 10/04/2014 - 10:45:58 ---A- . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [534528]
O44 - LFC:[MD5.3046F6548AFAEEC4671A987685919D33] - 10/04/2014 - 10:45:58 ---A- . (.Microsoft Corporation - Microsoft AuthHost.) -- C:\Windows\System32\AuthHost.exe [162176]
O44 - LFC:[MD5.B034A41891A36457B994307DFA772293] - 10/04/2014 - 10:45:58 ---A- . (.Microsoft Corporation - USB Controller Extension.) -- C:\Windows\System32\Drivers\UCX01000.SYS [189784]
O44 - LFC:[MD5.1A4DA1D6287B99033D144B436C23B656] - 10/04/2014 - 10:46:00 ---A- . (.Microsoft Corporation - Groupement résidentiel Windows.) -- C:\Windows\System32\provsvc.dll [405504]
O44 - LFC:[MD5.1E7A0C5514BCE7306FAF1EC2F282C1CA] - 10/04/2014 - 10:46:00 ---A- . (.Microsoft Corporation - RPC HTTP DLL.) -- C:\Windows\System32\rpchttp.dll [191488]
O44 - LFC:[MD5.797116064597B594C8ABEEB18963C9A3] - 10/04/2014 - 10:46:00 ---A- . (.Microsoft Corporation - Windows Update.) -- C:\Windows\System32\wuauclt.exe [54776]
O44 - LFC:[MD5.C1F564F324685C088ECAB1933576CF91] - 10/04/2014 - 10:46:01 ---A- . (.Microsoft Corporation - Family Safety Filter Driver.) -- C:\Windows\System32\Drivers\wpcfltr.sys [54816]
O44 - LFC:[MD5.DC679AA88F833B86B226F0BA05F229C3] - 10/04/2014 - 10:46:01 ---A- . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\System32\cleanmgr.exe [216576]
O44 - LFC:[MD5.B8C9BC3542EDA9DB99B95543555877BC] - 10/04/2014 - 10:46:01 ---A- . (.Microsoft Corporation - SAM Library DLL.) -- C:\Windows\System32\samlib.dll [110592]
O44 - LFC:[MD5.61A1C2641321A6B89A2B41C5D481EF48] - 10/04/2014 - 10:46:03 ---A- . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\Drivers\dumpfve.sys [71888]
O44 - LFC:[MD5.6B0FDFE751F24F1EFCA68E574227180E] - 10/04/2014 - 10:46:04 ---A- . (.Microsoft Corporation - Gestionnaire multimédia DirectAccess.) -- C:\Windows\System32\DAMM.dll [112640]
O44 - LFC:[MD5.9DD92A162E24854B3151750954BF678D] - 10/04/2014 - 10:46:04 ---A- . (.Microsoft Corporation - Microsoft® Windows System Restore Client Li.) -- C:\Windows\System32\srclient.dll [70656]
O44 - LFC:[MD5.F85CF4F2AF6CB0CEF87DEF945470C870] - 10/04/2014 - 10:46:04 ---A- . (.Microsoft Corporation - bootux.) -- C:\Windows\System32\bootux.dll [3312128]
O44 - LFC:[MD5.254D664FE36D7F68C870BAF372E360ED] - 10/04/2014 - 10:46:05 ---A- . (.Microsoft Corporation - Exchange ActiveSync Invoker.) -- C:\Windows\System32\easinvoker.exe [131168]
O44 - LFC:[MD5.E2DB5CE06004F63E7CF70359CEEA4025] - 10/04/2014 - 10:46:05 ---A- . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\System32\iedkcs32.dll [250880]
O44 - LFC:[MD5.4A42BFC345A0CED7B6E0F596283BA118] - 10/04/2014 - 10:46:07 ---A- . (.Microsoft Corporation - AppX Sysprep Provider.) -- C:\Windows\System32\AppxSysprep.dll [52736]
O44 - LFC:[MD5.14CF2EAFCFA0BDC736BFDA130BD95EB2] - 10/04/2014 - 10:46:07 ---A- . (.Microsoft Corporation - BCD DLL.) -- C:\Windows\System32\bcd.dll [94560]
O44 - LFC:[MD5.3F309BCE152FDA40C758B09771310C2D] - 10/04/2014 - 10:46:07 ---A- . (.Microsoft Corporation - Gestionnaire multimédia de réseau câblé.) -- C:\Windows\System32\dot3mm.dll [141824]
O44 - LFC:[MD5.5CF3AEA2734E55D9A7E0F9486F050422] - 10/04/2014 - 10:46:09 ---A- . (.Microsoft Corporation - Microsoft® Account Token Provider.) -- C:\Windows\System32\MicrosoftAccountTokenProvider.dll [155648]
O44 - LFC:[MD5.23D1FCFDDD105C4D3146FA025C8CA2F6] - 10/04/2014 - 10:46:10 ---A- . (.Microsoft Corporation - Mobile Broadband Account API.) -- C:\Windows\System32\MbaeApiPublic.dll [336384]
O44 - LFC:[MD5.8D6F535461F6CFF75A8ADDF83024C904] - 10/04/2014 - 10:46:10 ---A- . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [109568]
O44 - LFC:[MD5.CDF5DDB3F917546C3955C4F6AE0D0446] - 10/04/2014 - 10:46:10 ---A- . (.Microsoft Corporation - User Account Control Panel Host.) -- C:\Windows\System32\UserAccountBroker.exe [32544]
O44 - LFC:[MD5.2C4A4FD0E89C56673E31B1802097A288] - 10/04/2014 - 10:46:11 ---A- . (.Microsoft Corporation - Contenu de l’écran de verrouillage Windows.) -- C:\Windows\System32\LockScreenContent.dll [123904]
O44 - LFC:[MD5.1EA5BDB37498D5E317920822648A2B49] - 10/04/2014 - 10:46:11 ---A- . (.Microsoft Corporation - Microsoft-Windows-Noyau-Alimentation-Ressou.) -- C:\Windows\System32\microsoft-windows-kernel-power-events.dll [128512]
O44 - LFC:[MD5.92A481F0E8971A4FDF571A1E4406B3C7] - 10/04/2014 - 10:46:11 ---A- . (.Microsoft Corporation - Pilote de spouleur Windows.) -- C:\Windows\System32\winspool.drv [488960]
O44 - LFC:[MD5.E3EF58D4123B5AA29C8E19825AF84A5E] - 10/04/2014 - 10:46:11 ---A- . (.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\System32\vds.exe [1283584]
O44 - LFC:[MD5.D04D884242F02CC02E9264A4DBF532DB] - 10/04/2014 - 10:46:11 ---A- . (.Microsoft Corporation - Wow64 Console and Win32 API Logging.) -- C:\Windows\System32\wow64win.dll [413184]
O44 - LFC:[MD5.8AA7BFEE4586865C86C145DF3EEBFA5E] - 10/04/2014 - 10:46:12 ---A- . (.Microsoft Corporation - Setup Wizard Framework.) -- C:\Windows\System32\spwizeng.dll [444416]
O44 - LFC:[MD5.6B3F9F4A507F645DE6F504E998EDA2EA] - 10/04/2014 - 10:46:13 ---A- . (.Microsoft Corporation - Disk Management Snap-in Support Library.) -- C:\Windows\System32\dmvdsitf.dll [173056]
O44 - LFC:[MD5.9920143F48EC5B2A823E19B8FAABA8C4] - 10/04/2014 - 10:46:13 ---A- . (.Microsoft Corporation - RestoreOptIn.) -- C:\Windows\System32\RestoreOptIn.exe [101216]
O44 - LFC:[MD5.0B1E929D11A8E358106955603FAC65E8] - 10/04/2014 - 10:46:14 ---A- . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\Windows\System32\Drivers\sdstor.sys [79192]
O44 - LFC:[MD5.F0D97FD22EBEE3994F9F4D83ADFC1273] - 10/04/2014 - 10:46:14 ---A- . (.Microsoft Corporation - Programme d’installation de Windows Update.) -- C:\Windows\System32\wusa.exe [307712]
O44 - LFC:[MD5.F77C9F8A5F926CC77B41C45DB5ACAA26] - 10/04/2014 - 10:46:15 ---A- . (.Microsoft Corporation - Application Experience Program Cache.) -- C:\Windows\System32\aepic.dll [95744]
O44 - LFC:[MD5.E3203EC9AAE6A5675A7C051A49002AD1] - 10/04/2014 - 10:46:15 ---A- . (.Microsoft Corporation - Bibliothèque d’ajout de périphérique matéri.) -- C:\Windows\System32\newdev.dll [331264]
O44 - LFC:[MD5.6BBAE8197E8CC8D0504703D05500B2C1] - 10/04/2014 - 10:46:15 ---A- . (.Microsoft Corporation - Dossiers compressés.) -- C:\Windows\System32\zipfldr.dll [432640]
O44 - LFC:[MD5.833D2DE53608A1C5B9DD71C867718448] - 10/04/2014 - 10:46:16 ---A- . (.Microsoft Corporation - DLL d’assistance du profil d’alimentation.) -- C:\Windows\System32\powrprof.dll [275312]
O44 - LFC:[MD5.38A82F4EE8C416A6744B6D30381ED768] - 10/04/2014 - 10:46:16 ---A- . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys [33280]
O44 - LFC:[MD5.5B6EAF5BBB526E2B042016A1F061AC4D] - 10/04/2014 - 10:46:16 ---A- . (.Microsoft Corporation - Microsoft Search Proxy.) -- C:\Windows\System32\mssprxy.dll [132608]
O44 - LFC:[MD5.8897583230ADFF2A002F00B45D82310A] - 10/04/2014 - 10:46:17 ---A- . (.Microsoft Corporation - DLL Windows.Devices.Bluetooth.) -- C:\Windows\System32\Windows.Devices.Bluetooth.dll [660480]
O44 - LFC:[MD5.E515A287C8FAE901EB8FB42F168E14F2] - 10/04/2014 - 10:46:17 ---A- . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\Windows\System32\Drivers\refs.sys [924504]
O44 - LFC:[MD5.93664065662467289E77F0982FA61D37] - 10/04/2014 - 10:46:18 ---A- . (.Microsoft Corporation - DLL de l’API des services Web pour périphér.) -- C:\Windows\System32\WSDApi.dll [615936]
O44 - LFC:[MD5.BCFD8B149B3ADF92D0DB1E909CAF0265] - 10/04/2014 - 10:46:18 ---A- . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\Drivers\fileinfo.sys [79192]
O44 - LFC:[MD5.03044D5F8F2537FEDA81A29B1A8DD8CC] - 10/04/2014 - 10:46:18 ---A- . (.Microsoft Corporation - Panneau de configuration Mes langues.) -- C:\Windows\System32\UserLanguagesCpl.dll [619520]
O44 - LFC:[MD5.605E304B8A09FA8A71685F9B674A134F] - 10/04/2014 - 10:46:18 ---A- . (.Microsoft Corporation - Sauvegarde Microsoft® Windows.) -- C:\Windows\System32\sdclt.exe [897024]
O44 - LFC:[MD5.EF3AE7773394DF49CE74AF78A1C8D23D] - 10/04/2014 - 10:46:19 ---A- . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\Windows\System32\Drivers\msgpioclx.sys [146776]
O44 - LFC:[MD5.FF48213516573E515185F3E03ED9DAFC] - 10/04/2014 - 10:46:19 ---A- . (.Microsoft Corporation - Microsoft Windows Search Filter Host.) -- C:\Windows\System32\SearchFilterHost.exe [194560]
O44 - LFC:[MD5.6C7D8104433471A5252624DF470C109A] - 10/04/2014 - 10:46:19 ---A- . (.Microsoft Corporation - Notifications du nuage.) -- C:\Windows\System32\CloudNotifications.exe [43408]
O44 - LFC:[MD5.B892C2FE3190255AA3E1082ACF92C0CF] - 10/04/2014 - 10:46:19 ---A- . (.Microsoft Corporation - Panneau de configuration Partage de fichier.) -- C:\Windows\System32\sharemediacpl.dll [397824]
O44 - LFC:[MD5.8F387C2C99EE09C6E2AC316205F86A17] - 10/04/2014 - 10:46:19 ---A- . (.Microsoft Corporation - Service d’association de périphérique.) -- C:\Windows\System32\das.dll [399872]
O44 - LFC:[MD5.1D8303D3ED5F8C403984A8820E5E599A] - 10/04/2014 - 10:46:20 ---A- . (.Microsoft Corporation - Processus hôte pour Tâches Windows.) -- C:\Windows\System32\taskhostex.exe [80048]
O44 - LFC:[MD5.B7B3D612C5D6749814FA0CDE8C8E4202] - 10/04/2014 - 10:46:21 ---A- . (.Microsoft Corporation - Panneau de configuration Date/Heure.) -- C:\Windows\System32\timedate.cpl [510976]
O44 - LFC:[MD5.498146AA5B4E08AE00B13C1BC2636B6F] - 10/04/2014 - 10:46:21 ---A- . (.Microsoft Corporation - Panneau de configuration Système ; onglet I.) -- C:\Windows\System32\netid.dll [135168]
O44 - LFC:[MD5.EE587980B94E521D812D755C21BC7E87] - 10/04/2014 - 10:46:21 ---A- . (.Microsoft Corporation - fsutil.exe.) -- C:\Windows\System32\fsutil.exe [135168]
O44 - LFC:[MD5.FCEBE292E567C313E81CA112DD55B56A] - 10/04/2014 - 10:46:22 ---A- . (.Microsoft Corporation - Fournisseur de base de service de disque vi.) -- C:\Windows\System32\vdsbas.dll [236544]
O44 - LFC:[MD5.31652454F3A5150F401E1DE4D857698B] - 10/04/2014 - 10:46:22 ---A- . (.Microsoft Corporation - Microsoft Windows PlayTo Manager.) -- C:\Windows\System32\PlayToManager.dll [208896]
O44 - LFC:[MD5.7E3B7FB5C09804CEEEBA232940A484B4] - 10/04/2014 - 10:46:22 ---A- . (.Microsoft Corporation - Panneau de configuration de l’historique de.) -- C:\Windows\System32\fhcpl.dll [322048]
O44 - LFC:[MD5.73F7354D8E4EA674FB93D9AD67EDBB02] - 10/04/2014 - 10:46:22 ---A- . (.Microsoft Corporation - RAS Media Manager.) -- C:\Windows\System32\RASMM.dll [463872]
O44 - LFC:[MD5.9CF60747CA286C65255BC7E1546C87EB] - 10/04/2014 - 10:46:22 ---A- . (.Microsoft Corporation - Réinitialisation du système pour Windows.) -- C:\Windows\System32\systemreset.exe [188464]
O44 - LFC:[MD5.C4D32A2A0032C65587993E637F2B78F6] - 10/04/2014 - 10:46:23 ---A- . (.Microsoft Corporation - Combinaison Alt Tab pour Windows Shell.) -- C:\Windows\System32\AltTab.dll [108032]
O44 - LFC:[MD5.73CCAD0503D2AE86E9AAC08E99B7761B] - 10/04/2014 - 10:46:23 ---A- . (.Microsoft Corporation - Flux de connexion WAN sans fil.) -- C:\Windows\System32\wwanconn.dll [432640]
O44 - LFC:[MD5.766B12FB02BD1E5D0BBA9488E091EE6D] - 10/04/2014 - 10:46:23 ---A- . (.Microsoft Corporation - Fournisseur d’informations d’identification.) -- C:\Windows\System32\BioCredProv.dll [316416]
O44 - LFC:[MD5.D8564418BAC13776E43DB5F6B4FA775E] - 10/04/2014 - 10:46:23 ---A- . (.Microsoft Corporation - Gestionnaire de sessions Windows.) -- C:\Windows\System32\smss.exe [142576]
O44 - LFC:[MD5.4983684E2DDB7B617AA8EA94E037360F] - 10/04/2014 - 10:46:23 ---A- . (.Microsoft Corporation - Multi-User Windows IMM32 API Client DLL.) -- C:\Windows\System32\imm32.dll [209160]
O44 - LFC:[MD5.AB6ADF3E3B774A1CF3FA83DB1A4D45DF] - 10/04/2014 - 10:46:23 ---A- . (.Microsoft Corporation - Volume SCA.) -- C:\Windows\System32\SndVolSSO.dll [226304]
O44 - LFC:[MD5.1C3A8E71F3648A2A82F97B0316F9B167] - 10/04/2014 - 10:46:24 ---A- . (.Microsoft Corporation - Consolidateur SQM Windows.) -- C:\Windows\System32\wsqmcons.exe [376320]
O44 - LFC:[MD5.02836172141D3AFA35B07679E253E503] - 10/04/2014 - 10:46:28 ---A- . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\Windows\System32\Drivers\dumpsd.sys [151384]
O44 - LFC:[MD5.9371F0B982A5ECCABE5DB9266C6D447A] - 10/04/2014 - 10:46:30 ---A- . (.Microsoft Corporation - API du Centre de sécurité Windows.) -- C:\Windows\System32\wscapi.dll [170952]
O44 - LFC:[MD5.D3EC1112BE0E06ED94308A7B97C929EF] - 10/04/2014 - 10:46:30 ---A- . (.Microsoft Corporation - Options d’indexation.) -- C:\Windows\System32\srchadmin.dll [350720]
O44 - LFC:[MD5.515583507D3828E827FF6352C9ACCEFA] - 10/04/2014 - 10:46:30 ---A- . (.Microsoft Corporation - Service Centre de sécurité de Windows.) -- C:\Windows\System32\wscsvc.dll [134144]
O44 - LFC:[MD5.88060469AFD9DE814CAAF497922D3910] - 10/04/2014 - 10:46:30 ---A- . (.Microsoft Corporation - Windows Problem Reporting.) -- C:\Windows\System32\wermgr.exe [139464]
O44 - LFC:[MD5.3849F7FD5BDE8EFE8EBB673CA8DD36F0] - 10/04/2014 - 10:46:31 ---A- . (.Microsoft Corporation - Disk Management Snap-in Support Library.) -- C:\Windows\System32\dmdskmgr.dll [273408]
O44 - LFC:[MD5.77BA0D87906CC2D86588D89A75372EC7] - 10/04/2014 - 10:46:32 ---A- . (.Microsoft Corporation - DLL d’affichage Wi-Fi.) -- C:\Windows\System32\WiFiDisplay.dll [104448]
O44 - LFC:[MD5.00DD4D2ACC2E72155A8AAA82018BEC0D] - 10/04/2014 - 10:46:32 ---A- . (.Microsoft Corporation - DLL serveur de Windows multi-utilisateurs.) -- C:\Windows\System32\winsrv.dll [193024]
O44 - LFC:[MD5.81B25C0252AB25C6ABDCE596A8112802] - 10/04/2014 - 10:46:32 ---A- . (.Microsoft Corporation - Pages de l’Assistant RAS.) -- C:\Windows\System32\rasgcw.dll [935424]
O44 - LFC:[MD5.DDEE191AB32DFC22C6465002ECDF5EE4] - 10/04/2014 - 10:46:32 ---A- . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\Windows\System32\Drivers\luafv.sys [124416]
O44 - LFC:[MD5.0ECEE590F2E2EF969FB74A6FC583A1E6] - 10/04/2014 - 10:46:32 ---A- . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\Windows\System32\Drivers\PEAuth.sys [663040]
O44 - LFC:[MD5.2E3340A90140E1F0965DAD96C5B28A41] - 10/04/2014 - 10:46:33 ---A- . (.Microsoft Corporation - Gestionnaire de fenêtres du Bureau.) -- C:\Windows\System32\dwm.exe [109568]
O44 - LFC:[MD5.3711306C8D1A859351D735D93090C1C0] - 10/04/2014 - 10:46:33 ---A- . (.Microsoft Corporation - Processus hôte pour Tâches Windows.) -- C:\Windows\System32\taskhost.exe [83120]
O44 - LFC:[MD5.615BC7FA7AA1F97C4FD14F38B6C8FF56] - 10/04/2014 - 10:46:34 ---A- . (.Microsoft Corporation - Ajouter des fonctionnalités à Windows 8.1.) -- C:\Windows\System32\WindowsAnytimeUpgradeui.exe [722432]
O44 - LFC:[MD5.F9D54CA2C64D660292E87EE66BD49CD5] - 10/04/2014 - 10:46:34 ---A- . (.Microsoft Corporation - Gestionnaire de configuration de l’historiq.) -- C:\Windows\System32\fhcfg.dll [693248]
O44 - LFC:[MD5.48430B0313FC1CFE3D2400553F1A93CD] - 10/04/2014 - 10:46:34 ---A- . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\Windows\System32\Drivers\USBXHCI.SYS [325464]
O44 - LFC:[MD5.FCD3596AC11042A543CF54294A54B579] - 10/04/2014 - 10:46:35 ---A- . (.Microsoft Corporation - Explorateur des jeux.) -- C:\Windows\System32\gameux.dll [2706432]
O44 - LFC:[MD5.79F0B9A95376C8F0CD8CFD67FFBA94D5] - 10/04/2014 - 10:46:36 ---A- . (.Microsoft Corporation - Acheter une licence Windows.) -- C:\Windows\System32\PurchaseWindowsLicense.dll [797696]
O44 - LFC:[MD5.921F7B5C082491E54E98FB108F15C824] - 10/04/2014 - 10:46:36 ---A- . (.Microsoft Corporation - Prelaunch OptIn.) -- C:\Windows\System32\ploptin.dll [32088]
O44 - LFC:[MD5.FE9C4A3BDD3F5EA5B93D88CCA73DBE8B] - 10/04/2014 - 10:46:37 ---A- . (.Microsoft Corporation - Microsoft-Windows-Système-Ressources des év.) -- C:\Windows\System32\microsoft-windows-system-events.dll [245248]
O44 - LFC:[MD5.FDEC5799BA499D18AFA3A540538866E7] - 10/04/2014 - 10:46:37 ---A- . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\Windows\System32\Drivers\sdbus.sys [236888]
O44 - LFC:[MD5.CCF57046826C605CC8782D85225A77AF] - 10/04/2014 - 10:46:37 ---A- . (.Microsoft Corporation - Windows Health Center WSC Interop.) -- C:\Windows\System32\wscinterop.dll [164352]
O44 - LFC:[MD5.DA7855E0898381621FC4114684DA0FFE] - 10/04/2014 - 10:46:38 ---A- . (.Microsoft Corporation - Flux de connexion Dot11.) -- C:\Windows\System32\WLanConn.dll [483840]
O44 - LFC:[MD5.B43A08ADE0AB5546F9129B0D10C1C6D9] - 10/04/2014 - 10:46:38 ---A- . (.Microsoft Corporation - Gestionnaire multimédia WWan.) -- C:\Windows\System32\wwanmm.dll [1144320]
O44 - LFC:[MD5.2ED38EE952E6E02678237FE22C6EE581] - 10/04/2014 - 10:46:38 ---A- . (.Microsoft Corporation - Wimfltr v2 extractor.) -- C:\Windows\System32\wimserv.exe [512000]
O44 - LFC:[MD5.1470D84723018488F2A51138FB94BA9A] - 10/04/2014 - 10:46:38 ---A- . (.Microsoft Corporation - Windows Package Manager.) -- C:\Windows\System32\PkgMgr.exe [196608]
O44 - LFC:[MD5.8188CB2B8EB82BF56D10E40994860B6B] - 10/04/2014 - 10:46:39 ---A- . (.Microsoft Corporation - In Proc server for managed servers in the W.) -- C:\Windows\System32\clrhost.dll [14848]
O44 - LFC:[MD5.311AAEFABEDB1FA343DDD8322C290378] - 10/04/2014 - 10:46:39 ---A- . (.Microsoft Corporation - Mise à jour des données de compatibilité de.) -- C:\Windows\System32\aepdu.dll [591872]
O44 - LFC:[MD5.62EA9ABDC92E731DD031035639B80938] - 10/04/2014 - 10:46:39 ---A- . (.Microsoft Corporation - Windows.Devices.HumanInterfaceDevice DLL.) -- C:\Windows\System32\Windows.Devices.HumanInterfaceDevice.dll [233472]
O44 - LFC:[MD5.F56ACDD6374CAFC64E8339D387CB70E4] - 10/04/2014 - 10:46:42 ---A- . (.Microsoft Corporation - Bibliothèque de primitives de chiffrement W.) -- C:\Windows\System32\bcrypt.dll [152848]
O44 - LFC:[MD5.C1D7228D5743995256A17D8225FDC704] - 10/04/2014 - 10:46:42 ---A- . (.Microsoft Corporation - Dll de client de gestion de licences du log.) -- C:\Windows\System32\sppc.dll [123904]
O44 - LFC:[MD5.50C869BBB4D1441C0E9760FB3830B241] - 10/04/2014 - 10:46:43 ---A- . (.Microsoft Corporation - Extension de l’interpréteur de commandes Mi.) -- C:\Windows\System32\SkyDriveShell.dll [140800]
O44 - LFC:[MD5.9BD28E14E63CD2C7BA51ABAC78F439D4] - 10/04/2014 - 10:46:44 ---A- . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll [655360]
O44 - LFC:[MD5.812F9BECC3D67371B4B6A41E09E1AEFE] - 10/04/2014 - 10:46:44 ---A- . (.Microsoft Corporation - Windows Networking Connectivity Runtime DLL.) -- C:\Windows\System32\Windows.Networking.Connectivity.dll [559104]
O44 - LFC:[MD5.9FB865E91832AC1CFF43A00351821C39] - 10/04/2014 - 10:46:45 ---A- . (.Microsoft Corporation - Mélangeur de volume.) -- C:\Windows\System32\SndVol.exe [210736]
O44 - LFC:[MD5.61692DB39AD3DF2F29392D68EAA7BB93] - 10/04/2014 - 10:46:46 ---A- . (.Microsoft Corporation - Exécutable du service de moteur de sauvegar.) -- C:\Windows\System32\wbengine.exe [1543680]
O44 - LFC:[MD5.12A7999B64CB4F89B422B759369E1FCE] - 10/04/2014 - 10:46:47 ---A- . (.Microsoft Corporation - MDM Registration DLL.) -- C:\Windows\System32\mdmregistration.dll [290816]
O44 - LFC:[MD5.01AE2AC5A32158EC6D568B5C5C1EB7B9] - 10/04/2014 - 10:46:47 ---A- . (.Microsoft Corporation - RDP Core DLL.) -- C:\Windows\System32\rdpcore.dll [3596800]
O44 - LFC:[MD5.4BA57ED44973409C15406EE0CAD58778] - 10/04/2014 - 10:46:47 ---A- . (.Microsoft Corporation - SQM Client.) -- C:\Windows\System32\sqmapi.dll [289752]
O44 - LFC:[MD5.8B0199094F3309D098B5A58EF1304C0C] - 10/04/2014 - 10:46:48 ---A- . (.Microsoft Corporation - API du Gestionnaire de fenêtres du Bureau M.) -- C:\Windows\System32\dwmapi.dll [123448]
O44 - LFC:[MD5.59999ECDA967B076FD2836D955D55F9A] - 10/04/2014 - 10:46:48 ---A- . (.Microsoft Corporation - Flux d’administration des paramètres du PC.) -- C:\Windows\System32\SystemSettingsAdminFlows.exe [258784]
O44 - LFC:[MD5.7A726EAF0D7592217936200997C43965] - 10/04/2014 - 10:46:48 ---A- . (.Microsoft Corporation - Interface utilisateur de ReadyBoost.) -- C:\Windows\System32\rdbui.dll [615936]
O44 - LFC:[MD5.2203F8DA390024C0EEF00DB8472C534D] - 10/04/2014 - 10:46:48 ---A- . (.Microsoft Corporation - Microsoft SChannel Provider.) -- C:\Windows\System32\ncryptsslp.dll [105864]
O44 - LFC:[MD5.59D079196F554E01CA59F52EFA117CB4] - 10/04/2014 - 10:46:49 ---A- . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll [2862592]
O44 - LFC:[MD5.629152E8745B63E63978FD1848ABC7AE] - 10/04/2014 - 10:46:49 ---A- . (.Microsoft Corporation - Microsoft® Account Credential Provider.) -- C:\Windows\System32\wlidcredprov.dll [286720]
O44 - LFC:[MD5.183360914EFC9D25E2A13D335D5E9EB8] - 10/04/2014 - 10:46:49 ---A- . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\Windows\System32\taskeng.exe [469504]
O44 - LFC:[MD5.82BCCF5FBE47AC9E8CBA2020994DFB3F] - 10/04/2014 - 10:46:49 ---A- . (.Microsoft Corporation - Service de rapport d’erreurs Windows.) -- C:\Windows\System32\wersvc.dll [107008]
O44 - LFC:[MD5.52E483A3701A5A61A75A06993720347D] - 10/04/2014 - 10:46:49 ---A- . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\Drivers\vhdmp.sys [551256]
O44 - LFC:[MD5.DE6533132FC2BD8A2ED5D370D41CBED3] - 10/04/2014 - 10:46:50 ---A- . (.Microsoft Corporation - Centre de synchronisation Microsoft.) -- C:\Windows\System32\SyncCenter.dll [2288640]
O44 - LFC:[MD5.3CA1EE5BE6C9D92DD672FC5A09E17AE2] - 10/04/2014 - 10:46:50 ---A- . (.Microsoft Corporation - Hôte de la fenêtre de la console.) -- C:\Windows\System32\conhost.exe [356864]
O44 - LFC:[MD5.78089FCDE082FD4FA471C30A7C2DC736] - 10/04/2014 - 10:46:50 ---A- . (.Microsoft Corporation - Microsoft\Optimiseur de lecteur.) -- C:\Windows\System32\defragsvc.dll [449024]
O44 - LFC:[MD5.7E5DC7317E51FA61E1A7C4A93162D3AE] - 10/04/2014 - 10:46:50 ---A- . (.Microsoft Corporation - Moteur de protocole personnalisé.) -- C:\Windows\System32\rascustom.dll [249856]
O44 - LFC:[MD5.1A74CE3B49A227D0189712D9886D7772] - 10/04/2014 - 10:46:52 ---A- . (.Microsoft Corporation - Authorization Framework.) -- C:\Windows\System32\authz.dll [275456]
O44 - LFC:[MD5.8F39AFEB255487932DFF14D9E0E0FC24] - 10/04/2014 - 10:46:52 ---A- . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\Drivers\storport.sys [372568]
O44 - LFC:[MD5.D795DDEE95839688808E5A74DC0D540D] - 10/04/2014 - 10:46:53 ---A- . (.Microsoft Corporation - Accessibilité au Clavier visuel.) -- C:\Windows\System32\osk.exe [834048]
O44 - LFC:[MD5.F26EF8EB298CD2BE8A2F6B9BACA3EEF3] - 10/04/2014 - 10:46:53 ---A- . (.Microsoft Corporation - Afficher les réseaux disponibles.) -- C:\Windows\System32\VAN.dll [505344]
O44 - LFC:[MD5.F6701835ECF0E4C9E69D804E78D8CE7B] - 10/04/2014 - 10:46:53 ---A- . (.Microsoft Corporation - Gestionnaire AdHoc et multimédia Dot11.) -- C:\Windows\System32\WlanMM.dll [1008640]
O44 - LFC:[MD5.ED3387CE1F9F848A3F3BAA3FCE86E315] - 10/04/2014 - 10:46:53 ---A- . (.Microsoft Corporation - Microsoft Pen and Touch Input Component.) -- C:\Windows\System32\ninput.dll [388096]
O44 - LFC:[MD5.8CF4AE81A247E1F6103FD1635C8816AF] - 10/04/2014 - 10:46:53 ---A- . (.Microsoft Corporation - Sélecteur de saisie Microsoft Windows.) -- C:\Windows\System32\InputSwitch.dll [232448]
O44 - LFC:[MD5.92F1E8ED4CF283A6710CD530DE7E813B] - 10/04/2014 - 10:46:54 ---A- . (.Microsoft Corporation - DLL MFCaptureEngine.) -- C:\Windows\System32\MFCaptureEngine.dll [324896]
O44 - LFC:[MD5.58C11DCCC6241CC13861A559E31A69F0] - 10/04/2014 - 10:46:55 ---A- . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1311744]
O44 - LFC:[MD5.8C569B429D897647A26A83D9901D3225] - 10/04/2014 - 10:46:56 ---A- . (.Microsoft Corporation - Composant de redirection du Gestionnaire de.) -- C:\Windows\System32\dwmredir.dll [152064]
O44 - LFC:[MD5.7FF1EBF5A376F5B17421E6868F353627] - 10/04/2014 - 10:46:57 ---A- . (.Microsoft Corporation - Icône du système réseau.) -- C:\Windows\System32\pnidui.dll [609792]
O44 - LFC:[MD5.8FE82BF3C091D0B1387A0081DAF4D234] - 10/04/2014 - 10:46:59 ---A- . (.Microsoft Corporation - Assistance du suivi réseau.) -- C:\Windows\System32\nettrace.dll [912384]
O44 - LFC:[MD5.C88774D3BC1A61C57C5B02AE407FD1E0] - 10/04/2014 - 10:46:59 ---A- . (.Microsoft Corporation - Bibliothèque de création de packages d’appl.) -- C:\Windows\System32\AppxPackaging.dll [546304]
O44 - LFC:[MD5.91F8F05881459330D83259A070D3642E] - 10/04/2014 - 10:47:00 ---A- . (.Microsoft Corporation - Dism Image Servicing Utility.) -- C:\Windows\System32\Dism.exe [275456]
O44 - LFC:[MD5.B1C2856F8199A9386C22E8325BC34D87] - 10/04/2014 - 10:47:00 ---A- . (.Microsoft Corporation - Dll de client de gestion de licences du log.) -- C:\Windows\System32\slc.dll [156672]
O44 - LFC:[MD5.725E3C8A4B420BD26FD002485FA463A9] - 10/04/2014 - 10:47:00 ---A- . (.Microsoft Corporation - Microsoft Windows MRM.) -- C:\Windows\System32\MrmIndexer.dll [690688]
O44 - LFC:[MD5.5D84CD163C267D056D4709B42FAE3D88] - 10/04/2014 - 10:47:00 ---A- . (.Microsoft Corporation - VmRdvCore EndPoints.) -- C:\Windows\System32\vmrdvcore.dll [359936]
O44 - LFC:[MD5.E084D7E544D71D23E83F23CD6B0E5E46] - 10/04/2014 - 10:47:00 ---A- . (.Microsoft Corporation - Windows.Networking.Vpn DLL.) -- C:\Windows\System32\Windows.Networking.Vpn.dll [245248]
O44 - LFC:[MD5.0F17D49BE041B7EFF1D33BF1414E7AC6] - 10/04/2014 - 10:47:01 ---A- . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [208896]
O44 - LFC:[MD5.375AEB31780A494920ABCBEA2E631A23] - 10/04/2014 - 10:47:03 ---A- . (.Microsoft Corporation - Bibliothèque de liens dynamiques de comptes.) -- C:\Windows\System32\wlidcli.dll [747008]
O44 - LFC:[MD5.C22EDA808C009EA235356B983D1A031E] - 10/04/2014 - 10:47:03 ---A- . (.Microsoft Corporation - Interface de gestion des paramètres de l’im.) -- C:\Windows\System32\printui.dll [1185280]
O44 - LFC:[MD5.5762739795A3CA941E4C07E601073BAA] - 10/04/2014 - 10:47:03 ---A- . (.Microsoft Corporation - iuilp.) -- C:\Windows\System32\iuilp.dll [761792]
O44 - LFC:[MD5.30EC406493F585A43BC3F6E813E266A7] - 10/04/2014 - 10:47:04 ---A- . (.Microsoft Corporation - Client de gestion de licences du Windows St.) -- C:\Windows\System32\WSClient.dll [196096]
O44 - LFC:[MD5.E804E9734A493A01316F209BA99F1F48] - 10/04/2014 - 10:47:04 ---A- . (.Microsoft Corporation - Process State Manager (PSM) Service.) -- C:\Windows\System32\psmsrv.dll [136192]
O44 - LFC:[MD5.43C26E06EE933F070728D63FE69080D3] - 10/04/2014 - 10:47:05 ---A- . (.Microsoft Corporation - Authentication Provider.) -- C:\Windows\System32\storewuauth.dll [190976]
O44 - LFC:[MD5.A6306E2A24C11555D5A4E572291C551D] - 10/04/2014 - 10:47:05 ---A- . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [716288]
O44 - LFC:[MD5.39C288E39B7B02614F997FB2077575ED] - 10/04/2014 - 10:47:05 ---A- . (.Microsoft Corporation - Software Protection Platform Windows Plugin.) -- C:\Windows\System32\sppwinob.dll [244848]
O44 - LFC:[MD5.46D718075C456CF241BEBFEC9D5F13BD] - 10/04/2014 - 10:47:07 ---A- . (.Microsoft Corporation - Code Integrity Module (Test).) -- C:\Windows\System32\ci.dll [531128]
