cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ Rapport de ZHPDiag v2014.12.27.179 - Nicolas Coolman (27/12/2014)
~ Lancé par Nanou (29/12/2014 17:40:29)
~ Facebook : https://www.facebook.com/nicolascoolman1
~ Adresse du Forum http://forum.nicolascoolman.fr
~ Traduit par Nicolas Coolman
~ Etat de la version : Version à jour.
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Activate by user


---\\ Navigateurs Internet
MSIE: Internet Explorer v9.0.8112.16421
MFIE: Mozilla Firefox 34.0.5 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Français
Windows 7 Home Premium, 32-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows Operating System - Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 2BT4J
Windows License : OK
~ Windows Remaining Initializations Number : 4
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection du système
Avast Free Antivirus v10.0.2208
Windows Defender W7 (Activate)

---\\ Logiciels d'optimisation du système
CCleaner v4.03

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Flash Player 15 Plugin
Adobe Reader XI

---\\ Informations sur le système
~ Processor: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 2008 MB (42% free)
System Restore: Activé (Enable)
System drive C: has 0 GB (1%) free of 40 GB

---\\ Mode de connexion au système
~ Computer Name: NANOU-PC
~ User Name: Nanou
~ All Users Names: Nanou, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Nanou\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Nanou\AppData\Roaming\
~ %Desktop% : C:\Users\Nanou\Desktop\
~ %Favorites% : C:\Users\Nanou\Favorites\
~ %LocalAppData% : C:\Users\Nanou\AppData\Local\
~ %StartMenu% : C:\Users\Nanou\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 0 Go of 40 Go)
D: Hard drive, Flash drive, Thumb drive (Free 153 Go of 178 Go)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 50 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 06:30:54.) -- C:\Windows\Explorer.exe [2616320]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]
[MD5.C5B6468422DB1C8AA36C32CBB0197E5E] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.22/02/2013 - 04:38:00.) -- C:\Windows\System32\wininet.dll [1129472]
[MD5.6D13E1406F50C66E2A95D97F22C47560] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/11/2010 - 13:17:54.) -- C:\Windows\System32\Winlogon.exe [286720]
[MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 13:21:24.) -- C:\Windows\System32\sppcomapi.dll [193536]
[MD5.9EBBBA55060F786F0FCAA3893BFA2806] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.25/04/2011 - 03:18:03.) -- C:\Windows\system32\Drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:26:15.) -- C:\Windows\system32\Drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:11:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [70656]
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 09:38:10.) -- C:\Windows\system32\Drivers\Cdrom.sys [108544]
[MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 09:42:32.) -- C:\Windows\system32\Drivers\DfsC.sys [78336]
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 10:59:29.) -- C:\Windows\system32\Drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:11:24.) -- C:\Windows\system32\Drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 00:54:29.) -- C:\Windows\system32\Drivers\IpNat.sys [101888]
[MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:17:22.) -- C:\Windows\system32\Drivers\MRxSmb.sys [123904]
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 09:39:44.) -- C:\Windows\system32\Drivers\netBT.sys [187904]
[MD5.5E43D2B0EE64123D4880DFA6626DEFDE] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 14:45:29.) -- C:\Windows\system32\Drivers\ntfs.sys [1211752]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 00:45:35.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.14/07/2009 - 00:54:34.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [78848]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 00:53:41.) -- C:\Windows\system32\Drivers\smb.sys [71168]
[MD5.B459575348C20E8121D6039DA063C704] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 09:39:17.) -- C:\Windows\system32\Drivers\tdx.sys [74752]
[MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 13:30:16.) -- C:\Windows\system32\Drivers\volsnap.sys [245632]
~ Generic Processes: Scanned in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 1/976
~ Mes musiques (My Musics) : 1/1159
~ Mes Videos (My Videos) : 1/6
~ Mes Favoris (My Favorites) : 1/27
~ Mes Documents (My Documents) : 1/145
~ Mon Bureau (My Desktop) : 1/20
~ Menu demarrer (Programs) : 1/30
~ Hidden Files: Scanned in 00mn 05s



---\\ Processus lancés
[MD5.167F9E5AF87B57763DAAA27D3144C2A0] - (.SEC - Samsung Recovery Solution 4.) -- C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler.exe [2201192] [PID.476]
[MD5.64DC778A1447D73CD87F3480AB8381C3] - (.SAMSUNG Electronics - SSCKbdHk.) -- C:\Program Files\Samsung\Samsung Support Center\SSCKbdHk.exe [93184] [PID.524]
[MD5.06F7D67EC4D15F11A2923268BAA937D3] - (...) -- C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe [300912] [PID.700]
[MD5.BB25D9B9D206C75C18072078179EEAF8] - (.Samsung Electronics Co., Ltd. - EasySpeedUpManager.) -- C:\Program Files\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe [716800] [PID.872]
[MD5.F50CA00F1929D9294FE01894D0168A7F] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [7711264] [PID.1792]
[MD5.E4A94D17436B4E9F53CD64D08E53D964] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1713448] [PID.1100]
[MD5.985D3D06EC34875FF34A30328EE1BFEF] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [141848] [PID.2152]
[MD5.EA5391AE556E86F2749DC82BF51694F0] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [175640] [PID.2160]
[MD5.267FBD8817AB1B060BF25596D3DC65D5] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [169496] [PID.2184]
[MD5.FFB8CB731D62EC434A552680E0F8EC1A] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [5226600] [PID.2336]
[MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408] [PID.2348]
[MD5.EF1ECB9DF42AF6BF7514BB5EBC5C59EC] - (.Google Inc. - Picasa.) -- C:\Program Files\Picasa2\PicasaMediaDetector.exe [443968] [PID.2392]
[MD5.2A4F72E6C43FAEE62A341F2FC24A442C] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [103720] [PID.3324]
[MD5.C7C774D984BA3183707BFAF68E9B9AF7] - (.TuneUp Software - TuneUp Utilities.) -- C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe [719688] [PID.1676]
[MD5.072678E0D68E9C3A7960328671134C7B] - (.Microsoft Corporation - Windows Update.) -- C:\windows\system32\wuauclt.exe [54240] [PID.2636]
[MD5.DADDD62BEDC91BC96CFC794A2CA0D94A] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [337520] [PID.3676]
[MD5.E47AC731D42B2452D4C0BF096DF3DD6E] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8145408] [PID.4548]
~ Processes Running: Scanned in 00mn 01s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Nanou\AppData\Roaming\Mozilla\Firefox\Profiles\rld6zihy.default\prefs.js
M3 - MFPP: Plugins - [Nanou] -- C:\Users\Nanou\AppData\Roaming\Mozilla\Firefox\Profiles\rld6zihy.default\searchplugins\conduit.xml
M0 - MFSP: prefs.js [Nanou - rld6zihy.default] http://www.google.fr
M2 - MFEP: prefs.js [Nanou - rld6zihy.default\engine@conduit.com] [] Conduit Engine v3.3.3.2 (..)
M2 - MFEP: prefs.js [Nanou - rld6zihy.default\ffxtlbr@babylon.com] [] Babylon v1.2.0 (..) =>PUP.Babylon
M2 - MFEP: prefs.js [Nanou - rld6zihy.default\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}] [] uTorrentBar Community Toolbar v3.18.0.7 (..) =>P2P.µTorrent
M2 - MFEP: Extension [Nanou - rld6zihy.default] {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi =>.Adblock Plus Extension Mozilla Firefox
P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll
P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 11.0.9.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll
P2 - FPN: [HKLM] [@google.com/npPicasa2,version=2.0.0] - (.Google, Inc. - Picasa plugin.) -- C:\Program Files\Picasa2\npPicasa2.dll
P2 - FPN: [HKLM] [@google.com/npPicasa3,version=3.0.0] - (.Google, Inc. - Picasa plugin.) -- C:\Program Files\Picasa2\npPicasa3.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.30514.0.) -- C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.5] - (.Microsoft Corp. - Office Live Update v1.5.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 11.0.10.) -- C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
~ Firefox Browser: 28 Scanned in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com =>PUP.Babylon
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 11.0.10.) (No version) -- (.not file.)
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ IE Browser: 17 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hôte est sain (The hosts file is clean) (21)
~ Hosts File: Scanned in 00mn 00s



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
~ BHO: 6 Scanned in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Google Toolbar - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline
~ Toolbar: Scanned in 00mn 00s



---\\ Applications lancées au démarrage du système (O4)
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe =>.Realtek Semiconductor Corp
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [UCam_Menu] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Microsoft Default Manager] . (.Microsoft Corporation - Microsoft Default Manager.) -- C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe =>.Microsoft Corporation
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O4 - HKLM\..\Run: [Logitech Download Assistant] . (.Logitech, Inc. - Logitech Download Assistant.) -- C:\Windows\System32\LogiLDA.dll
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [Picasa Media Detector] . (.Google Inc. - Picasa.) -- C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\windows\System32\SPReview\SPReview.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\windows\System32\SPReview\SPReview.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-150805150-2111139831-408568892-1001\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-21-150805150-2111139831-408568892-1001\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-150805150-2111139831-408568892-1001\..\Run: [Picasa Media Detector] . (.Google Inc. - Picasa.) -- C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKUS\S-1-5-21-150805150-2111139831-408568892-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
~ Application: Scanned in 00mn 00s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (...) -- C:\Program Files\Microsoft Office\Office12\REFBARH.ICO
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\windows\system32\wshbth.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\windows\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\windows\system32\winrnr.dll
~ Winsock: 8 Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{04922480-1B39-4DAE-AACC-A28979B2188F}: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{04922480-1B39-4DAE-AACC-A28979B2188F}: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS2\Services\Tcpip\..\{04922480-1B39-4DAE-AACC-A28979B2188F}: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) . (.TuneUp Software - TuneUp Utilities Service.) - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
~ Services: 7 Scanned in 00mn 08s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
[MD5.749F94C424524285DCDA84D695ABC12F] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [267440]
[MD5.3E04F1E482357B1FC8B088197C3D9FF8] [APT] [Adobe Reader and Acrobat Manager] (.Adobe Systems Incorporated.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152]
[MD5.167F9E5AF87B57763DAAA27D3144C2A0] [APT] [advSRS4] (.SEC.) -- C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler.exe [2201192]
[MD5.4BB7714617D50D77FCDA6B0182FD8A9A] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [857888]
[MD5.1BA4331122570A23452E8BA06F7C1672] [APT] [BatteryLifeExtender] (.Samsung Electronics. Co. Ltd..) -- C:\Program Files\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [562176]
[MD5.4999625054FFA2AFFCAFD085C1218307] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [3611416]
[MD5.51508F0C2476177E50C31B0BBFBF1BDB] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [107912]
[MD5.51508F0C2476177E50C31B0BBFBF1BDB] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [107912]
[MD5.52DB6CDAC5BC7A1FC884E97C41C91213] [APT] [Java Update Scheduler] (.Sun Microsystems, Inc..) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [248040]
[MD5.E101ACA9D2F6327A80BE0B94F34BFFA6] [APT] [TuneUpUtilities_Task_BkGndMaintenance] (.TuneUp Software.) -- C:\Program Files\TuneUp Utilities 2010\OneClick.exe [645960]
[MD5.9CC812B626C7FDFBE113D6C4443B2698] [APT] [{D49508A0-3350-4362-9C95-42B0A4CE4167}] (.Nicolas Coolman.) -- C:\Users\Nanou\Downloads\ZHPDiag2.exe [6304096]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [1002]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1054]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1054]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1058]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1058]
~ Scheduled Task: 18 Scanned in 00mn 08s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\System32\iedkcs32.dll
O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\regutils.dll
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11CF-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 10.0 r45.) -- C:\windows\system32\Macromed\Flash\Flash10e.ocx
~ Active Setup: 13 Scanned in 00mn 00s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\drivers\aswRdr2.sys
O41 - Driver: (aswSnx) . (.AVAST Software - avast! Virtualization Driver.) - C:\Windows\system32\drivers\aswSnx.sys
O41 - Driver: (aswSP) . (.AVAST Software - avast! self protection module.) - C:\Windows\system32\drivers\aswSP.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: (SABI) . (.SAMSUNG ELECTRONICS - SAMSUNG Kernel Driver.) - C:\windows\system32\Drivers\SABI.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Drivers: 72 Scanned in 00mn 01s



---\\ Logiciels installés (O42)
O42 - Logiciel: 7-Zip 9.20 - (...) [HKLM] -- 7-Zip
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 15 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader XI (11.0.10) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {46F044A5-CE8B-4196-984E-5BD6525E361D}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {308B6AEA-DE50-4666-996D-0FA461719D6B}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- avast
O42 - Logiciel: BatteryLifeExtender - (.Samsung.) [HKLM] -- {853F8A41-A3C9-43FA-87FA-1AE74FC6F3F7}
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {FF1C31AE-0CDC-40CE-AB85-406F8B70D643}
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: Cinergy T Stick MKII V9.06.3.01 - (...) [HKLM] -- Cinergy T Stick MKII
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: Dairy Dash - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115053100}
O42 - Logiciel: Driver Detective - (.PC Drivers HeadQuarters.) [HKLM] -- {4640FDE1-B83A-4376-84ED-86F86BEE2D41}
O42 - Logiciel: Easy Display Manager - (.Samsung Electronics Co., Ltd..) [HKLM] -- {17283B95-21A8-4996-97DA-547A48DB266F}
O42 - Logiciel: Easy Network Manager - (.Samsung.) [HKLM] -- {A7581D39-EA20-4883-A480-80C21047052B}
O42 - Logiciel: Easy SpeedUp Manager - (.Samsung Electronics Co.,Ltd..) [HKLM] -- {EF367AA4-070B-493C-9575-85BE59D789C9}
O42 - Logiciel: EasyBatteryManager - (.Samsung.) [HKLM] -- {178EE5F4-0F86-4BF0-A0D1-9790AFF409D1}
O42 - Logiciel: Farm Frenzy 2 - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}
O42 - Logiciel: Fichiers de prise en charge de l'installation de Microsoft SQL Server (Fran - (.Microsoft Corporation.) [HKLM] -- {3380F354-C5F7-4E71-8F51-EEE6C3F06C62}
O42 - Logiciel: FileZilla Client 3.3.3 - (...) [HKLM] -- FileZilla Client
O42 - Logiciel: Gestionnaire de contacts professionnels pour Outlook 2007 SP2 - (.Microsoft Corporation.) [HKLM] -- Business Contact Manager
O42 - Logiciel: Gestionnaire de contacts professionnels pour Outlook 2007 SP2 - (.Microsoft Corporation.) [HKLM] -- {69ca8988-1c6c-4285-b8af-db780a6e42af}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Intel® Matrix Storage Manager - (.Intel Corporation.) [HKLM] -- {9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}
O42 - Logiciel: Japanese Fonts Support For Adobe Reader 9 - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-5760-0000-900000000003}
O42 - Logiciel: Java(TM) 6 Update 20 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216020FF}
O42 - Logiciel: Logiciel d'archivage WinRAR - (...) [HKLM] -- WinRAR archiver
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Microsoft Default Manager - (.Microsoft Corporation.) [HKLM] -- {1CAC7A41-583B-4483-9FA5-3E5465AFF8C2} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Outlook Social Connector 32 bits - (.Microsoft Corporation.) [HKLM] -- {95140000-004E-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Mozilla Firefox 34.0.5 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 34.0.5 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: Nokia Connectivity Cable Driver - (...) [HKLM] -- {BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}
O42 - Logiciel: OGA Notifier 2.0.0048.0 - (.Microsoft Corporation.) [HKLM] -- {B2544A03-10D0-4E5E-BA69-0362FFC20D18}
O42 - Logiciel: OpenOffice.org 3.2 - (.OpenOffice.org.) [HKLM] -- {266517E6-D866-439D-919C-B8B1A52E6080}
O42 - Logiciel: Photo Viewer 2.3 - (...) [HKLM] -- Photo Viewer
O42 - Logiciel: PhotoFiltre - (...) [HKCU] -- PhotoFiltre
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3
O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM] -- {111EE7DF-FC45-40C7-98A7-753AC46B12FB}
O42 - Logiciel: Realtek Ethernet Controller Driver For Windows Vista and Later - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Samsung Recovery Solution 4 - (.Samsung.) [HKLM] -- {145DE957-0679-4A2A-BB5C-1D3E9808FAB2}
O42 - Logiciel: Samsung Support Center - (.Samsung.) [HKLM] -- {4D2121FE-5CCC-4D47-B3A0-BF56045A5099}
O42 - Logiciel: Samsung Update Plus - (.Samsung Electronics Co., Ltd..) [HKLM] -- {D3F2FAA5-FEC4-42AA-9ABA-1F763919A2B5}
O42 - Logiciel: Skype™ 6.11 - (.Skype Technologies S.A..) [HKLM] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey
O42 - Logiciel: TuneUp Utilities - (.TuneUp Software.) [HKLM] -- TuneUp Utilities
O42 - Logiciel: User Guide - (...) [HKLM] -- {BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}
O42 - Logiciel: VLC media player 1.1.4 - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN
~ Logic: 26 Scanned in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\7-Zip]
[HKCU\Software\AVAST Software]
[HKCU\Software\AVS4YOU]
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\Conduit] =>Toolbar.Conduit
[HKCU\Software\AppDataLow\Software\Google]
[HKCU\Software\AppDataLow\Software\Monitored]
[HKCU\Software\AppDataLow\Software\settings]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Auchan]
[HKCU\Software\Audacity]
[HKCU\Software\Chromium]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Conduit] =>Toolbar.Conduit
[HKCU\Software\CyberLink]
[HKCU\Software\Google]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\IM Providers]
[HKCU\Software\InstallCore] =>Adware.InstallCore
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\LogiShrd]
[HKCU\Software\MCAFEE]
[HKCU\Software\Macromedia]
[HKCU\Software\MahicA Installer Helper Applications]
[HKCU\Software\Memeo]
[HKCU\Software\Mozilla]
[HKCU\Software\Netscape]
[HKCU\Software\ODBC]
[HKCU\Software\Oberon Media]
[HKCU\Software\OfferBox] =>PUP.OfferBox
[HKCU\Software\OpenOffice.org]
[HKCU\Software\Patchou]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Realtek]
[HKCU\Software\Samsung]
[HKCU\Software\Serif]
[HKCU\Software\Skype]
[HKCU\Software\Synaptics]
[HKCU\Software\Trolltech]
[HKCU\Software\Trusteer]
[HKCU\Software\TuneUp]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\VirginMega]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\YahooPartnerToolbar]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\keyhole.com]
[HKLM\Software\ASK]
[HKLM\Software\ATI Technologies]
[HKLM\Software\AVAST Software]
[HKLM\Software\AVS4YOU]
[HKLM\Software\Adobe]
[HKLM\Software\AdwCleaner]
[HKLM\Software\America Online]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\BrowserChoice]
[HKLM\Software\CHECKINSTALLER]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Conduit] =>Toolbar.Conduit
[HKLM\Software\CyberLink]
[HKLM\Software\Digital River]
[HKLM\Software\DivXNetworks]
[HKLM\Software\FileZilla 3]
[HKLM\Software\GEAR Software]
[HKLM\Software\Google]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\IM Providers]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\Logishrd]
[HKLM\Software\Macromedia]
[HKLM\Software\McAfeeInstaller]
[HKLM\Software\Messenger Plus!]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\Nokia]
[HKLM\Software\ODBC]
[HKLM\Software\Oberon Media]
[HKLM\Software\OfferBox] =>PUP.OfferBox
[HKLM\Software\OpenOffice.org]
[HKLM\Software\Phoenix Technologies]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\Samsung Electronics Co., Ltd.]