O44 - LFC:[MD5.1F72F41F1401ADFA68F4B5D211CDCE7C] - 10/04/2014 - 10:47:07 ---A- . (.Microsoft Corporation - Microsoft ® VBScript.) -- C:\Windows\System32\vbscript.dll [548352]
O44 - LFC:[MD5.BFF9B210460BF8FD9122936D1D5D5DD5] - 10/04/2014 - 10:47:08 ---A- . (.Microsoft Corporation - API du client Windows Update.) -- C:\Windows\System32\wuapi.dll [824832]
O44 - LFC:[MD5.46D1DF775FFF14585218BBE16E5B2C9A] - 10/04/2014 - 10:47:08 ---A- . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\Windows\System32\Drivers\fltMgr.sys [360792]
O44 - LFC:[MD5.DDE972537280676F685DEC67CE28932D] - 10/04/2014 - 10:47:08 ---A- . (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) -- C:\Windows\System32\SearchProtocolHost.exe [320000]
O44 - LFC:[MD5.604064FB0094B0B7433C5EB8BF91512A] - 10/04/2014 - 10:47:08 ---A- . (.Microsoft Corporation - SysFx DSP.) -- C:\Windows\System32\WMALFXGFXDSP.dll [1791752]
O44 - LFC:[MD5.FFF2BF211D8E2EE4C72EA94C37CAD9D2] - 10/04/2014 - 10:47:09 ---A- . (.Microsoft Corporation - DLL Microsoft UIManager.) -- C:\Windows\System32\msctfuimanager.dll [755200]
O44 - LFC:[MD5.EA23453240137F6773174E0D93F61A69] - 10/04/2014 - 10:47:09 ---A- . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\Windows\System32\Drivers\USBSTOR.SYS [148824]
O44 - LFC:[MD5.152152B5EE3512ED85C526967C350355] - 10/04/2014 - 10:47:10 ---A- . (.Microsoft Corporation - Cache de miniatures Microsoft.) -- C:\Windows\System32\thumbcache.dll [159744]
O44 - LFC:[MD5.8F464EE568C36C174DC403EFC8F85A21] - 10/04/2014 - 10:47:10 ---A- . (.Microsoft Corporation - Objet du service d’environnement Systray.) -- C:\Windows\System32\stobject.dll [321536]
O44 - LFC:[MD5.090E4DE444439DF828CB726D60EA9CFD] - 10/04/2014 - 10:47:11 ---A- . (.Microsoft Corporation - Centre de maintenance.) -- C:\Windows\System32\ActionCenter.dll [878592]
O44 - LFC:[MD5.CCCDE17347904396A0102A9EE3669555] - 10/04/2014 - 10:47:11 ---A- . (.Microsoft Corporation - PRS CPL.) -- C:\Windows\System32\werconcpl.dll [1224192]
O44 - LFC:[MD5.8685379B82AC81187813225905531D1E] - 10/04/2014 - 10:47:11 ---A- . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\Windows\System32\Drivers\portcls.sys [272896]
O44 - LFC:[MD5.CC9503365C5AC3D6A8E152194CE62669] - 10/04/2014 - 10:47:12 ---A- . (.Microsoft Corporation - Media Foundation Video Processor.) -- C:\Windows\System32\msvproc.dll [372360]
O44 - LFC:[MD5.858E46BB06924EB01C3DF8AEF2DC1CDF] - 10/04/2014 - 10:47:12 ---A- . (.Microsoft Corporation - Microsoft Search Protocol Handler.) -- C:\Windows\System32\mssph.dll [441344]
O44 - LFC:[MD5.CBFC4C292C125A86DA4D2BC831CD4634] - 10/04/2014 - 10:47:12 ---A- . (.Microsoft Corporation - Windows Cryptographic Primitives Library.) -- C:\Windows\System32\bcryptprimitives.dll [388408]
O44 - LFC:[MD5.48EBD5B3241D2324A92BA8EB993B2076] - 10/04/2014 - 10:47:13 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\oleaut32.dll [745328]
O44 - LFC:[MD5.87765EF43C33BE342F4ACB0E3FBF89A6] - 10/04/2014 - 10:47:13 ---A- . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\Windows\System32\Drivers\spaceport.sys [384856]
O44 - LFC:[MD5.306EB21E5B480AE9065EA55AC8C35936] - 10/04/2014 - 10:47:14 ---A- . (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\winlogon.exe [562176]
O44 - LFC:[MD5.A4A3542D65C180AFDC41B8A824C6CD40] - 10/04/2014 - 10:47:14 ---A- . (.Microsoft Corporation - DISM API Framework.) -- C:\Windows\System32\DismApi.dll [653312]
O44 - LFC:[MD5.FCF20B83EDFA8765A83D3BA4CCD49775] - 10/04/2014 - 10:47:14 ---A- . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [586240]
O44 - LFC:[MD5.65C65F3BD784158C456E721DDC9F0EA2] - 10/04/2014 - 10:47:15 ---A- . (.Microsoft Corporation - Service Dossiers de travail Microsoft (C).) -- C:\Windows\System32\workfolderssvc.dll [1584128]
O44 - LFC:[MD5.275AFE3FA35E8D78BE97695DF49817C6] - 10/04/2014 - 10:47:15 ---A- . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\Drivers\pci.sys [280920]
O44 - LFC:[MD5.65FBC4306DA606058136DF5D552A4872] - 10/04/2014 - 10:47:16 ---A- . (.Microsoft Corporation - Bibliothèque de l’application auxiliaire de.) -- C:\Windows\System32\tdh.dll [968704]
O44 - LFC:[MD5.74FA630CDF88E5482210E653D2719DD7] - 10/04/2014 - 10:47:16 ---A- . (.Microsoft Corporation - DLL WSShared.) -- C:\Windows\System32\WSShared.dll [854528]
O44 - LFC:[MD5.8541EE27ADD14F84844DB43E9C7BBE3E] - 10/04/2014 - 10:47:17 ---A- . (.Microsoft Corporation - Diagnostics de consommation électrique.) -- C:\Windows\System32\energy.dll [467456]
O44 - LFC:[MD5.B087305F29D8CE043DD31AD69AFDF1A9] - 10/04/2014 - 10:47:17 ---A- . (.Microsoft Corporation - Plateforme de recherche Microsoft Vista.) -- C:\Windows\System32\mssvp.dll [752640]
O44 - LFC:[MD5.021C7541C55625D083753DA241169A97] - 10/04/2014 - 10:47:18 ---A- . (.Microsoft Corporation - Créateur de support de récupération.) -- C:\Windows\System32\RecoveryDrive.exe [1428480]
O44 - LFC:[MD5.8EBB271E4588D835784A3FF7E80076A8] - 10/04/2014 - 10:47:18 ---A- . (.Microsoft Corporation - Service du gestionnaire de session locale.) -- C:\Windows\System32\lsm.dll [710656]
O44 - LFC:[MD5.DCF2510E0745720E543E84F5E921FCC0] - 10/04/2014 - 10:47:19 ---A- . (...) -- C:\Windows\System32\dfpinc.dat [262335]
O44 - LFC:[MD5.561F1AB95F4F01C691BDABA5FD5C67FC] - 10/04/2014 - 10:47:19 ---A- . (.Microsoft Corporation - API avancées Windows 32.) -- C:\Windows\System32\advapi32.dll [669896]
O44 - LFC:[MD5.F2559A492AF8D653D1F47ADABA4C3E97] - 10/04/2014 - 10:47:19 ---A- . (.Microsoft Corporation - Service d’infrastructure des tâches en arri.) -- C:\Windows\System32\bisrv.dll [269824]
O44 - LFC:[MD5.233A4C961703D6B3EBA4EC1A3E85AACE] - 10/04/2014 - 10:47:20 ---A- . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\Drivers\ks.sys [298496]
O44 - LFC:[MD5.1062C1D05E95306D878FFFE0A23B84C0] - 10/04/2014 - 10:47:20 ---A- . (.Microsoft Corporation - Microsoft Performance PerfTrack.) -- C:\Windows\System32\perftrack.dll [1107456]
O44 - LFC:[MD5.F734881DD480B0AC9462A31ADB2DB002] - 10/04/2014 - 10:47:20 ---A- . (.Microsoft Corporation - Utilisateur du Panneau de configuration.) -- C:\Windows\System32\usercpl.dll [1227776]
O44 - LFC:[MD5.D8F7C3E57F2C09C6589AECD1820E0CA9] - 10/04/2014 - 10:47:21 ---A- . (.Microsoft Corporation - Disk Footprint Tool.) -- C:\Windows\System32\dfp.exe [31232]
O44 - LFC:[MD5.DE871131FCFA31032A4F977D4152A446] - 10/04/2014 - 10:47:21 ---A- . (.Microsoft Corporation - Microsoft Trust Verification APIs.) -- C:\Windows\System32\wintrust.dll [307304]
O44 - LFC:[MD5.390793BD9F3DEF111DB2B21559B6293A] - 10/04/2014 - 10:47:21 ---A- . (.Microsoft Corporation - Utilitaire de gestion des images de récupér.) -- C:\Windows\System32\recimg.exe [584192]
O44 - LFC:[MD5.B5E03CD317F089DFF67483641C9B0339] - 10/04/2014 - 10:47:21 ---A- . (.Microsoft Corporation - WMPMDE DLL.) -- C:\Windows\System32\wmpmde.dll [1374384]
O44 - LFC:[MD5.8F8356461CE4BF9CFBC8C31A9B118237] - 10/04/2014 - 10:47:23 ---A- . (.Microsoft Corporation - Fournisseur de sécurité TLS/SSL.) -- C:\Windows\System32\schannel.dll [427520]
O44 - LFC:[MD5.A26AEC49F318FEE141DDDB2C5F99B3E6] - 10/04/2014 - 10:47:23 ---A- . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\Drivers\rdyboost.sys [249688]
O44 - LFC:[MD5.DAF37070DDBD4ECCBDE7C2213AB60025] - 10/04/2014 - 10:47:23 ---A- . (.Microsoft Corporation - twinapi.appcore.) -- C:\Windows\System32\twinapi.appcore.dll [555736]
O44 - LFC:[MD5.CB12C47647D8BDAFAA94C0856B14128B] - 10/04/2014 - 10:47:24 ---A- . (.Microsoft Corporation - AppReadiness.) -- C:\Windows\System32\AppReadiness.dll [530944]
O44 - LFC:[MD5.CFDEF7C849D5AFDB689473073B0EE82D] - 10/04/2014 - 10:47:24 ---A- . (.Microsoft Corporation - DLL commune de boîtes de dialogues.) -- C:\Windows\System32\comdlg32.dll [606208]
O44 - LFC:[MD5.1524579B894C9B99F42A695B86881254] - 10/04/2014 - 10:47:24 ---A- . (.Microsoft Corporation - Fichier DLL du client de compatibilité des.) -- C:\Windows\System32\apphelp.dll [545792]
O44 - LFC:[MD5.CEAE26D9492F7D481916FF44C120D339] - 10/04/2014 - 10:47:24 ---A- . (.Microsoft Corporation - Gestionnaire des tâches.) -- C:\Windows\System32\Taskmgr.exe [1206000]
O44 - LFC:[MD5.1169646AAD0239C23CCF9C46BA00B2D6] - 10/04/2014 - 10:47:25 ---A- . (.Microsoft Corporation - API MMDevice.) -- C:\Windows\System32\MMDevAPI.dll [391008]
O44 - LFC:[MD5.EC3BCAACA76E8987F1F0F2DE3D64ED98] - 10/04/2014 - 10:47:26 ---A- . (.Microsoft Corporation - Microsoft ® Script Runtime.) -- C:\Windows\System32\scrrun.dll [197120]
O44 - LFC:[MD5.68966CD60BED0180B01387B7362779C7] - 10/04/2014 - 10:47:27 ---A- . (.Microsoft Corporation - Bibliothèque Windows Imaging.) -- C:\Windows\System32\wimgapi.dll [666624]
O44 - LFC:[MD5.BCE2EB8D8437FA7100F51BD8D9120F3E] - 10/04/2014 - 10:47:27 ---A- . (.Microsoft Corporation - Windows Overlay File System Filter user mod.) -- C:\Windows\System32\WofUtil.dll [18432]
O44 - LFC:[MD5.BA24011607AD814778CA343291D418D6] - 10/04/2014 - 10:47:28 ---A- . (.Microsoft Corporation - WMI Provider for Storage Management.) -- C:\Windows\System32\storagewmi.dll [2395136]
O44 - LFC:[MD5.6D79CDD66FE672937F251ED67C7FF11E] - 10/04/2014 - 10:47:29 ---A- . (.Microsoft Corporation - Application du contrôleur de médias numériq.) -- C:\Windows\System32\WMPDMC.exe [1757184]
O44 - LFC:[MD5.A07CFC4B593D15B6BF06813C3B5B33BF] - 10/04/2014 - 10:47:29 ---A- . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) -- C:\Windows\System32\wcmsvc.dll [366080]
O44 - LFC:[MD5.C70734AD4525B99B8C1F065898DE6EEF] - 10/04/2014 - 10:47:29 ---A- . (.Microsoft Corporation - Media Foundation Platform DLL.) -- C:\Windows\System32\mfplat.dll [881616]
O44 - LFC:[MD5.CEB069C882A0DFEDBE5C1590D44B1052] - 10/04/2014 - 10:47:30 ---A- . (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\user32.dll [1519520]
O44 - LFC:[MD5.4DFCE03EEB1BA325B8077A626B2F25F0] - 10/04/2014 - 10:47:30 ---A- . (.Microsoft Corporation - Hardware Abstraction Layer DLL.) -- C:\Windows\System32\hal.dll [424280]
O44 - LFC:[MD5.DBC61FE275917E75AE077A04E701C474] - 10/04/2014 - 10:47:30 ---A- . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) -- C:\Windows\System32\SearchIndexer.exe [845824]
O44 - LFC:[MD5.E2A34E0E6DC58712BC527338C7E0A8E4] - 10/04/2014 - 10:47:30 ---A- . (.Microsoft Corporation - Setting Synchronization.) -- C:\Windows\System32\SettingSync.dll [576512]
O44 - LFC:[MD5.561A97E82FA0645CB786C19B8D442C31] - 10/04/2014 - 10:47:32 ---A- . (.Microsoft Corporation - Bibliothèque de thèmes Ux Microsoft.) -- C:\Windows\System32\uxtheme.dll [1163264]
O44 - LFC:[MD5.B2BD017231836DA9F63F41E3A075D73E] - 10/04/2014 - 10:47:35 ---A- . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\Drivers\fvevol.sys [590168]
O44 - LFC:[MD5.805AE6AF93317209084AB881A50B2D17] - 10/04/2014 - 10:47:35 ---A- . (.Microsoft Corporation - Panneau de configuration du contrôle parent.) -- C:\Windows\System32\wpccpl.dll [2760704]
O44 - LFC:[MD5.CE10041A39A0E6F598BFA50A5AB64CF3] - 10/04/2014 - 10:47:37 ---A- . (.Microsoft Corporation - Cœur de la plateforme de notifications de t.) -- C:\Windows\System32\wpncore.dll [569856]
O44 - LFC:[MD5.B83C0950E4F89CE586C2D38BD50218C6] - 10/04/2014 - 10:47:37 ---A- . (.Microsoft Corporation - Microsoft Windows Codecs Library.) -- C:\Windows\System32\WindowsCodecs.dll [1653352]
O44 - LFC:[MD5.CBE142AAF990CDA24CDEFF8FF3EBB201] - 10/04/2014 - 10:47:37 ---A- . (.Microsoft Corporation - SHCORE.) -- C:\Windows\System32\SHCore.dll [645104]
O44 - LFC:[MD5.134459015C02EE08AF888F488EF91EC3] - 10/04/2014 - 10:47:40 ---A- . (.Microsoft Corporation - DLL Media Foundation.) -- C:\Windows\System32\mf.dll [609456]
O44 - LFC:[MD5.D33C175C081B6770C32C6F4A561E99E4] - 10/04/2014 - 10:47:40 ---A- . (.Microsoft Corporation - Hôte Microsoft WWA.) -- C:\Windows\System32\WWAHost.exe [635904]
O44 - LFC:[MD5.44BFD45AD17507C7129F90656729E569] - 10/04/2014 - 10:47:41 ---A- . (.Microsoft Corporation - Moteur de calcul des mesures d’analyse de f.) -- C:\Windows\System32\RacEngn.dll [1621504]
O44 - LFC:[MD5.9A1190B2934CFAB102D1B62F74971A0B] - 10/04/2014 - 10:47:43 ---A- . (.Microsoft Corporation - twinapi.) -- C:\Windows\System32\twinapi.dll [721408]
O44 - LFC:[MD5.CAFB5D7373DDAE675A9A091A21642041] - 10/04/2014 - 10:47:44 ---A- . (.Microsoft Corporation - Disk Footprint Utility Library.) -- C:\Windows\System32\DfpCommon.dll [390656]
O44 - LFC:[MD5.81979817943D830BF24571B7C1B28A1A] - 10/04/2014 - 10:47:44 ---A- . (.Microsoft Corporation - Distributed COM Services.) -- C:\Windows\System32\rpcss.dll [753664]
O44 - LFC:[MD5.E7F88B66FD5C0DA438371C998273FD0D] - 10/04/2014 - 10:47:44 ---A- . (.Microsoft Corporation - Installation de L’API Windows.) -- C:\Windows\System32\setupapi.dll [1929608]
O44 - LFC:[MD5.657D52EEB153FDE9C8AC94997E223228] - 10/04/2014 - 10:47:44 ---A- . (.Microsoft Corporation - Tâches de démarrage WIM.) -- C:\Windows\System32\WofTasks.dll [27648]
O44 - LFC:[MD5.22C3168D2AAA6C0546FE215CD079DBBB] - 10/04/2014 - 10:47:45 ---A- . (.Microsoft Corporation - DLL du rapport d’erreurs Windows.) -- C:\Windows\System32\wer.dll [526304]
O44 - LFC:[MD5.23F2B10A7EDF5E6A87CAE43129F83495] - 10/04/2014 - 10:47:45 ---A- . (.Microsoft Corporation - Gestionnaire de fenêtrage Microsoft.) -- C:\Windows\System32\uDWM.dll [791552]
O44 - LFC:[MD5.AB7892A876ED44FC9C1D80FD9F3046E0] - 10/04/2014 - 10:47:45 ---A- . (.Microsoft Corporation - Structured Query.) -- C:\Windows\System32\StructuredQuery.dll [584704]
O44 - LFC:[MD5.D4A699D489758A270A5099DE1B4EE2FB] - 10/04/2014 - 10:47:46 ---A- . (.Microsoft Corporation - Application de démarrage Reprise à partir d.) -- C:\Windows\System32\winresume.efi [1487520]
O44 - LFC:[MD5.E741CC1224A29A2C271798EF3645D81B] - 10/04/2014 - 10:47:46 ---A- . (.Microsoft Corporation - Application de démarrage Reprise à partir d.) -- C:\Windows\System32\winresume.exe [1356360]
O44 - LFC:[MD5.B61462AED373BD130EA031767F83E0D2] - 10/04/2014 - 10:47:46 ---A- . (.Microsoft Corporation - OS Loader.) -- C:\Windows\System32\winload.efi [1659056]
O44 - LFC:[MD5.91406FB600CA9A57E5ADE0FCE07C59F0] - 10/04/2014 - 10:47:46 ---A- . (.Microsoft Corporation - OS Loader.) -- C:\Windows\System32\winload.exe [1519592]
O44 - LFC:[MD5.10B3D632CA42A042F9E38CC30830A800] - 10/04/2014 - 10:47:47 ---A- . (.Microsoft Corporation - ExplorerFrame.) -- C:\Windows\System32\ExplorerFrame.dll [2825216]
O44 - LFC:[MD5.9539F7917B4B6D92C90F0FAA6B86C605] - 10/04/2014 - 10:47:47 ---A- . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\Drivers\acpi.sys [539992]
O44 - LFC:[MD5.59245D8023A7C5D192C2ED7A1BD80F36] - 10/04/2014 - 10:47:48 ---A- . (.Microsoft Corporation - DLL Serveur SAM.) -- C:\Windows\System32\samsrv.dll [825344]
O44 - LFC:[MD5.19440A7EA6C2FF961C5B8188E532F82F] - 10/04/2014 - 10:47:48 ---A- . (.Microsoft Corporation - DLL du rapport d’incident dans le mode util.) -- C:\Windows\System32\Faultrep.dll [407536]
O44 - LFC:[MD5.4A87A56606776CC9E1520D8A2741E9AE] - 10/04/2014 - 10:47:49 ---A- . (.Microsoft Corporation - DLL de types de base Windows.) -- C:\Windows\System32\WinTypes.dll [1000424]
O44 - LFC:[MD5.858851D0B36F34B9DAF83DD7BD8636A1] - 10/04/2014 - 10:47:49 ---A- . (.Microsoft Corporation - Moteur de réinitialisation Microsoft Window.) -- C:\Windows\System32\reseteng.dll [997888]
O44 - LFC:[MD5.C6ED6A63B57560EB5C99F88F93E7EDBF] - 10/04/2014 - 10:47:49 ---A- . (.Microsoft Corporation - Rapports de problèmes Windows.) -- C:\Windows\System32\WerFault.exe [461176]
O44 - LFC:[MD5.A340B32445BB448D6C4D96194488F82E] - 10/04/2014 - 10:47:49 ---A- . (.Microsoft Corporation - Windows Error Reporting.) -- C:\Windows\System32\DWWIN.EXE [160256]
O44 - LFC:[MD5.B8AE39C49A72070BAD8E2D970BFC3C70] - 10/04/2014 - 10:47:50 ---A- . (.Microsoft Corporation - Bibliothèque de synchronisation Web du cont.) -- C:\Windows\System32\WpcWebSync.dll [2648064]
O44 - LFC:[MD5.EABE2125857B68D7B80EE5A2E1FB13EA] - 10/04/2014 - 10:47:50 ---A- . (.Microsoft Corporation - Media Foundation Net Core DLL.) -- C:\Windows\System32\mfnetcore.dll [800552]
O44 - LFC:[MD5.4E730667CA97D127D9E4AD05150A18C5] - 10/04/2014 - 10:47:50 ---A- . (.Microsoft Corporation - Media Foundation Net Source DLL.) -- C:\Windows\System32\mfnetsrc.dll [1215832]
O44 - LFC:[MD5.722B1ED8A1C3115E0B215215FB56738D] - 10/04/2014 - 10:47:51 ---A- . (.Microsoft Corporation - Synchronisation principale des paramètres.) -- C:\Windows\System32\SettingSyncCore.dll [777728]
O44 - LFC:[MD5.939B63CB5C350802ACE33E5C7AC037FD] - 10/04/2014 - 10:47:52 ---A- . (.Microsoft Corporation - DLL Couche NT.) -- C:\Windows\System32\ntdll.dll [1727760]
O44 - LFC:[MD5.F21B77B4D74092A543807D3CEB711A88] - 10/04/2014 - 10:47:52 ---A- . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\Windows\System32\Drivers\ndis.sys [1118552]
O44 - LFC:[MD5.E3C92D60F6AD7763961D1E7628002844] - 10/04/2014 - 10:47:53 ---A- . (.Microsoft Corporation - Fournisseur logiciel du service Microsoft®.) -- C:\Windows\System32\swprv.dll [718336]
O44 - LFC:[MD5.F79C112FCC0FEF9EBE07F903CEA05F9F] - 10/04/2014 - 10:47:54 ---A- . (.Microsoft Corporation - Host Process for Setting Synchronization.) -- C:\Windows\System32\SettingSyncHost.exe [647168]
O44 - LFC:[MD5.AD776C2F3396AA47ACF6CEAD8EC446C1] - 10/04/2014 - 10:47:54 ---A- . (.Microsoft Corporation - Windows Runtime OnlineId Authentication DLL.) -- C:\Windows\System32\Windows.Security.Authentication.OnlineId.dll [704512]
O44 - LFC:[MD5.7EAEE7DEDDA6C3123B3700A1A48CFA3A] - 10/04/2014 - 10:47:55 ---A- . (.Microsoft Corporation - Microsoft TextPrediction DLL.) -- C:\Windows\System32\msTextPrediction.dll [628224]
O44 - LFC:[MD5.99984EBB7C7C3239EF2A866033827BEC] - 10/04/2014 - 10:47:56 ---A- . (.Microsoft Corporation - DLNA DLL.) -- C:\Windows\System32\Windows.Media.Streaming.dll [1217024]
O44 - LFC:[MD5.F7E4F8EA0560B5231132348F880DA229] - 10/04/2014 - 10:47:56 ---A- . (.Microsoft Corporation - Storage Management Provider for Spaces.) -- C:\Windows\System32\mispace.dll [1287168]
O44 - LFC:[MD5.11C2A9D3D34632FC17EF8B3411AA972B] - 10/04/2014 - 10:47:56 ---A- . (.Microsoft Corporation - WINDOWS.UI.IMMERSIVE.) -- C:\Windows\System32\Windows.UI.Immersive.dll [1640960]
O44 - LFC:[MD5.7D7C2B72B81BABF192F1033460A3C434] - 10/04/2014 - 10:47:57 ---A- . (.Microsoft Corporation - DLL de MSCTF Server.) -- C:\Windows\System32\msctf.dll [1290688]
O44 - LFC:[MD5.55A9A5D9F8EC7512B8F1153657BEDF92] - 10/04/2014 - 10:47:58 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\System32\msfeeds.dll [628736]
O44 - LFC:[MD5.2E13669E685B4FDA1FF09E41D6572FD3] - 10/04/2014 - 10:47:58 ---A- . (.Microsoft Corporation - Moniteur du contrôle parental.) -- C:\Windows\System32\WpcMon.exe [2588168]
O44 - LFC:[MD5.59FBA218C767ED30967CE285F5D76D16] - 10/04/2014 - 10:47:58 ---A- . (.Microsoft Corporation - WinMDE DLL.) -- C:\Windows\System32\winmde.dll [1399176]
O44 - LFC:[MD5.D2DE4DE05E234F9FDA9B8BC967D0843C] - 10/04/2014 - 10:47:59 ---A- . (.Microsoft Corporation - System Settings Admin Flow XAML UI Implemen.) -- C:\Windows\System32\SystemSettingsAdminFlowUI.dll [2100736]
O44 - LFC:[MD5.EEB074B2C0282AAE03ED54361DE23946] - 10/04/2014 - 10:48:00 ---A- . (.Microsoft Corporation - ActiveX Interface Marshaling Library.) -- C:\Windows\System32\actxprxy.dll [2843136]
O44 - LFC:[MD5.865E3C79BB0DB64D4AB2F6BA8FF5BD2C] - 10/04/2014 - 10:48:00 ---A- . (.Microsoft Corporation - Windows Globalization.) -- C:\Windows\System32\Windows.Globalization.dll [1132032]
O44 - LFC:[MD5.F0D53BA526018350E227F6E3E80C3966] - 10/04/2014 - 10:48:00 ---A- . (.Microsoft Corporation - Windows Web Services Runtime.) -- C:\Windows\System32\webservices.dll [1445616]
O44 - LFC:[MD5.06BA7518958966587474CCDDE4F8A42A] - 10/04/2014 - 10:48:02 ---A- . (.Microsoft Corporation - Décodeur vidéo Windows Media.) -- C:\Windows\System32\WMVDECOD.DLL [2574240]
O44 - LFC:[MD5.837F8649A2FE7880899711FAA25A2AE3] - 10/04/2014 - 10:48:04 ---A- . (.Microsoft Corporation - Moteur DirectUI de Windows.) -- C:\Windows\System32\dui70.dll [1728000]
O44 - LFC:[MD5.D424A5CD2E3997AF511C9865AC1EF22D] - 10/04/2014 - 10:48:05 ---A- . (.Microsoft Corporation - Bibliothèque des paramètres WPC.) -- C:\Windows\System32\Wpc.dll [2943488]
O44 - LFC:[MD5.19AF77545FD61995E1062277320A92AF] - 10/04/2014 - 10:48:08 ---A- . (.Microsoft Corporation - Recherche intégrée Microsoft.) -- C:\Windows\System32\mssrch.dll [2368512]
O44 - LFC:[MD5.5F56C0DE776C7AE43AF749845BFAA1EF] - 10/04/2014 - 10:48:08 ---A- . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1576960]
O44 - LFC:[MD5.3DA26652B12E9AB43FD04976AC6DFD33] - 10/04/2014 - 10:48:11 ---A- . (.Microsoft Corporation - Hôte de service Superfetch.) -- C:\Windows\System32\sysmain.dll [1192448]
O44 - LFC:[MD5.4D403440E2D3186482B1488462DEFFE0] - 10/04/2014 - 10:48:11 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter.) -- C:\Windows\System32\ieapfltr.dll [846336]
O44 - LFC:[MD5.39E31CF8F0E0FECADEC8C1D98A0C9E92] - 10/04/2014 - 10:48:13 ---A- . (.Microsoft Corporation - PDF WinRT APIs.) -- C:\Windows\System32\Windows.Data.Pdf.dll [12027904]
O44 - LFC:[MD5.EFF09C9865290B159F79980113358299] - 10/04/2014 - 10:48:14 ---A- . (.Microsoft Corporation - Microsoft Tripoli Query.) -- C:\Windows\System32\tquery.dll [3494912]
O44 - LFC:[MD5.0263439206D96DFF76B8C0873E1D7269] - 10/04/2014 - 10:48:15 ---A- . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3408384]
O44 - LFC:[MD5.1060AE975A2E63E5E5D2F0ABDC5D557D] - 10/04/2014 - 10:48:15 ---A- . (.Microsoft Corporation - Software Protection Platform Plugins.) -- C:\Windows\System32\sppobjs.dll [1435304]
O44 - LFC:[MD5.FE7F81BADAAC7A7A17BA751E1CE471C9] - 10/04/2014 - 10:48:16 ---A- . (.Microsoft Corporation - Windows Media Player.) -- C:\Windows\System32\wmp.dll [13933568]
O44 - LFC:[MD5.3197633AD21EF3B4EA2EBB8AF2F5B338] - 10/04/2014 - 10:48:17 ---A- . (.Microsoft Corporation - Édition DirectShow..) -- C:\Windows\System32\qedit.dll [586240]
O44 - LFC:[MD5.6AFE9D20019BA4C76188A458573F4461] - 10/04/2014 - 10:48:20 ---A- . (.Microsoft Corporation - Microsoft COM pour Windows.) -- C:\Windows\System32\combase.dll [1927600]
O44 - LFC:[MD5.65C36A29A131A3A5D64B29FAC4EF6DD6] - 10/04/2014 - 10:48:23 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2262016]
O44 - LFC:[MD5.051EA7D6EEBAC6C5219991C19D72EB32] - 10/04/2014 - 10:48:23 ---A- . (.Microsoft Corporation - Media Foundation Core DLL.) -- C:\Windows\System32\mfcore.dll [2142976]
O44 - LFC:[MD5.B0E0F3BB71615DC726AA5A610019A197] - 10/04/2014 - 10:48:34 ---A- . (.Microsoft Corporation - Mise en route.) -- C:\Windows\System32\OobeFldr.dll [630784]
O44 - LFC:[MD5.95B6670E6933E1DEE19686C55BE709A0] - 10/04/2014 - 10:48:35 ---A- . (.Microsoft Corporation - Service du Windows Store.) -- C:\Windows\System32\WSService.dll [3394384]
O44 - LFC:[MD5.541D8B14318C9252A457FA462147E10C] - 10/04/2014 - 10:48:36 ---A- . (.Microsoft Corporation - Microsoft ® JScript Diagnostics.) -- C:\Windows\System32\jscript9diag.dll [752640]
O44 - LFC:[MD5.977BDBE33ADE22EE88EE9E7C54511300] - 10/04/2014 - 10:48:36 ---A- . (.Microsoft Corporation - Windows Reader.) -- C:\Windows\System32\glcndFilter.dll [11742720]
O44 - LFC:[MD5.3595FBDF25F8BA6256072D103937D7D6] - 10/04/2014 - 10:48:39 ---A- . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\Drivers\volsnap.sys [311640]
O44 - LFC:[MD5.0FDB2D284B0DEA2FAFFB7577A72D343F] - 10/04/2014 - 10:48:40 ---A- . (.Microsoft Corporation - Utilitaire à l’exécution pour Internet Expl.) -- C:\Windows\System32\iertutil.dll [2767360]
O44 - LFC:[MD5.FFFCC3C3ED6886A95D3C0E1B49C652BA] - 10/04/2014 - 10:49:05 ---A- . (...) -- C:\Windows\System32\systemsf.ebd [139600]
O44 - LFC:[MD5.1FBE0C637032A64AB316F18EFED67E89] - 10/04/2014 - 10:49:05 ---A- . (.Microsoft Corporation - JScript Proxy Auto-Configuration.) -- C:\Windows\System32\jsproxy.dll [51200]
O44 - LFC:[MD5.76BA56848B718C980FDEAE248EB32F1B] - 10/04/2014 - 10:49:06 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [4192768]
O44 - LFC:[MD5.F2EF432780FDE5E661CD0DDA6D119708] - 10/04/2014 - 10:49:07 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript9.dll [5784064]
O44 - LFC:[MD5.415CC6E051BC88468CE051AF0D1DEFEF] - 10/04/2014 - 10:49:09 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\System32\ieframe.dll [13551104]
O44 - LFC:[MD5.E6CCE5FA61801AA47891654747ADB924] - 10/04/2014 - 10:49:12 ---A- . (.Microsoft Corporation - Panneau de configuration Internet.) -- C:\Windows\System32\inetcpl.cpl [2043904]
O44 - LFC:[MD5.7A001F5336992791865549450D606D41] - 10/04/2014 - 10:49:14 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [1400832]
O44 - LFC:[MD5.E18F41594CBC4B4A34431DC17EA81985] - 10/04/2014 - 11:58:57 ---A- . (.Elex do Brasil Participações Ltda - iSafe Kernel Boot Driver.) -- C:\Windows\System32\Drivers\iSafeKrnlBoot.sys [34304] =>Trojan.Staser
O44 - LFC:[MD5.43A08EE6CC7F29FB1923A1D9C92B380E] - 10/04/2014 - 12:25:00 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [90655440]
O44 - LFC:[MD5.08750A50CF027F93070C8BB78E27C3B7] - 10/04/2014 - 12:31:55 -SH-- . (...) -- C:\Windows\System32\desktop.ini [75]
O44 - LFC:[MD5.E8AE4CAF4202EC56CE466BB8236E0CAE] - 10/04/2014 - 12:43:42 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [434344]
O44 - LFC:[MD5.0CB836918DAC36E9F7CFA807878EEA0C] - 10/04/2014 - 12:49:18 ---A- . (...) -- C:\Windows\setupact.log [345017]
O44 - LFC:[MD5.C2AD39325A613D0FA4926660FDC3EE28] - 10/04/2014 - 23:22:21 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512]
O44 - LFC:[MD5.6140163BFE9D8F2DFDBA088ED5521C13] - 12/04/2014 - 15:10:07 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\MBAMSwissArmy.sys [119512]
O44 - LFC:[MD5.2BB48BEB87DD88C0B73CDE938024F227] - 12/04/2014 - 21:46:13 ---A- . (...) -- C:\Windows\PFRO.log [366090]
O44 - LFC:[MD5.82E83FF29795E71701235BBF033BAC42] - 12/04/2014 - 21:50:46 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1824010]
O44 - LFC:[MD5.4E96D220CF1B1AC7D6681AE48F358078] - 12/04/2014 - 21:50:46 ---A- . (...) -- C:\Windows\System32\perfc009.dat [135592]
O44 - LFC:[MD5.ED8D360B6331D160FA797250DC04B424] - 12/04/2014 - 21:50:46 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [159412]
O44 - LFC:[MD5.49D2498F5C88FC19F6A821F1D96AFC40] - 12/04/2014 - 21:50:46 ---A- . (...) -- C:\Windows\System32\perfh009.dat [722476]
O44 - LFC:[MD5.1321B7B48D289CC6DF9FAF55E69454B3] - 12/04/2014 - 21:50:46 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [812350]
O44 - LFC:[MD5.7066E5D354689D2A64961C2BBEF9053F] - 13/04/2014 - 09:41:39 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.FD40C9314E8C7557E59FB4300E5176B0] - 13/04/2014 - 10:03:35 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1573698]
~ Files: 565 Scanned in 00mn 34s



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.A04AB8AAA4C65ADC70966FEC920D749C] - 10/04/2014 - 14:06:10 ---A- - C:\Windows\Prefetch\PC-CLEANER-3261.TMP-60F5357C.pf
O45 - LFCP:[MD5.DE96B525723D4243539B5629EA7DE2A2] - 10/04/2014 - 14:06:13 ---A- - C:\Windows\Prefetch\PC-CLEANER-3261.EXE-63028175.pf
O45 - LFCP:[MD5.55DE5907A2B3E6008A3274D16326814C] - 10/04/2014 - 14:06:13 ---A- - C:\Windows\Prefetch\PC-CLEANER-3261.TMP-923902F3.pf
O45 - LFCP:[MD5.5F3F8E88565FB30AA7C9E3F38531DBF0] - 10/04/2014 - 14:06:23 ---A- - C:\Windows\Prefetch\PCCSMARTSCAN.EXE-55CA200C.pf
O45 - LFCP:[MD5.D44FA6B667B538CA937D89192DD04274] - 10/04/2014 - 14:08:37 ---A- - C:\Windows\Prefetch\PCSPEEDMAXIMIZERPRO.EXE-0E7AAB47.pf
O45 - LFCP:[MD5.DCB42645A38142E8FACF386C7BA8C4DC] - 10/04/2014 - 14:09:32 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-89C4F445.pf
O45 - LFCP:[MD5.591F7DA0FBDE57FACD6158231B740735] - 10/04/2014 - 14:45:55 ---A- - C:\Windows\Prefetch\GLCND.EXE-9B5EC8B0.pf
O45 - LFCP:[MD5.6D16AF5AAAB5F39013D80768F2BA5B65] - 10/04/2014 - 15:48:26 ---A- - C:\Windows\Prefetch\YET_ANOTHER_CLEANER_SK.EXE-1E3740FE.pf
O45 - LFCP:[MD5.F4924512E8FB16DEECF5256FAA671380] - 10/04/2014 - 15:49:39 ---A- - C:\Windows\Prefetch\ISAFESVC2.EXE-4540E0EF.pf =>Trojan.Staser
O45 - LFCP:[MD5.711DB8D3D9D5FA5EEAB2A5E0213C4CA6] - 10/04/2014 - 15:49:50 ---A- - C:\Windows\Prefetch\ISAFE.EXE-95A1F8F9.pf =>Trojan.Staser
O45 - LFCP:[MD5.FB8CB89CAA9E6B79371B1980683E85EB] - 10/04/2014 - 15:49:50 ---A- - C:\Windows\Prefetch\ISTART.EXE-F0B82CDC.pf
O45 - LFCP:[MD5.BB17360FE20ECDC9BF37CE0FFA79D0A2] - 10/04/2014 - 16:02:22 ---A- - C:\Windows\Prefetch\ISAFETHLP.EXE-E2FDB531.pf =>Trojan.Staser
O45 - LFCP:[MD5.C5B6CF409FE6AE7EFBB1EE33070144E0] - 10/04/2014 - 16:43:01 ---A- - C:\Windows\Prefetch\UPDATE~1.EXE-119CB9CD.pf
O45 - LFCP:[MD5.564BBE71EB485DCC63B4C738E8A8996F] - 10/04/2014 - 19:36:09 ---A- - C:\Windows\Prefetch\UTILMEGABROWSE.EXE-3C226768.pf =>PUP.MegaBrowse
O45 - LFCP:[MD5.9E4F3C31826BD601FF7D3A28EE20B957] - 10/04/2014 - 23:28:05 ---A- - C:\Windows\Prefetch\INSTUP.EXE-7E543EAF.pf
O45 - LFCP:[MD5.2C4E7506919DAB9FBFE1952E083EF1F8] - 10/04/2014 - 23:29:09 ---A- - C:\Windows\Prefetch\ASWWRCIELOADER32.EXE-BB2E4DE4.pf
O45 - LFCP:[MD5.0D07AA548C58ABEDC071F8054708DD1C] - 10/04/2014 - 23:29:11 ---A- - C:\Windows\Prefetch\ASWWRCIELOADER64.EXE-123116A5.pf
O45 - LFCP:[MD5.A1B2360C19A5AB8F39DA41338B7DB160] - 10/04/2014 - 23:29:11 ---A- - C:\Windows\Prefetch\REGSVR64.EXE-15F84E66.pf
O45 - LFCP:[MD5.DC77516F4FF339FFE7B32FC53218A101] - 10/04/2014 - 23:30:07 ---A- - C:\Windows\Prefetch\SETUPINF64.EXE-76B2E3AF.pf
O45 - LFCP:[MD5.E4EDF44B2575AEE7BD655696577B3945] - 10/04/2014 - 23:55:17 ---A- - C:\Windows\Prefetch\34.0.1847.116_CHROME_INSTALLE-376854BB.pf
O45 - LFCP:[MD5.049E8065C7CD354AF082EC72FAF05559] - 11/04/2014 - 10:37:08 ---A- - C:\Windows\Prefetch\ISAFETRAY.EXE-3F11FE51.pf =>Trojan.Staser
O45 - LFCP:[MD5.6FADD54929C06C3530AA22B99445EFD0] - 11/04/2014 - 10:37:23 ---A- - C:\Windows\Prefetch\SONICMASTERTRAY.EXE-52C2F271.pf
O45 - LFCP:[MD5.B8E328794BFBE0B8993FD6DA4BB19552] - 11/04/2014 - 11:31:11 ---A- - C:\Windows\Prefetch\DUP.EXE-2FA91CCE.pf
O45 - LFCP:[MD5.39308E5B27B04FE3CB992D5DDBBFC718] - 11/04/2014 - 11:37:56 ---A- - C:\Windows\Prefetch\WEBINTERNETSECURITY.EXE-0631BEBF.pf =>Spyware.Binternet
O45 - LFCP:[MD5.F4A3ACE60C6E5FC8C9D813C57EBE4E83] - 12/04/2014 - 08:14:14 ---A- - C:\Windows\Prefetch\DAO.18253925.EXE-AD24BF03.pf
O45 - LFCP:[MD5.FBF99FE8FAAA6D3D9317BEABF00C7559] - 12/04/2014 - 12:37:29 ---A- - C:\Windows\Prefetch\WSHOST.EXE-3BD2AA25.pf
O45 - LFCP:[MD5.8593DCE6F0845D093CF410F5DEB80215] - 12/04/2014 - 19:49:30 ---A- - C:\Windows\Prefetch\dynreservedpri.db
O45 - LFCP:[MD5.CE01CAE6D91C29627163A17C4016915E] - 12/04/2014 - 21:20:01 ---A- - C:\Windows\Prefetch\UNINSTALL.WEBINTERNETSECURITY-E77A2417.pf =>Spyware.Binternet
O45 - LFCP:[MD5.1F1B09F574CA653350C73ACF517E041A] - 12/04/2014 - 21:20:43 ---A- - C:\Windows\Prefetch\BUGREPORT.EXE-C4AA4503.pf
O45 - LFCP:[MD5.D3BF002A1389AAC4F99870A42282A46B] - 12/04/2014 - 21:21:31 ---A- - C:\Windows\Prefetch\ISAFESVC.EXE-16BF537D.pf =>Trojan.Staser
O45 - LFCP:[MD5.64BC99752A4D0CA4B8BDA38ED537D674] - 13/04/2014 - 00:51:42 ---A- - C:\Windows\Prefetch\PfPre_538b71a5.db
O45 - LFCP:[MD5.D7F141DE76393C12D313A38350C09C3C] - 13/04/2014 - 09:43:44 ---A- - C:\Windows\Prefetch\NVBACKEND.EXE-00368064.pf
~ Prefetcher: 32 Scanned in 00mn 00s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Fournisseur de sécurité TLS/SSL.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Live Security Package.) -- C:\Windows\System32\livessp.dll
~ LSA: 9 Scanned in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (...) -- C:\Windows\System32\Drivers\rdpencdd.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ CSB: 17 Scanned in 00mn 00s