[HKLM\Software\Samsung]
[HKLM\Software\Serif]
[HKLM\Software\Skype]
[HKLM\Software\Sonic]
[HKLM\Software\Sun Microsystems]
[HKLM\Software\Synaptics]
[HKLM\Software\TerraTec Electronic GmbH]
[HKLM\Software\Trusteer]
[HKLM\Software\TuneUp]
[HKLM\Software\VideoLAN]
[HKLM\Software\Waves Audio]
[HKLM\Software\WinRAR]
[HKLM\Software\Wow6432Node]
[HKLM\Software\mozilla.org]
[HKLM\Software\optimidata]
~ Key Software: 204 Scanned in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 02/02/2011 - 17:23:54 - [] ----D C:\Program Files\7-Zip
O43 - CFD: 25/08/2013 - 15:38:48 - [] ----D C:\Program Files\Adobe
O43 - CFD: 25/08/2013 - 15:45:12 - [] ----D C:\Program Files\Apple Software Update =>.Apple Inc
O43 - CFD: 07/01/2012 - 18:50:16 - [0] ----D C:\Program Files\Audacity-tools
O43 - CFD: 07/01/2012 - 18:40:15 - [] ----D C:\Program Files\AVAST Software
O43 - CFD: 28/10/2010 - 15:03:18 - [] ----D C:\Program Files\AVS4YOU
O43 - CFD: 20/10/2010 - 12:38:45 - [] ----D C:\Program Files\Bonjour
O43 - CFD: 26/06/2013 - 21:13:46 - [] ----D C:\Program Files\CCleaner
O43 - CFD: 23/05/2014 - 20:46:06 - [] ----D C:\Program Files\Common Files
O43 - CFD: 01/07/2010 - 20:33:19 - [] ----D C:\Program Files\Conduit
O43 - CFD: 18/05/2010 - 17:43:49 - [] ----D C:\Program Files\CyberLink
O43 - CFD: 23/12/2014 - 17:52:52 - [] ----D C:\Program Files\DVD Maker
O43 - CFD: 20/06/2010 - 11:05:33 - [] ----D C:\Program Files\FileZilla FTP Client
O43 - CFD: 29/12/2014 - 14:02:20 - [] ----D C:\Program Files\Google
O43 - CFD: 07/01/2012 - 17:51:10 - [] --H-D C:\Program Files\InstallShield Installation Information
O43 - CFD: 17/06/2010 - 18:47:19 - [] ----D C:\Program Files\Intel
O43 - CFD: 23/12/2014 - 17:52:52 - [] ----D C:\Program Files\Internet Explorer
O43 - CFD: 05/07/2010 - 12:21:45 - [] ----D C:\Program Files\Java
O43 - CFD: 16/08/2010 - 11:13:50 - [] ----D C:\Program Files\JRE
O43 - CFD: 10/11/2010 - 19:04:13 - [] ----D C:\Program Files\Messenger Plus! Live
O43 - CFD: 11/06/2010 - 17:15:11 - [] ----D C:\Program Files\Microsoft
O43 - CFD: 22/09/2009 - 23:18:09 - [] ----D C:\Program Files\Microsoft Games
O43 - CFD: 01/07/2010 - 10:20:53 - [] ----D C:\Program Files\Microsoft Office
O43 - CFD: 18/05/2010 - 17:30:46 - [] ----D C:\Program Files\Microsoft Office Suite Activation Assistant
O43 - CFD: 29/07/2014 - 21:13:12 - [] ----D C:\Program Files\Microsoft Silverlight
O43 - CFD: 18/05/2010 - 17:35:24 - [] ----D C:\Program Files\Microsoft Small Business
O43 - CFD: 17/03/2011 - 20:02:47 - [] ----D C:\Program Files\Microsoft SQL Server
O43 - CFD: 18/05/2010 - 17:39:36 - [] ----D C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 18/05/2010 - 17:27:48 - [] ----D C:\Program Files\Microsoft Visual Studio
O43 - CFD: 07/01/2012 - 16:44:16 - [] ----D C:\Program Files\Microsoft Visual Studio 8
O43 - CFD: 11/06/2010 - 17:18:50 - [] ----D C:\Program Files\Microsoft Works
O43 - CFD: 26/06/2010 - 11:46:29 - [] ----D C:\Program Files\Microsoft.NET
O43 - CFD: 29/12/2014 - 13:54:46 - [] ----D C:\Program Files\Mozilla Firefox
O43 - CFD: 29/12/2014 - 17:31:35 - [] ----D C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 07/01/2012 - 16:49:52 - [] ----D C:\Program Files\MSBuild
O43 - CFD: 14/06/2010 - 15:24:48 - [0] ----D C:\Program Files\MSXML 4.0
O43 - CFD: 21/11/2010 - 17:58:38 - [] ----D C:\Program Files\OfferBox =>PUP.OfferBox
O43 - CFD: 16/08/2010 - 11:13:48 - [] ----D C:\Program Files\OpenOffice.org 3
O43 - CFD: 09/06/2010 - 20:03:06 - [] ----D C:\Program Files\PC Drivers HeadQuarters
O43 - CFD: 22/09/2009 - 14:11:37 - [] ----D C:\Program Files\Phoenix Technologies Ltd
O43 - CFD: 09/06/2010 - 18:55:45 - [] ----D C:\Program Files\Photo Viewer
O43 - CFD: 26/06/2010 - 16:35:49 - [] ----D C:\Program Files\PhotoFiltre
O43 - CFD: 18/11/2014 - 19:39:02 - [] ----D C:\Program Files\Picasa2
O43 - CFD: 05/06/2014 - 12:13:14 - [] ----D C:\Program Files\QuickTime
O43 - CFD: 30/05/2010 - 10:54:56 - [] ----D C:\Program Files\Realtek
O43 - CFD: 14/07/2009 - 05:52:30 - [] ----D C:\Program Files\Reference Assemblies
O43 - CFD: 26/05/2010 - 17:38:11 - [] ----D C:\Program Files\Samsung
O43 - CFD: 07/01/2012 - 18:24:13 - [] ----D C:\Program Files\Samsung Casual Games
O43 - CFD: 06/01/2014 - 13:46:41 - [] R---D C:\Program Files\Skype
O43 - CFD: 22/09/2009 - 13:56:44 - [] ----D C:\Program Files\Synaptics
O43 - CFD: 22/09/2009 - 13:53:10 - [0] --H-D C:\Program Files\Temp
O43 - CFD: 21/05/2010 - 17:11:07 - [] ----D C:\Program Files\TuneUp Utilities 2010
O43 - CFD: 14/07/2009 - 05:53:23 - [0] --H-D C:\Program Files\Uninstall Information
O43 - CFD: 23/06/2010 - 18:17:35 - [] ----D C:\Program Files\VideoLAN
O43 - CFD: 23/12/2014 - 17:52:49 - [] ----D C:\Program Files\Windows Defender
O43 - CFD: 23/12/2014 - 17:52:52 - [] ----D C:\Program Files\Windows Journal
O43 - CFD: 07/01/2012 - 18:17:20 - [] ----D C:\Program Files\Windows Live
O43 - CFD: 01/07/2010 - 13:20:08 - [] ----D C:\Program Files\Windows Live SkyDrive
O43 - CFD: 23/12/2014 - 17:52:52 - [] ----D C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 23/12/2014 - 17:52:52 - [] ----D C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - 05:52:30 - [] ----D C:\Program Files\Windows NT
O43 - CFD: 23/12/2014 - 17:52:52 - [] ----D C:\Program Files\Windows Photo Viewer
O43 - CFD: 23/12/2014 - 17:52:52 - [] ----D C:\Program Files\Windows Portable Devices
O43 - CFD: 23/12/2014 - 17:52:52 - [] ----D C:\Program Files\Windows Sidebar
O43 - CFD: 29/08/2010 - 14:35:58 - [] ----D C:\Program Files\WinRAR
O43 - CFD: 29/12/2014 - 17:39:47 - [] ----D C:\Program Files\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 25/08/2013 - 15:39:10 - [] ----D C:\Program Files\Common Files\Adobe
O43 - CFD: 25/08/2013 - 15:45:28 - [] ----D C:\Program Files\Common Files\Apple
O43 - CFD: 28/10/2010 - 15:03:21 - [] ----D C:\Program Files\Common Files\AVSMedia
O43 - CFD: 23/05/2014 - 20:46:06 - [] ----D C:\Program Files\Common Files\DESIGNER
O43 - CFD: 07/01/2012 - 17:51:19 - [] ----D C:\Program Files\Common Files\InstallShield
O43 - CFD: 17/06/2010 - 18:47:21 - [] ----D C:\Program Files\Common Files\Intel
O43 - CFD: 05/07/2010 - 12:22:29 - [] ----D C:\Program Files\Common Files\Java
O43 - CFD: 07/01/2012 - 18:15:50 - [] ----D C:\Program Files\Common Files\microsoft shared
O43 - CFD: 22/09/2009 - 14:03:42 - [] ----D C:\Program Files\Common Files\Samsung
O43 - CFD: 14/07/2009 - 03:37:05 - [] ----D C:\Program Files\Common Files\Services
O43 - CFD: 07/07/2013 - 16:03:54 - [] ----D C:\Program Files\Common Files\Skype
O43 - CFD: 14/07/2009 - 03:37:05 - [] ----D C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 23/12/2014 - 17:52:51 - [] ----D C:\Program Files\Common Files\System
O43 - CFD: 18/06/2010 - 18:21:13 - [] ----D C:\Program Files\Common Files\TerraTec
O43 - CFD: 18/05/2010 - 17:36:49 - [] ----D C:\Program Files\Common Files\Windows Live
O43 - CFD: 03/07/2010 - 09:33:15 - [] ----D C:\Program Files\Common Files\xSync
O43 - CFD: 17/09/2013 - 20:29:06 - [] ----D C:\ProgramData\Adobe
O43 - CFD: 20/05/2010 - 06:34:41 - [] ----D C:\ProgramData\Apple
O43 - CFD: 05/06/2014 - 12:12:28 - [] ----D C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - 05:53:55 - [] -SH-D C:\ProgramData\Application Data
O43 - CFD: 23/11/2014 - 20:53:59 - [] ----D C:\ProgramData\AVAST Software
O43 - CFD: 28/10/2010 - 14:55:33 - [] ----D C:\ProgramData\AVS4YOU
O43 - CFD: 01/07/2010 - 14:02:49 - [] ----D C:\ProgramData\CyberLink
O43 - CFD: 14/07/2009 - 05:53:55 - [] -SH-D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 05:53:55 - [] -SH-D C:\ProgramData\Documents
O43 - CFD: 26/06/2010 - 11:51:40 - [] ----D C:\ProgramData\Downloaded Installations
O43 - CFD: 14/07/2009 - 05:53:55 - [] -SH-D C:\ProgramData\Favorites
O43 - CFD: 22/09/2009 - 14:11:34 - [] ----D C:\ProgramData\Google
O43 - CFD: 04/09/2011 - 20:52:42 - [] ----D C:\ProgramData\McAfee
O43 - CFD: 15/12/2014 - 21:48:30 - [] -S--D C:\ProgramData\Microsoft
O43 - CFD: 15/12/2014 - 21:45:35 - [] ----D C:\ProgramData\Microsoft Help
O43 - CFD: 19/05/2013 - 18:16:32 - [] ----D C:\ProgramData\Mozilla
O43 - CFD: 12/08/2010 - 11:27:30 - [] ----D C:\ProgramData\Office Genuine Advantage
O43 - CFD: 09/06/2010 - 20:56:24 - [] ----D C:\ProgramData\Partner
O43 - CFD: 09/06/2010 - 20:07:03 - [] ----D C:\ProgramData\PC Drivers HeadQuarters
O43 - CFD: 22/09/2009 - 14:11:50 - [] ----D C:\ProgramData\SAMSUNG
O43 - CFD: 22/09/2009 - 14:10:08 - [] ----D C:\ProgramData\SiteAdvisor
O43 - CFD: 06/01/2014 - 13:46:45 - [] ----D C:\ProgramData\Skype
O43 - CFD: 14/07/2009 - 05:53:55 - [] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 05/07/2010 - 12:22:31 - [] ----D C:\ProgramData\Sun
O43 - CFD: 20/05/2010 - 19:01:52 - [] ---AD C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - 05:53:55 - [] -SH-D C:\ProgramData\Templates
O43 - CFD: 22/05/2010 - 12:00:52 - [] ----D C:\ProgramData\TmForever
O43 - CFD: 02/08/2014 - 20:46:19 - [] ----D C:\ProgramData\Trusteer
O43 - CFD: 21/05/2010 - 17:07:15 - [] ----D C:\ProgramData\TuneUp Software
O43 - CFD: 09/06/2010 - 20:07:20 - [] ----D C:\ProgramData\UAB
O43 - CFD: 16/06/2010 - 15:31:32 - [] ----D C:\ProgramData\Western Digital
O43 - CFD: 29/05/2010 - 21:26:44 - [] ----D C:\ProgramData\WinClon
O43 - CFD: 20/05/2010 - 06:38:51 - [] ----D C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
O43 - CFD: 21/05/2010 - 17:06:12 - [] -SH-D C:\ProgramData\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
O43 - CFD: 02/02/2011 - 17:23:54 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
O43 - CFD: 24/09/2009 - 05:28:36 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 14/07/2009 - 05:46:36 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 28/10/2010 - 15:03:21 - [0] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU
O43 - CFD: 26/06/2013 - 21:13:46 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 09/06/2010 - 20:06:21 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Detective
O43 - CFD: 20/06/2010 - 11:05:26 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
O43 - CFD: 07/01/2012 - 18:22:49 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 14/07/2009 - 05:42:30 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 07/01/2012 - 16:53:01 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 11/06/2010 - 17:15:12 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in
O43 - CFD: 28/07/2014 - 21:22:26 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 18/05/2010 - 17:34:15 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2005
O43 - CFD: 16/08/2010 - 11:15:06 - [] -S--D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.2
O43 - CFD: 09/06/2010 - 18:55:45 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Viewer
O43 - CFD: 26/06/2010 - 16:35:50 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre
O43 - CFD: 07/10/2010 - 16:13:52 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
O43 - CFD: 05/06/2014 - 12:13:03 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
O43 - CFD: 26/05/2010 - 17:38:11 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
O43 - CFD: 07/01/2012 - 18:24:09 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Casual Games
O43 - CFD: 07/07/2013 - 16:03:56 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 29/12/2014 - 13:59:33 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 22/09/2009 - 23:18:08 - [0] R-H-D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 21/05/2010 - 17:07:49 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities
O43 - CFD: 16/11/2010 - 19:51:05 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 29/08/2010 - 14:35:58 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 29/12/2014 - 17:39:47 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP =>.Nicolas Coolman
O43 - CFD: 18/03/2011 - 18:21:47 - [] ----D C:\Users\Nanou\AppData\Roaming\.minecraft
O43 - CFD: 17/09/2013 - 20:27:52 - [] ----D C:\Users\Nanou\AppData\Roaming\Adobe
O43 - CFD: 06/07/2010 - 14:28:35 - [] ----D C:\Users\Nanou\AppData\Roaming\Apple Computer
O43 - CFD: 23/11/2014 - 21:02:09 - [] ----D C:\Users\Nanou\AppData\Roaming\AVAST Software
O43 - CFD: 28/10/2010 - 14:55:34 - [] ----D C:\Users\Nanou\AppData\Roaming\AVS4YOU
O43 - CFD: 13/01/2011 - 21:34:43 - [] ----D C:\Users\Nanou\AppData\Roaming\dvdcss
O43 - CFD: 20/06/2010 - 11:06:07 - [] ----D C:\Users\Nanou\AppData\Roaming\FileZilla
O43 - CFD: 18/05/2010 - 18:16:21 - [] ----D C:\Users\Nanou\AppData\Roaming\Google
O43 - CFD: 06/02/2011 - 09:55:19 - [] ----D C:\Users\Nanou\AppData\Roaming\Identities
O43 - CFD: 18/05/2010 - 18:21:13 - [] ----D C:\Users\Nanou\AppData\Roaming\Macromedia
O43 - CFD: 22/09/2009 - 23:18:08 - [0] ----D C:\Users\Nanou\AppData\Roaming\Media Center Programs
O43 - CFD: 29/12/2014 - 14:05:58 - [] -S--D C:\Users\Nanou\AppData\Roaming\Microsoft
O43 - CFD: 19/05/2010 - 08:11:21 - [] ----D C:\Users\Nanou\AppData\Roaming\Mozilla
O43 - CFD: 21/11/2010 - 17:58:38 - [] ----D C:\Users\Nanou\AppData\Roaming\OfferBox =>PUP.OfferBox
O43 - CFD: 16/08/2010 - 11:15:43 - [] ----D C:\Users\Nanou\AppData\Roaming\OpenOffice.org
O43 - CFD: 26/06/2010 - 16:37:01 - [] ----D C:\Users\Nanou\AppData\Roaming\PhotoFiltre
O43 - CFD: 06/02/2011 - 10:13:25 - [] ----D C:\Users\Nanou\AppData\Roaming\Serif
O43 - CFD: 29/12/2014 - 17:32:23 - [] ----D C:\Users\Nanou\AppData\Roaming\Skype
O43 - CFD: 11/06/2010 - 16:01:45 - [] ----D C:\Users\Nanou\AppData\Roaming\TerraTec
O43 - CFD: 21/05/2010 - 17:07:31 - [] ----D C:\Users\Nanou\AppData\Roaming\TuneUp Software
O43 - CFD: 01/05/2013 - 19:17:11 - [] ----D C:\Users\Nanou\AppData\Roaming\vlc
O43 - CFD: 20/06/2010 - 18:19:25 - [0] ----D C:\Users\Nanou\AppData\Roaming\Western Digital