---\\ Clé de registre Shell MountPoints2 (MPKS) (O51)
O51 - MPSK:{6b599273-81de-11e3-be68-ca5cfc275301}\AutoRun\command. (...) -- I:\WD SmartWare.exe (.not file.)
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ TDSD: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ MSCP: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableCursorSuppression"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 17 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoLowDiskSpaceChecks"=1
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=221
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
~ MWPE Keys: 5 Scanned in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:[MD5.E1832BD9FD7E0FC2DC9FA5935DE3E8C1] - 22/08/2013 - 12:38:15 ---A- . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\Windows\System32\Drivers\1394ohci.sys [231424]
O58 - SDL:[MD5.AD508A1A46EC21B740AB31C28EFDFDB1] - 22/08/2013 - 13:43:41 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [108896]
O58 - SDL:[MD5.9539F7917B4B6D92C90F0FAA6B86C605] - 22/02/2014 - 16:44:07 ---A- . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\Drivers\acpi.sys [539992]
O58 - SDL:[MD5.AC8279D229398BCF05C3154ADCA86813] - 22/08/2013 - 13:49:54 ---A- . (.Microsoft Corporation - ACPIEx Driver.) -- C:\Windows\System32\Drivers\acpiex.sys [79712]
O58 - SDL:[MD5.A8970D9BF23CD309E0403978A1B58F3F] - 22/08/2013 - 12:38:48 ---A- . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\Windows\System32\Drivers\acpipagr.sys [10240]
O58 - SDL:[MD5.111A89C99C5B4F1A7BCE5F643DD86F65] - 22/08/2013 - 12:38:53 ---A- . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\Drivers\acpipmi.sys [12288]
O58 - SDL:[MD5.5758387D68A20AE7D3245011B07E36E7] - 22/08/2013 - 12:38:58 ---A- . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\Windows\System32\Drivers\acpitime.sys [10752]
O58 - SDL:[MD5.7C1FDF1B48298CBA7CE4BDD4978951AD] - 22/08/2013 - 13:43:41 ---A- . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS/SATA controller.) -- C:\Windows\System32\Drivers\adp80xx.sys [782176]
O58 - SDL:[MD5.239268BAB58EAE9A3FF4E08334C00451] - 22/08/2013 - 14:25:35 ---A- . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\Drivers\afd.sys [567296]
O58 - SDL:[MD5.55FE43112F61836D0581D615C72AA113] - 14/11/2013 - 08:30:52 ---A- . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\Drivers\agilevpn.sys [97280]
O58 - SDL:[MD5.7DFAEBA9AD62D20102B576D5CAC45EC8] - 22/08/2013 - 13:43:40 ---A- . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\Drivers\AGP440.sys [62304]
O58 - SDL:[MD5.8E8E34B7BA059050EED827410D0697A2] - 22/08/2013 - 12:39:54 ---A- . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\Windows\System32\Drivers\ahcache.sys [76800]
O58 - SDL:[MD5.7589DE749DB6F71A68489DCE04158729] - 22/08/2013 - 09:46:34 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdk8.sys [95744]
O58 - SDL:[MD5.B46D2D89AFF8A9490FA8C98C7A5616E3] - 22/08/2013 - 09:46:35 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdppm.sys [98816]
O58 - SDL:[MD5.D2BF2F94A47D332814910FD47C6BBCD2] - 22/08/2013 - 13:43:41 ---A- . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [79200]
O58 - SDL:[MD5.A8E04943C7BBA7219AA50400272C3C6E] - 22/08/2013 - 13:43:41 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\System32\Drivers\amdsbs.sys [259424]
O58 - SDL:[MD5.CEA5F4F27CFC08E3A44D576811B35F50] - 22/08/2013 - 13:43:40 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [25952]
O58 - SDL:[MD5.C65A3C67630A67A97AD26C21173BA61E] - 02/06/2013 - 04:56:58 ---A- . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\Drivers\Apowersoft_AudioDevice.sys [31920]
O58 - SDL:[MD5.04951A9A937CBE28A2D3FEEA360B6D1F] - 14/11/2013 - 08:30:51 ---A- . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\Drivers\appid.sys [83456]
O58 - SDL:[MD5.65045784366F7EC5FB4E71BCF923187B] - 22/08/2013 - 13:43:41 ---A- . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [114016]
O58 - SDL:[MD5.3DB7721F06BC2FEDB25029EA23AB27DA] - 22/08/2013 - 12:38:53 ---A- . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\Drivers\asyncmac.sys [26624]
O58 - SDL:[MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - 13:43:41 ---A- . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\Drivers\atapi.sys [26464]
O58 - SDL:[MD5.38E1F4E0148A24C65D215F14D57B0711] - 22/08/2013 - 13:43:41 ---A- . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\Drivers\ataport.sys [199520]
O58 - SDL:[MD5.688941322FB20DB0407B6F149607517D] - 14/08/2013 - 03:42:44 ---A- . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN device driver.) -- C:\Windows\System32\Drivers\athwbx.sys [3837440]
O58 - SDL:[MD5.B04BF12AEBFB5E71971B4EDA4EDFC196] - 18/06/2013 - 15:45:05 ---A- . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN device driver.) -- C:\Windows\System32\Drivers\athwnx.sys [3680256]
O58 - SDL:[MD5.8CC7F7E4AFCBA605921B137ED7992C68] - 22/08/2013 - 12:39:31 ---A- . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys [50688]
O58 - SDL:[MD5.38A82F4EE8C416A6744B6D30381ED768] - 22/02/2014 - 13:14:02 ---A- . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys [33280]
O58 - SDL:[MD5.99387C515F80270F097F6DD9B5315649] - 22/08/2013 - 13:49:53 ---A- . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\Drivers\battc.sys [35168]
O58 - SDL:[MD5.C1ABB0F7E3BEA48A0417BDF6FF14AB21] - 13/08/2013 - 00:25:46 ---A- . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\Drivers\bcmfn2.sys [17624]
O58 - SDL:[MD5.EC19013E4CF87609534165DF897274D6] - 22/08/2013 - 12:40:24 ---A- . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\Drivers\beep.sys [7680]
O58 - SDL:[MD5.6B4FFFDDC618FCF64473CAA86E305697] - 22/08/2013 - 12:38:38 ---A- . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\Drivers\bowser.sys [102912]
O58 - SDL:[MD5.4E888019078AC363076A5433E89AA4F8] - 22/08/2013 - 12:35:50 ---A- . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\Drivers\bridge.sys [115712]
O58 - SDL:[MD5.1C89EF529DB7DCA98E801EFDCC8437DE] - 23/11/2013 - 08:13:50 ---A- . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Manager.) -- C:\Windows\System32\Drivers\BtaMPM.sys [19456]
O58 - SDL:[MD5.A8F23D453A424FF4DE04989C4727ECC7] - 22/08/2013 - 12:38:39 ---A- . (.Microsoft Corporation - HID de contrôle à distance audio/vidéo Bluetooth.) -- C:\Windows\System32\Drivers\BthAvrcpTg.sys [36992]
O58 - SDL:[MD5.746B9F94214915AECDE4B7FEA5FF9664] - 22/08/2013 - 12:37:42 ---A- . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control HID Enumerator.) -- C:\Windows\System32\Drivers\bthhfenum.sys [57856]
O58 - SDL:[MD5.71FE2A48E4C93DDB9798C024880B6C07] - 22/08/2013 - 12:38:16 ---A- . (.Microsoft Corporation - Minipilote HID mains libres Bluetooth.) -- C:\Windows\System32\Drivers\BthhfHid.sys [30720]
O58 - SDL:[MD5.07E33226AD218A2A162662A05CAFB52F] - 22/08/2013 - 12:36:44 ---A- . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\Drivers\bthmodem.sys [63488]
O58 - SDL:[MD5.A4A73F631FE2AA2826FBE4A399B04DEF] - 22/08/2013 - 13:43:41 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbda.sys [531296]
O58 - SDL:[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - 12:40:15 ---A- . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\Drivers\cdfs.sys [88576]
O58 - SDL:[MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - 09:46:35 ---A- . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\Drivers\cdrom.sys [164352]
O58 - SDL:[MD5.BE9936EDD3267FAAFF94A7835867F00B] - 22/08/2013 - 12:38:25 ---A- . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\Drivers\circlass.sys [44032]
O58 - SDL:[MD5.AC408FA243471C25CDE435C3B83536A9] - 08/03/2014 - 21:35:45 ---A- . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\Drivers\Classpnp.sys [337752]
O58 - SDL:[MD5.179A41249055D5F039F1B6703F3B6D2B] - 20/03/2014 - 04:41:20 ---A- . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\Drivers\clfs.sys [376152]
O58 - SDL:[MD5.EF6EF85DADC3184A10D8F2F7159973CB] - 22/08/2013 - 12:39:43 ---A- . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\Drivers\CmBatt.sys [25472]
O58 - SDL:[MD5.4627C1FBF2802425A408A2D2AF28CF85] - 08/03/2014 - 21:47:17 ---A- . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\Drivers\cng.sys [565536]
O58 - SDL:[MD5.03AAED827C36F35D70900558B8274905] - 22/08/2013 - 12:38:48 ---A- . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\Drivers\CompositeBus.sys [36352]
O58 - SDL:[MD5.A1FF7DFBFBE164CF92603C651D304DD2] - 22/08/2013 - 14:25:40 ---A- . (.Microsoft Corporation - Console Driver.) -- C:\Windows\System32\Drivers\condrv.sys [43008]
O58 - SDL:[MD5.FA47B0AA255B7CF4519E995C6404AE22] - 22/08/2013 - 13:43:41 ---A- . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\Drivers\crashdmp.sys [68960]
O58 - SDL:[MD5.EE2F3C0D6ADBC975D6B621EC15ACF4E2] - 14/11/2013 - 08:16:39 ---A- . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\Windows\System32\Drivers\csc.sys [559616]
O58 - SDL:[MD5.315BA4BC19316D72B2E037534E048B93] - 22/08/2013 - 13:50:19 ---A- . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\Windows\System32\Drivers\dam.sys [57696]
O58 - SDL:[MD5.C6E1C081C0849E08FECEC18DF73B10C4] - 25/03/2013 - 13:41:46 ---A- . (.Microsoft Corporation - Filter Driver for Identification of Microsoft Hardware Wireless.) -- C:\Windows\System32\Drivers\dc3d.sys [76464]
O58 - SDL:[MD5.A03F362C5557E238CBFA914689C77248] - 06/03/2014 - 10:22:50 ---A- . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\Drivers\dfsc.sys [134144]
O58 - SDL:[MD5.4D40C9B33F738797CF50E77CB7C53E85] - 22/08/2013 - 13:39:44 ---A- . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\Drivers\disk.sys [100192]
O58 - SDL:[MD5.224C2CB37497472C345CB2A02DF11363] - 22/08/2013 - 13:43:40 ---A- . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\Drivers\Diskdump.sys [36192]
O58 - SDL:[MD5.407B4FC1AEE5C19AC2ED7118CBB271E9] - 22/08/2013 - 12:40:38 ---A- . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\Windows\System32\Drivers\Dmpusbstor.sys [13312]
O58 - SDL:[MD5.EB70A894708D1BC176AFD690FF06085F] - 22/08/2013 - 12:37:14 ---A- . (.Microsoft Corporation - Dynamic Memory.) -- C:\Windows\System32\Drivers\dmvsc.sys [29696]
O58 - SDL:[MD5.3103BBAB41F0C75BE6FA302439C9B9D6] - 22/08/2013 - 12:39:24 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmk.sys [88576]
O58 - SDL:[MD5.DDC11A202207C0400CBE07315B8FDE5E] - 22/08/2013 - 13:40:31 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmkaud.sys [14560]
O58 - SDL:[MD5.05F5C162881BE293956C60456EDB0092] - 22/08/2013 - 13:39:46 ---A- . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\Drivers\Dumpata.sys [33632]
O58 - SDL:[MD5.61A1C2641321A6B89A2B41C5D481EF48] - 22/02/2014 - 17:15:19 ---A- . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\Drivers\dumpfve.sys [71888]
O58 - SDL:[MD5.02836172141D3AFA35B07679E253E503] - 22/02/2014 - 17:00:20 ---A- . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\Windows\System32\Drivers\dumpsd.sys [151384]
O58 - SDL:[MD5.C7D252742946DD395670649742FBD73D] - 06/03/2014 - 13:51:51 ---A- . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys [1557848]
O58 - SDL:[MD5.4030CB06B8D963A45CED9E60C9F2A11E] - 06/03/2014 - 13:51:51 ---A- . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\Drivers\dxgmms1.sys [379224]
O58 - SDL:[MD5.43531A5993380CC5113242C29D265FD9] - 22/08/2013 - 13:43:40 ---A- . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667 devices.) -- C:\Windows\System32\Drivers\EhStorClass.sys [82784]
O58 - SDL:[MD5.6F8E738A9505A388B1157FDDE7B3101B] - 22/08/2013 - 13:43:40 ---A- . (.Microsoft Corporation - Microsoft driver for storage devices supporting IEEE 1667 and T.) -- C:\Windows\System32\Drivers\EhStorTcgDrv.sys [114016]
O58 - SDL:[MD5.DFFFAE1442BA4076E18EED5E406FA0D3] - 22/08/2013 - 12:38:45 ---A- . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\Drivers\errdev.sys [10240]
O58 - SDL:[MD5.114BCFDF367FF37C3F1B0A96AF542E4D] - 22/08/2013 - 13:43:45 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbda.sys [3357024]
O58 - SDL:[MD5.7729D294A555C7AEB281ED8E4D0E01E4] - 22/08/2013 - 12:40:18 ---A- . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\Drivers\exfat.sys [200704]
O58 - SDL:[MD5.7C4E0D5900B2A1D11EDD626D6DDB937B] - 22/08/2013 - 13:49:30 ---A- . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\Drivers\fastfat.sys [217952]
O58 - SDL:[MD5.5D8402613E778B3BD45E687A8372710B] - 22/08/2013 - 12:40:18 ---A- . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\Drivers\fdc.sys [30720]
O58 - SDL:[MD5.BCFD8B149B3ADF92D0DB1E909CAF0265] - 22/02/2014 - 17:00:23 ---A- . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\Drivers\fileinfo.sys [79192]
O58 - SDL:[MD5.A1A66C4FDAFD6B0289523232AFB7D8AF] - 22/08/2013 - 12:39:41 ---A- . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\Drivers\filetrace.sys [34816]
O58 - SDL:[MD5.BE743083CF7063C486A4398E3AEFE59A] - 22/08/2013 - 12:40:18 ---A- . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\Drivers\flpydisk.sys [25088]
O58 - SDL:[MD5.46D1DF775FFF14585218BBE16E5B2C9A] - 22/02/2014 - 16:44:07 ---A- . (.Microsoft Corporation - Gestionnaire de filtres de système de fichiers Microsoft.) -- C:\Windows\System32\Drivers\fltMgr.sys [360792]
O58 - SDL:[MD5.35005534E600E993A90B036E4E599F2B] - 22/08/2013 - 13:49:30 ---A- . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\fsdepends.sys [56672]
O58 - SDL:[MD5.09F460AFEDCA03F3BF6E07D1CCC9AC42] - 22/08/2013 - 14:25:40 ---A- . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\Drivers\fs_rec.sys [30048]
O58 - SDL:[MD5.B2BD017231836DA9F63F41E3A075D73E] - 22/02/2014 - 17:00:23 ---A- . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\Drivers\fvevol.sys [590168]
O58 - SDL:[MD5.C48CDFD48A43E4AEC8170E1E50A3FACD] - 04/03/2014 - 13:15:22 ---A- . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\Drivers\FWPKCLNT.SYS [428888]
O58 - SDL:[MD5.9591D0B9351ED489EAFD9D1CE52A8015] - 22/08/2013 - 09:46:33 ---A- . (.Microsoft Corporation - Processor Driver.) -- C:\Windows\System32\Drivers\fxppm.sys [27136]
O58 - SDL:[MD5.FC3EF65EE20D39F8749C2218DBA681CA] - 22/08/2013 - 13:43:45 ---A- . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour plateformes de processe.) -- C:\Windows\System32\Drivers\GAGP30KX.SYS [65888]
O58 - SDL:[MD5.8E98D21EE06192492A5671A6144D092F] - 21/08/2012 - 13:01:20 ---A- . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\Drivers\GEARAspiWDM.sys [33240]
O58 - SDL:[MD5.03909BDBFF0DCACCABF2B2D4ADEE44DC] - 22/08/2013 - 12:38:38 ---A- . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\Drivers\hdaudbus.sys [78336]
O58 - SDL:[MD5.A6518DCC42F7A6E999BB3BEA8FD87567] - 19/10/2010 - 23:34:26 ---A- . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\Drivers\HECIx64.sys [56344]
O58 - SDL:[MD5.10A70BC1871CD955D85CD88372724906] - 22/08/2013 - 12:39:01 ---A- . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\Drivers\hidbatt.sys [26624]
O58 - SDL:[MD5.1EA1B4FABB8CC348E73CA90DBA22E104] - 22/08/2013 - 12:38:39 ---A- . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périphériques HID.) -- C:\Windows\System32\Drivers\hidbth.sys [96768]
O58 - SDL:[MD5.ABB7341766902F5AAB45E15F34D19E15] - 06/03/2014 - 10:24:41 ---A- . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\Windows\System32\Drivers\hidclass.sys [111616]
O58 - SDL:[MD5.C241A8BAFBBFC90176EA0F5240EACC17] - 22/08/2013 - 12:37:28 ---A- . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\Windows\System32\Drivers\hidi2c.sys [41472]
O58 - SDL:[MD5.9BDDEE26255421017E161CCB9D5EDA95] - 22/08/2013 - 12:39:16 ---A- . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidir.sys [45568]
O58 - SDL:[MD5.7FFB24B4A54B1ACD46CF6899D879CC9F] - 22/08/2013 - 12:40:26 ---A- . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\Drivers\hidparse.sys [32512]
O58 - SDL:[MD5.8DB8EAB9D0C6A5DF0BDCADEA239220B4] - 06/03/2014 - 10:24:15 ---A- . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidusb.sys [33280]
O58 - SDL:[MD5.A6AACEA4C785789BDA5912AD1FEDA80D] - 22/08/2013 - 13:43:45 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [64352]
O58 - SDL:[MD5.9DDCA7F18983C5410DEFF79F819DF93C] - 29/01/2014 - 09:40:25 ---A- . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\Drivers\http.sys [994136]
O58 - SDL:[MD5.90656C0B3864804B090434EFC582404F] - 22/08/2013 - 13:39:47 ---A- . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\Drivers\hwpolicy.sys [24416]
O58 - SDL:[MD5.6D6F9E3BF0484967E52F7E846BFF1CA1] - 22/08/2013 - 12:37:49 ---A- . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\Windows\System32\Drivers\hyperkbd.sys [13824]
O58 - SDL:[MD5.907C870F8C31F8DDD6F090857B46AB25] - 22/08/2013 - 12:39:20 ---A- . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Driver.) -- C:\Windows\System32\Drivers\HyperVideo.sys [22016]
O58 - SDL:[MD5.84CFC5EFA97D0C965EDE1D56F116A541] - 22/08/2013 - 12:39:15 ---A- . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\Drivers\i8042prt.sys [107520]
O58 - SDL:[MD5.5D90E32E36CE5D4C535D17CE08AEAF05] - 30/07/2013 - 19:47:35 ---A- . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\Drivers\iaLPSSi_GPIO.sys [24568]
O58 - SDL:[MD5.DD05E7E80F52ADE9AEB292819920F32C] - 25/07/2013 - 20:05:39 ---A- . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\Drivers\iaLPSSi_I2C.sys [99320]
O58 - SDL:[MD5.08BFE413B0B4AA8DFA4B5684CE06D3DC] - 10/08/2013 - 01:39:30 ---A- . (.Intel Corporation - Intel Rapid Storage Technology driver (inbox) - x64.) -- C:\Windows\System32\Drivers\iaStorAV.sys [651248]
O58 - SDL:[MD5.A2200C3033FA4EF249FC096A7A7D02A2] - 22/08/2013 - 13:43:45 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\Drivers\iaStorV.sys [412000]
O58 - SDL:[MD5.8C44E6B688790E2AD3846C97661C54F1] - 29/01/2014 - 23:02:28 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdkmd64.sys [5363200]
O58 - SDL:[MD5.4E448FCFFD00E8D657CD9E48D3E47157] - 22/08/2013 - 13:43:44 ---A- . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\Drivers\intelide.sys [18272]
O58 - SDL:[MD5.139CFCDCD36B1B1782FD8C0014AC9B0E] - 21/01/2014 - 18:19:58 ---A- . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\Windows\System32\Drivers\intelpep.sys [39768]
O58 - SDL:[MD5.47E74A8E53C7C24DCE38311E1451C1D9] - 22/08/2013 - 09:46:35 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\intelppm.sys [98816]
O58 - SDL:[MD5.9DB76D7F9E4E53EFE5DD8C53DE837514] - 22/08/2013 - 12:35:51 ---A- . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\Drivers\ipfltdrv.sys [84992]
O58 - SDL:[MD5.FD9C9E9E3F0ED51502C7E8C066BE26B9] - 06/03/2014 - 10:24:21 ---A- . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\Drivers\IPMIDrv.sys [79360]
O58 - SDL:[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 27/11/2013 - 13:02:29 ---A- . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys [142848]
O58 - SDL:[MD5.D826F4874A372FAE2F42478E0975EA02] - 22/08/2013 - 12:37:35 ---A- . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\Drivers\irda.sys [118784]
O58 - SDL:[MD5.AE44C526AB5F8A487D941CEB57B10C97] - 22/08/2013 - 12:38:30 ---A- . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\Drivers\irenum.sys [17920]
O58 - SDL:[MD5.E18F41594CBC4B4A34431DC17EA81985] - 10/04/2014 - 11:58:57 ---A- . (.Elex do Brasil Participações Ltda - iSafe Kernel Boot Driver.) -- C:\Windows\System32\Drivers\iSafeKrnlBoot.sys [34304] =>Trojan.Staser
O58 - SDL:[MD5.8AFEEA3955AA43616A60F133B1D25F21] - 22/08/2013 - 13:43:45 ---A- . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\Drivers\isapnp.sys [21856]
O58 - SDL:[MD5.8BE92376799B6B44D543E8D07CDCF885] - 22/08/2013 - 13:43:45 ---A- . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\Drivers\kbdclass.sys [58208]
O58 - SDL:[MD5.FB6E47E569D4872ABEB506BE03A45FBA] - 22/08/2013 - 12:39:13 ---A- . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\Drivers\kbdhid.sys [32256]
O58 - SDL:[MD5.DB7A09BC90DF20F44F16F8B0F9ED3491] - 14/11/2013 - 08:16:45 ---A- . (.Microsoft Corporation - Keyboard Lockdown Subsystem.) -- C:\Windows\System32\Drivers\kbldfltr.sys [22272]
O58 - SDL:[MD5.813871C7D402A05F2E3A7075F9584A05] - 22/08/2013 - 12:38:26 ---A- . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\Windows\System32\Drivers\kdnic.sys [19456]
O58 - SDL:[MD5.233A4C961703D6B3EBA4EC1A3E85AACE] - 22/02/2014 - 13:14:42 ---A- . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\Drivers\ks.sys [298496]
O58 - SDL:[MD5.ADDECBCC777665BD113BED437E602AB0] - 14/11/2013 - 08:30:48 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecdd.sys [101208]
O58 - SDL:[MD5.F88CC88F4A6D8476F1664E805CA18CC2] - 08/03/2014 - 21:47:48 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface Packages.) -- C:\Windows\System32\Drivers\ksecpkg.sys [180056]
O58 - SDL:[MD5.11AFB527AA370B1DAFD5C36F35F6D45F] - 22/08/2013 - 12:39:31 ---A- . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\Windows\System32\Drivers\ksthunk.sys [21248]
O58 - SDL:[MD5.50AECF8C21AB2A6428A6E1E10549D8E5] - 18/06/2013 - 15:44:59 ---A- . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabit Ethernet Controlle.) -- C:\Windows\System32\Drivers\L1C63x64.sys [129224]
O58 - SDL:[MD5.C09010B3680860131631F53E8FE7BAD8] - 22/08/2013 - 12:36:18 ---A- . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\Drivers\lltdio.sys [59392]
O58 - SDL:[MD5.C755AE4635457AA2A11F79C0DF857ABC] - 22/08/2013 - 13:43:44 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [109408]
O58 - SDL:[MD5.ADAC09CBE7A2040B7F68B5E5C9A75141] - 22/08/2013 - 13:43:45 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [93536]
O58 - SDL:[MD5.04D1274BB9BBCCF12BD12374002AA191] - 22/08/2013 - 13:43:44 ---A- . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas3.sys [81760]
O58 - SDL:[MD5.327469EEF3833D0C584B7E88A76AEC0C] - 22/08/2013 - 13:43:45 ---A- . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sss.sys [82784]
O58 - SDL:[MD5.DDEE191AB32DFC22C6465002ECDF5EE4] - 22/02/2014 - 13:14:25 ---A- . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichier LUA.) -- C:\Windows\System32\Drivers\luafv.sys [124416]
O58 - SDL:[MD5.FD5465B876D55534117963FAAA4B9DFC] - 03/04/2014 - 08:50:58 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25816]
O58 - SDL:[MD5.4A1356200B82B852E137B687F03E8054] - 03/04/2014 - 08:51:04 ---A- . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\Drivers\mbamchameleon.sys [88280]
O58 - SDL:[MD5.6140163BFE9D8F2DFDBA088ED5521C13] - 12/04/2014 - 15:10:07 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\MBAMSwissArmy.sys [119512]
O58 - SDL:[MD5.C895E3FAE8628EAA4ADE0F52862CA575] - 22/08/2013 - 12:39:38 ---A- . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\Drivers\mcd.sys [22016]
O58 - SDL:[MD5.EB5C03A070F30D64A6DF80E53B22F53F] - 22/08/2013 - 13:43:45 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\Drivers\megasas.sys [56672]
O58 - SDL:[MD5.F6F13533196DE7A582D422B0241E4363] - 22/08/2013 - 13:43:45 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\megasr.sys [575840]
O58 - SDL:[MD5.8B38C44F69259987C95135C9627E2378] - 22/08/2013 - 12:40:15 ---A- . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\Drivers\modem.sys [40960]
O58 - SDL:[MD5.601589000CC90F0DF8DA2CC254A3CCC9] - 22/08/2013 - 12:36:37 ---A- . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\Drivers\monitor.sys [30208]
O58 - SDL:[MD5.CEAC6D40FE887CE8406C2393CF97DE06] - 22/08/2013 - 13:43:45 ---A- . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\Drivers\mouclass.sys [51040]
O58 - SDL:[MD5.02D98BF804084E9A0D69D1C69B02CCA9] - 22/08/2013 - 12:39:13 ---A- . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\Drivers\mouhid.sys [30208]
O58 - SDL:[MD5.515549560D481138E6E21AF7C6998E56] - 22/08/2013 - 14:25:40 ---A- . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\Drivers\mountmgr.sys [101728]
O58 - SDL:[MD5.F170510BE94CF45E3C6274578F6204B2] - 22/08/2013 - 12:36:06 ---A- . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\Drivers\mpsdrv.sys [74240]
O58 - SDL:[MD5.1D55DADC22D21883A2F80297F5A5AE48] - 06/03/2014 - 10:22:04 ---A- . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\Drivers\mrxdav.sys [140288]
O58 - SDL:[MD5.C997E6A37BA8915224B3FB5024A34F69] - 06/03/2014 - 10:20:23 ---A- . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\Drivers\mrxsmb.sys [402944]
O58 - SDL:[MD5.3E28B99198B514DFEB152EACF913025E] - 06/03/2014 - 10:19:36 ---A- . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\Drivers\mrxsmb10.sys [283648]
O58 - SDL:[MD5.AAF56E4E84D35411B4E446C445732DFE] - 14/11/2013 - 08:30:48 ---A- . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\Drivers\mrxsmb20.sys [207360]
O58 - SDL:[MD5.D13329FBF8345B28AB30F44CC247DC08] - 22/08/2013 - 14:25:41 ---A- . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\Drivers\msfs.sys [30208]
O58 - SDL:[MD5.EF3AE7773394DF49CE74AF78A1C8D23D] - 22/02/2014 - 16:49:47 ---A- . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\Windows\System32\Drivers\msgpioclx.sys [146776]
O58 - SDL:[MD5.C6B474E46F9E543B875981ED3FFE6ADD] - 22/08/2013 - 13:43:48 ---A- . (.Microsoft Corporation - GPIO Button Driver.) -- C:\Windows\System32\Drivers\msgpiowin32.sys [41824]
O58 - SDL:[MD5.65C92EB9D08DB5C69F28C7FFD4E84E31] - 22/08/2013 - 12:39:06 ---A- . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\Drivers\mshidkmdf.sys [8192]
O58 - SDL:[MD5.52299F086AC2DAFD100DD5DC4A8614BA] - 22/08/2013 - 12:39:06 ---A- . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\Windows\System32\Drivers\mshidumdf.sys [9728]
O58 - SDL:[MD5.36D92AF3343C3A3E57FEF11C449AEA4C] - 22/08/2013 - 13:43:49 ---A- . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\Drivers\msisadrv.sys [17248]
O58 - SDL:[MD5.034D4BD9DC67C64F3A4C8A049B5173BF] - 22/08/2013 - 13:43:49 ---A- . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\Drivers\msiscsi.sys [274784]
O58 - SDL:[MD5.A9BBBD2BAE6142253B9195E949AC2E8D] - 22/08/2013 - 12:39:31 ---A- . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\Drivers\mskssrv.sys [10624]
O58 - SDL:[MD5.375E44168F2DFB91A68B8A3F619C5A7C] - 22/08/2013 - 12:36:07 ---A- . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discovery Protocol) Micros.) -- C:\Windows\System32\Drivers\mslldp.sys [66560]
O58 - SDL:[MD5.7B2128EB875DCBC006E6A913211006D6] - 22/08/2013 - 12:39:30 ---A- . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\Drivers\mspclock.sys [7040]
O58 - SDL:[MD5.1E88171579B218115C7A772F8DE04BD8] - 22/08/2013 - 12:39:31 ---A- . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\Drivers\mspqm.sys [6784]
O58 - SDL:[MD5.BBE2A455053E63BECBF42C2F9B21FAE0] - 22/08/2013 - 14:25:35 ---A- . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\Drivers\msrpc.sys [366432]
O58 - SDL:[MD5.8D6B7D515C5CBCDB75B928A0B73C3C5E] - 22/08/2013 - 13:49:29 ---A- . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\Drivers\mssmbios.sys [37728]
O58 - SDL:[MD5.115019AE01E0EB9C048530D2928AB4A2] - 22/08/2013 - 12:38:38 ---A- . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\Drivers\mstee.sys [7936]
O58 - SDL:[MD5.96D604A35070360F0DD4A7A8AF410B5E] - 22/08/2013 - 12:37:36 ---A- . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\Windows\System32\Drivers\MTConfig.sys [13312]
O58 - SDL:[MD5.619CA29326B82372621DB2C0964D8365] - 22/08/2013 - 13:49:29 ---A- . (.Microsoft Corporation - Multiple UNC Provider Driver.) -- C:\Windows\System32\Drivers\mup.sys [78688]
O58 - SDL:[MD5.B8C35C94DCB2DFEAF03BB42131F2F77F] - 22/08/2013 - 13:43:49 ---A- . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\Drivers\mvumis.sys [63840]
O58 - SDL:[MD5.3FFFB7F54CD7A792099C10402FCF8F56] - 03/04/2014 - 08:51:22 ---A- . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\Drivers\mwac.sys [63192]
O58 - SDL:[MD5.F21B77B4D74092A543807D3CEB711A88] - 22/02/2014 - 16:40:03 ---A- . (.Microsoft Corporation - NDIS (Network Driver Interface Specification).) -- C:\Windows\System32\Drivers\ndis.sys [1118552]
O58 - SDL:[MD5.C6BB12BC35D1637CA17AE16D3A4725EB] - 22/08/2013 - 12:38:06 ---A- . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\Drivers\ndiscap.sys [43008]
O58 - SDL:[MD5.9F1DA20E943BE7AA4ED5F3E1EBA78B37] - 22/08/2013 - 12:36:17 ---A- . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\Windows\System32\Drivers\NdisImPlatform.sys [124928]
O58 - SDL:[MD5.9423421E735BD5394351E0C47C76BB92] - 22/08/2013 - 12:39:16 ---A- . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\Drivers\ndistapi.sys [24576]
O58 - SDL:[MD5.B832B35055BA2B7B4181861FF94D8E59] - 22/08/2013 - 12:37:34 ---A- . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\Windows\System32\Drivers\ndisuio.sys [60416]
O58 - SDL:[MD5.1F58E48EF75F34C35D8E93A0DC535CFE] - 22/08/2013 - 12:36:25 ---A- . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Microsoft.) -- C:\Windows\System32\Drivers\NdisVirtualBus.sys [16384]
O58 - SDL:[MD5.DEC29080202D4F9F17F55E18BCFCC41A] - 22/08/2013 - 12:35:56 ---A- . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\Drivers\ndiswan.sys [220672]
O58 - SDL:[MD5.A5BD69A8812FA79D1A487691DD3FB244] - 22/08/2013 - 12:38:16 ---A- . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\Drivers\ndproxy.sys [72192]
O58 - SDL:[MD5.5A072F0B90C29C5233D78BE33EF5ED78] - 22/08/2013 - 12:35:42 ---A- . (.Microsoft Corporation - Windows Network Data Usage Monitoring Driver.) -- C:\Windows\System32\Drivers\Ndu.sys [103424]
O58 - SDL:[MD5.A83D67D347A684F10B7D3019C8A6380C] - 22/08/2013 - 12:38:58 ---A- . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\Drivers\netbios.sys [48128]
O58 - SDL:[MD5.0217532E19A748F0E5D569307363D5FD] - 22/08/2013 - 12:37:02 ---A- . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\Drivers\netbt.sys [282624]
O58 - SDL:[MD5.9E900970FEDF9AF53687940F44E05227] - 22/08/2013 - 14:25:35 ---A- . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\Drivers\netio.sys [478048]
O58 - SDL:[MD5.70414DB660BFBB7BD58FCE8EA4364E1B] - 22/08/2013 - 12:36:43 ---A- . (.Microsoft Corporation - Virtual NDIS6.3 Miniport.) -- C:\Windows\System32\Drivers\netvsc63.sys [87040]
O58 - SDL:[MD5.8F44A2F57C9F1A19AC9C6288C10FB351] - 22/08/2013 - 14:25:41 ---A- . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\Drivers\npfs.sys [58880]
O58 - SDL:[MD5.CBDB4F0871C88DF930FC0E8588CA67FC] - 22/08/2013 - 12:38:22 ---A- . (.Microsoft Corporation - Named pipe service triggers.) -- C:\Windows\System32\Drivers\npsvctrig.sys [23040]
O58 - SDL:[MD5.E490B459978CB87779E84C761D22B827] - 22/08/2013 - 14:25:35 ---A- . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys [39936]
O58 - SDL:[MD5.1C80517BE6836A812F6A9B99B8321351] - 20/03/2014 - 04:41:24 ---A- . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\Drivers\ntfs.sys [2013016]
O58 - SDL:[MD5.EF1B290FC9F0E47CC0B537292BEE5904] - 22/08/2013 - 14:25:41 ---A- . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\Drivers\null.sys [5632]
O58 - SDL:[MD5.75E324E8648FF2256634A3A8C1EA4DD6] - 08/02/2014 - 19:34:51 ---A- . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version 334.89.) -- C:\Windows\System32\Drivers\nvkflt.sys [300320]
O58 - SDL:[MD5.52B33E12FF8C9E219CAEC1BB4A5F5E4C] - 08/02/2014 - 19:34:51 ---A- . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version 334.89.) -- C:\Windows\System32\Drivers\nvlddmkm.sys [12324640]
O58 - SDL:[MD5.FACB0871B4480935F47234362F2FAE26] - 08/02/2014 - 19:34:51 ---A- . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version 334.89.) -- C:\Windows\System32\Drivers\nvpciflt.sys [32544]
O58 - SDL:[MD5.BC6B5942AFF25EBAF62DE43C3807EDF8] - 22/08/2013 - 13:43:31 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [150368]
O58 - SDL:[MD5.1F43ABFFAC3D6CA356851D517392966E] - 22/08/2013 - 13:43:32 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [168288]
O58 - SDL:[MD5.939C0FAE9CC0CDD69E6508BDE4C11FE5] - 27/12/2013 - 19:42:26 ---A- . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\Drivers\nvvad64v.sys [39200]
O58 - SDL:[MD5.6934A936A7369DFE37B7DBA93F5E5E49] - 22/08/2013 - 13:43:32 ---A- . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\Windows\System32\Drivers\NV_AGP.SYS [124768]
O58 - SDL:[MD5.647C7652FA19F98CADF2BFDA2164BFEC] - 06/03/2014 - 10:20:38 ---A- . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\Windows\System32\Drivers\nwifi.sys [443392]
O58 - SDL:[MD5.8528BB05E4D4E25945F78B00B2555FB7] - 22/08/2013 - 12:36:07 ---A- . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\Windows\System32\Drivers\pacer.sys [151552]
O58 - SDL:[MD5.764B1121867B2D9B31C491668AC72B2B] - 22/08/2013 - 12:40:02 ---A- . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\Drivers\parport.sys [94208]
O58 - SDL:[MD5.EF0C1749C9A8CEE9A457473D433CC00F] - 22/08/2013 - 14:25:40 ---A- . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\Drivers\partmgr.sys [88928]
O58 - SDL:[MD5.275AFE3FA35E8D78BE97695DF49817C6] - 22/02/2014 - 16:49:48 ---A- . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\Drivers\pci.sys [280920]
O58 - SDL:[MD5.346E38FCC6859A727DD28AFAD1F0AFF4] - 22/08/2013 - 13:43:31 ---A- . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\pciide.sys [14688]
O58 - SDL:[MD5.5D4D6146346B82EB3CA4EE0C5573193C] - 22/08/2013 - 13:43:32 ---A- . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\Drivers\pciidex.sys [48992]
O58 - SDL:[MD5.4D3BDCC1C7B40C9D7B6AD990E6DEC397] - 22/08/2013 - 13:49:30 ---A- . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\Windows\System32\Drivers\pcmcia.sys [114528]
O58 - SDL:[MD5.BF28771D1436C88BE1D297D3098B0F7D] - 22/08/2013 - 13:39:15 ---A- . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\Drivers\pcw.sys [50016]
O58 - SDL:[MD5.B9D968D8E2B0F9C6301CEB39CFC9B9E4] - 21/01/2014 - 18:19:58 ---A- . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\Windows\System32\Drivers\pdc.sys [86872]
O58 - SDL:[MD5.0ECEE590F2E2EF969FB74A6FC583A1E6] - 22/02/2014 - 13:09:37 ---A- . (.Microsoft Corporation - Protected Environment Authentication and Authorization Export D.) -- C:\Windows\System32\Drivers\PEAuth.sys [663040]
O58 - SDL:[MD5.8685379B82AC81187813225905531D1E] - 22/02/2014 - 13:11:27 ---A- . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport Devices).) -- C:\Windows\System32\Drivers\portcls.sys [272896]
O58 - SDL:[MD5.ECD373F9571C745894367CC2635EA44F] - 22/08/2013 - 09:46:34 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\processr.sys [92160]
O58 - SDL:[MD5.3FB466684609A4329858CF2EBD62E0FD] - 22/08/2013 - 12:39:27 ---A- . (.Microsoft Corporation - Pilote du support de Microsoft Quality Windows Audio Video Expe.) -- C:\Windows\System32\Drivers\qwavedrv.sys [47104]
O58 - SDL:[MD5.2C56F0EE27E4EF70CA4B4983D3638905] - 22/08/2013 - 12:40:01 ---A- . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\Drivers\rasacd.sys [17408]
O58 - SDL:[MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - 22/08/2013 - 12:35:51 ---A- . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\Drivers\rasl2tp.sys [120832]
O58 - SDL:[MD5.5247F308C4103CDC4FE12AE1D235800A] - 22/08/2013 - 12:36:37 ---A- . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\Drivers\raspppoe.sys [84992]
O58 - SDL:[MD5.E075CC071022BD4E9BE7C024717C0E0A] - 22/08/2013 - 12:35:51 ---A- . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\Drivers\raspptp.sys [107520]
O58 - SDL:[MD5.2B0F1677CDD08967005F34488559BC6F] - 22/08/2013 - 12:36:11 ---A- . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\Drivers\rassstp.sys [96256]
O58 - SDL:[MD5.A1A5E79C0D1352AFDC08328A623DA051] - 17/12/2013 - 08:21:26 ---A- . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire tampon de lecteur red.) -- C:\Windows\System32\Drivers\rdbss.sys [408576]
O58 - SDL:[MD5.6B21EBF892CD8CACB71669B35AB5DE32] - 22/08/2013 - 12:38:52 ---A- . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\Drivers\rdpbus.sys [22528]
O58 - SDL:[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 14/11/2013 - 08:16:42 ---A- . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) -- C:\Windows\System32\Drivers\rdpdr.sys [195584]
O58 - SDL:[MD5.858776908AF838E3790F3261B799CDA6] - 14/11/2013 - 08:16:44 ---A- . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\Windows\System32\Drivers\rdpvideominiport.sys [27488]
O58 - SDL:[MD5.A26AEC49F318FEE141DDDB2C5F99B3E6] - 22/02/2014 - 17:00:25 ---A- . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\Drivers\rdyboost.sys [249688]
O58 - SDL:[MD5.E515A287C8FAE901EB8FB42F168E14F2] - 22/02/2014 - 16:44:13 ---A- . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\Windows\System32\Drivers\refs.sys [924504]
O58 - SDL:[MD5.47008A9CF5F5D550B6ABDA3BDBC891CE] - 22/08/2013 - 12:36:23 ---A- . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\Drivers\rmcast.sys [144384]
O58 - SDL:[MD5.4A24C61ED665DB4D13B93FACA06350CA] - 22/08/2013 - 12:38:44 ---A- . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\Drivers\RNDISMP.sys [32256]
O58 - SDL:[MD5.A0AF9EBF560FDD0E044E04C0AF9FF9E6] - 22/08/2013 - 12:40:26 ---A- . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\Drivers\rootmdm.sys [11776]
O58 - SDL:[MD5.C76BA99AA5DAAE0FB24CB3D39F231783] - 18/12/2013 - 14:34:59 ---A- . (.Audials AG - Filter Driver.) -- C:\Windows\System32\Drivers\RrNetCapFilterDriver.sys [24744]
O58 - SDL:[MD5.2D05A5508F4685412F2B89E8C2189ABC] - 22/08/2013 - 12:36:34 ---A- . (.Microsoft Corporation - Link-Layer Topology Responder Driver for NDIS 6.) -- C:\Windows\System32\Drivers\rspndr.sys [80384]
O58 - SDL:[MD5.028E40182A6F0374978C755F85B9F07C] - 07/07/2011 - 10:39:06 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\RTKVHD64.sys [2914408]
O58 - SDL:[MD5.C624A1B32211C3166EDB3F4AB02A30B7] - 22/08/2013 - 13:39:15 ---A- . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\Drivers\sbp2port.sys [107872]
O58 - SDL:[MD5.ABD0237B15DBD2B4695F4B7D734A58F7] - 22/08/2013 - 12:38:07 ---A- . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce Microsoft.) -- C:\Windows\System32\Drivers\scfilter.sys [40960]
O58 - SDL:[MD5.1C4EB3ACEA98CAD8FC7CF50F629FF0C6] - 22/08/2013 - 13:43:32 ---A- . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\Drivers\scsiport.sys [170848]
O58 - SDL:[MD5.FDEC5799BA499D18AFA3A540538866E7] - 22/02/2014 - 17:00:25 ---A- . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\Windows\System32\Drivers\sdbus.sys [236888]
O58 - SDL:[MD5.0B1E929D11A8E358106955603FAC65E8] - 22/02/2014 - 16:49:49 ---A- . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\Windows\System32\Drivers\sdstor.sys [79192]
O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 22/08/2013 - 16:35:09 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [23040]
O58 - SDL:[MD5.DB2FF24CE0BDD15FE75870AFE312BA89] - 22/08/2013 - 13:43:31 ---A- . (.Microsoft Corporation - Serial Class Extension.) -- C:\Windows\System32\Drivers\SerCx.sys [69472]
O58 - SDL:[MD5.0044B31F93946D5D41982314381FE431] - 21/01/2014 - 18:19:58 ---A- . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\Windows\System32\Drivers\SerCx2.sys [146776]
O58 - SDL:[MD5.3CD600C089C1251BEEB4CD4CD5164F9E] - 22/08/2013 - 12:40:17 ---A- . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\Drivers\serenum.sys [23040]
O58 - SDL:[MD5.D864381BC9C725FAB01D94C060660166] - 22/08/2013 - 12:40:08 ---A- . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\Windows\System32\Drivers\serial.sys [83456]
O58 - SDL:[MD5.0BD2B65DCE756FDE95A2E5CCCBF7705D] - 22/08/2013 - 12:40:02 ---A- . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys [26112]
O58 - SDL:[MD5.472B7A5AC181C050888DB454663DD764] - 22/08/2013 - 12:40:00 ---A- . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\Drivers\sfloppy.sys [17408]
O58 - SDL:[MD5.2F518D13DD6F3053837FE606F1A2EA1F] - 22/08/2013 - 13:43:31 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [44896]
O58 - SDL:[MD5.1AC9A200A9C49C4508F04AAFFCA34A3F] - 22/08/2013 - 13:43:32 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [81760]
O58 - SDL:[MD5.8C0773703184485D57975B6C1ED48730] - 22/08/2013 - 12:40:16 ---A- . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\Drivers\smclib.sys [19968]
O58 - SDL:[MD5.87765EF43C33BE342F4ACB0E3FBF89A6] - 22/02/2014 - 16:49:49 ---A- . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\Windows\System32\Drivers\spaceport.sys [384856]
O58 - SDL:[MD5.F337BE11071818FC3F5DC2940B6BDE34] - 22/08/2013 - 13:43:31 ---A- . (.Microsoft Corporation - SPB Class Extension.) -- C:\Windows\System32\Drivers\SpbCx.sys [72032]
O58 - SDL:[MD5.2B78788A1485F9B99A578A299DF42C02] - 14/11/2013 - 08:36:55 ---A- . (.Microsoft Corporation - Server driver.) -- C:\Windows\System32\Drivers\srv.sys [454656]
O58 - SDL:[MD5.E62EAEF0BAC9DD61BF22D4A7F2F18571] - 06/03/2014 - 10:22:34 ---A- . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\Windows\System32\Drivers\srv2.sys [679424]
O58 - SDL:[MD5.466BDC0006103F2547D308DD3CD64398] - 06/03/2014 - 10:20:32 ---A- . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\Drivers\srvnet.sys [245760]
O58 - SDL:[MD5.366DEA74BBA65B362BCCFC6FC2ADFD8B] - 22/08/2013 - 13:43:32 ---A- . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Windows x64.) -- C:\Windows\System32\Drivers\stexstor.sys [31072]
O58 - SDL:[MD5.0ED2E318ABB68C1A35A8B8038BDB4C90] - 22/08/2013 - 13:43:31 ---A- . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\storahci.sys [107872]
O58 - SDL:[MD5.6B06E2D11E604BE2B1A406C4CB3B90DE] - 14/11/2013 - 08:36:55 ---A- . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Driver.) -- C:\Windows\System32\Drivers\stornvme.sys [57176]
O58 - SDL:[MD5.8F39AFEB255487932DFF14D9E0E0FC24] - 22/02/2014 - 16:49:49 ---A- . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\Drivers\storport.sys [372568]
O58 - SDL:[MD5.548759755BC73DAD663250239D7E0B9F] - 22/08/2013 - 13:36:48 ---A- . (.Microsoft Corporation - Storage VSC Driver.) -- C:\Windows\System32\Drivers\storvsc.sys [45888]
O58 - SDL:[MD5.03618F935379614837F915D04C45FC0E] - 14/11/2013 - 08:16:34 ---A- . (.Microsoft Corporation - Storage vsp Driver.) -- C:\Windows\System32\Drivers\storvsp.sys [68608]
O58 - SDL:[MD5.FF184501F8F556147BBBDE571315C137] - 22/08/2013 - 12:39:26 ---A- . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\Drivers\stream.sys [67584]
O58 - SDL:[MD5.84E0F5D41C138C5CC975137A2A98F6D3] - 22/08/2013 - 13:43:33 ---A- . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\Drivers\swenum.sys [14176]
O58 - SDL:[MD5.B13A57CE2F17B8C789E895E15F115DB0] - 22/08/2013 - 12:39:50 ---A- . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\Drivers\tape.sys [29696]
O58 - SDL:[MD5.048CFE7569D6ADCAB9349BB1A566A79E] - 18/12/2013 - 14:35:07 ---A- . (.RapidSolution Software AG - Audials Sound Capturing.) -- C:\Windows\System32\Drivers\tbhsd.sys [47240]
O58 - SDL:[MD5.DAD68FB30EFC58E322EADF01F013A99B] - 22/08/2013 - 13:49:33 ---A- . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\Windows\System32\Drivers\tbs.sys [21856]
O58 - SDL:[MD5.FEEFE783D87C9063CDAC6DBDCF95F533] - 04/03/2014 - 13:15:22 ---A- . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\Drivers\tcpip.sys [2519384]
O58 - SDL:[MD5.41CF802064F72E55F50CA0A221FD36D4] - 06/03/2014 - 10:19:59 ---A- . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\Drivers\tcpipreg.sys [49152]
O58 - SDL:[MD5.3C7361E0A5A6966DB957B94ECF924A9E] - 22/08/2013 - 14:25:35 ---A- . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\Drivers\tdi.sys [30208]
O58 - SDL:[MD5.FFF28F9F6823EB1756C60F1649560BBF] - 22/08/2013 - 14:25:35 ---A- . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\Drivers\tdx.sys [107520]
O58 - SDL:[MD5.232D185D2337F141311D0CF1983E1431] - 14/11/2013 - 08:16:34 ---A- . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\Windows\System32\Drivers\terminpt.sys [37216]
O58 - SDL:[MD5.E8D2721972B8A2C3A4F6DE5C43D163E5] - 22/08/2013 - 13:39:14 ---A- . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\Windows\System32\Drivers\tm.sys [121184]
O58 - SDL:[MD5.82F909359600D3603FE852DB7F135626] - 22/08/2013 - 13:49:33 ---A- . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\Windows\System32\Drivers\tpm.sys [159584]
O58 - SDL:[MD5.BF8F54CA37E9C9D6582C31C5761F8C93] - 22/08/2013 - 12:37:28 ---A- . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du Bureau à distance.) -- C:\Windows\System32\Drivers\TsUsbFlt.sys [56320]
O58 - SDL:[MD5.E0088068DCE2EE82897027DDB8E05254] - 22/08/2013 - 12:37:46 ---A- . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\Windows\System32\Drivers\TsUsbGD.sys [29696]
O58 - SDL:[MD5.C8E0E78B5D284C2FF59BDFFDAF997242] - 22/08/2013 - 12:35:45 ---A- . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\Windows\System32\Drivers\tunnel.sys [154112]
O58 - SDL:[MD5.F6EEAD052943B5A3104C1405BB856C54] - 22/08/2013 - 13:43:33 ---A- . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\Windows\System32\Drivers\UAGP35.SYS [64864]
O58 - SDL:[MD5.FE6067B1FD4E63650C667B33D080565B] - 22/08/2013 - 13:43:33 ---A- . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\Windows\System32\Drivers\uaspstor.sys [74080]