O43 - CFD: 16/06/2010 - 15:32:23 - [0] ----D C:\Users\Nanou\AppData\Roaming\Western DigitalTemp
O43 - CFD: 29/08/2010 - 14:36:06 - [] ----D C:\Users\Nanou\AppData\Roaming\WinRAR
O43 - CFD: 29/12/2014 - 17:41:13 - [] ----D C:\Users\Nanou\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 12/11/2014 - 20:11:41 - [] ----D C:\Users\Nanou\AppData\Local\Adobe
O43 - CFD: 20/05/2010 - 06:35:49 - [] ----D C:\Users\Nanou\AppData\Local\Apple
O43 - CFD: 09/06/2010 - 13:49:12 - [] ----D C:\Users\Nanou\AppData\Local\Apple Computer
O43 - CFD: 18/05/2010 - 23:18:16 - [] -SH-D C:\Users\Nanou\AppData\Local\Application Data
O43 - CFD: 20/12/2014 - 08:48:41 - [] ----D C:\Users\Nanou\AppData\Local\Diagnostics
O43 - CFD: 02/08/2014 - 09:10:59 - [0] ----D C:\Users\Nanou\AppData\Local\ElevatedDiagnostics
O43 - CFD: 30/10/2013 - 14:19:52 - [] ----D C:\Users\Nanou\AppData\Local\Google
O43 - CFD: 18/05/2010 - 23:18:16 - [] -SH-D C:\Users\Nanou\AppData\Local\Historique
O43 - CFD: 25/08/2013 - 15:48:20 - [] ----D C:\Users\Nanou\AppData\Local\Macromedia
O43 - CFD: 09/01/2014 - 19:18:29 - [] ----D C:\Users\Nanou\AppData\Local\Microsoft
O43 - CFD: 20/05/2010 - 19:03:13 - [] ----D C:\Users\Nanou\AppData\Local\Microsoft Games
O43 - CFD: 16/11/2012 - 23:06:30 - [] ----D C:\Users\Nanou\AppData\Local\Microsoft Help
O43 - CFD: 06/10/2013 - 13:04:25 - [] ----D C:\Users\Nanou\AppData\Local\Mozilla
O43 - CFD: 09/06/2010 - 20:07:14 - [] ----D C:\Users\Nanou\AppData\Local\PC_Drivers_Headquarters
O43 - CFD: 29/12/2014 - 17:41:11 - [] ----D C:\Users\Nanou\AppData\Local\Temp
O43 - CFD: 18/05/2010 - 23:18:16 - [] -SH-D C:\Users\Nanou\AppData\Local\Temporary Internet Files
O43 - CFD: 02/08/2014 - 20:48:23 - [] ----D C:\Users\Nanou\AppData\Local\Trusteer
O43 - CFD: 09/01/2012 - 13:22:14 - [] ----D C:\Users\Nanou\AppData\Local\VirtualStore
O43 - CFD: 20/06/2010 - 18:20:26 - [] ----D C:\Users\Nanou\AppData\Local\Western Digital
O43 - CFD: 01/07/2010 - 10:36:01 - [] ----D C:\Users\Nanou\AppData\Local\Windows Live
O43 - CFD: 14/07/2009 - 05:42:04 - [] R---D C:\Users\Nanou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 23/12/2014 - 19:29:45 - [] R---D C:\Users\Nanou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 18/05/2010 - 17:43:53 - [] ----D C:\Users\Nanou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam
O43 - CFD: 14/07/2009 - 05:37:42 - [] R---D C:\Users\Nanou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 09/06/2010 - 18:55:44 - [] ----D C:\Users\Nanou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Photo Viewer
O43 - CFD: 26/06/2010 - 16:35:50 - [0] ----D C:\Users\Nanou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre
O43 - CFD: 23/12/2014 - 19:29:45 - [] R---D C:\Users\Nanou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 21/11/2010 - 17:41:53 - [0] ----D C:\Users\Nanou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TI-Graph Link - Français
O43 - CFD: 29/08/2010 - 14:35:58 - [] ----D C:\Users\Nanou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
~ Program Folder: 197 Scanned in 00mn 01s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.B46DD94B96636132B60BE333B83CF718] - 15/12/2014 - 21:31:44 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [109818608]
O44 - LFC:[MD5.7861460CCCA86F588357B5E585D61E6B] - 20/12/2014 - 09:08:09 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerApp.exe [701104]
O44 - LFC:[MD5.020489FBA96D7EFB6F5A6C0C52BF83A7] - 20/12/2014 - 09:08:09 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [71344]
O44 - LFC:[MD5.0C0DF0F05BAEA320FA301F34E256E08B] - 22/12/2014 - 20:09:15 ---A- . (.Microsoft Corporation - Microsoft(R) Delta Package Expander.) -- C:\Windows\System32\dpx.dll [257024]
O44 - LFC:[MD5.ED04627EF998D04182C00ECD211FACBD] - 22/12/2014 - 20:09:16 ---A- . (.Microsoft Corporation - Driver Store API.) -- C:\Windows\System32\drvstore.dll [323072]
O44 - LFC:[MD5.A399514D3B28C9A3453A486BBAAFF1C7] - 22/12/2014 - 20:10:12 ---A- . (.Microsoft Corporation - Panther Engine Module.) -- C:\Windows\System32\wdscore.dll [189952]
O44 - LFC:[MD5.C06A8EB439D3451DF15828FF1CB7D0F8] - 22/12/2014 - 20:10:12 ---A- . (.Microsoft Corporation - Windows Package Manager.) -- C:\Windows\System32\PkgMgr.exe [209920]
O44 - LFC:[MD5.39C3CDE5BFA5D95661712258EDFE5F17] - 22/12/2014 - 20:10:17 ---A- . (.Microsoft Corporation - Noyau de configuration WMI.) -- C:\Windows\System32\SmiEngine.dll [697344]
O44 - LFC:[MD5.CE292C4C10B8DB6070F262EA2733F0DC] - 22/12/2014 - 20:10:18 ---A- . (.Microsoft Corporation - SQM Client.) -- C:\Windows\System32\sqmapi.dll [189952]
O44 - LFC:[MD5.6ADA78F0E4BE07CF7C5500778DE8FB7D] - 22/12/2014 - 20:10:34 ---A- . (.Microsoft Corporation - WMI CMI Plugin.) -- C:\Windows\System32\wmicmiplugin.dll [351232]
O44 - LFC:[MD5.704314FD398C81D5F342CAA5DF7B7F21] - 22/12/2014 - 20:10:34 ---A- . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbemcomn.dll [363008]
O44 - LFC:[MD5.C236A8735A48B165A2A7724357DBE332] - 22/12/2014 - 20:11:18 ---A- . (...) -- C:\Windows\System32\RacRules.xml [105559]
O44 - LFC:[MD5.3F0BB313E64983FF701D43C930530AC7] - 22/12/2014 - 20:11:21 ---A- . (.Microsoft Corporation - Ressources Framework de l’Assistant Install.) -- C:\Windows\System32\spwizres.dll [7680]
O44 - LFC:[MD5.DD3524C9B0EC264BF74B4C5A84891D76] - 22/12/2014 - 20:11:22 ---A- . (.Microsoft Corporation - Czech_101 Keyboard Layout.) -- C:\Windows\System32\KBDCZ1.DLL [7168]
O44 - LFC:[MD5.86EA2C61BCEC344195AE33B995CAB9C3] - 22/12/2014 - 20:11:22 ---A- . (.Microsoft Corporation - Greek_Latin Keyboard Layout.) -- C:\Windows\System32\KBDGKL.DLL [6656]
O44 - LFC:[MD5.D35F4DFF5D7B3D6503CF9888B833C801] - 22/12/2014 - 20:11:22 ---A- . (.Microsoft Corporation - NLSBuild resource DLL.) -- C:\Windows\System32\nlsbres.dll [69120]
O44 - LFC:[MD5.A02691FF3AA0763CF4E312DF56A7AC50] - 22/12/2014 - 20:11:22 ---A- . (.Microsoft Corporation - Portuguese Keyboard Layout.) -- C:\Windows\System32\KBDPO.DLL [6656]
O44 - LFC:[MD5.CDD67E0C0E3205CD00F5CD56E4DC9104] - 22/12/2014 - 20:11:22 ---A- . (.Microsoft Corporation - Swiss German Keyboard Layout.) -- C:\Windows\System32\KBDSG.DLL [7168]
O44 - LFC:[MD5.E56C4703D0D9B476EF6195AD22C2ACC0] - 22/12/2014 - 20:11:22 ---A- . (.Microsoft Corporation - Windows NT PIF Manager Icon Resources Libra.) -- C:\Windows\System32\pifmgr.dll [35328]
O44 - LFC:[MD5.B243C97C4F5292CADB71E850DA7FEB1D] - 22/12/2014 - 20:11:22 ---A- . (.Microsoft Corporation - Éditeur Blb.) -- C:\Windows\System32\BlbEvents.dll [52736]
O44 - LFC:[MD5.D3BFA17457E5EAB5B7DABEDA21961183] - 22/12/2014 - 20:11:23 ---A- . (.Microsoft Corporation - Bengali Keyboard Layout.) -- C:\Windows\System32\KBDINBEN.DLL [6656]
O44 - LFC:[MD5.8711853E43B65F5CA1CCD48980BC6A22] - 22/12/2014 - 20:11:23 ---A- . (.Microsoft Corporation - DEC LK411-AJ Keyboard Layout.) -- C:\Windows\System32\kbdlk41a.dll [7168]
O44 - LFC:[MD5.93132CE66FC74818B4FD32E13C24C4BB] - 22/12/2014 - 20:11:23 ---A- . (.Microsoft Corporation - German_IBM Keyboard Layout.) -- C:\Windows\System32\KBDGR1.DLL [6656]
O44 - LFC:[MD5.E615582BCA38987368E5598BD114A6BC] - 22/12/2014 - 20:11:23 ---A- . (.Microsoft Corporation - Hindi Keyboard Layout.) -- C:\Windows\System32\KBDINHIN.DLL [6144]
O44 - LFC:[MD5.A92149941A0D6A0A14AC116245E1E08F] - 22/12/2014 - 20:11:23 ---A- . (.Microsoft Corporation - Marathi Keyboard Layout.) -- C:\Windows\System32\KBDINMAR.DLL [6144]
O44 - LFC:[MD5.B566E8F3EB5953722E11D113285E0ACB] - 22/12/2014 - 20:11:23 ---A- . (.Microsoft Corporation - Nepali Keyboard Layout.) -- C:\Windows\System32\KBDNEPR.DLL [6656]
O44 - LFC:[MD5.9CA1705E2EBFE63F2E92628415934960] - 22/12/2014 - 20:11:23 ---A- . (.Microsoft Corporation - Swiss French Keyboard Layout.) -- C:\Windows\System32\KBDSF.DLL [6656]
O44 - LFC:[MD5.05477A526F6EAF10952DC63FFCED6609] - 22/12/2014 - 20:11:23 ---A- . (.Microsoft Corporation - Tamil Keyboard Layout.) -- C:\Windows\System32\KBDINTAM.DLL [6144]
O44 - LFC:[MD5.E097726A556E584EE8CEF98FCD848033] - 22/12/2014 - 20:11:23 ---A- . (.Microsoft Corporation - Turkish F Keyboard Layout.) -- C:\Windows\System32\KBDTUF.DLL [6656]
O44 - LFC:[MD5.F7BAA05246D68845641DF85D2D4B77AA] - 22/12/2014 - 20:11:23 ---A- . (.Microsoft Corporation - Turkish Q Keyboard Layout.) -- C:\Windows\System32\KBDTUQ.DLL [6656]
O44 - LFC:[MD5.C42D1CE706C54875A6A4BBAD0429288C] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - Bashkir Keyboard Layout.) -- C:\Windows\System32\KBDBASH.DLL [6144]
O44 - LFC:[MD5.BD5B1737FDE2FF7AD036FADE1CAC4D0D] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - Belarusian Keyboard Layout.) -- C:\Windows\System32\KBDBLR.DLL [6144]
O44 - LFC:[MD5.E2F6200309179812F1EC40245F988C15] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - Bulgarian Keyboard Layout.) -- C:\Windows\System32\KBDBULG.DLL [6144]
O44 - LFC:[MD5.0CCB0C66DCD24A742CFBC06CD49EBD0D] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - Georgian Keyboard Layout.) -- C:\Windows\System32\KBDGEO.DLL [5632]
O44 - LFC:[MD5.911DA311FF63B6F91D2BD05EFED9756A] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - Kannada Keyboard Layout.) -- C:\Windows\System32\KBDINKAN.DLL [6144]
O44 - LFC:[MD5.0DEDC0314F3EB8C0253A88D72A73E019] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - Lithuanian Keyboard Layout.) -- C:\Windows\System32\KBDLT1.DLL [6144]
O44 - LFC:[MD5.3174AA5D2A5BCDF4DB378FC0C24B08A9] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - Maori Keyboard Layout.) -- C:\Windows\System32\KBDMAORI.DLL [6144]
O44 - LFC:[MD5.48DC9C2926AAE98D9E3FE14570180246] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - Mongolian Keyboard Layout.) -- C:\Windows\System32\KBDMON.DLL [6144]
O44 - LFC:[MD5.F533E1EA22FB9B1426010D285BFDD7D4] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - Oriya Keyboard Layout.) -- C:\Windows\System32\KBDINORI.DLL [6144]
O44 - LFC:[MD5.566925A00B8F439D6155F023E9494DEB] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - Tajik Keyboard Layout.) -- C:\Windows\System32\KBDTAJIK.DLL [6144]
O44 - LFC:[MD5.11DB22E2FBAC2854DAA7541B16E11F41] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - Telugu Keyboard Layout.) -- C:\Windows\System32\KBDINTEL.DLL [6144]
O44 - LFC:[MD5.BDEB4A838DA1E2D9C9631298FA3D58C5] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - Turkmen Keyboard Layout.) -- C:\Windows\System32\KBDTURME.DLL [6144]
O44 - LFC:[MD5.357B990A4249D7F7485B230C0CC8825A] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - United States Keyboard Layout.) -- C:\Windows\System32\KBDUS.DLL [6144]
O44 - LFC:[MD5.86B58589C695702E05395D4E34D9D39D] - 22/12/2014 - 20:11:24 ---A- . (.Microsoft Corporation - Uyghur Keyboard Layout.) -- C:\Windows\System32\KBDUGHR1.DLL [6144]
O44 - LFC:[MD5.0FBC74AA20FE0AE6884279F893169C60] - 22/12/2014 - 20:11:25 ---A- . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.DLL [12625408]
O44 - LFC:[MD5.46A8664B446B5ED10DBDEF8B6DE7F648] - 22/12/2014 - 20:11:28 ---A- . (.Microsoft Corporation - Microsoft RDP Reflector Display Driver.) -- C:\Windows\System32\RDPREFDD.dll [26624]
O44 - LFC:[MD5.1AD13A1281BAC6D90B1512A6FFCBB78C] - 22/12/2014 - 20:11:28 ---A- . (.Microsoft Corporation - Microsoft Windows Media Component Removal F.) -- C:\Windows\System32\dxmasf.dll [4096]
O44 - LFC:[MD5.1AD13A1281BAC6D90B1512A6FFCBB78C] - 22/12/2014 - 20:11:28 ---A- . (.Microsoft Corporation - Microsoft Windows Media Component Removal F.) -- C:\Windows\System32\msdxm.ocx [4096]
O44 - LFC:[MD5.0693B5EC673E34DC147E195779A4DCF6] - 22/12/2014 - 20:11:28 ---A- . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\Windows\System32\Drivers\scfilter.sys [26624]
O44 - LFC:[MD5.23DAE03F29D253AE74C44F99E515F9A1] - 22/12/2014 - 20:11:28 ---A- . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\RDPCDD.sys [6656]
O44 - LFC:[MD5.6D4CCAEDC018F1CF52866BBBAA235982] - 22/12/2014 - 20:11:28 ---A- . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) -- C:\Windows\System32\Drivers\sffp_sd.sys [12800]
O44 - LFC:[MD5.0A8E209F3C1D1FB6889465D1019CC5BF] - 22/12/2014 - 20:11:28 ---A- . (.Microsoft Corporation - Windows Shell Obsolete APIs.) -- C:\Windows\System32\shunimpl.dll [10752]
O44 - LFC:[MD5.9036377B8A6C15DC2EEC53E489D159B5] - 22/12/2014 - 20:11:29 ---A- . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\Drivers\hdaudbus.sys [108544]
O44 - LFC:[MD5.A5EF29D5315111C80A5C1ABAD14C8972] - 22/12/2014 - 20:11:29 ---A- . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\HdAudio.sys [304128]
O44 - LFC:[MD5.035074DAEB2333A248FD9C6B88AD16CD] - 22/12/2014 - 20:11:29 ---A- . (.Microsoft Corporation - ISCII Code Page Translation DLL.) -- C:\Windows\System32\C_ISCII.DLL [11264]
O44 - LFC:[MD5.3C3C78515F5AB448B022BDF5B8FFDD2E] - 22/12/2014 - 20:11:29 ---A- . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\Drivers\wanarp.sys [63488]
O44 - LFC:[MD5.D295BED4B898F0FD999FCFA9B32B071B] - 22/12/2014 - 20:11:29 ---A- . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\Drivers\umbus.sys [39936]
O44 - LFC:[MD5.F977BE7B8C5462087374364EAFB3C15B] - 22/12/2014 - 20:11:30 ---A- . (.Microsoft Corporation - Shell Browser UI Library.) -- C:\Windows\System32\browseui.dll [10752]
O44 - LFC:[MD5.0A4A970D997125C7E8A06D72C20369FB] - 22/12/2014 - 20:11:30 ---A- . (.Microsoft Corporation - Windows Media Player System Preparation DLL.) -- C:\Windows\System32\spwmp.dll [8192]
O44 - LFC:[MD5.9E3CED91863E6EE98C24794D05E27A71] - 22/12/2014 - 20:11:31 ---A- . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\Drivers\kbdhid.sys [28160]
O44 - LFC:[MD5.FD82D2B38C465A55C527E339BA1201B1] - 22/12/2014 - 20:11:31 ---A- . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\Drivers\USBCAMD.sys [25856]