O58 - SDL:[MD5.B034A41891A36457B994307DFA772293] - 22/02/2014 - 16:49:49 ---A- . (.Microsoft Corporation - USB Controller Extension.) -- C:\Windows\System32\Drivers\UCX01000.SYS [189784]
O58 - SDL:[MD5.1EC649F112896FAE33250F0B97AC5D0B] - 22/08/2013 - 12:40:20 ---A- . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\Drivers\udfs.sys [316928]
O58 - SDL:[MD5.9578691F297E1B1F519970FE6D47CB21] - 22/08/2013 - 13:39:15 ---A- . (.Microsoft Corporation - UEFI Driver for NT.) -- C:\Windows\System32\Drivers\uefi.sys [26976]
O58 - SDL:[MD5.5EAB5117DDB24FC4D39E6FFFCF1837B9] - 22/08/2013 - 13:43:33 ---A- . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à processeur K8/9.) -- C:\Windows\System32\Drivers\ULIAGPKX.SYS [65888]
O58 - SDL:[MD5.DA34C39A18E60E7C3FA0630566408034] - 22/08/2013 - 12:38:59 ---A- . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\Drivers\umbus.sys [46080]
O58 - SDL:[MD5.AE8294875E5446E359B1E8035D40C05E] - 22/08/2013 - 12:38:58 ---A- . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\Drivers\umpass.sys [11776]
O58 - SDL:[MD5.A5A402FE30B5E0831F4EB6A112104811] - 22/08/2013 - 12:38:16 ---A- . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\Drivers\usb8023.sys [20992]
O58 - SDL:[MD5.C9E9D59C0099A9FF51697E9306A44240] - 18/03/2013 - 16:51:08 ---A- . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\Drivers\usbaapl64.sys [54784]
O58 - SDL:[MD5.5D45329A96B1A417DC7F59FDEABC0DDE] - 22/08/2013 - 12:39:27 ---A- . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\Drivers\USBCAMD2.sys [32512]
O58 - SDL:[MD5.433ECDE01A52691FA7ACA51C10C09B70] - 14/11/2013 - 08:36:55 ---A- . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\Drivers\usbccgp.sys [155480]
O58 - SDL:[MD5.B3D6457D841A0CAEF4C52D88621715F2] - 22/08/2013 - 12:38:26 ---A- . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\usbcir.sys [98304]
O58 - SDL:[MD5.882222A9961418A75A08CB68671679D5] - 22/08/2013 - 13:43:33 ---A- . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\Drivers\usbd.sys [28000]
O58 - SDL:[MD5.5477D6E27C7D266EF8C152B9A25ADE5E] - 22/08/2013 - 13:43:33 ---A- . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\Drivers\usbehci.sys [89952]
O58 - SDL:[MD5.DF56C2C04EFA328D7A66B69007130266] - 22/08/2013 - 13:43:34 ---A- . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\Windows\System32\Drivers\usbhub.sys [422240]
O58 - SDL:[MD5.CFC52C49BEFE4D70D87FFA900EAB9777] - 08/03/2014 - 21:35:45 ---A- . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\Windows\System32\Drivers\USBHUB3.SYS [467800]
O58 - SDL:[MD5.3019097FB6C985EF24C058090FF3BDBD] - 22/08/2013 - 12:39:27 ---A- . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbohci.sys [30208]
O58 - SDL:[MD5.32F2E6BAD9FA8E14B55E97280661801E] - 22/08/2013 - 13:43:34 ---A- . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\Drivers\usbport.sys [439136]
O58 - SDL:[MD5.4D655E3B684BE9B0F7FFD8A2935C348C] - 22/08/2013 - 12:36:33 ---A- . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\Drivers\usbprint.sys [26112]
O58 - SDL:[MD5.3431FBFAC156EB7FEF9B936EC2A77AF6] - 22/08/2013 - 12:39:39 ---A- . (.Microsoft Corporation - Gestionnaire de stratégie de redirection USB Windows.) -- C:\Windows\System32\Drivers\usbrpm.sys [30720]
O58 - SDL:[MD5.EA23453240137F6773174E0D93F61A69] - 22/02/2014 - 16:49:50 ---A- . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\Windows\System32\Drivers\USBSTOR.SYS [148824]
O58 - SDL:[MD5.BA4FA655E0FC577DB7436FC963932CE4] - 22/08/2013 - 12:39:28 ---A- . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbuhci.sys [34816]
O58 - SDL:[MD5.18F744E8CCEB2670040EBAF7AD77B8C6] - 22/08/2013 - 12:38:00 ---A- . (.Microsoft Corporation - USB Video Class Driver.) -- C:\Windows\System32\Drivers\usbvideo.sys [212224]
O58 - SDL:[MD5.48430B0313FC1CFE3D2400553F1A93CD] - 22/02/2014 - 16:49:51 ---A- . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\Windows\System32\Drivers\USBXHCI.SYS [325464]
O58 - SDL:[MD5.FEB26E3B8345A7E8D62F945C4AE86562] - 22/08/2013 - 13:37:27 ---A- . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\Windows\System32\Drivers\vdrvroot.sys [37728]
O58 - SDL:[MD5.A026EDEAA5EECAE0B08E2748B616D4BD] - 14/11/2013 - 08:30:48 ---A- . (.Microsoft Corporation - Driver Verifier Extension.) -- C:\Windows\System32\Drivers\VerifierExt.sys [175960]
O58 - SDL:[MD5.52E483A3701A5A61A75A06993720347D] - 29/01/2014 - 09:52:24 ---A- . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\Drivers\vhdmp.sys [551256]
O58 - SDL:[MD5.06D38968028E9AB19DE9B618C7B6D199] - 22/08/2013 - 13:43:34 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [19808]
O58 - SDL:[MD5.3CE922E34DB12D9F3C0EA856BC09687C] - 14/11/2013 - 08:16:34 ---A- . (.Microsoft Corporation - Pilote d’infrastructure de virtualisation Microsoft Hyper-V.) -- C:\Windows\System32\Drivers\Vid.sys [220672]
O58 - SDL:[MD5.608BD5400EFD2307A5F8DDDC87775734] - 22/08/2013 - 12:39:31 ---A- . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\Drivers\videoprt.sys [49152]
O58 - SDL:[MD5.B600C96614BC7F890A6F2A4C93FA15EC] - 22/08/2013 - 13:36:48 ---A- . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\Windows\System32\Drivers\vmbkmcl.sys [90944]
O58 - SDL:[MD5.4957325209E461B419797D042B5F6FF5] - 14/11/2013 - 08:16:34 ---A- . (.Microsoft Corporation - Hyper-V VMBus Root KMCL.) -- C:\Windows\System32\Drivers\vmbkmclr.sys [77312]
O58 - SDL:[MD5.C6305BDFC4F7CE51F72BB072C03D4ACE] - 22/08/2013 - 13:36:51 ---A- . (.Microsoft Corporation - Microsoft Hyper-V Virtual Machine Bus Child Driver.) -- C:\Windows\System32\Drivers\vmbus.sys [97088]
O58 - SDL:[MD5.DA40BEA0A863CE768C940CA9723BF81F] - 22/08/2013 - 12:37:50 ---A- . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\Windows\System32\Drivers\VMBusHID.sys [21760]
O58 - SDL:[MD5.68F8C26DEA2D42E8DEC0778943433C80] - 14/11/2013 - 08:16:34 ---A- . (.Microsoft Corporation - Microsoft Hyper-V Virtual Machine Bus Root Driver.) -- C:\Windows\System32\Drivers\vmbusr.sys [129536]
O58 - SDL:[MD5.0BF5CAD281E25F1418E5B8875DC5ADD1] - 22/08/2013 - 12:38:23 ---A- . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\Windows\System32\Drivers\vmgencounter.sys [11264]
O58 - SDL:[MD5.1A063730F221B2746FF00457AE17E4F0] - 22/08/2013 - 12:38:37 ---A- . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\Windows\System32\Drivers\vms3cap.sys [7168]
O58 - SDL:[MD5.7A08CEE1535F5A448215634C5EA74E50] - 22/08/2013 - 13:36:48 ---A- . (.Microsoft Corporation - Virtual Storage Filter Driver.) -- C:\Windows\System32\Drivers\vmstorfl.sys [49984]
O58 - SDL:[MD5.55D7D963DE85162F1C49721E502F9744] - 22/08/2013 - 13:39:15 ---A- . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys [73568]
O58 - SDL:[MD5.CCB9E901F7254BF96D28EB1B0E5329B7] - 22/08/2013 - 13:39:15 ---A- . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys [377696]
O58 - SDL:[MD5.3595FBDF25F8BA6256072D103937D7D6] - 22/02/2014 - 16:44:13 ---A- . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\Drivers\volsnap.sys [311640]
O58 - SDL:[MD5.01355C98B5C3ED1EC446743CDA848FCE] - 22/08/2013 - 13:37:27 ---A- . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\Windows\System32\Drivers\vpci.sys [69472]
O58 - SDL:[MD5.ADBE96C33D1A5BB1BBAF90B4BC84F523] - 14/11/2013 - 08:16:34 ---A- . (.Microsoft Corporation - Virtual PCI VSP Driver.) -- C:\Windows\System32\Drivers\vpcivsp.sys [65536]
O58 - SDL:[MD5.4539F45F9F4C9757A86A56C949421E07] - 22/08/2013 - 13:43:34 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [168800]
O58 - SDL:[MD5.0849B7260F26FE05EA56DED0672E2F4B] - 22/08/2013 - 13:43:34 ---A- . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\Drivers\VSTXRAID.SYS [305504]
O58 - SDL:[MD5.BE970C369E43B509C1EDA2B8FA7CECB0] - 22/08/2013 - 12:39:00 ---A- . (.Microsoft Corporation - Pilote de bus WiFi virtuel.) -- C:\Windows\System32\Drivers\vwifibus.sys [24576]
O58 - SDL:[MD5.6B26AD573CCDD5209DF4397438B76354] - 22/08/2013 - 12:38:05 ---A- . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\Drivers\vwififlt.sys [71680]
O58 - SDL:[MD5.0B48E0DFB44EE475F4FD8A8EE599AF30] - 22/08/2013 - 12:36:15 ---A- . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\Drivers\vwifimp.sys [36864]
O58 - SDL:[MD5.0910AB9ED404C1434E2D0376C2AD5D8B] - 22/08/2013 - 12:39:15 ---A- . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\Drivers\wacompen.sys [26752]
O58 - SDL:[MD5.AFCD4054D61BD708B82991348ED1C763] - 22/08/2013 - 12:35:46 ---A- . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\Drivers\wanarp.sys [79872]
O58 - SDL:[MD5.9CC0003FB8ED3763B977B43F1012FF63] - 22/02/2014 - 13:14:40 ---A- . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\Drivers\watchdog.sys [54272]
O58 - SDL:[MD5.241895E8A9C158DF86E12FDD21033A32] - 31/10/2013 - 01:28:47 ---A- . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\Windows\System32\Drivers\WdBoot.sys [35856]
O58 - SDL:[MD5.CB6C63FF8342B467E2EF76E98D5B934D] - 22/08/2013 - 14:25:41 ---A- . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en mode noyau.) -- C:\Windows\System32\Drivers\Wdf01000.sys [839488]
O58 - SDL:[MD5.C52148456E0F6EAD9E903020A79207FC] - 31/10/2013 - 01:29:36 ---A- . (.Microsoft Corporation - Microsoft antimalware file system filter driver.) -- C:\Windows\System32\Drivers\WdFilter.sys [236888]
O58 - SDL:[MD5.42C23552FC0BF2BAB9053BE6E4DC3D13] - 22/08/2013 - 14:25:41 ---A- . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\Drivers\WdfLdr.sys [60224]
O58 - SDL:[MD5.57F22324FAAF92ADF957B281E88F1743] - 31/10/2013 - 01:29:36 ---A- . (.Microsoft Corporation - Microsoft Network Realtime Inspection Driver.) -- C:\Windows\System32\Drivers\WdNisDrv.sys [124760]
O58 - SDL:[MD5.2E0AF5B354ED1BB10314353B6A625B68] - 22/08/2013 - 13:39:04 ---A- . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\Windows\System32\Drivers\werkernel.sys [38240]
O58 - SDL:[MD5.BFBE1C5F57FE7A885673A1962D5532B7] - 08/03/2014 - 21:40:16 ---A- . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\Windows\System32\Drivers\wfplwfs.sys [136024]
O58 - SDL:[MD5.867BCC69ED9C31C501465EB0E8BA9DFA] - 22/08/2013 - 13:45:37 ---A- . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\Drivers\wimmount.sys [33632]
O58 - SDL:[MD5.54BAF0C6639AF707D00BB6C1ACA8837A] - 22/08/2013 - 13:36:48 ---A- . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\Windows\System32\Drivers\winhv.sys [61248]
O58 - SDL:[MD5.8535519A44051B481E5D0020A69204C6] - 14/11/2013 - 08:16:34 ---A- . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\Windows\System32\Drivers\winhvr.sys [48128]
O58 - SDL:[MD5.AC263C2F66405589528995AA41040599] - 22/08/2013 - 12:37:55 ---A- . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\Windows\System32\Drivers\winusb.sys [78848]
O58 - SDL:[MD5.2834D9D3B4F554A39C72F00EA3F0E128] - 22/08/2013 - 12:40:04 ---A- . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\Drivers\wmiacpi.sys [16384]
O58 - SDL:[MD5.1FE5DDC32243469E6FA4440C02775A34] - 22/08/2013 - 14:25:41 ---A- . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\Drivers\wmilib.sys [18272]
O58 - SDL:[MD5.7FC5667DF73D4B04AA457CC3A4180E09] - 13/03/2014 - 13:35:24 ---A- . (.Microsoft Corporation - Windows Overlay Filter.) -- C:\Windows\System32\Drivers\wof.sys [157016]
O58 - SDL:[MD5.C1F564F324685C088ECAB1933576CF91] - 22/02/2014 - 16:50:31 ---A- . (.Microsoft Corporation - Family Safety Filter Driver.) -- C:\Windows\System32\Drivers\wpcfltr.sys [54816]
O58 - SDL:[MD5.9F2904B55F6CECCD1A8D986B5CE2609A] - 22/08/2013 - 13:36:12 ---A- . (.Microsoft Corporation - Windows Portable Device Upper Class Filter Driver.) -- C:\Windows\System32\Drivers\WpdUpFltr.sys [26976]
O58 - SDL:[MD5.38CAE0D33091C6F3B542F230E70ED44B] - 22/08/2013 - 14:25:41 ---A- . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\Windows\System32\Drivers\WppRecorder.sys [23392]
O58 - SDL:[MD5.AE072B0339D0A18E455DC21666CAD572] - 22/08/2013 - 12:40:03 ---A- . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\Windows\System32\Drivers\ws2ifsl.sys [21504]
O58 - SDL:[MD5.F586F3F1BF962FE9AE4316E0D896B22F] - 22/08/2013 - 12:39:58 ---A- . (.Microsoft Corporation - Web Services Print Device Driver.) -- C:\Windows\System32\Drivers\WSDPrint.sys [20992]
O58 - SDL:[MD5.D38297814FB6E33655342D869996E617] - 22/08/2013 - 12:39:50 ---A- . (.Microsoft Corporation - Web Service Based Scan Device Driver.) -- C:\Windows\System32\Drivers\WSDScan.sys [23040]
O58 - SDL:[MD5.2FEAE33E9B2B56104596E1BA444405A9] - 22/08/2013 - 12:37:21 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Platform.) -- C:\Windows\System32\Drivers\WUDFPf.sys [117760]
O58 - SDL:[MD5.19240C13F526125554B5370566F21A0A] - 22/08/2013 - 12:36:50 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Reflecto.) -- C:\Windows\System32\Drivers\WUDFRd.sys [230912]
O58 - SDL:[MD5.76BA56848B718C980FDEAE248EB32F1B] - 22/02/2014 - 13:15:23 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [4192768]
O58 - SDL:[MD5.93E9D905C90F8C3112C4DAFD1E92EC73] - 22/08/2013 - 10:26:02 ---A- . (.Microsoft Corporation - Windows Background System Events Broker API Server.) -- C:\Windows\System32\Windows.ApplicationModel.Background.SystemEventsBroker.dll [29184]
O58 - SDL:[MD5.BEC416C94F914C379E1A2BC5752EF763] - 22/08/2013 - 10:53:40 ---A- . (.Microsoft Corporation - DLL d’exécution de l’affichage système Windows.) -- C:\Windows\System32\Windows.System.Display.dll [25600]
O58 - SDL:[MD5.C352CC3A499712E4E919385B74E1C8C0] - 22/08/2013 - 10:09:22 ---A- . (.Microsoft Corporation - DLL d’ID matériel du profil du système Windows.) -- C:\Windows\System32\Windows.System.Profile.HardwareId.dll [210944]
O58 - SDL:[MD5.E91F19CF5E4B73AB2ECA7E362A206920] - 22/08/2013 - 10:53:16 ---A- . (.Microsoft Corporation - Windows.System.Profile.SystemManufacturers.) -- C:\Windows\System32\Windows.System.Profile.SystemManufacturers.dll [25600]
O58 - SDL:[MD5.BEBFC818CCF0057A84456A35A1E7AFF2] - 22/08/2013 - 10:53:53 ---A- . (.Microsoft Corporation - Windows System RemoteDesktop Runtime DLL.) -- C:\Windows\System32\Windows.System.RemoteDesktop.dll [21504]
O58 - SDL:[MD5.EC5B17B8036FAC9DFF8BAC94E30799B1] - 22/08/2013 - 03:27:50 ---A- . (.Microsoft Corporation - Windows Background System Events Broker API Server.) -- C:\Windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll [24064]
O58 - SDL:[MD5.7084BCD3A95C278D38C9EBDF413DF29F] - 22/08/2013 - 03:47:07 ---A- . (.Microsoft Corporation - DLL d’exécution de l’affichage système Windows.) -- C:\Windows\SysWOW64\Windows.System.Display.dll [22016]
O58 - SDL:[MD5.FC01DFD0046CD6121B92C377C2A9C2AB] - 22/08/2013 - 03:18:25 ---A- . (.Microsoft Corporation - DLL d’ID matériel du profil du système Windows.) -- C:\Windows\SysWOW64\Windows.System.Profile.HardwareId.dll [169984]
O58 - SDL:[MD5.433A9B4E0DB68C176F9AF34BF6441D59] - 22/08/2013 - 03:46:48 ---A- . (.Microsoft Corporation - Windows.System.Profile.SystemManufacturers.) -- C:\Windows\SysWOW64\Windows.System.Profile.SystemManufacturers.dll [22016]
O58 - SDL:[MD5.BB4F2BCF02F0E98E8EA5CB45EC0285A6] - 22/08/2013 - 03:47:23 ---A- . (.Microsoft Corporation - Windows System RemoteDesktop Runtime DLL.) -- C:\Windows\SysWOW64\Windows.System.RemoteDesktop.dll [18432]
~ Drivers: 17 Scanned in 00mn 06s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 10/04/2014 - 11:15:04 ---A- . (...) -- C:\Users\garpat\AppData\Local\Google\Chrome\User Data\First Run [0]
O61 - LFC: 10/04/2014 - 11:15:04 -SHA- . (...) -- C:\Users\garpat\AppData\Local\EmieSiteList\container.dat [0]
O61 - LFC: 10/04/2014 - 11:15:04 -SHA- . (...) -- C:\Users\garpat\AppData\Local\EmieUserList\container.dat [0]
O61 - LFC: 10/04/2014 - 11:15:05 ---A- . (...) -- C:\Users\garpat\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.2.464\_platform_specific\win_x86\CdmAdapterVersion [13]
O61 - LFC: 10/04/2014 - 11:15:14 ---A- . (...) -- C:\Users\garpat\AppData\Local\Packages\windows.immersivecontrolpanel_cw5n1h2txyewy\LocalState\Indexed\Settings\fr-FR\NameSpace_Classic_0_FlashPlayerCPLApp.cpl.settingcontent-ms [1026]
O61 - LFC: 10/04/2014 - 11:15:14 ---A- . (...) -- C:\Users\garpat\AppData\Local\Packages\windows.immersivecontrolpanel_cw5n1h2txyewy\LocalState\Indexed\Settings\fr-FR\NameSpace_Classic_0_MLCFG32.CPL.settingcontent-ms [1002]
O61 - LFC: 10/04/2014 - 11:15:14 ---A- . (...) -- C:\Users\garpat\AppData\Local\Packages\windows.immersivecontrolpanel_cw5n1h2txyewy\LocalState\Indexed\Settings\fr-FR\NameSpace_Classic_0_RTSnMg64.cpl.settingcontent-ms [1007]
O61 - LFC: 10/04/2014 - 11:15:14 ---A- . (...) -- C:\Users\garpat\AppData\Local\Packages\windows.immersivecontrolpanel_cw5n1h2txyewy\LocalState\Indexed\Settings\fr-FR\NameSpace_Classic_0_igfxcpl.cpl.settingcontent-ms [1025]
O61 - LFC: 10/04/2014 - 11:15:14 ---A- . (...) -- C:\Users\garpat\AppData\Local\Packages\windows.immersivecontrolpanel_cw5n1h2txyewy\LocalState\Indexed\Settings\fr-FR\NameSpace_Classic_{0bbca823-e77d-419e-9a44-5adec2c8eeb0}.settingcontent-ms [1230]
O61 - LFC: 10/04/2014 - 11:15:20 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\Adobe\LogTransport2\LogTransport2.cfg [143]
O61 - LFC: 10/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\Microsoft\Office\PowerP12.pip [1468]
O61 - LFC: 10/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\PC Speed Maximizer Pro\Backup\SizeList.txt [1232] =>Rogue.PCSpeedMaximizer
O61 - LFC: 10/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\PC Speed Maximizer Pro\Backup\TimeList.txt [1174] =>Rogue.PCSpeedMaximizer
O61 - LFC: 10/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\PC Speed Maximizer Pro\Undo\Undo 14-04-10-01.reg [579542] =>Rogue.PCSpeedMaximizer
O61 - LFC: 10/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\PC Speed Maximizer Pro\Undo\Undo 14-04-10-02.reg [1830] =>Rogue.PCSpeedMaximizer
O61 - LFC: 10/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\PC Speed Maximizer Pro\Undo\Undo 14-04-10-03.reg [23970] =>Rogue.PCSpeedMaximizer
O61 - LFC: 10/04/2014 - 11:15:23 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\ZHP\ZHPADSReport.txt [351] =>.Nicolas Coolman
O61 - LFC: 10/04/2014 - 11:15:23 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\ZHP\ZHPDiag.txt [541656] =>.Nicolas Coolman
O61 - LFC: 10/04/2014 - 11:15:23 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\ZHP\ZHPFix[R1].txt [906] =>.Nicolas Coolman
O61 - LFC: 10/04/2014 - 11:15:23 ---A- . (...) -- C:\Users\garpat\Documents\PC Cleaner\CookiesException.txt [22] =>USP.PCCleaner
O61 - LFC: 10/04/2014 - 11:15:37 ---A- . (...) -- C:\Users\garpat\Links\Desktop.lnk [481]
O61 - LFC: 10/04/2014 - 11:15:37 ---A- . (...) -- C:\Users\garpat\Links\Downloads.lnk [934]
O61 - LFC: 10/04/2014 - 11:15:37 ---A- . (...) -- C:\Users\garpat\Links\RecentPlaces.lnk [383]
O61 - LFC: 11/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\Microsoft\Spelling\fr-FR\default.acl [6]
O61 - LFC: 11/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\Microsoft\Spelling\fr-FR\default.dic [6]
O61 - LFC: 11/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\Microsoft\Spelling\fr-FR\default.exc [6]
O61 - LFC: 11/04/2014 - 11:15:29 ---A- . (...) -- C:\Users\garpat\Downloads\adwcleaner.exe [1426178]
O61 - LFC: 11/04/2014 - 11:15:31 ---A- . (.Malwarebytes Corporation.) -- C:\Users\garpat\Downloads\mbam-setup-2.0.1.1004.exe [17305616]
O61 - LFC: 12/04/2014 - 11:15:03 ---A- . (...) -- C:\Users\garpat\AppData\Local\Diagnostics\1158610846\2014041220.000\F706DBBD-7AC7-4276-A355-6FB6A9683A99.Diagnose.0.etl [327680]
O61 - LFC: 12/04/2014 - 11:15:03 ---A- . (...) -- C:\Users\garpat\AppData\Local\Diagnostics\1158610846\2014041220.000\NetworkConfiguration.cab [1879]
O61 - LFC: 12/04/2014 - 11:15:03 ---A- . (...) -- C:\Users\garpat\AppData\Local\Diagnostics\1158610846\2014041220.000\NetworkDiagnostics.debugreport.xml [73055]
O61 - LFC: 12/04/2014 - 11:15:03 ---A- . (...) -- C:\Users\garpat\AppData\Local\Diagnostics\1158610846\2014041220.000\ResultReport.xml [41735]
O61 - LFC: 12/04/2014 - 11:15:03 ---A- . (...) -- C:\Users\garpat\AppData\Local\Diagnostics\1158610846\2014041220.000\results.xml [558]
O61 - LFC: 12/04/2014 - 11:15:03 ---A- . (...) -- C:\Users\garpat\AppData\Local\Diagnostics\1158610846\2014041220.000\results.xsl [49097]
O61 - LFC: 12/04/2014 - 11:15:04 ---A- . (...) -- C:\Users\garpat\AppData\Local\Diagnostics\1158610846\latest.cab [22860]
O61 - LFC: 12/04/2014 - 11:15:19 ---A- . (...) -- C:\Users\garpat\AppData\Local\WebInternetSecurity\WebInternetSecurity.exe_Url_lityfzvwjap4koqdt3q5m1eo55wvf0ga\1.0.5112.21952\user.config [1234] =>Spyware.Binternet
O61 - LFC: 12/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\Microsoft\Office\Excel12.pip [1548]
O61 - LFC: 12/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\Microsoft\Office\Recent\Documents.LNK [422]
O61 - LFC: 12/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\Microsoft\Office\Recent\MdP.LNK [516]
O61 - LFC: 12/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\Microsoft\Outlook\Outlook.NK2 [21731]
O61 - LFC: 12/04/2014 - 11:15:22 --H-- . (...) -- C:\Users\garpat\AppData\Roaming\Microsoft\Office\Recent\index.dat [699]
O61 - LFC: 12/04/2014 - 11:15:27 ---A- . (...) -- C:\Users\garpat\Downloads\adwcleaner (1).exe [1426178]
O61 - LFC: 13/04/2014 - 11:15:04 ---A- . (...) -- C:\Users\garpat\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [292498]
O61 - LFC: 13/04/2014 - 11:15:04 ---A- . (...) -- C:\Users\garpat\AppData\Local\Google\Chrome\User Data\Local State [69473]
O61 - LFC: 13/04/2014 - 11:15:04 ---A- . (...) -- C:\Users\garpat\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt [5]
O61 - LFC: 13/04/2014 - 11:15:05 --HA- . (...) -- C:\Users\garpat\AppData\Local\IconCache.db [369388]
O61 - LFC: 13/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\Microsoft\Outlook\Outlook.xml [3897]
O61 - LFC: 13/04/2014 - 11:15:22 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\Microsoft\Outlook\outcmd.dat [1292]
O61 - LFC: 13/04/2014 - 11:15:22 -SHA- . (...) -- C:\Users\garpat\AppData\Roaming\Microsoft\Protect\S-1-5-21-1842527055-1789191225-3077704259-1001\9d6fbdc8-9e77-4424-9703-b25828410457 [468]
O61 - LFC: 13/04/2014 - 11:15:23 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\ZHP\Log.txt [79249] =>.Nicolas Coolman
O61 - LFC: 13/04/2014 - 11:15:23 ---A- . (...) -- C:\Users\garpat\AppData\Roaming\ZHP\TestsZHPDiag.txt [2857] =>.Nicolas Coolman
~ Files: 51 Scanned in 00mn 49s