O44 - LFC:[MD5.E071E5BE621FEC4590117C488A78AE32] - 22/12/2014 - 20:11:31 ---A- . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\Drivers\USBCAMD2.sys [25856]
O44 - LFC:[MD5.4BD7134618C1D2A27466A099062547BF] - 22/12/2014 - 20:11:32 ---A- . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\Drivers\IPMIDrv.sys [65536]
O44 - LFC:[MD5.21CE1E98A17FD46BE371719DFD046958] - 22/12/2014 - 20:11:32 ---A- . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\System32\wshirda.dll [11264]
O44 - LFC:[MD5.AEA177F783E20150ACE5383EE368DA19] - 22/12/2014 - 20:11:34 ---A- . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\Drivers\appid.sys [50176]
O44 - LFC:[MD5.03A88560EF6B5F746A9AC5BA1C0A36C7] - 22/12/2014 - 20:11:35 ---A- . (.Microsoft Corporation - Extension de configuration des connexions s.) -- C:\Windows\System32\rdpcfgex.dll [8704]
O44 - LFC:[MD5.10C19F8290891AF023EAEC0832E1EB4D] - 22/12/2014 - 20:11:35 ---A- . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidusb.sys [24064]
O44 - LFC:[MD5.38FBE267E7E6983311179230FACB1017] - 22/12/2014 - 20:11:36 ---A- . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\Drivers\ndiswan.sys [118784]
O44 - LFC:[MD5.CFD8B8537036CF35F6254192997A4D8E] - 22/12/2014 - 20:11:36 ---A- . (.Microsoft Corporation - Windows Shell User Logon.) -- C:\Windows\System32\shgina.dll [20992]
O44 - LFC:[MD5.B5506B451BFE7148ECA7056BDA2970BD] - 22/12/2014 - 20:11:36 ---A- . (.Microsoft Corporation - Wrapper Dll for Richedit 1.0.) -- C:\Windows\System32\riched32.dll [8704]
O44 - LFC:[MD5.89E783711AF91AF09E1EF30EF3107446] - 22/12/2014 - 20:11:37 ---A- . (.Microsoft Corporation - Fichier DLL principal du service Serveur.) -- C:\Windows\System32\sscore.dll [9728]
O44 - LFC:[MD5.41EE23F636C6E9BDE5E8C09454CBEEFD] - 22/12/2014 - 20:11:37 ---A- . (.Microsoft Corporation - Microsoft® Korean IME.) -- C:\Windows\System32\imkr80.ime [430080]
O44 - LFC:[MD5.AAF7BEB63E2CC499834B608A85A55E4E] - 22/12/2014 - 20:11:37 ---A- . (.Microsoft Corporation - WSD Challenge Component.) -- C:\Windows\System32\wsdchngr.dll [21504]
O44 - LFC:[MD5.1EFBC664ABFF416D1D07DB115DCB264F] - 22/12/2014 - 20:11:38 ---A- . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\Drivers\acpipmi.sys [10240]
O44 - LFC:[MD5.6D666983C638F5E507C4A11AED1291CC] - 22/12/2014 - 20:11:39 ---A- . (.Microsoft Corporation - DS Authorization for Services.) -- C:\Windows\System32\dsauth.dll [30208]
O44 - LFC:[MD5.9E122E5CD1BB79CF8F0BCEAC947B81C0] - 22/12/2014 - 20:11:39 ---A- . (.Microsoft Corporation - Extension GPEdit NAP.) -- C:\Windows\System32\napdsnap.dll [68096]
O44 - LFC:[MD5.57A51217581614DE07F30E34D6BB4993] - 22/12/2014 - 20:11:39 ---A- . (.Microsoft Corporation - Offline Files Temporary Shim.) -- C:\Windows\System32\cscdll.dll [23040]
O44 - LFC:[MD5.3EF0D8AB08385AAB5802E773511A2E6A] - 22/12/2014 - 20:11:39 ---A- . (.Microsoft Corporation - Windows Logon User Interface Host.) -- C:\Windows\System32\LogonUI.exe [10752]
O44 - LFC:[MD5.0552A8684BF7566F744D5B19FF6AEC6B] - 22/12/2014 - 20:11:40 ---A- . (.Microsoft Corporation - Perfmon Counter Access.) -- C:\Windows\System32\bitsperf.dll [19456]
O44 - LFC:[MD5.A42E7748BE906434C5FD17161D168C20] - 22/12/2014 - 20:11:40 ---A- . (.Microsoft Corporation - Scheduler Service Client DLL.) -- C:\Windows\System32\schedcli.dll [17408]
O44 - LFC:[MD5.AC122407B29378FF9646F03404AC7C54] - 22/12/2014 - 20:11:40 ---A- . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\System32\wshbth.dll [36352]
O44 - LFC:[MD5.7B3FD36359DE5D2EE49D213CCAD13427] - 22/12/2014 - 20:11:41 ---A- . (.Microsoft Corporation - ELS Transliteration Service.) -- C:\Windows\System32\elsTrans.dll [22528]
O44 - LFC:[MD5.543324F86787BFA31AABBAA7A91D08D0] - 22/12/2014 - 20:11:41 ---A- . (.Microsoft Corporation - Microsoft Narrator Text Renderer.) -- C:\Windows\System32\TRAPI.dll [21504]
O44 - LFC:[MD5.0435045377BF76438CE5BF385995C699] - 22/12/2014 - 20:11:41 ---A- . (.Microsoft Corporation - RDP Encoder Mirror Driver.) -- C:\Windows\System32\RDPENCDD.dll [121856]
O44 - LFC:[MD5.F024449C97EC1E464AAFFDA18593DB88] - 22/12/2014 - 20:11:42 ---A- . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\Drivers\dfsc.sys [78336]
O44 - LFC:[MD5.126F8331BD023178C7F0EF2F5EDE16B3] - 22/12/2014 - 20:11:42 ---A- . (.Microsoft Corporation - Microsoft Fax Print Monitor.) -- C:\Windows\System32\FXSMON.dll [39424]
O44 - LFC:[MD5.B2FA25D9B17A68BB93D58B0556E8C90D] - 22/12/2014 - 20:11:42 ---A- . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\Windows\System32\Drivers\tunnel.sys [108544]
O44 - LFC:[MD5.5C18CD22BE4628865FCB63337A6E5EF6] - 22/12/2014 - 20:11:43 ---A- . (...) -- C:\Windows\System32\ScavengeSpace.xml [10429]
O44 - LFC:[MD5.326A5BDD4F299EA8B4843BB78F06A6B8] - 22/12/2014 - 20:11:43 ---A- . (.Microsoft Corporation - DLL Interface to TermDD Device Driver.) -- C:\Windows\System32\icaapi.dll [15872]
O44 - LFC:[MD5.FB1BA42D1A1440E99C6B8667E141CFB1] - 22/12/2014 - 20:11:44 ---A- . (.Microsoft Corporation - Windows Remote Desktop Services Performance.) -- C:\Windows\System32\perfts.dll [17408]
O44 - LFC:[MD5.6E2C504C11A2D0B3820EDAF66E6DF06B] - 22/12/2014 - 20:11:45 ---A- . (.Microsoft Corporation - ODBC Driver Configuration Program.) -- C:\Windows\System32\odbcconf.dll [40960]
O44 - LFC:[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 22/12/2014 - 20:11:45 ---A- . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\Drivers\cdrom.sys [108544]
O44 - LFC:[MD5.86B9E27CDB040DE1C981BEC2A56326A7] - 22/12/2014 - 20:11:45 ---A- . (.Microsoft Corporation - Windows Ribbon Framework Resources.) -- C:\Windows\System32\UIRibbonRes.dll [1164800]
O44 - LFC:[MD5.E84735F79C272FCEC320A6BED2861475] - 22/12/2014 - 20:11:46 ---A- . (.Microsoft Corporation - Intel G711 CODEC.) -- C:\Windows\System32\g711codc.ax [45568]
O44 - LFC:[MD5.BF7DDBE14FA4B68AAB6A3C78EF5C96B8] - 22/12/2014 - 20:11:46 ---A- . (.Microsoft Corporation - Microsoft MIB-II subagent.) -- C:\Windows\System32\inetmib1.dll [52736]
O44 - LFC:[MD5.457C561BA80E02F1230DD0B87DA770A9] - 22/12/2014 - 20:11:47 ---A- . (.Microsoft Corporation - Chiffrement de lecteur BitLocker : outil de.) -- C:\Windows\System32\manage-bde.exe [61952]
O44 - LFC:[MD5.7069AAB8536F29ED7323140973A2894B] - 22/12/2014 - 20:11:47 ---A- . (.Microsoft Corporation - DMO Runtime.) -- C:\Windows\System32\msdmo.dll [30720]
O44 - LFC:[MD5.6C796F88B7D9BF52A45757E2C837185A] - 22/12/2014 - 20:11:47 ---A- . (.Microsoft Corporation - Reflector Driver API.) -- C:\Windows\System32\rdprefdrvapi.dll [21504]
O44 - LFC:[MD5.373A87DBFD387DDC54375F547834FBBD] - 22/12/2014 - 20:11:47 ---A- . (.Microsoft Corporation - VBI Surface Allocator Filter.) -- C:\Windows\System32\vbisurf.ax [33792]
O44 - LFC:[MD5.71C39495C1BC7C3979B4CFAF59B1265B] - 22/12/2014 - 20:11:47 ---A- . (.Microsoft Corporation - WinPE network installer.) -- C:\Windows\System32\netcfg.exe [25600]
O44 - LFC:[MD5.F0016853FA3F38F55FD868FF74C0359B] - 22/12/2014 - 20:11:48 ---A- . (.Microsoft Corporation - Adaptive SQM WDI Plugin.) -- C:\Windows\System32\wdiasqmmodule.dll [31744]
O44 - LFC:[MD5.7319102526BD11B45FD66335CF90CA12] - 22/12/2014 - 20:11:48 ---A- . (.Microsoft Corporation - Agent utilisateur HotStart Microsoft Window.) -- C:\Windows\System32\HotStartUserAgent.dll [22528]
O44 - LFC:[MD5.CA1870CDB1052F33B05E338F2B326A3D] - 22/12/2014 - 20:11:48 ---A- . (.Microsoft Corporation - Chiffrement de lecteur BitLocker : outil de.) -- C:\Windows\System32\repair-bde.exe [57344]
O44 - LFC:[MD5.2C098921217204301D76BF3BD5D953BB] - 22/12/2014 - 20:11:48 ---A- . (.Microsoft Corporation - Décharger les compteurs PerfMon.) -- C:\Windows\System32\unlodctr.exe [34304]
O44 - LFC:[MD5.1A078C3FE1C1F9C8561CD600C69AD300] - 22/12/2014 - 20:11:48 ---A- . (.Microsoft Corporation - Gestionnaire de stratégie de redirection US.) -- C:\Windows\System32\Drivers\usbrpm.sys [26112]
O44 - LFC:[MD5.C2DF5544931944AE00C59A0B3080EBFE] - 22/12/2014 - 20:11:48 ---A- . (.Microsoft Corporation - Lua manifest install.) -- C:\Windows\System32\luainstall.dll [41984]
O44 - LFC:[MD5.CBE8C58A8579CFE5FCCF809E6F114E89] - 22/12/2014 - 20:11:48 ---A- . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\Drivers\CompositeBus.sys [31232]
O44 - LFC:[MD5.03783D0840B2C54D7665248425C74417] - 22/12/2014 - 20:11:49 ---A- . (...) -- C:\Windows\System32\dosx.exe [53600]
O44 - LFC:[MD5.8E4B58E12B3FA65ED1462846906E0B59] - 22/12/2014 - 20:11:49 ---A- . (.Microsoft Corporation - Dll de client de gestion de licences du log.) -- C:\Windows\System32\sppc.dll [121344]
O44 - LFC:[MD5.FAA05DD44E5DF264AEBE3F03BA4211BB] - 22/12/2014 - 20:11:49 ---A- . (.Microsoft Corporation - Galerie de photographies.) -- C:\Windows\System32\shimgvw.dll [35840]
O44 - LFC:[MD5.3C519BC7767F41F1C88DB0395F31A817] - 22/12/2014 - 20:11:49 ---A- . (.Microsoft Corporation - OPK Sysprep Plugin.) -- C:\Windows\System32\spopk.dll [19968]
O44 - LFC:[MD5.2F885864D5BC8A16C86BEE595969A48A] - 22/12/2014 - 20:11:49 ---A- . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\Drivers\tdi.sys [21504]
O44 - LFC:[MD5.1DE21EC4A2232FF4F5298ADCAE7B3690] - 22/12/2014 - 20:11:49 ---A- . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll [82944]
O44 - LFC:[MD5.5F8B3561CD7024C0F488A2E43434AE22] - 22/12/2014 - 20:11:50 ---A- . (.Microsoft Corporation - MUI Callback for font registry settings.) -- C:\Windows\System32\muifontsetup.dll [13312]
O44 - LFC:[MD5.CCA67BD391CFC9F036323B2522887A6A] - 22/12/2014 - 20:11:50 ---A- . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe [101376]
O44 - LFC:[MD5.7A6986DD659B96398A11AF5173892715] - 22/12/2014 - 20:11:50 ---A- . (.Microsoft Corporation - Microsoft® Cabinet File API.) -- C:\Windows\System32\cabinet.dll [73216]
O44 - LFC:[MD5.AA5F3F417DF0F470D67A7862451EA8E1] - 22/12/2014 - 20:11:50 ---A- . (.Microsoft Corporation - Pilote MCI DirectShow.) -- C:\Windows\System32\mciqtz32.dll [36352]
O44 - LFC:[MD5.E460AFD3A201408919ADB05977095E8D] - 22/12/2014 - 20:11:51 ---A- . (.Microsoft Corporation - Microsoft® Remote Desktop Services Cryptogr.) -- C:\Windows\System32\tlscsp.dll [69632]
O44 - LFC:[MD5.20B3934DB73EABA2B49B7177873CB81F] - 22/12/2014 - 20:11:51 ---A- . (.Microsoft Corporation - Net Win32 API Helpers DLL.) -- C:\Windows\System32\netutils.dll [22528]
O44 - LFC:[MD5.6DB7ECBA34165ACB99A1A3C7F739E757] - 22/12/2014 - 20:11:51 ---A- . (.Microsoft Corporation - UI générique EAP.) -- C:\Windows\System32\eappgnui.dll [94208]
O44 - LFC:[MD5.18F02C555FBC9885DF9DB77754D6BB9B] - 22/12/2014 - 20:11:51 ---A- . (.Microsoft Corporation - Utilitaire (QGREP) de recherche de chaînes.) -- C:\Windows\System32\findstr.exe [62976]
O44 - LFC:[MD5.E2D56AE1D40E3725084054CD8E9CFBB1] - 22/12/2014 - 20:11:51 ---A- . (.Microsoft Corporation - Windows Image Acquisition RPC client DLL.) -- C:\Windows\System32\wiarpc.dll [33280]
O44 - LFC:[MD5.B2120B16B3E221B4D3342E87867A5163] - 22/12/2014 - 20:11:51 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate_ssp.exe [280064]
O44 - LFC:[MD5.2BF84985DE59544A0460BB33F804DA3A] - 22/12/2014 - 20:11:52 ---A- . (.Microsoft Corporation - Agent de récupération Microsoft Windows.) -- C:\Windows\System32\ReAgentc.exe [22016]
O44 - LFC:[MD5.4DAD175C07B982A1518FE64FDBB7071A] - 22/12/2014 - 20:11:52 ---A- . (.Microsoft Corporation - Rapport d’erreurs Windows.) -- C:\Windows\System32\WerFaultSecure.exe [28672]
O44 - LFC:[MD5.199D8ECB6748B2B866CBA52A8D092034] - 22/12/2014 - 20:11:52 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate_ssp_isv.exe [278016]
O44 - LFC:[MD5.6468512559971A92A66E2AA08AC8BA61] - 22/12/2014 - 20:11:53 ---A- . (.Microsoft Corporation - Microsoft Fax TIFF library.) -- C:\Windows\System32\FXSTIFF.dll [430080]
O44 - LFC:[MD5.AC32AF909111561893E42E8EC89C5532] - 22/12/2014 - 20:11:53 ---A- . (.Microsoft Corporation - Microsoft IME Old Style.) -- C:\Windows\System32\IMJP10.IME [1027584]
O44 - LFC:[MD5.44F5C1CF70AC8F7239F3B3667E58697A] - 22/12/2014 - 20:11:53 ---A- . (.Microsoft Corporation - Moteur de stratégie de certificat.) -- C:\Windows\System32\CertPolEng.dll [65024]
O44 - LFC:[MD5.3D97D200A1449F3995E88BEA8F7D0C81] - 22/12/2014 - 20:11:53 ---A- . (.Microsoft Corporation - WDM Streaming Crossbar.) -- C:\Windows\System32\ksxbar.ax [48640]
O44 - LFC:[MD5.3F2B83695E5BF11930C16AF50E991F96] - 22/12/2014 - 20:11:53 ---A- . (.Microsoft Corporation - Windows Media Player Proxy Stub Dll.) -- C:\Windows\System32\wmpps.dll [144384]
O44 - LFC:[MD5.F1F2AD1C3A9BEF7AC914FDA714BC7879] - 22/12/2014 - 20:11:54 ---A- . (.Microsoft Corporation - MUI Callback for Bcd.) -- C:\Windows\System32\setbcdlocale.dll [50176]
O44 - LFC:[MD5.2AF094C822BD6094F14A8E85FB51D52A] - 22/12/2014 - 20:11:54 ---A- . (.Microsoft Corporation - Microsoft Cluster Resource Utility DLL.) -- C:\Windows\System32\resutils.dll [71168]
O44 - LFC:[MD5.100733DAEA508929EDDF1A3A3B7324CE] - 22/12/2014 - 20:11:54 ---A- . (.Microsoft Corporation - Microsoft® InfoTech IR Local DLL.) -- C:\Windows\System32\itircl.dll [158720]
O44 - LFC:[MD5.D2A937964199F647B1C3BC435712E5D9] - 22/12/2014 - 20:11:54 ---A- . (.Microsoft Corporation - Name Resolution Proxy (NRP) RPC interface.) -- C:\Windows\System32\nrpsrv.dll [11776]
O44 - LFC:[MD5.C2EF686098DDABD5851E6BCA2F8620C2] - 22/12/2014 - 20:11:54 ---A- . (.Microsoft Corporation - Outil de mappage du moniteur au numériseur.) -- C:\Windows\System32\MultiDigiMon.exe [53248]
O44 - LFC:[MD5.56D80B7E622338AF0F93B25A85D97188] - 22/12/2014 - 20:11:54 ---A- . (.Microsoft Corporation - Windows NT System Setup.) -- C:\Windows\System32\syssetup.dll [14848]
O44 - LFC:[MD5.CACE16598662D697169B3B1EF2FA4549] - 22/12/2014 - 20:11:54 ---A- . (.Microsoft Corporation - Windows Rights Management Services Server S.) -- C:\Windows\System32\secproc_ssp.dll [85504]
O44 - LFC:[MD5.02C25A63D58FC12DEA8FA4ECDB832CC0] - 22/12/2014 - 20:11:55 ---A- . (.Microsoft Corporation - Commande générique pour NetBT sans assistan.) -- C:\Windows\System32\netbtugc.exe [24064]
O44 - LFC:[MD5.B2E1E4A16EDD02396F451F915FA3CBFA] - 22/12/2014 - 20:11:55 ---A- . (.Microsoft Corporation - Remote Access TAPI Compliance Layer.) -- C:\Windows\System32\rastapi.dll [69632]
O44 - LFC:[MD5.2BC3BA232E46F310BEDF9A14260AD650] - 22/12/2014 - 20:11:55 ---A- . (.Microsoft Corporation - Windows Rights Management Services Server S.) -- C:\Windows\System32\secproc_ssp_isv.dll [85504]
O44 - LFC:[MD5.BC080CEA43CB990F28B049742706581F] - 22/12/2014 - 20:11:56 ---A- . (.Microsoft Corporation - BCD Sysprep Plugin.) -- C:\Windows\System32\spbcd.dll [61952]
O44 - LFC:[MD5.382BDDDE3438F9A65935ABC6B3F76D1B] - 22/12/2014 - 20:11:56 ---A- . (.Microsoft Corporation - DirectShow Runtime..) -- C:\Windows\System32\amstream.dll [70656]
O44 - LFC:[MD5.2C60338287CB0AEC009D0B48CEA864D2] - 22/12/2014 - 20:11:56 ---A- . (.Microsoft Corporation - DiskPart.) -- C:\Windows\System32\diskpart.exe [133632]
O44 - LFC:[MD5.50BB4FBC720D23497EEB5C9DAC497405] - 22/12/2014 - 20:11:56 ---A- . (.Microsoft Corporation - Interface utilisateur du dossier Mes docume.) -- C:\Windows\System32\mydocs.dll [136192]
O44 - LFC:[MD5.B0180B20B065D89232A78A40FE56EAA6] - 22/12/2014 - 20:11:56 ---A- . (.Microsoft Corporation - Service de notification SPP.) -- C:\Windows\System32\sppuinotify.dll [53760]
O44 - LFC:[MD5.D4496F4DC6B90F6915CEB1DB20B44C07] - 22/12/2014 - 20:11:57 ---A- . (.Microsoft Corporation - Commande générique pour NetIO sans assistan.) -- C:\Windows\System32\netiougc.exe [25600]
O44 - LFC:[MD5.4542DED3177F52CF075565987885EB0D] - 22/12/2014 - 20:11:57 ---A- . (.Microsoft Corporation - Outil de découverte iSCSI.) -- C:\Windows\System32\iscsicli.exe [144896]
O44 - LFC:[MD5.079D12BFED9E3E03D02A44BAF8FFA3A9] - 22/12/2014 - 20:11:57 ---A- . (.Microsoft Corporation - Panneau de configuration Paramètres du Bure.) -- C:\Windows\System32\desk.cpl [128000]
O44 - LFC:[MD5.D8A65DAFB3EB41CBB622745676FCD072] - 22/12/2014 - 20:11:57 ---A- . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\Windows\System32\Drivers\ndisuio.sys [46080]
O44 - LFC:[MD5.03CF941D031F30272D3063E5A4D686F5] - 22/12/2014 - 20:11:57 ---A- . (.Microsoft Corporation - Print Sandbox COM Proxy Stub.) -- C:\Windows\System32\PrintIsolationProxy.dll [32768]
O44 - LFC:[MD5.79C626237AD93981BDF72606DD543CEE] - 22/12/2014 - 20:11:57 ---A- . (.Microsoft Corporation - Utilitaire de réenregistrement de Performan.) -- C:\Windows\System32\relog.exe [37888]
O44 - LFC:[MD5.3379984F13BDC0F26783E3E0C678ED5C] - 22/12/2014 - 20:11:57 ---A- . (.Microsoft Corporation - Windows Sound Recorder.) -- C:\Windows\System32\WavDest.dll [46592]
O44 - LFC:[MD5.E5A4A1326A02F8E7B59E6C3270CE7202] - 22/12/2014 - 20:11:57 ---A- . (.Microsoft Corporation - Workstation Service Client DLL.) -- C:\Windows\System32\wkscli.dll [47104]
O44 - LFC:[MD5.4EA584FCC419E66E9ADCEEAE0B0A7301] - 22/12/2014 - 20:11:58 ---A- . (.Microsoft Corporation - NPS XML Datastore Access.) -- C:\Windows\System32\iasrecst.dll [122880]
O44 - LFC:[MD5.0AEE06C1CB1123AE2C9873908DB59BAF] - 22/12/2014 - 20:11:58 ---A- . (.Microsoft Corporation - ODBC Driver for Oracle.) -- C:\Windows\System32\msorcl32.dll [176128]
O44 - LFC:[MD5.CC0C2CF2EBD58234C45C5D0C046ABB79] - 22/12/2014 - 20:11:59 ---A- . (.Microsoft Corporation - DLL des procédures stockées étendues d’audi.) -- C:\Windows\System32\AzSqlExt.dll [28160]
O44 - LFC:[MD5.3F5A4F3A11EAA28DCD5C85C06C09D853] - 22/12/2014 - 20:11:59 ---A- . (.Microsoft Corporation - Nettoyage des fichiers d’installation.) -- C:\Windows\System32\setupcln.dll [115712]
O44 - LFC:[MD5.CCA24162E055C3714CE5A88B100C64ED] - 22/12/2014 - 20:11:59 ---A- . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\Drivers\tcpipreg.sys [35328]
O44 - LFC:[MD5.665AAD05AEE9E37A7A9BAEDCAC775989] - 22/12/2014 - 20:11:59 ---A- . (.Microsoft Corporation - Toshiba Video Codec.) -- C:\Windows\System32\tsbyuv.dll [12288]
O44 - LFC:[MD5.D33E95C0A2754061233B58DC41F8094C] - 22/12/2014 - 20:11:59 ---A- . (.Microsoft Corporation - User Mode Bus Driver Interface Dll.) -- C:\Windows\System32\umb.dll [50688]
O44 - LFC:[MD5.65B76F79BA94CF8837D556D4C9067773] - 22/12/2014 - 20:11:59 ---A- . (.Microsoft Corporation - Windows Media Audio Voice Decoder.) -- C:\Windows\System32\WMSPDMOD.DLL [739328]
O44 - LFC:[MD5.DAB748AE0439955ED2FA22357533DDDB] - 22/12/2014 - 20:11:59 ---A- . (.Microsoft Corporation - Windows NT BASE API Server DLL.) -- C:\Windows\System32\basesrv.dll [44032]
O44 - LFC:[MD5.87095E9BA2A172685897F1D4AFE35E91] - 22/12/2014 - 20:12:00 ---A- . (.Microsoft Corporation - Diagnostics et récupération Windows.) -- C:\Windows\System32\RelPost.exe [182784]
O44 - LFC:[MD5.7B47059ADEA2983C073562DD40F3FD73] - 22/12/2014 - 20:12:00 ---A- . (.Microsoft Corporation - Interface utilisateur de Pdh (Performance D.) -- C:\Windows\System32\pdhui.dll [46592]
O44 - LFC:[MD5.7BD10646253ED4F6FD361279181362E7] - 22/12/2014 - 20:12:00 ---A- . (.Microsoft Corporation - MUI unattend action.) -- C:\Windows\System32\MuiUnattend.exe [70656]
O44 - LFC:[MD5.6357E2B68753A1F5CF4A68A25C4FD14A] - 22/12/2014 - 20:12:00 ---A- . (.Microsoft Corporation - Microsoft WinSNMP v2.0 Manager API.) -- C:\Windows\System32\wsnmp32.dll [51712]
O44 - LFC:[MD5.24498D084FAA7A459C91066EC241E1CE] - 22/12/2014 - 20:12:00 ---A- . (.Microsoft Corporation - Pilote VfW MM pour périphériques de capture.) -- C:\Windows\System32\vfwwdm32.dll [56832]
O44 - LFC:[MD5.3FBBE458FB60D5F38EF5E19F53772088] - 22/12/2014 - 20:12:01 ---A- . (.Microsoft Corporation - CCA DirectShow Filter..) -- C:\Windows\System32\cca.dll [66560]
O44 - LFC:[MD5.925AE681543B4E666E172B5BD7E45B32] - 22/12/2014 - 20:12:01 ---A- . (.Microsoft Corporation - Fournisseur WMI du client de quarantaine.) -- C:\Windows\System32\QCLIPROV.DLL [71680]
O44 - LFC:[MD5.00263CA2071DC9A6EE577EB356B0D1D9] - 22/12/2014 - 20:12:01 ---A- . (.Microsoft Corporation - Installateur de profils Microsoft Connectio.) -- C:\Windows\System32\cmstp.exe [84992]
O44 - LFC:[MD5.04FAE971A77E76B3F4EF44053AEE0905] - 22/12/2014 - 20:12:01 ---A- . (.Microsoft Corporation - Microsoft RLE Compressor.) -- C:\Windows\System32\msrle32.dll [13312]
O44 - LFC:[MD5.E98A08E70C15D6371AFEEB802227228D] - 22/12/2014 - 20:12:01 ---A- . (.Microsoft Corporation - Unattend Library.) -- C:\Windows\System32\unattend.dll [202240]
O44 - LFC:[MD5.CB9EF09B4BF03F8DE663B3F55D61A8E9] - 22/12/2014 - 20:12:02 ---A- . (.Microsoft Corporation - DRM ActiveX Network Object.) -- C:\Windows\System32\msnetobj.dll [265216]
O44 - LFC:[MD5.D30117DB43F48C4DBA9B41C08156A339] - 22/12/2014 - 20:12:02 ---A- . (.Microsoft Corporation - Microsoft UYVY Video Decompressor.) -- C:\Windows\System32\msyuv.dll [22528]
O44 - LFC:[MD5.5A220C5CFC74AB3C2517D1F1B670D5D3] - 22/12/2014 - 20:12:02 ---A- . (.Microsoft Corporation - SPP CMI Installer Plug-in DLL.) -- C:\Windows\System32\sppinst.dll [100864]
O44 - LFC:[MD5.1060D60CCA69A8136A87DBE3C8F4A467] - 22/12/2014 - 20:12:03 ---A- . (.Microsoft Corporation - API du périphérique de stockage amélioré Wi.) -- C:\Windows\System32\EhStorAPI.dll [128512]
O44 - LFC:[MD5.55663BED58AEDDE8ADE37A582CD8380C] - 22/12/2014 - 20:12:03 ---A- . (.Microsoft Corporation - Codec vidéo YUV Intel Indeo(R).) -- C:\Windows\System32\iyuv_32.dll [50176]
O44 - LFC:[MD5.4D6262D5CFFA7D932126D2B85C373F87] - 22/12/2014 - 20:12:03 ---A- . (.Microsoft Corporation - Microsoft VBI Codec.) -- C:\Windows\System32\VBICodec.ax [153600]
O44 - LFC:[MD5.92DF43A9CDD39C67F2B2D2F98799E086] - 22/12/2014 - 20:12:03 ---A- . (.Microsoft Corporation - Module d’exécution DirectShow..) -- C:\Windows\System32\qdv.dll [283136]
O44 - LFC:[MD5.41A2EEB3FC7C4677787C612478DBD69A] - 22/12/2014 - 20:12:03 ---A- . (.Microsoft Corporation - Windows Media DRM for Network Devices DLL.) -- C:\Windows\System32\wmdrmnet.dll [436736]
O44 - LFC:[MD5.9E44D3D2D1D2DA5ED565D471E350F1CD] - 22/12/2014 - 20:12:03 ---A- . (.Microsoft Corporation - Windows Media Screen Decoder.) -- C:\Windows\System32\WMVSDECD.DLL [541184]
O44 - LFC:[MD5.630A31F277349109299E590856A4B004] - 22/12/2014 - 20:12:04 ---A- . (.Microsoft Corporation - Capture vidéo du flux WDM.) -- C:\Windows\System32\Kswdmcap.ax [107008]
O44 - LFC:[MD5.8126CB6DEA909054E4ECA1F0D55B7579] - 22/12/2014 - 20:12:04 ---A- . (.Microsoft Corporation - Classe d’assistance de la plateforme de fil.) -- C:\Windows\System32\fphc.dll [98304]
O44 - LFC:[MD5.2750A80FC1D8F45A3BC14E0CAC7E619F] - 22/12/2014 - 20:12:04 ---A- . (.Microsoft Corporation - Mise à niveau express.) -- C:\Windows\System32\WindowsAnytimeUpgrade.exe [257536]
O44 - LFC:[MD5.0CE0812F2BDFED908FB1066AD4B868C7] - 22/12/2014 - 20:12:04 ---A- . (.Microsoft Corporation - Module spécifique aux médias 802.3.) -- C:\Windows\System32\dot3msm.dll [115200]
O44 - LFC:[MD5.8007508CEF6A5B10C24F7971DAF00F09] - 22/12/2014 - 20:12:04 ---A- . (.Microsoft Corporation - Prend possession d’un fichier.) -- C:\Windows\System32\takeown.exe [51200]
O44 - LFC:[MD5.B292EBE345B14B66E17E5F36CEF7209C] - 22/12/2014 - 20:12:04 ---A- . (.Microsoft Corporation - Remote Desktop USB Redirection GP Extension.) -- C:\Windows\System32\TsUsbRedirectionGroupPolicyControl.exe [7680]
O44 - LFC:[MD5.1D9F2BD026E8E2D45033A4DF3F16B78C] - 22/12/2014 - 20:12:04 ---A- . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\Windows\System32\Drivers\USBAUDIO.sys [80768]
O44 - LFC:[MD5.AF2E7640E72F005DDB86158E1F8BA1FC] - 22/12/2014 - 20:12:04 ---A- . (.Microsoft Corporation - WIA Video.) -- C:\Windows\System32\wiavideo.dll [109568]
O44 - LFC:[MD5.DCEABBA22E12CC44C2E7785C0EB9C6E3] - 22/12/2014 - 20:12:05 ---A- . (.Microsoft Corporation - Bibliothèque d’assistance des fichiers AVI.) -- C:\Windows\System32\avifil32.dll [91648]
O44 - LFC:[MD5.EF64A97756128630A40B41C3B2567259] - 22/12/2014 - 20:12:05 ---A- . (.Microsoft Corporation - Codec pour photographie Windows Media Photo.) -- C:\Windows\System32\WMPhoto.dll [318464]
O44 - LFC:[MD5.D25958B2A71EF488959272878EF934BE] - 22/12/2014 - 20:12:05 ---A- . (.Microsoft Corporation - DLL de prise en charge de l’utilitaire WinS.) -- C:\Windows\System32\utildll.dll [31744]
O44 - LFC:[MD5.8BC9DB92C4B2F3BE89185BEAB2AFC1F6] - 22/12/2014 - 20:12:05 ---A- . (.Microsoft Corporation - MAPI 1.0 étendue pour Windows NT.) -- C:\Windows\System32\mapi32.dll [76800]
O44 - LFC:[MD5.8BC9DB92C4B2F3BE89185BEAB2AFC1F6] - 22/12/2014 - 20:12:05 ---A- . (.Microsoft Corporation - MAPI 1.0 étendue pour Windows NT.) -- C:\Windows\System32\mapistub.dll [76800]
O44 - LFC:[MD5.FF3C5379DE4FD18498C255D096FED3F5] - 22/12/2014 - 20:12:05 ---A- . (.Microsoft Corporation - Windows Media Audio Decoder.) -- C:\Windows\System32\WMADMOD.DLL [902656]
O44 - LFC:[MD5.97BAF1DE66F886D8292AED040B8CC281] - 22/12/2014 - 20:12:06 ---A- . (.Microsoft Corporation - Générateur/exécuteur de la file d’attente d.) -- C:\Windows\System32\ActionQueue.dll [179200]
O44 - LFC:[MD5.D15880276D208AF03521B8F922C1F3B5] - 22/12/2014 - 20:12:06 ---A- . (.Microsoft Corporation - Écran de veille Ballet de lignes.) -- C:\Windows\System32\Mystify.scr [221184]
O44 - LFC:[MD5.F7CF764F8155492EB50E4505A6DA8D87] - 22/12/2014 - 20:12:07 ---A- . (.Microsoft Corporation - Fournisseur d’état d’appareil mobile Micros.) -- C:\Windows\System32\PortableDeviceStatus.dll [427520]
O44 - LFC:[MD5.F65D14471F76F9C91315352932408939] - 22/12/2014 - 20:12:07 ---A- . (.Microsoft Corporation - Gestion de serveur de quarantaine.) -- C:\Windows\System32\QSVRMGMT.DLL [99328]
O44 - LFC:[MD5.8C74DBDF501E081CC56BFE41FA8B17AE] - 22/12/2014 - 20:12:07 ---A- . (.Microsoft Corporation - MUI Language pack cleanup.) -- C:\Windows\System32\lpremove.exe [61952]
O44 - LFC:[MD5.4D05BDE56A7116B744B04192173A0122] - 22/12/2014 - 20:12:07 ---A- . (.Microsoft Corporation - Outil Diagnostics de la mémoire Windows.) -- C:\Windows\System32\MdSched.exe [132608]
O44 - LFC:[MD5.D8868258E3F26B40ECB8E945C2DA8BD9] - 22/12/2014 - 20:12:07 ---A- . (.Microsoft Corporation - Panneau de configuration - Gestion de l’ali.) -- C:\Windows\System32\powercfg.cpl [142336]
O44 - LFC:[MD5.E43C34EEFE6D87B3B96FD5C90A0B305E] - 22/12/2014 - 20:12:07 ---A- . (.Microsoft Corporation - WWAN Device Interface Module.) -- C:\Windows\System32\wwanprotdim.dll [40960]
O44 - LFC:[MD5.831319977C168FFCF4E9ABB83A992F80] - 22/12/2014 - 20:12:07 ---A- . (.Microsoft Corporation - Écran de veille Rubans.) -- C:\Windows\System32\Ribbons.scr [220672]
O44 - LFC:[MD5.33CDDA42E768A997827CC480EC13DAD5] - 22/12/2014 - 20:12:08 ---A- . (.Microsoft Corporation - Bibliothèque d’interface utilisateur de pro.) -- C:\Windows\System32\ncryptui.dll [60928]
O44 - LFC:[MD5.F9724B48380FE80D75A3C16280A5D78F] - 22/12/2014 - 20:12:08 ---A- . (.Microsoft Corporation - Commande générique d’installation sans assi.) -- C:\Windows\System32\djoin.exe [59904]
O44 - LFC:[MD5.B21B85E60DA18D7D338599D95D4CB211] - 22/12/2014 - 20:12:08 ---A- . (.Microsoft Corporation - Microsoft OLE for Windows.) -- C:\Windows\System32\olethk32.dll [77824]
O44 - LFC:[MD5.5CCDCD40E732D54E0F7451AC66AC1C87] - 22/12/2014 - 20:12:08 ---A- . (.Microsoft Corporation - Server Service Client DLL.) -- C:\Windows\System32\srvcli.dll [90112]
O44 - LFC:[MD5.2F3FD95C12AAED396EB1FFE4AF919BFF] - 22/12/2014 - 20:12:08 ---A- . (.Microsoft Corporation - Utilitaire d’enregistrement des Performance.) -- C:\Windows\System32\logman.exe [82944]
O44 - LFC:[MD5.7DF45A1E1A4AAFDEEFF2CA8F8200F37B] - 22/12/2014 - 20:12:08 ---A- . (.Microsoft Corporation - WMDM Service Provider for Windows Portable.) -- C:\Windows\System32\WPDSp.dll [350720]