---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
~ FASS Keys: 10 Scanned in 00mn 00s



---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- c:\program files\internet explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {0191A6B0-1154-4C22-9182-23A95BBE92D9} [DefaultScope] - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKCR] {afdbddaa-5d3f-42ee-b79c-185a7020515b} [DefaultScope] - (Web Search) - http://search.certified-toolbar.com =>PUP.CertifiedToolbar
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {0191A6B0-1154-4C22-9182-23A95BBE92D9} - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {0191A6B0-1154-4C22-9182-23A95BBE92D9} - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKUS\S-1-5-19] {0191A6B0-1154-4C22-9182-23A95BBE92D9} - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKUS\S-1-5-20] {0191A6B0-1154-4C22-9182-23A95BBE92D9} - (Google) - http://www.google.com
~ Keys: Scanned in 00mn 00s



---\\ Enumère les service demarrés par Svchost (SSS) (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [208896]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [155136]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [155136]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [324608]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1311744]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1063424]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [903168]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [109568]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [150528]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [107008]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1214976]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [220672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [70656]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [134144]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [220160]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [324096]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [81408]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [97792]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [339456]
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Windows.) -- C:\Windows\System32\GeofenceMonitorService.dll [491520]
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1576960]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [50688]
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [201728]
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Microsoft.) -- C:\Windows\System32\ncasvc.dll [164352]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [101376]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à distance.) -- C:\Windows\System32\rasmans.dll [534528]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [223744]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [71680]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [433664]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [306688]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [3408384]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [1017856]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [629760]
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [183296]
O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - SvcHost Service for Microsoft Keyboard Filter.) -- C:\Windows\System32\KeyboardFilterSvc.dll [90464]