O44 - LFC:[MD5.487F44B08EFEAF5AD087878357B9403D] - 22/12/2014 - 20:12:09 ---A- . (.Microsoft Corporation - DLL d’application d’assistance Windows pour.) -- C:\Windows\System32\pdh.dll [236544]
O44 - LFC:[MD5.9D67B55896F679CD6C0FC7EAD0F4BDEA] - 22/12/2014 - 20:12:09 ---A- . (.Microsoft Corporation - Fournisseur d’appareil mobile Microsoft Win.) -- C:\Windows\System32\PortableDeviceSyncProvider.dll [183296]
O44 - LFC:[MD5.37485CC09B7E6E70093A4DF62B3CC744] - 22/12/2014 - 20:12:09 ---A- . (.Microsoft Corporation - Native Code OPC Services Library.) -- C:\Windows\System32\OpcServices.dll [1160192]
O44 - LFC:[MD5.465BEA35F7ED4A4A57686DEA7EA10F47] - 22/12/2014 - 20:12:09 ---A- . (.Microsoft Corporation - Offline Files Win32 API.) -- C:\Windows\System32\cscapi.dll [34816]
O44 - LFC:[MD5.E783DE1447EC0EED7B768BB69705D8E3] - 22/12/2014 - 20:12:09 ---A- . (.Microsoft Corporation - Tuner TV sous flux WDM.) -- C:\Windows\System32\kstvtune.ax [84480]
O44 - LFC:[MD5.13CDD3FF0961A2EC6D9829A1640DD6DC] - 22/12/2014 - 20:12:10 ---A- . (.Microsoft Corporation - Microsoft SQL Mobile.) -- C:\Windows\System32\sqlcese30.dll [309760]
O44 - LFC:[MD5.44D647692BEFABB34EA46B34048C0F03] - 22/12/2014 - 20:12:10 ---A- . (.Microsoft Corporation - Outil de calibration de la numérisation.) -- C:\Windows\System32\tabcal.exe [74240]
O44 - LFC:[MD5.D0C94D78DC8652153F020F5B6ACED36F] - 22/12/2014 - 20:12:10 ---A- . (.Microsoft Corporation - RDP Direct3D Remoting DLL.) -- C:\Windows\System32\rdpd3d.dll [52224]
O44 - LFC:[MD5.D4191EFAB91E00FC09257AA5EBAF503B] - 22/12/2014 - 20:12:10 ---A- . (.Microsoft Corporation - Windows NT MP Router Administration DLL.) -- C:\Windows\System32\mprapi.dll [158720]
O44 - LFC:[MD5.98F657555DD1C1A30362927DF8FBB266] - 22/12/2014 - 20:12:10 ---A- . (.Microsoft Corporation - iSCSI Discovery api.) -- C:\Windows\System32\iscsium.dll [28672]
O44 - LFC:[MD5.775C41C2F2EF3DD150A7444B95E631D0] - 22/12/2014 - 20:12:10 ---A- . (.Microsoft Corporation - Écran de veille Bulles.) -- C:\Windows\System32\Bubbles.scr [878592]
O44 - LFC:[MD5.A29E036A5A3B37C7530F3EA1CF385129] - 22/12/2014 - 20:12:11 ---A- . (.Microsoft Corporation - LSM interfaces proxy Dll.) -- C:\Windows\System32\lsmproxy.dll [21504]
O44 - LFC:[MD5.E9C7D94D71857409BF741F1B7561D0E6] - 22/12/2014 - 20:12:11 ---A- . (.Microsoft Corporation - Lanceur du Lecteur Windows Media.) -- C:\Windows\System32\wmpshell.dll [105472]
O44 - LFC:[MD5.53CA6BF58658815FCB472205291DD953] - 22/12/2014 - 20:12:11 ---A- . (.Microsoft Corporation - Mini-pilote AT fournisseur de service Unimo.) -- C:\Windows\System32\unimdmat.dll [59392]
O44 - LFC:[MD5.0920B14AA67A8B04ACF48FFE7C6F0927] - 22/12/2014 - 20:12:11 ---A- . (.Microsoft Corporation - Utilitaire d’administration BITS.) -- C:\Windows\System32\bitsadmin.exe [186368]
O44 - LFC:[MD5.A557563260FD041F6CFA5C296918104E] - 22/12/2014 - 20:12:12 ---A- . (.Microsoft Corporation - Action PnP sans assistance.) -- C:\Windows\System32\PnPUnattend.exe [61440]
O44 - LFC:[MD5.F14A9B1778376D0B1788E402AC1F831A] - 22/12/2014 - 20:12:12 ---A- . (.Microsoft Corporation - Shell Accounts Classes.) -- C:\Windows\System32\shacct.dll [108032]
O44 - LFC:[MD5.5CF15474FFDB5005E54958DF6EDD97AB] - 22/12/2014 - 20:12:12 ---A- . (.Microsoft Corporation - Windows Media DRM for Network Devices Regis.) -- C:\Windows\System32\wmdrmdev.dll [507392]
O44 - LFC:[MD5.45DC6C69CE5759666EC758BAD657B040] - 22/12/2014 - 20:12:13 ---A- . (.Microsoft Corporation - Compresseur Microsoft Vidéo 1.) -- C:\Windows\System32\msvidc32.dll [31744]
O44 - LFC:[MD5.9204A9C716B7B4AA451010DEDB0BB5BE] - 22/12/2014 - 20:12:13 ---A- . (.Microsoft Corporation - DLL d’API de lecture Media Foundation.) -- C:\Windows\System32\MFPlay.dll [176128]
O44 - LFC:[MD5.EEE470F2A771FC0B543BDEEF74FCECA0] - 22/12/2014 - 20:12:13 ---A- . (.Microsoft Corporation - Installateur Windows®.) -- C:\Windows\System32\msiexec.exe [73216]
O44 - LFC:[MD5.9B9EF57993ECC02CE7469F3F3AC3CE10] - 22/12/2014 - 20:12:13 ---A- . (.Microsoft Corporation - Microsoft ThirdPartyEapDispatcher.) -- C:\Windows\System32\eapp3hst.dll [242176]
O44 - LFC:[MD5.906DCFC5EBF4EC0433F8D4FFFB0BA334] - 22/12/2014 - 20:12:13 ---A- . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\Drivers\rmcast.sys [117760]
O44 - LFC:[MD5.BFB9EE8EE977EFE85D1A3105ABEF6DD1] - 22/12/2014 - 20:12:15 ---A- . (.Microsoft Corporation - Media Center Extender Service.) -- C:\Windows\System32\Mcx2Svc.dll [68096]
O44 - LFC:[MD5.EA7D55E6964AA852BC7AE6F1C3349A55] - 22/12/2014 - 20:12:15 ---A- . (.Microsoft Corporation - Windows Media Player Logagent.) -- C:\Windows\System32\logagent.exe [95232]
O44 - LFC:[MD5.CA63BC9F834A42DAA8375FAC76B5CE83] - 22/12/2014 - 20:12:16 ---A- . (.Microsoft Corporation - Assistant WCN d’appareil mobile Windows.) -- C:\Windows\System32\wpdwcn.dll [198144]
O44 - LFC:[MD5.69C85737F4CA5634E7A19B818579D176] - 22/12/2014 - 20:12:16 ---A- . (.Microsoft Corporation - Outil de diagnostic Microsoft DirectX.) -- C:\Windows\System32\dxdiagn.dll [210432]
O44 - LFC:[MD5.D44741F65A1D71F65814A12CF6E2400A] - 22/12/2014 - 20:12:16 ---A- . (.Microsoft Corporation - Run Once Wrapper.) -- C:\Windows\System32\runonce.exe [50688]
O44 - LFC:[MD5.DBD14D0DB0382DFE96D7B5007DDD5ABE] - 22/12/2014 - 20:12:16 ---A- . (.Microsoft Corporation - Utilitaire de service de fichier de démarra.) -- C:\Windows\bfsvc.exe [65024]
O44 - LFC:[MD5.A77E0E5B15E6956C19E7269566ABE6C7] - 22/12/2014 - 20:12:17 ---A- . (.Microsoft Corporation - Bibliothèque d’interface utilisateur de dem.) -- C:\Windows\System32\onexui.dll [1111552]
O44 - LFC:[MD5.CF3CD3F466D84C9E2F66490D9578A563] - 22/12/2014 - 20:12:17 ---A- . (.Microsoft Corporation - Fournisseur de base de service de disque vi.) -- C:\Windows\System32\vdsbas.dll [160256]
O44 - LFC:[MD5.E178A1BD78441E08ACA10F6AF4B88F6E] - 22/12/2014 - 20:12:17 ---A- . (.Microsoft Corporation - Utilitaire de test de serveur d’ouverture d.) -- C:\Windows\System32\nltest.exe [327168]
O44 - LFC:[MD5.F645EF77ED0735B927E9804E28855E17] - 22/12/2014 - 20:12:17 ---A- . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [299520]
O44 - LFC:[MD5.00F48A9D03F672F7EBE601FFA9BB6F28] - 22/12/2014 - 20:12:17 ---A- . (.Microsoft Corporation - iTV Data Filters..) -- C:\Windows\System32\iTVData.dll [219648]
O44 - LFC:[MD5.ACA1F50844E08F3F5178E8FF3F21FBC2] - 22/12/2014 - 20:12:18 ---A- . (.Microsoft Corporation - ParamètresContrôleCompteUtilisateur.) -- C:\Windows\System32\UserAccountControlSettings.dll [78848]
O44 - LFC:[MD5.703FFD301AB900B047337C5D40FD6F96] - 22/12/2014 - 20:12:18 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\olepro32.dll [90112]
O44 - LFC:[MD5.5845B1C54380FB980F68024B3A8B1E66] - 22/12/2014 - 20:12:18 ---A- . (.Microsoft Corporation - VPN IKE API's.) -- C:\Windows\System32\vpnikeapi.dll [25600]
O44 - LFC:[MD5.1274A7FD37E2DA781282CEE1D2131374] - 22/12/2014 - 20:12:18 ---A- . (.Microsoft Corporation - Windows Optional Component Setup API.) -- C:\Windows\System32\ocsetapi.dll [174592]
O44 - LFC:[MD5.9B9A0802B4E34CC4D9DB04AB6ABFA8AE] - 22/12/2014 - 20:12:19 ---A- . (.Microsoft Corporation - DLL InputSetting.) -- C:\Windows\System32\input.dll [202240]
O44 - LFC:[MD5.3D57FFBAD3ED16B63DE3879BAB0FB56F] - 22/12/2014 - 20:12:19 ---A- . (.Microsoft Corporation - Explorateur de réseaux.) -- C:\Windows\System32\networkexplorer.dll [1661440]
O44 - LFC:[MD5.93C4029DABC19166076BE347283AB969] - 22/12/2014 - 20:12:19 ---A- . (.Microsoft Corporation - NAP Cryptographic API helper.) -- C:\Windows\System32\NAPCRYPT.DLL [46080]
O44 - LFC:[MD5.1C20F53017D9ADBE40B6826FE81FF47C] - 22/12/2014 - 20:12:19 ---A- . (.Microsoft Corporation - Résultats de Mise à niveau express.) -- C:\Windows\System32\WindowsAnytimeUpgradeResults.exe [292864]
O44 - LFC:[MD5.08236C4BCE5EDD0A0318A438AF28E0F7] - 22/12/2014 - 20:12:19 ---A- . (.Microsoft Corporation - Service de sauvegarde Microsoft® Windows.) -- C:\Windows\System32\sdrsvc.dll [125952]
O44 - LFC:[MD5.BD626EF05967D14C772B8096292731A3] - 22/12/2014 - 20:12:19 ---A- . (.Microsoft Corporation - Utilitaires de quarantaine.) -- C:\Windows\System32\QUTIL.DLL [80896]
O44 - LFC:[MD5.207CF171B1C6B8AE50C1FBF87363EEBC] - 22/12/2014 - 20:12:20 ---A- . (.Microsoft Corporation - Accès distant PPP CHAP.) -- C:\Windows\System32\raschap.dll [318976]
O44 - LFC:[MD5.2708C75F1A7FA45403383C7E43A82A81] - 22/12/2014 - 20:12:20 ---A- . (.Microsoft Corporation - DRM Migration DLL.) -- C:\Windows\System32\drmmgrtn.dll [402944]
O44 - LFC:[MD5.292F2FA57EB9B773DA1C15AFCC4A4F90] - 22/12/2014 - 20:12:20 ---A- . (.Microsoft Corporation - Extension du Panneau de configuration Sessi.) -- C:\Windows\System32\remotepg.dll [146944]
O44 - LFC:[MD5.B57053CD59114D36952461EE638D3784] - 22/12/2014 - 20:12:21 ---A- . (.Microsoft Corporation - Bibliothèque d’extension de l’onglet Compat.) -- C:\Windows\System32\acppage.dll [45568]
O44 - LFC:[MD5.BF1EAD0561F37CEA65F76DD276F90E04] - 22/12/2014 - 20:12:21 ---A- . (.Microsoft Corporation - DiskRAID.) -- C:\Windows\System32\diskraid.exe [276480]
O44 - LFC:[MD5.DC661CF87F2501A8B8D9628C006AA3BD] - 22/12/2014 - 20:12:21 ---A- . (.Microsoft Corporation - Moniteur de ressources et de performances.) -- C:\Windows\System32\perfmon.exe [157184]
O44 - LFC:[MD5.9D30A820EAB9C146BB59557CA0236875] - 22/12/2014 - 20:12:21 ---A- . (.Microsoft Corporation - RDPSRAPI COM Objects.) -- C:\Windows\System32\rdpencom.dll [186368]
O44 - LFC:[MD5.D29E45078CF4020CE0AAC82EC652D1EA] - 22/12/2014 - 20:12:21 ---A- . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\TSpkg.dll [65024]
O44 - LFC:[MD5.F6FD7F8147A591317E57D9008C8C7541] - 22/12/2014 - 20:12:21 ---A- . (.Microsoft Corporation - Wimfltr v2 extractor.) -- C:\Windows\System32\wimserv.exe [327680]
O44 - LFC:[MD5.510B493DF0DD669E60879B6B19E9B949] - 22/12/2014 - 20:12:22 ---A- . (.Microsoft Corporation - Windows Media Secure Content Provider.) -- C:\Windows\System32\msscp.dll [504320]
O44 - LFC:[MD5.AE9898D5600A232CD8AE3298692162E5] - 22/12/2014 - 20:12:23 ---A- . (.Microsoft Corporation - Bibliothèque d’API de cluster.) -- C:\Windows\System32\clusapi.dll [230912]
O44 - LFC:[MD5.5DC6DBFC22911C58FD2C9208A9756021] - 22/12/2014 - 20:12:23 ---A- . (.Microsoft Corporation - Dossier de couplage des périphériques.) -- C:\Windows\System32\DevicePairingFolder.dll [211456]
O44 - LFC:[MD5.394117608EB031E622D4812E67746F09] - 22/12/2014 - 20:12:23 ---A- . (.Microsoft Corporation - Windows Media DRM SDK DLL.) -- C:\Windows\System32\wmdrmsdk.dll [616960]
O44 - LFC:[MD5.735263DA17BF5BAF9CCD483843BF9D5A] - 22/12/2014 - 20:12:23 ---A- . (.Microsoft Corporation - Windows Portable Device Shell Service Objec.) -- C:\Windows\System32\WPDShServiceObj.dll [105984]
O44 - LFC:[MD5.C335EC1182AC10B188705554E0BC1186] - 22/12/2014 - 20:12:24 ---A- . (.Microsoft Corporation - DLL Microsoft Video for Windows.) -- C:\Windows\System32\msvfw32.dll [120320]
O44 - LFC:[MD5.4634B0EE4098F0F2B972BDAC19A802E7] - 22/12/2014 - 20:12:24 ---A- . (.Microsoft Corporation - Extension de l’environnement des appareils.) -- C:\Windows\System32\audiodev.dll [243712]
O44 - LFC:[MD5.451E47CF063A37D105A1D2111FD4C4E5] - 22/12/2014 - 20:12:24 ---A- . (.Microsoft Corporation - Pilote MCI Video for Windows.) -- C:\Windows\System32\mciavi32.dll [84480]
O44 - LFC:[MD5.5E3830EE3282A53920E00784FEC44CFD] - 22/12/2014 - 20:12:24 ---A- . (.Microsoft Corporation - nslookup.) -- C:\Windows\System32\nslookup.exe [98304]
O44 - LFC:[MD5.E2864DF592832883151A8D5500A7EAAA] - 22/12/2014 - 20:12:25 ---A- . (.Microsoft Corporation - Bibliothèque de configuration de la protect.) -- C:\Windows\System32\srrstr.dll [257024]
O44 - LFC:[MD5.8A31F7A5A29EA3564493BC5EF8E78032] - 22/12/2014 - 20:12:25 ---A- . (.Microsoft Corporation - Flux de connexion WAN sans fil.) -- C:\Windows\System32\wwanconn.dll [196608]
O44 - LFC:[MD5.AD6DB3F85D329ABA90EAF7B2D8A2EEA9] - 22/12/2014 - 20:12:25 ---A- . (.Microsoft Corporation - Écran de veille Texte 3D.) -- C:\Windows\System32\ssText3d.scr [293888]
O44 - LFC:[MD5.4A8E2F20809CC161107FAA94F6CF2685] - 22/12/2014 - 20:12:26 ---A- . (.Microsoft Corporation - Multi-User Windows IMM32 API Client DLL.) -- C:\Windows\System32\imm32.dll [118272]
O44 - LFC:[MD5.FD4C4F9EC7D6D23E282F9375B4029AE5] - 22/12/2014 - 20:12:26 ---A- . (.Microsoft Corporation - Setup Wizard Framework.) -- C:\Windows\System32\uxlib.dll [118784]
O44 - LFC:[MD5.19F75D71E4256F5113D64CE2BB66B838] - 22/12/2014 - 20:12:26 ---A- . (.Microsoft Corporation - Software Licensing WGA API.) -- C:\Windows\System32\slwga.dll [14336]
O44 - LFC:[MD5.A54E92AE753D4BC63FE71F010F76EF04] - 22/12/2014 - 20:12:27 ---A- . (.Microsoft Corporation - DirectShow ASF Support.) -- C:\Windows\System32\qasf.dll [206848]
O44 - LFC:[MD5.824E84AC88AC9F82D772960657E094D1] - 22/12/2014 - 20:12:27 ---A- . (.Microsoft Corporation - Processeur de commandes génériques pour une.) -- C:\Windows\System32\setupugc.exe [113152]
O44 - LFC:[MD5.BE247AE996A9FDE007A27B51413A6C79] - 22/12/2014 - 20:12:28 ---A- . (.Microsoft Corporation - Bibliothèque d’objets et de contrôles de do.) -- C:\Windows\System32\shdocvw.dll [179712]
O44 - LFC:[MD5.CC5BF60E9D3F181C0B62AC91AD8634B8] - 22/12/2014 - 20:12:28 ---A- . (.Microsoft Corporation - Module d’exécution DirectShow..) -- C:\Windows\System32\qcap.dll [190976]
O44 - LFC:[MD5.C9708C9F3DBA3DBFB1D2FEE1E9DABAD0] - 22/12/2014 - 20:12:28 ---A- . (.Microsoft Corporation - Page de propriétés des versions précédentes.) -- C:\Windows\System32\twext.dll [146432]
O44 - LFC:[MD5.163A95975E1D8819E653AA3E961371CA] - 22/12/2014 - 20:12:28 ---A- . (.Twain Working Group - Gestionnaire de sources Twain_32 (Image Acq.) -- C:\Windows\twain_32.dll [51200]
O44 - LFC:[MD5.C5A99A4C0DC9F0F5A95BA0C83D30A549] - 22/12/2014 - 20:12:29 ---A- . (.Microsoft Corporation - Fichier DLL d’interface du Planificateur de.) -- C:\Windows\System32\mstask.dll [209920]
O44 - LFC:[MD5.377F0C1DDBFA6A43CB7E7568BC0ECED0] - 22/12/2014 - 20:12:29 ---A- . (.Microsoft Corporation - Fournisseur de service Unimodem 5.) -- C:\Windows\System32\unimdm.tsp [281088]
O44 - LFC:[MD5.319C6B309773D063541D01DF8AC6F55F] - 22/12/2014 - 20:12:29 ---A- . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584]
O44 - LFC:[MD5.861A80C7DCA93A95327463D7F8C9CE64] - 22/12/2014 - 20:12:30 ---A- . (.Microsoft Corporation - Bibliothèque Windows Imaging.) -- C:\Windows\System32\wimgapi.dll [406528]
O44 - LFC:[MD5.6A6B2EE4565A178035BE2A4FF6F2C968] - 22/12/2014 - 20:12:30 ---A- . (.Microsoft Corporation - Windows Remote Desktop Session Host Server.) -- C:\Windows\System32\wtsapi32.dll [40448]
O44 - LFC:[MD5.0BD483CECD8DAC86E04347589ADC71EE] - 22/12/2014 - 20:12:30 ---A- . (.Microsoft Corporation - Windows Visual Components.) -- C:\Windows\System32\wvc.dll [444928]
O44 - LFC:[MD5.73869A8A7AF77801387A36CF9B9B5886] - 22/12/2014 - 20:12:31 ---A- . (.Microsoft Corporation - Bibliothèque du programme d’installation de.) -- C:\Windows\System32\sysclass.dll [198144]
O44 - LFC:[MD5.FB036244DBD2FADC225AD8650886B641] - 22/12/2014 - 20:12:31 ---A- . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\System32\dfrgui.exe [586752]
O44 - LFC:[MD5.B4D3BDF863B81BF84658396666CF7200] - 22/12/2014 - 20:12:31 ---A- . (.Microsoft Corporation - Installation du composant facultatif Window.) -- C:\Windows\System32\ocsetup.exe [197632]
O44 - LFC:[MD5.918379B6C94AA59F567E06FB4E0E5E1B] - 22/12/2014 - 20:12:31 ---A- . (.Microsoft Corporation - Interface utilisateur commune du service d’.) -- C:\Windows\System32\dsuiext.dll [685056]
O44 - LFC:[MD5.A4BDC541E69674FBFF1A8FF00BE913F2] - 22/12/2014 - 20:12:31 ---A- . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\Drivers\ndproxy.sys [48640]
O44 - LFC:[MD5.FB1959012294D6AD43E5304DF65E3C26] - 22/12/2014 - 20:12:31 ---A- . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104]
O44 - LFC:[MD5.8DDD47810EE260744BEAA82EFA2DB9BB] - 22/12/2014 - 20:12:31 ---A- . (.Microsoft Corporation - Utilitaire Windows pour les fuseaux horaire.) -- C:\Windows\System32\tzutil.exe [47616]
O44 - LFC:[MD5.8FBE98499ADC541C63BB10B722DA00D4] - 22/12/2014 - 20:12:32 ---A- . (.Microsoft Corporation - Interface utilisateur avancée 802.3.) -- C:\Windows\System32\dot3ui.dll [333824]
O44 - LFC:[MD5.DBC02D918FFF1CAD628ACBE0C0EAA8E8] - 22/12/2014 - 20:12:32 ---A- . (.Microsoft Corporation - Windows HomeGroup.) -- C:\Windows\System32\provsvc.dll [165376]
O44 - LFC:[MD5.3CC04CB09FAFAD87942437FDDEE11EE3] - 22/12/2014 - 20:12:33 ---A- . (.Microsoft Corporation - DLL de l’agent de récupération Microsoft Wi.) -- C:\Windows\System32\ReAgent.dll [247808]
O44 - LFC:[MD5.2097D9A13CDB88213612E3E8479185F5] - 22/12/2014 - 20:12:33 ---A- . (.Microsoft Corporation - Microsoft Wave MSP.) -- C:\Windows\System32\wavemsp.dll [222208]
O44 - LFC:[MD5.3FE9A20ECA67745948FD536F8A9E00D9] - 22/12/2014 - 20:12:33 ---A- . (.Microsoft Corporation - Outil de gravure d’image disque Windows.) -- C:\Windows\System32\isoburn.exe [86528]
O44 - LFC:[MD5.3A16EA01FCFAAB40882DB5BFEE632322] - 22/12/2014 - 20:12:33 ---A- . (.Microsoft Corporation - Rich Text Edit Control, v4.1.) -- C:\Windows\System32\msftedit.dll [592384]
O44 - LFC:[MD5.3C9035085141162416A0DD34DBF3F3C1] - 22/12/2014 - 20:12:33 ---A- . (.Microsoft Corporation - Windows Wireless LAN 802.11 MSM DLL.) -- C:\Windows\System32\wlanmsm.dll [428032]
O44 - LFC:[MD5.22DE9DFF5565B00F230EAC0C635DAEB7] - 22/12/2014 - 20:12:34 ---A- . (.Microsoft Corporation - Consolidateur SQM Windows.) -- C:\Windows\System32\wsqmcons.exe [254976]
O44 - LFC:[MD5.404B123E9460395E3A7338B12C681B92] - 22/12/2014 - 20:12:34 ---A- . (.Microsoft Corporation - DLL d’application d’assistance NetShell Séc.) -- C:\Windows\System32\nshipsec.dll [346112]
O44 - LFC:[MD5.104A1070E90F1C530328E69B49718841] - 22/12/2014 - 20:12:34 ---A- . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\System32\nlaapi.dll [52224]
O44 - LFC:[MD5.088CF5B6380FB9002F2A4246F812225D] - 22/12/2014 - 20:12:34 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\asycfilt.dll [67584]
O44 - LFC:[MD5.8CD1DEE212E52B9C22E66DBA44991D32] - 22/12/2014 - 20:12:35 ---A- . (.Microsoft Corporation - API de pile du protocole HTTP.) -- C:\Windows\System32\httpapi.dll [34816]
O44 - LFC:[MD5.366BA8FB4B7BB7435E3B9EACB3843F67] - 22/12/2014 - 20:12:35 ---A- . (.Microsoft Corporation - Service de configuration automatique de rés.) -- C:\Windows\System32\dot3svc.dll [214016]
O44 - LFC:[MD5.1A1C4782E9C4110BDD0DBD5052D91383] - 22/12/2014 - 20:12:35 ---A- . (.Microsoft Corporation - Services Microsoft Windows SideShow.) -- C:\Windows\System32\AuxiliaryDisplayServices.dll [112128]
O44 - LFC:[MD5.254BB140EEE3C59D6114C1A86B636877] - 22/12/2014 - 20:12:35 ---A- . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\Drivers\tssecsrv.sys [31232]
O44 - LFC:[MD5.E62AA52713617C1F402829EBF79653AB] - 22/12/2014 - 20:12:36 ---A- . (.Microsoft Corporation - Assistant Connexion à des lecteurs ou des e.) -- C:\Windows\System32\netplwiz.dll [175616]
O44 - LFC:[MD5.521B748A7F9923302CA18B7E6AA2EEAE] - 22/12/2014 - 20:12:36 ---A- . (.Microsoft Corporation - DLL de la couche de routage AD.) -- C:\Windows\System32\activeds.dll [202752]
O44 - LFC:[MD5.6EC16BBD14906A59EA8A9A3F71B7F9AD] - 22/12/2014 - 20:12:36 ---A- . (.Microsoft Corporation - Migration System Isolation Layer.) -- C:\Windows\System32\migisol.dll [101888]
O44 - LFC:[MD5.E9CFC1884D1E579E82073103827FA62B] - 22/12/2014 - 20:12:36 ---A- . (.Microsoft Corporation - NAP client config API helper.) -- C:\Windows\System32\NAPHLPR.DLL [107008]
O44 - LFC:[MD5.D205C24A9D069049FE2DF2A1B38726A7] - 22/12/2014 - 20:12:36 ---A- . (.Microsoft Corporation - Pilote du système audio Winmm.) -- C:\Windows\System32\wdmaud.drv [172032]
O44 - LFC:[MD5.B86FB49A715157C49E2C7205E1817012] - 22/12/2014 - 20:12:36 ---A- . (.Microsoft Corporation - WMPSrcWp Module.) -- C:\Windows\System32\wmpsrcwp.dll [182272]
O44 - LFC:[MD5.737AFC772243C75E6AD17A7A8E8E23F9] - 22/12/2014 - 20:12:36 ---A- . (.Windows (R) Codename Longhorn DDK provider - Services de gestion des polices.) -- C:\Windows\System32\fms.dll [93696]
O44 - LFC:[MD5.EA2B00551F3E7B3D5F7FB730A55F8246] - 22/12/2014 - 20:12:37 ---A- . (.Microsoft Corporation - BlackBox DLL.) -- C:\Windows\System32\blackbox.dll [743424]
O44 - LFC:[MD5.6E30D02AAC9CAC84F421622E3A2F6178] - 22/12/2014 - 20:12:37 ---A- . (.Microsoft Corporation - Service de l’installateur ActiveX.) -- C:\Windows\System32\AxInstSv.dll [88064]
O44 - LFC:[MD5.B459575348C20E8121D6039DA063C704] - 22/12/2014 - 20:12:37 ---A- . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\Drivers\tdx.sys [74752]
O44 - LFC:[MD5.C140F86932B5B61F54A4D836E2D34AB2] - 22/12/2014 - 20:12:37 ---A- . (.Microsoft Corporation - WDM Streaming ActiveMovie Proxy.) -- C:\Windows\System32\ksproxy.ax [193536]
O44 - LFC:[MD5.0B09C2A5AE40C10FF8C2CA80143B8AC2] - 22/12/2014 - 20:12:38 ---A- . (.Microsoft Corporation - Application d’assistance Netsh de la platef.) -- C:\Windows\System32\nshwfp.dll [656384]
O44 - LFC:[MD5.05BF975CA428E04B462FB90841B37C95] - 22/12/2014 - 20:12:38 ---A- . (.Microsoft Corporation - Fournisseur d’informations d’identification.) -- C:\Windows\System32\SmartcardCredentialProvider.dll [152064]
O44 - LFC:[MD5.102CF6879887BBE846A00C459E6D4ABC] - 22/12/2014 - 20:12:38 ---A- . (.Microsoft Corporation - Rich Text Edit Control, v3.1.) -- C:\Windows\System32\riched20.dll [473600]
O44 - LFC:[MD5.8C545F6F1BA83C15B8B02EE4AA62FF11] - 22/12/2014 - 20:12:38 ---A- . (.Microsoft Corporation - Touches de raccourci de l’accessibilité.) -- C:\Windows\System32\sethc.exe [270336]
O44 - LFC:[MD5.D65645E5E9858EB60C3CF06848DD328D] - 22/12/2014 - 20:12:38 ---A- . (.Microsoft Corporation - Utilitaire Bcdboot.) -- C:\Windows\System32\bcdboot.exe [146944]
O44 - LFC:[MD5.33BEE4A0B2DC34F4A6D01210F7507508] - 22/12/2014 - 20:12:39 ---A- . (.Microsoft Corporation - Bibliothèque d’utilitaires du service de di.) -- C:\Windows\System32\vdsutil.dll [151040]
O44 - LFC:[MD5.89F5770AD1E9D9CEF93D00303135EC33] - 22/12/2014 - 20:12:39 ---A- . (.Microsoft Corporation - DLL d’installation de spouleur.) -- C:\Windows\System32\ntprint.dll [297472]
O44 - LFC:[MD5.7635B6502882E4B1713F049FD8FD2EA4] - 22/12/2014 - 20:12:39 ---A- . (.Microsoft Corporation - Disque de réparation Microsoft® Windows.) -- C:\Windows\System32\recdisc.exe [210432]
O44 - LFC:[MD5.468D6989581E6AEA75DE74D4B3722CC3] - 22/12/2014 - 20:12:39 ---A- . (.Microsoft Corporation - Mise en route.) -- C:\Windows\System32\OobeFldr.dll [859648]
O44 - LFC:[MD5.4AC64014668BB2B4834A66B73406AB63] - 22/12/2014 - 20:12:39 ---A- . (.Microsoft Corporation - Panneau de configuration de mon système.) -- C:\Windows\System32\systemcpl.dll [410624]
O44 - LFC:[MD5.97D7CC94EEA6EBB6B928EA3DD91A2A0C] - 22/12/2014 - 20:12:40 ---A- . (.Microsoft Corporation - DLL d’IU des quotas de disque système.) -- C:\Windows\System32\dskquoui.dll [196608]
O44 - LFC:[MD5.A912933C92B9C4C70E9039C0B597AE4E] - 22/12/2014 - 20:12:40 ---A- . (.Microsoft Corporation - Microsoft Teletext Server.) -- C:\Windows\System32\WSTPager.ax [68608]
O44 - LFC:[MD5.0915C4DB6DBC3BB9E11B7ECBBE4B7159] - 22/12/2014 - 20:12:40 ---A- . (.Microsoft Corporation - Routing Utilities.) -- C:\Windows\System32\rtutils.dll [37376]
O44 - LFC:[MD5.7B97346CE563B74BBCC120FC83E5A6D9] - 22/12/2014 - 20:12:40 ---A- . (.Microsoft Corporation - WMPMDE DLL.) -- C:\Windows\System32\wmpmde.dll [738816]
O44 - LFC:[MD5.D7B7159BC8374E87D8C45A30377A3440] - 22/12/2014 - 20:12:41 ---A- . (.Microsoft Corporation - Gestionnaire de réseau local Microsoft®.) -- C:\Windows\System32\ntlanman.dll [69120]
O44 - LFC:[MD5.2A39F32E0067CBF221611FE1FA8C6D8F] - 22/12/2014 - 20:12:41 ---A- . (.Microsoft Corporation - Gestionnaire pour appareils Windows Mobile.) -- C:\Windows\System32\DeviceCenter.dll [484864]
O44 - LFC:[MD5.55CDE81B9FD8E234C4E00E4EEE919406] - 22/12/2014 - 20:12:41 ---A- . (.Microsoft Corporation - Module PnP de SysPrep.) -- C:\Windows\System32\sppnp.dll [115712]
O44 - LFC:[MD5.9473C7BDD77A204C0BB70B467740D326] - 22/12/2014 - 20:12:41 ---A- . (.Microsoft Corporation - Éditeur de données de configuration de déma.) -- C:\Windows\System32\bcdedit.exe [295424]
O44 - LFC:[MD5.DFA05B91BA331F7407F5F50EEAA9E2B2] - 22/12/2014 - 20:12:43 ---A- . (.Microsoft Corporation - Panneau de configuration Lecture automatiqu.) -- C:\Windows\System32\autoplay.dll [146944]
O44 - LFC:[MD5.D304A5C08E733D694455DC770B86E069] - 22/12/2014 - 20:12:44 ---A- . (.Microsoft Corporation - Panneau de configuration Tablet PC.) -- C:\Windows\System32\TabletPC.cpl [600576]
O44 - LFC:[MD5.E24BB41C4EFC309A14709FC127A3B847] - 22/12/2014 - 20:12:45 ---A- . (.Microsoft Corporation - Panneau de configuration Sauvegarde et rest.) -- C:\Windows\System32\sdcpl.dll [750080]
O44 - LFC:[MD5.54DEFF61C4E6AF1581DA2F236154BA4C] - 22/12/2014 - 20:12:45 ---A- . (.Microsoft Corporation - Panneau de configuration du Centre de maint.) -- C:\Windows\System32\ActionCenterCPL.dll [537600]
O44 - LFC:[MD5.2DAF758E7C15886DD2424F77F488759A] - 22/12/2014 - 20:12:45 ---A- . (.Microsoft Corporation - Panneau de contrôle de récupération.) -- C:\Windows\System32\recovery.dll [135680]
O44 - LFC:[MD5.20A20A911CD79A6F6839167149A05668] - 22/12/2014 - 20:12:45 ---A- . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [159232]
O44 - LFC:[MD5.3F6D9269E7B3A754B1C2F8533DC7F318] - 22/12/2014 - 20:12:46 ---A- . (.Microsoft Corporation - Bibliothèque principale EFS.) -- C:\Windows\System32\efscore.dll [205312]
O44 - LFC:[MD5.0FE24BD8E67F3A6757A5D193A7A9B287] - 22/12/2014 - 20:12:46 ---A- . (.Microsoft Corporation - DLL du Panneau de configuration.) -- C:\Windows\System32\intl.cpl [345088]
O44 - LFC:[MD5.82A9C6ADDCC4D392293AF15C09192DEC] - 22/12/2014 - 20:12:46 ---A- . (.Microsoft Corporation - IFS Utility DLL.) -- C:\Windows\System32\ifsutil.dll [148992]
O44 - LFC:[MD5.297848A1D7D03A5735CEDF91F82ACFAB] - 22/12/2014 - 20:12:46 ---A- . (.Microsoft Corporation - Programme d’installation de la classe de co.) -- C:\Windows\System32\wpd_ci.dll [577024]
O44 - LFC:[MD5.E9B7D9BBD3E78E7DD053A5108B7649AC] - 22/12/2014 - 20:12:46 ---A- . (.Microsoft Corporation - Services Web Windows Shell.) -- C:\Windows\System32\shwebsvc.dll [428544]
O44 - LFC:[MD5.F44CCA639625EC735667BD8B8E523A33] - 22/12/2014 - 20:12:46 ---A- . (.Microsoft Corporation - Single-Instance Store Backup Support Functi.) -- C:\Windows\System32\sisbkup.dll [19456]
O44 - LFC:[MD5.E3D5E244807AD655787FCD25477CC1BC] - 22/12/2014 - 20:12:47 ---A- . (.Microsoft Corporation - Applet Panneau de configuration Bluetooth.) -- C:\Windows\System32\bthprops.cpl [692736]
O44 - LFC:[MD5.B06B2FEC249F48C4E7F628B689859AC7] - 22/12/2014 - 20:12:47 ---A- . (.Microsoft Corporation - Application d’assistance netsh 802.3.) -- C:\Windows\System32\dot3cfg.dll [82432]
O44 - LFC:[MD5.0A2DFF70EB5210C4F7D4954A317E9B04] - 22/12/2014 - 20:12:47 ---A- . (.Microsoft Corporation - Hardware Abstraction Layer DLL.) -- C:\Windows\System32\halacpi.dll [137088]
O44 - LFC:[MD5.9996103F8A650BDB3586C9AAE1101912] - 22/12/2014 - 20:12:47 ---A- . (.Microsoft Corporation - Logiciel de transfert de fichiers.) -- C:\Windows\System32\ftp.exe [42496]
O44 - LFC:[MD5.186147C89867B66CB02667D4037C7550] - 22/12/2014 - 20:12:48 ---A- . (.Microsoft Corporation - Composant de protocole RADIUS NPS.) -- C:\Windows\System32\iasrad.dll [172032]