~ Services: 36 Scanned in 00mn 00s



---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.547EFD86A0EBA8E973D3F545E36581E0] [SPRF][18/02/2014] (...) -- C:\Users\garpat\Desktop\VideoSpin_2_0_Setup.exe [170203312]
~ Files: 1 Scanned in 00mn 02s



---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "vm-monitoring-rpc" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "vm-monitoring-dcom" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-In-UDP" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-UDP" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-TCP" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "Wininit-Shutdown-In-Rule-TCP-RPC" | In - None - P6 - FALSE | .(.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\system32\wininit.exe
O87 - FAEL: "Wininit-Shutdown-In-Rule-TCP-RPC-EPMapper" | In - None - P6 - FALSE | .(.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\system32\wininit.exe
O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "ProximityUxHost-Sharing-In-TCP-NoScope" | In - None - P6 - TRUE | .(.Microsoft Corporation - Hôte UX de proximité.) -- C:\Windows\system32\proximityuxhost.exe
O87 - FAEL: "ProximityUxHost-Sharing-Out-TCP-NoScope" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Hôte UX de proximité.) -- C:\Windows\system32\proximityuxhost.exe
O87 - FAEL: "NETDIS-UPnPHost-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnPHost-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-DAS-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnPHost-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-DAS-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "EventForwarder-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Event Forwarder.) -- C:\Windows\system32\NetEvtFwdr.exe
O87 - FAEL: "EventForwarder-RPCSS-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "TPMVSCMGR-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "TPMVSCMGR-Server-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "TPMVSCMGR-Server-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "TPMVSCMGR-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "TPMVSCMGR-Server-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "TPMVSCMGR-Server-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "Netlogon-TCP-RPC-In" | In - None - P6 - FALSE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\System32\lsass.exe
O87 - FAEL: "Collab-P2PHost-In-TCP" |In - None - P6 - TRUE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.)
O87 - FAEL: "Collab-P2PHost-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.)
O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.)
O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\p2phost.exe (.not file.)
O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WirelessDisplay-In-TCP" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\WUDFHost.exe
O87 - FAEL: "WirelessDisplay-Out-TCP" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\WUDFHost.exe
O87 - FAEL: "WirelessDisplay-Out-UDP" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\WUDFHost.exe
O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-In-UDP-NoScope" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-UDP-LocalSubnetScope" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-UDP-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-Out-UDP-NoScope" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-Out-UDP-LocalSubnetScope" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-Out-UDP-PlayToScope" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-RTSP-NoScope" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-RTSP-LocalSubnetScope" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-RTSP-PlayToScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-SSDP-Discovery-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-QWave-In-UDP-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-QWave-Out-UDP-PlayToScope" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-QWave-In-TCP-PlayToScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-QWave-Out-TCP-PlayToScope" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WFDPRINT-DAFWSD-In-Active" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe
O87 - FAEL: "WFDPRINT-DAFWSD-Out-Active" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe
O87 - FAEL: "WFDPRINT-SPOOL-In-Active" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "WFDPRINT-SPOOL-Out-Active" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "WFDPRINT-SCAN-In-Active" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WFDPRINT-SCAN-Out-Active" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteDesktop-UserMode-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteDesktop-UserMode-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteDesktop-Shadow-In-TCP" | In - None - P6 - TRUE | .(.Microsoft Corporation - Agent de session Bureau à distance.) -- C:\Windows\system32\RdpSa.exe
O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "SPPSVC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - KMS Connection Broker.) -- C:\Windows\system32\sppextcomobj.exe
O87 - FAEL: "SPPSVC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - KMS Connection Broker.) -- C:\Windows\system32\sppextcomobj.exe
O87 - FAEL: "Microsoft-Windows-PeerDist-WSD-In" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-PeerDist-WSD-Out" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-In-TCP" |In - None - P6 - FALSE | .(...) -- C:\Windows\ehome\ehshell.exe (.not file.)
O87 - FAEL: "MCX-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\ehome\ehshell.exe (.not file.)
O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-TERMSRV-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\ehome\ehshell.exe (.not file.)
O87 - FAEL: "MCX-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\ehome\ehshell.exe (.not file.)
O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-Prov-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\ehome\mcx2prov.exe (.not file.)
O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-McrMgr-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\ehome\mcrmgr.exe (.not file.)
O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "FPS-LLMNR-Out-UDP_1" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "FPS-LLMNR-In-UDP_1" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "FPS-SpoolSvc-In-TCP_1" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "WMP-Out-TCP_1" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-UDP_1" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-In-UDP_1" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "UDP Query User{A9D1F191-8057-45EC-B62E-1C4310A98CD8}C:\program files (x86)\adobe\adobe dreamweaver cs3\dreamweaver.exe" | In - Private - P17 - TRUE | .(.Adobe Systems, Inc. - Adobe Dreamweaver CS3.) -- C:\program files (x86)\adobe\adobe dreamweaver cs3\dreamweaver.exe
O87 - FAEL: "TCP Query User{480557B2-0E7D-4618-9D59-5A737CAD401F}C:\program files (x86)\adobe\adobe dreamweaver cs3\dreamweaver.exe" | In - Private - P6 - TRUE | .(.Adobe Systems, Inc. - Adobe Dreamweaver CS3.) -- C:\program files (x86)\adobe\adobe dreamweaver cs3\dreamweaver.exe
O87 - FAEL: "UDP Query User{E517C011-81EA-4B81-BD92-3DB17FD7AE96}C:\program files (x86)\epson software\event manager\eeventmanager.exe" | In - Public - P17 - TRUE | .(.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\program files (x86)\epson software\event manager\eeventmanager.exe
O87 - FAEL: "TCP Query User{E0CE93A2-140A-4AB8-B1C0-956B5F37ABE7}C:\program files (x86)\epson software\event manager\eeventmanager.exe" | In - Public - P6 - TRUE | .(.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\program files (x86)\epson software\event manager\eeventmanager.exe
O87 - FAEL: "UDP Query User{6673DED7-548A-42F8-B754-B3C827861720}C:\program files (x86)\epson software\event manager\eeventmanager.exe" | In - Private - P17 - TRUE | .(.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\program files (x86)\epson software\event manager\eeventmanager.exe
O87 - FAEL: "TCP Query User{AB476251-52C6-4621-8902-55DE52F591AD}C:\program files (x86)\epson software\event manager\eeventmanager.exe" | In - Private - P6 - TRUE | .(.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\program files (x86)\epson software\event manager\eeventmanager.exe
O87 - FAEL: "{D664E14D-BBE9-42D6-8478-E8298EDEBAA8}" |In - Private - P17 - TRUE | .(...) -- G:\Network\EpsonNetSetup\ENEasyApp.exe (.not file.)
O87 - FAEL: "{20D0AB72-B779-4D05-B5C5-35814BD27178}" |In - Private - P6 - TRUE | .(...) -- G:\Network\EpsonNetSetup\ENEasyApp.exe (.not file.)
O87 - FAEL: "{FE5BCB54-B7A9-4BE7-AD83-F814E2C71019}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Microsoft Office Outlook.) -- C:\Program Files (x86)\Microsoft Office\Office12\outlook.exe =>.Microsoft Corporation
O87 - FAEL: "{BD2D0B13-24D1-47F7-886E-CB22AE194BDA}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "{8850D5A2-A9D9-46CB-B19B-9C145EC2770A}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "{C09FDB82-3743-48A5-898E-9170E11DE973}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\Streaming Video Recorder.exe (.not file.)
O87 - FAEL: "{B97D3CF8-80F5-46FA-816F-111FC7CB702D}" |Out - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\Streaming Video Recorder.exe (.not file.)
O87 - FAEL: "{D96EB087-0B6C-4ABE-BA40-91A9112C62EF}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftSrv.dll (.not file.)
O87 - FAEL: "{8FC9A3D5-12AA-48F6-B57D-2A45BA4919D6}" |Out - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftSrv.dll (.not file.)
O87 - FAEL: "{61638E79-4A1A-4E74-97E1-F9DCAA573CB9}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDump.dll (.not file.)
O87 - FAEL: "{50DEAFD6-C2BD-4574-8871-F5AE9BDB7CDD}" |Out - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDump.dll (.not file.)
O87 - FAEL: "{E1C650AA-100D-4F83-98AA-5E8785A6A2A6}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftAC.dll (.not file.)
O87 - FAEL: "{D3960F8B-42C2-4EAA-98DE-536D11BB5453}" |Out - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftAC.dll (.not file.)
O87 - FAEL: "{A07C03E2-7768-41A9-AA4D-7BDB1B12D0C6}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftPlayer.dll (.not file.)
O87 - FAEL: "{5883BD8C-C3C6-417F-B040-44DF4922014C}" |Out - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftPlayer.dll (.not file.)
O87 - FAEL: "{3A78267D-CEF8-49F8-8E42-60C63B9028A9}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDownloaderHelp.dll (.not file.)
O87 - FAEL: "{F021B0AB-CF43-4D73-A0FE-32E141AFF3C5}" |Out - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDownloaderHelp.dll (.not file.)
O87 - FAEL: "TCP Query User{E8A838DC-A51E-4AFB-BBE9-03103364628C}C:\program files (x86)\java\jre7\bin\javaw.exe" | In - Private - P6 - TRUE | .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files (x86)\java\jre7\bin\javaw.exe
O87 - FAEL: "UDP Query User{B5A564E6-17C1-4AB9-8F49-E2A5799F707A}C:\program files (x86)\java\jre7\bin\javaw.exe" | In - Private - P17 - TRUE | .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files (x86)\java\jre7\bin\javaw.exe
O87 - FAEL: "{9EBDBB27-4AB3-495E-B43F-B42E6B9501D7}" | In - Private - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{39FC3B72-3867-4404-843B-B8A92B250B98}" | In - Private - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{800EFF43-2378-40F1-8A83-48067E2E8B47}" | In - Private - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O87 - FAEL: "{BF088144-E480-4049-B33C-28E17ECB0AC2}" | In - Private - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O87 - FAEL: "{0DA3324B-DC9D-4248-9A49-42EAB74F99F7}" | In - None - P17 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files (x86)\iTunes\iTunes.exe
O87 - FAEL: "{1A2B8E38-38DC-4CB5-800B-DE3C9DB3A161}" | In - Private - P6 - TRUE | .(.Pinnacle Systems - Render Manager.) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe
O87 - FAEL: "{E1F5052F-601A-4413-9006-7D00685E5CFC}" | In - Private - P17 - TRUE | .(.Pinnacle Systems - Render Manager.) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe
O87 - FAEL: "{5E43E181-74D3-4462-A411-400B558A6714}" | In - Private - P6 - TRUE | .(.Pinnacle Systems - umi.) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe
O87 - FAEL: "{A146DB6B-1AE8-4C1A-9558-EC4195E3CFE5}" | In - Private - P17 - TRUE | .(.Pinnacle Systems - umi.) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe
O87 - FAEL: "{DC7F1AAC-8190-42A0-94D2-A17EEB5D8212}" | In - Private - P6 - TRUE | .(.Pinnacle Systems - Pinnacle VideoSpin program file.) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe
O87 - FAEL: "{7D461BD7-7B2E-4A5F-BE50-3ACD57FF66BE}" | In - Private - P17 - TRUE | .(.Pinnacle Systems - Pinnacle VideoSpin program file.) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe
O87 - FAEL: "{8789174C-EE15-4E72-97C5-324AF521D6B9}" | In - None - P6 - TRUE | .(.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O87 - FAEL: "{8319D5B4-C92E-4269-A908-70F08BCAD1A5}" | In - None - P6 - TRUE | .(.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O87 - FAEL: "{C059F4B5-3A08-4E9B-8485-50369CCB3B23}" | In - None - P6 - TRUE | .(.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O87 - FAEL: "{BFEB71C7-F213-4F2B-B991-C549151B6858}" | In - None - P17 - TRUE | .(.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O87 - FAEL: "{DF160C41-DC22-49EC-9772-8B75ADE9D3C9}" | In - None - P6 - TRUE | .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
O87 - FAEL: "{90B81AC8-4858-4F14-8E74-15172E006CB0}" | In - None - P17 - TRUE | .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
O87 - FAEL: "TCP Query User{2334A140-5EE3-472F-8013-A49EDA4CF9F1}C:\program files (x86)\emule\emule.exe" | In - Private - P6 - TRUE | .(.http://www.emule-project.net - eMule.) -- C:\program files (x86)\emule\emule.exe
O87 - FAEL: "UDP Query User{94F32DD8-BC54-41E8-A353-C3EBD85F5DCC}C:\program files (x86)\emule\emule.exe" | In - Private - P17 - TRUE | .(.http://www.emule-project.net - eMule.) -- C:\program files (x86)\emule\emule.exe
O87 - FAEL: "TCP Query User{80934DEB-AEEF-400D-ACE2-F6BC01B18E26}C:\users\garpat\appdata\roaming\dropbox\bin\dropbox.exe" |In - Public - P6 - TRUE | .(...) -- C:\users\garpat\appdata\roaming\dropbox\bin\dropbox.exe (.not file.) =>.Dropbox
O87 - FAEL: "UDP Query User{B3310495-57E4-48C1-A5AC-863CC7A24F3B}C:\users\garpat\appdata\roaming\dropbox\bin\dropbox.exe" |In - Public - P17 - TRUE | .(...) -- C:\users\garpat\appdata\roaming\dropbox\bin\dropbox.exe (.not file.) =>.Dropbox
O87 - FAEL: "TCP Query User{598FC010-80DB-4BE2-88F8-AD74189F7F4B}C:\program files (x86)\adobe\adobe dreamweaver cs6\dreamweaver.exe" | In - Private - P6 - TRUE | .(.Adobe Systems, Inc. - Adobe Dreamweaver CS6.) -- C:\program files (x86)\adobe\adobe dreamweaver cs6\dreamweaver.exe
O87 - FAEL: "UDP Query User{1580C45A-FFA3-4E40-81A5-E10654A589C4}C:\program files (x86)\adobe\adobe dreamweaver cs6\dreamweaver.exe" | In - Private - P17 - TRUE | .(.Adobe Systems, Inc. - Adobe Dreamweaver CS6.) -- C:\program files (x86)\adobe\adobe dreamweaver cs6\dreamweaver.exe
~ Firewall: 276 Scanned in 00mn 01s



---\\ Enumère les codes produits des logiciels (PUC) (O90)
O90 - PUC: "0000009F810000000000709475387300" . (.ABBYY FineReader 9.0 Sprint.) -- C:\WINDOWS\Installer\{F9000000-0018-0000-0000-074957833700}\ARPPRODUCTICON.exe
O90 - PUC: "00002105501100000000000000F01FEC" . (.Microsoft Office 2007 Primary Interop Assemblies.) -- C:\WINDOWS\Installer\{50120000-1105-0000-0000-0000000FF1CE}\misc.exe,6
O90 - PUC: "0336A2D4B8F23E11C9048BCAF6798BE8" . (.Google Earth.) -- C:\WINDOWS\Installer\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}\ARPPRODUCTICON.exe
O90 - PUC: "2B0163E6D0340BE4183EB2758E9BEDD8" . (.Bonjour.) -- C:\WINDOWS\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico
O90 - PUC: "3902CF1234E6B0649B0BF5A53AB5BBF0" . (.Apple Application Support.) -- C:\WINDOWS\Installer\{21FC2093-6E43-460B-B9B0-5F5AA35BBB0F}\WinInstall.ico
O90 - PUC: "3D0DCE8B80EA19846B7C239FB657BEC6" . (.EPSON Printer Finder.) -- C:\WINDOWS\Installer\{B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}\ARPPRODUCTICON.exe
O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\WINDOWS\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico =>.Apple Inc
O90 - PUC: "535C3BC0171102A45B942EBCD5BE7932" . (.MySQL Connector/ODBC 3.51.) -- C:\WINDOWS\Installer\{0CB3C535-1171-4A20-B549-E2CB5DEB9723}\MySQLConnector.ico
O90 - PUC: "78851BEF2390D2D4BB58A60CF3FBA18A" . (.Pinnacle VideoSpin.) -- C:\WINDOWS\Installer\{FEB15887-0932-4D2D-BB85-6AC03FBF1AA8}\VideoSpin.exe
O90 - PUC: "7AB7040836775934BA8925331F3BE456" . (.NVIDIA PhysX.) -- C:\WINDOWS\Installer\{80407BA7-7763-4395-AB98-5233F1B34E65}\icon.ico
O90 - PUC: "8AC35B69BBA58D94691F6F0C7DA3676C" . (.iTunes.) -- C:\WINDOWS\Installer\{96B53CA8-5ABB-49D8-96F1-F6C0D73A76C6}\Installer.ico
O90 - PUC: "BCDE9128A5EC84340B65AA0CEFE4990D" . (.Microsoft IntelliType Pro 8.2.) -- C:\WINDOWS\Installer\{8219EDCB-CE5A-4348-B056-AAC0FE4E99D0}\Keyboard.ico
O90 - PUC: "C0BC68EF3BCF85344B0B0B4AE1333BDD" . (.Apple Mobile Device Support.) -- C:\WINDOWS\Installer\{FE86CB0C-FCB3-4358-B4B0-B0A41E33B3DD}\Installer.ico
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- C:\WINDOWS\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon
O90 - PUC: "E7F34DE86F8A8984FA116B51F8E2FD49" . (.Epson Event Manager.) -- C:\WINDOWS\Installer\{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}\icon.exe
O90 - PUC: "EC9BCB90B469ADB4EA645B0ABAFED1F3" . (.SonicMaster.) -- C:\WINDOWS\Installer\{09BCB9CE-964B-4BDA-AE46-B5A0ABEF1D3F}\ARPPRODUCTICON.exe
~ Update Products: 69 Scanned in 00mn 00s



---\\ Enumère les données de la clé NameSpace (MNS) (O92)
O92 - MNS: - {1CF1260C-4DD0-4ebb-811F-33C572699FDE}
O92 - MNS: - {374DE290-123F-4565-9164-39C4925E467B}
O92 - MNS: - {3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA}
O92 - MNS: - {A0953C92-50DC-43bf-BE83-3742FED03C9C}
O92 - MNS: - {A8CDFF1C-4878-43be-B5FD-F8091C1C60D0}
O92 - MNS: - {B4BFCC3A-DB2C-424C-B029-7FE99A87C641}
~ MNS: 6 Scanned in 00mn 00s



---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
[MD5.E394F5A91D157B4319446E112E0CA15B] [WIS][21/01/2014] (.Synopsys - SonicMaster.) -- C:\Windows\Installer\3d3381.msi [3169280]
[MD5.40C725AF2FE80DD9713D64FFC1636727] [WIS][10/08/2006] (.MySQL AB - MySQL Connector/ODBC.) -- C:\Windows\Installer\457964a.msi [2376192]
~ WIS: 70 Scanned in 00mn 12s



---\\ Recherche de clés de registre Tracing (O100)
HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASAPI32 =>PUP.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASMANCS =>PUP.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\Signup Wizard_RASAPI32 =>PUP.JDIBackup
HKLM\SOFTWARE\Microsoft\Tracing\Signup Wizard_RASMANCS =>PUP.JDIBackup
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 =>PUP.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS =>PUP.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\melondrea_RASAPI32 =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\melondrea_RASMANCS =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\RightSurf_RASAPI32 =>PUP.RightSurf
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\RightSurf_RASMANCS =>PUP.RightSurf
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateMegaBrowse_RASAPI32 =>PUP.MegaBrowse
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateMegaBrowse_RASMANCS =>PUP.MegaBrowse
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatemelondrea_RASAPI32 =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatemelondrea_RASMANCS =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateRightSurf_RASAPI32 =>PUP.RightSurf
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateRightSurf_RASMANCS =>PUP.RightSurf
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilMegaBrowse_RASAPI32 =>PUP.MegaBrowse
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilMegaBrowse_RASMANCS =>PUP.MegaBrowse
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\VisualBeeSilent_RASAPI32 =>Adware.VisualBeeToolbar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\VisualBeeSilent_RASMANCS =>Adware.VisualBeeToolbar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WebInternetSecurity_RASAPI32 =>Spyware.Binternet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WebInternetSecurity_RASMANCS =>Spyware.Binternet
~ BTK: 80 Scanned in 00mn 00s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 29/01/2014 279000 | (cphs) . (.Intel Corporation.) - C:\Windows\SysWow64\IntelCpHeciSvc.exe
SS - | Demand 21/01/2014 654848 | (FLEXnet Licensing Service) . (.Macrovision Europe Ltd..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
SS - | Demand 23/01/2014 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 23/01/2014 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
SS - | Demand 22/08/2013 37768 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe

SR - | Auto 14/05/2009 759048 | (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
SR - | Auto 07/01/2014 43336 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Demand 06/02/2014 641352 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SR - | Auto 05/02/2014 1593632 | (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
SR - | Auto 05/02/2014 16941856 | (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
SR - | Auto 08/02/2014 923936 | (nvsvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvvsvc.exe
SR - | Auto 08/02/2014 411936 | (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
SR - | Demand 10/07/1658 0 | (WdNisSvc) . (...) - C:\Program Files (x86)\Windows Defender\NisSrv.exe
SR - | Auto 10/07/1658 0 | (WinDefend) . (...) - C:\Program Files (x86)\Windows Defender\MsMpEng.exe

~ Services: Scanned in 00mn 07s



---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Run by garpat at 13/04/2014 11:16:54
~ OS 64 not supported by MBR tool

~ MBR: 0 Scanned in 00mn 00s



---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by garpat at 13/04/2014 11:16:56

********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin

~ MBR: Scanned in 00mn 02s



---\\ Scan Additionnel (O88)
Database Version : 13044 - (12/04/2014)
Clés trouvées (Keys found) : 2
Valeurs trouvées (Values found) : 3
Dossiers trouvés (Folders found) : 5
Fichiers trouvés (Files found) : 1

[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\PC Speed Maximizer Pro_is1] =>Rogue.PCSpeedMaximizer^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\sweet-page uninstaller] =>PUP.SweetPage^
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:PC Speed Maximizer Pro =>Rogue.PCSpeedMaximizer^
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:WebInternetSecurity =>Spyware.Binternet^
C:\Program Files (x86)\PC Speed Maximizer Pro =>Rogue.PCSpeedMaximizer^
C:\Users\garpat\AppData\Roaming\PC Speed Maximizer Pro =>Rogue.PCSpeedMaximizer^
C:\Users\garpat\AppData\Roaming\sweet-page =>PUP.SweetPage^
C:\Users\garpat\AppData\Local\WebInternetSecurity =>Spyware.Binternet^
C:\Users\garpat\AppData\Local\Software =>Adware.Boxore
[HKCU\Software\PC Speed Maximizer Pro] =>Rogue.PCSpeedMaximizer^
~ Additionnel Scan: 339734 Items scanned in 00mn 18s



---\\ Récapitulatif des détections trouvées sur votre station
http://nicolascoolman.webs.com/apps/blog/show/27232411-hijacker-proxy =>Hijacker.Proxy
http://nicolascoolman.webs.com/apps/blog/show/33449013-rogue-pcspeedmaximizer =>Rogue.PCSpeedMaximizer
http://nicolascoolman.webs.com/apps/blog/show/27355370-spyware-binternet =>Spyware.Binternet
http://nicolascoolman.webs.com/apps/blog/show/40584589-pup-sweetpage =>PUP.SweetPage
http://nicolascoolman.webs.com/apps/blog/show/32771797-trojan-staser =>Trojan.Staser
http://nicolascoolman.webs.com/apps/blog/show/41917380-pup-megabrowse =>PUP.MegaBrowse
http://nicolascoolman.webs.com/apps/blog/show/29956939-usp-pccleaner =>USP.PCCleaner
http://nicolascoolman.webs.com/apps/blog/show/28040039-pup-certifiedtoolbar =>PUP.CertifiedToolbar
http://nicolascoolman.webs.com/apps/blog/show/32174815-pup-mypcbackup =>PUP.MyPCBackup
http://nicolascoolman.webs.com/apps/blog/show/26630283-pup-advancedsystemprotector =>PUP.AdvancedSystemProtector
http://nicolascoolman.webs.com/apps/blog/show/41783674-pup-melondrea =>PUP.Melondrea
http://nicolascoolman.webs.com/apps/blog/show/41196115-pup-rightsurf =>PUP.RightSurf
http://nicolascoolman.webs.com/apps/blog/show/29058830-adware-visualbeetoolbar =>Adware.VisualBeeToolbar
http://nicolascoolman.webs.com/apps/blog/show/26626977-adware-boxore =>Adware.Boxore
~ MSI: 14 link(s) detected in 00mn 00s



End of the scan (2444 lines in 03mn 47s)(0)

Publicité


Signaler le contenu de ce document

Publicité