O44 - LFC:[MD5.E82CEFE0D2F98651D556E2437163486B] - 22/12/2014 - 20:12:48 ---A- . (.Microsoft Corporation - Contrôle du Moniteur système.) -- C:\Windows\System32\sysmon.ocx [389632]
O44 - LFC:[MD5.D8B2F66671C13C4C2F22FE3A588945F8] - 22/12/2014 - 20:12:48 ---A- . (.Microsoft Corporation - Gestionnaire de routeur IP.) -- C:\Windows\System32\iprtrmgr.dll [271360]
O44 - LFC:[MD5.931A1DF1520ABC6E84BA4A75E6957025] - 22/12/2014 - 20:12:48 ---A- . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\Drivers\hidclass.sys [55808]
O44 - LFC:[MD5.73CB55D2E8099D24FD077C990FFE3DDB] - 22/12/2014 - 20:12:48 ---A- . (.Microsoft Corporation - Panneau de configuration de l’emplacement p.) -- C:\Windows\System32\defaultlocationcpl.dll [220672]
O44 - LFC:[MD5.59079D4288FF7175758E838A489DD992] - 22/12/2014 - 20:12:49 ---A- . (.Microsoft Corporation - Assistant Impression de photographies.) -- C:\Windows\System32\photowiz.dll [295424]
O44 - LFC:[MD5.D861EB4D6719D6738270E6A376B87F18] - 22/12/2014 - 20:12:49 ---A- . (.Microsoft Corporation - Client d’activation Windows.) -- C:\Windows\System32\slui.exe [325632]
O44 - LFC:[MD5.4E5FE39C1076D115EC8BFCFE14D75B80] - 22/12/2014 - 20:12:49 ---A- . (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll [17408]
O44 - LFC:[MD5.067ADF4DFA75CE40ADE163A5933E8953] - 22/12/2014 - 20:12:49 ---A- . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Inter.) -- C:\Windows\System32\msieftp.dll [301568]
O44 - LFC:[MD5.3206ADC4D06BB764C9A4936C8E22708C] - 22/12/2014 - 20:12:49 ---A- . (.Microsoft Corporation - Media Metadata Handler.) -- C:\Windows\System32\MediaMetadataHandler.dll [266752]
O44 - LFC:[MD5.7717A57C01812C3714BA25B96C36BF39] - 22/12/2014 - 20:12:49 ---A- . (.Microsoft Corporation - Panneau de configuration de la barre des tâ.) -- C:\Windows\System32\taskbarcpl.dll [233472]
O44 - LFC:[MD5.7FA8BA5A780E4757964AC9D4238302B9] - 22/12/2014 - 20:12:49 ---A- . (.Microsoft Corporation - Processus hôte pour Tâches Windows.) -- C:\Windows\System32\taskhost.exe [49152]
O44 - LFC:[MD5.9A39A2A5F443A756C568C6ED5748AFE4] - 22/12/2014 - 20:12:50 ---A- . (.Microsoft Corporation - Centre de maintenance.) -- C:\Windows\System32\ActionCenter.dll [744448]
O44 - LFC:[MD5.F1E9A22C1D4F5D3AC7BA555D4E95329C] - 22/12/2014 - 20:12:50 ---A- . (.Microsoft Corporation - Panneau de configuration Définition des opt.) -- C:\Windows\System32\sud.dll [755200]
O44 - LFC:[MD5.4A6554C141450D2B6AA6DE17A298AEDA] - 22/12/2014 - 20:12:50 ---A- . (.Microsoft Corporation - Panneau de configuration des identités en l.) -- C:\Windows\System32\OnLineIDCpl.dll [218112]
O44 - LFC:[MD5.C8333F1F77A1B2E25F2202E892CAF634] - 22/12/2014 - 20:12:50 ---A- . (.Microsoft Corporation - prnfldr dll.) -- C:\Windows\System32\prnfldr.dll [395264]
O44 - LFC:[MD5.1E8D06AAE74FED674C1156B3FEA911C2] - 22/12/2014 - 20:12:51 ---A- . (.Microsoft Corporation - DLL du rapport d’incident dans le mode util.) -- C:\Windows\System32\Faultrep.dll [320512]
O44 - LFC:[MD5.EAC4B0A0900CB391BBD48FC0A0E58C7F] - 22/12/2014 - 20:12:51 ---A- . (.Microsoft Corporation - Microsoft Protected Broadcast Digital Archi.) -- C:\Windows\System32\mspbda.dll [414208]
O44 - LFC:[MD5.8CBD6FDACDCC0ED48BAF607226D6D0C9] - 22/12/2014 - 20:12:51 ---A- . (.Microsoft Corporation - Programme d’installation de Windows Update.) -- C:\Windows\System32\wusa.exe [314880]
O44 - LFC:[MD5.477B711EBF491226FA40301290F66BAC] - 22/12/2014 - 20:12:51 ---A- . (.Microsoft Corporation - Windows® Media Center WMDRM-ND Receiver Bri.) -- C:\Windows\System32\MCEWMDRMNDBootstrap.dll [312168]
O44 - LFC:[MD5.3E709F7BFA217CD3B6FC338780465E20] - 22/12/2014 - 20:12:52 ---A- . (.Microsoft Corporation - ADs LDAP Provider DLL.) -- C:\Windows\System32\adsldp.dll [186880]
O44 - LFC:[MD5.EA72CAE0FFA2D86522888320ADE6B33E] - 22/12/2014 - 20:12:52 ---A- . (.Microsoft Corporation - Mappage réseau.) -- C:\Windows\System32\networkmap.dll [2130944]
O44 - LFC:[MD5.BA2B249CD7C8CE15E1A8D69ECAEE5FA3] - 22/12/2014 - 20:12:53 ---A- . (.Microsoft Corporation - Applications du Panneau de configuration So.) -- C:\Windows\System32\main.cpl [516096]
O44 - LFC:[MD5.E343CABBD8D600ABAF3F11625D33B3D0] - 22/12/2014 - 20:12:53 ---A- . (.Microsoft Corporation - Domain Join DLL.) -- C:\Windows\System32\netjoin.dll [161792]
O44 - LFC:[MD5.28CA821606669BB9215CE010767720FA] - 22/12/2014 - 20:12:53 ---A- . (.Microsoft Corporation - Fournisseur de l’interface Microsoft Trust.) -- C:\Windows\System32\cryptui.dll [1003520]
O44 - LFC:[MD5.DC190EB70C5C15BB087F893D6E77E5C6] - 22/12/2014 - 20:12:53 ---A- . (.Microsoft Corporation - Microsoft AC-3 Encoder.) -- C:\Windows\System32\MSAC3ENC.DLL [226304]
O44 - LFC:[MD5.A2F0B6A45EF5B68173AAA2A39690904E] - 22/12/2014 - 20:12:54 ---A- . (.Microsoft Corporation - Dossiers compressés.) -- C:\Windows\System32\zipfldr.dll [327680]
O44 - LFC:[MD5.6F241D9C35D157A376003CDEF2E26CAE] - 22/12/2014 - 20:12:54 ---A- . (.Microsoft Corporation - Extension Stratégie de groupe de redirectio.) -- C:\Windows\System32\fdeploy.dll [59904]
O44 - LFC:[MD5.5DCEF0C32BE0F33277326586FA503689] - 22/12/2014 - 20:12:54 ---A- . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\Drivers\ks.sys [190976]
O44 - LFC:[MD5.5BAC1C3853E2D1F3F65CBB578228A268] - 22/12/2014 - 20:12:55 ---A- . (.Microsoft Corporation - Gestionnaire d’autorisations.) -- C:\Windows\System32\azroleui.dll [314368]
O44 - LFC:[MD5.45C0DF404182850C21749AF7763C095F] - 22/12/2014 - 20:12:55 ---A- . (.Microsoft Corporation - Panneau de configuration Options d’ergonomi.) -- C:\Windows\System32\accessibilitycpl.dll [3727872]
O44 - LFC:[MD5.1EB40CEBF58C2983497A77442B99B2D0] - 22/12/2014 - 20:12:55 ---A- . (.Microsoft Corporation - Setup Wizard Framework.) -- C:\Windows\System32\spwizeng.dll [352768]
O44 - LFC:[MD5.6FE596F2DC97F7E1CA292F376C33D3CB] - 22/12/2014 - 20:12:55 ---A- . (.Microsoft Corporation - WorkspaceRuntime.) -- C:\Windows\System32\wksprt.exe [223232]
O44 - LFC:[MD5.BEFF01C9F044BA2AD7F5FB837972FC90] - 22/12/2014 - 20:12:56 ---A- . (.Microsoft Corporation - Application Système du Panneau de configura.) -- C:\Windows\System32\sysdm.cpl [326656]
O44 - LFC:[MD5.96FE583424174CF7926250ED16C4EA01] - 22/12/2014 - 20:12:56 ---A- . (.Microsoft Corporation - Outil de diagnostic du service de temps Win.) -- C:\Windows\System32\w32tm.exe [66048]
O44 - LFC:[MD5.AA53356D60AF47EACC85BC617A4F3F66] - 22/12/2014 - 20:12:56 ---A- . (.Microsoft Corporation - Énumérateur d’appareil mobile.) -- C:\Windows\System32\wpdbusenum.dll [85504]
O44 - LFC:[MD5.370349F79315D4DB86CD992CACEFEE61] - 22/12/2014 - 20:12:57 ---A- . (.Microsoft Corporation - Afficher les réseaux disponibles.) -- C:\Windows\System32\VAN.dll [638976]
O44 - LFC:[MD5.B5FFA9977015ED3E1B2C3FF266A1BEB9] - 22/12/2014 - 20:12:57 ---A- . (.Microsoft Corporation - Centre de mobilité Windows.) -- C:\Windows\System32\mblctr.exe [941568]
O44 - LFC:[MD5.5ABBEF3B5984C29BD9D7CB1C7F35B323] - 22/12/2014 - 20:12:57 ---A- . (.Microsoft Corporation - Centre réseau - Panneau de configuration.) -- C:\Windows\System32\netcenter.dll [1644032]
O44 - LFC:[MD5.67C1B58706B47EEBA4E117AC197289E6] - 22/12/2014 - 20:12:57 ---A- . (.Microsoft Corporation - DLL d’application d’assistance de Jauge de.) -- C:\Windows\System32\batmeter.dll [740864]
O44 - LFC:[MD5.2305BFF2966D73694972FD7531BC5BAA] - 22/12/2014 - 20:12:57 ---A- . (.Microsoft Corporation - Mélangeur de volume.) -- C:\Windows\System32\SndVol.exe [314368]
O44 - LFC:[MD5.0FC7E6C8DFB1052F121638485A675761] - 22/12/2014 - 20:12:57 ---A- . (.Microsoft Corporation - Print Ticket Services Module.) -- C:\Windows\System32\prntvpt.dll [120320]
O44 - LFC:[MD5.013CB5286ABB32259349AD858087068C] - 22/12/2014 - 20:12:58 ---A- . (.Microsoft Corporation - Centre de performances.) -- C:\Windows\System32\PerfCenterCPL.dll [600576]
O44 - LFC:[MD5.58405E4F68BA8E4057C6E914F326ABA2] - 22/12/2014 - 20:12:58 ---A- . (.Microsoft Corporation - DLL du service Station de travail.) -- C:\Windows\System32\wkssvc.dll [84480]
O44 - LFC:[MD5.A882CD13F68656CFD657E6639D3D3E17] - 22/12/2014 - 20:12:58 ---A- . (.Microsoft Corporation - Interface utilisateur de profil sans fil.) -- C:\Windows\System32\wlanui.dll [410112]
O44 - LFC:[MD5.196B4E3F4CCCC24AF836CE58FACBB699] - 22/12/2014 - 20:12:58 ---A- . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168]
O44 - LFC:[MD5.D83841B6EE406B58461ACE8A6308AA2D] - 22/12/2014 - 20:12:58 ---A- . (.Microsoft Corporation - Utilisateur du Panneau de configuration.) -- C:\Windows\System32\usercpl.dll [600064]
O44 - LFC:[MD5.44B13B356C737B628E73833B07CBBF72] - 22/12/2014 - 20:12:58 ---A- . (.Microsoft Corporation - Édition DirectShow..) -- C:\Windows\System32\qedit.dll [509440]
O44 - LFC:[MD5.6ED76824354C47C0B227ED38DEC89800] - 22/12/2014 - 20:12:59 ---A- . (.Microsoft Corporation - Boot Configuration Data COM Server.) -- C:\Windows\System32\bcdsrv.dll [133632]
O44 - LFC:[MD5.573EF199073CE66169B4A8166EB8581B] - 22/12/2014 - 20:12:59 ---A- . (.Microsoft Corporation - Composant MMC Utilisateurs et groupes locau.) -- C:\Windows\System32\localsec.dll [429056]
O44 - LFC:[MD5.EB9B8B2C75FFC489F57E16794FD41215] - 22/12/2014 - 20:12:59 ---A- . (.Microsoft Corporation - Fournisseur de compte NPS.) -- C:\Windows\System32\iasacct.dll [78848]
O44 - LFC:[MD5.D56D2F498713BD66F50763D5285F4F38] - 22/12/2014 - 20:12:59 ---A- . (.Microsoft Corporation - Superviseur du Gestionnaire de numérotation.) -- C:\Windows\System32\mprddm.dll [268800]
O44 - LFC:[MD5.2CFA4569350B7F84F815E9EC34E85766] - 22/12/2014 - 20:12:59 ---A- . (.Microsoft Corporation - Volume SCA.) -- C:\Windows\System32\SndVolSSO.dll [220160]
O44 - LFC:[MD5.7F8678C59F188528D60104E697C2361E] - 22/12/2014 - 20:13:00 ---A- . (.Microsoft Corporation - DLL du système de correspondance de couleur.) -- C:\Windows\System32\mscms.dll [481792]
O44 - LFC:[MD5.69C81451DCE63069A036FBF646A86996] - 22/12/2014 - 20:13:00 ---A- . (.Microsoft Corporation - Dossier des polices Windows.) -- C:\Windows\System32\fontext.dll [828928]
O44 - LFC:[MD5.75C59DFB82BBB997EB702BE0770619C2] - 22/12/2014 - 20:13:00 ---A- . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll [80720]
O44 - LFC:[MD5.613BF4820361543956909043A265C6AC] - 22/12/2014 - 20:13:00 ---A- . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176]
O44 - LFC:[MD5.8124944EC89D6A1815E4E53F5B96AAF4] - 22/12/2014 - 20:13:01 ---A- . (.Microsoft Corporation - Moteur du client de l’Éditeur de configurat.) -- C:\Windows\System32\scecli.dll [175616]
O44 - LFC:[MD5.C7952D0A4C43A965A1741916BB134751] - 22/12/2014 - 20:13:01 ---A- . (.Microsoft Corporation - Panneau de configuration HomeGroup.) -- C:\Windows\System32\hgcpl.dll [312832]
O44 - LFC:[MD5.0BA4982FE2C21D3D4A68B81FB25474D7] - 22/12/2014 - 20:13:01 ---A- . (.Microsoft Corporation - Écran de veille Photos.) -- C:\Windows\System32\PhotoScreensaver.scr [413696]
O44 - LFC:[MD5.518395321DC96FE2C9F0E96AC743B656] - 22/12/2014 - 20:13:02 ---A- . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\Drivers\rdyboost.sys [173440]
O44 - LFC:[MD5.03A03A453F1AAAE0C73AAAF895321C7A] - 22/12/2014 - 20:13:03 ---A- . (.Microsoft Corporation - API en mode utilisateur FWP/IPsec.) -- C:\Windows\System32\FWPUCLNT.DLL [216576]
O44 - LFC:[MD5.7DC1FABD139B6AE5743C5DF75EEC5958] - 22/12/2014 - 20:13:03 ---A- . (.Microsoft Corporation - DLL du composant logiciel enfichable MMC Cl.) -- C:\Windows\System32\dnscmmc.dll [109056]
O44 - LFC:[MD5.BFDC1FE9B277779E3263B0B2A9DC3E0D] - 22/12/2014 - 20:13:03 ---A- . (.Microsoft Corporation - Panneau de configuration du contrôle parent.) -- C:\Windows\System32\wpccpl.dll [766464]
O44 - LFC:[MD5.E8CB091A918C1C687B087389D9A66B39] - 22/12/2014 - 20:13:04 ---A- . (.Microsoft Corporation - Ouvrir Emplacement et autres capteurs.) -- C:\Windows\System32\SensorsCpl.dll [2202624]
O44 - LFC:[MD5.64B628C5258625129288F2D0C75268DA] - 22/12/2014 - 20:13:04 ---A- . (.Microsoft Corporation - Panneau de configuration Personnalisation.) -- C:\Windows\System32\themecpl.dll [2157568]
O44 - LFC:[MD5.E3AE23569749DE12D45BA3B489A036AE] - 22/12/2014 - 20:13:05 ---A- . (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193536]
O44 - LFC:[MD5.41E215F560028DBAA897DEAEF8390A7A] - 22/12/2014 - 20:13:05 ---A- . (.Microsoft Corporation - Extension shell de l’Afficheur de fichiers.) -- C:\Windows\System32\cabview.dll [132608]
O44 - LFC:[MD5.8EC00CCCBB3436D534FC8DA85FF943BF] - 22/12/2014 - 20:13:05 ---A- . (.Microsoft Corporation - Gestionnaire d’applications d’environnement.) -- C:\Windows\System32\appwiz.cpl [649216]
O44 - LFC:[MD5.4D7B1415719FFCC700118318D86FD7EC] - 22/12/2014 - 20:13:05 ---A- . (.Microsoft Corporation - Interface utilisateur par défaut du scanneu.) -- C:\Windows\System32\wiadefui.dll [416768]
O44 - LFC:[MD5.84897874906481E0B3F4045DAD90D69F] - 22/12/2014 - 20:13:05 ---A- . (.Microsoft Corporation - Pare-feu Windows - Panneau de configuration.) -- C:\Windows\System32\FirewallControlPanel.dll [856576]
O44 - LFC:[MD5.A00075951E38A73FE2F9D8384311710A] - 22/12/2014 - 20:13:05 ---A- . (.Microsoft Corporation - Utilitaire de configuration système.) -- C:\Windows\System32\msconfig.exe [233984]
O44 - LFC:[MD5.C43580971DE309516BAFC30DE736C147] - 22/12/2014 - 20:13:06 ---A- . (.Microsoft Corporation - Microsoft Distributed Transaction Coordinat.) -- C:\Windows\System32\msdtctm.dll [1066496]
O44 - LFC:[MD5.8EA53101FF2B15BDFF934B62A8FB326D] - 22/12/2014 - 20:13:06 ---A- . (.Microsoft Corporation - Net Logon Client DLL.) -- C:\Windows\System32\logoncli.dll [127488]
O44 - LFC:[MD5.E4343C7233EF714435231A85F11677D7] - 22/12/2014 - 20:13:06 ---A- . (.Microsoft Corporation - Panneau de configuration du service de biom.) -- C:\Windows\System32\biocpl.dll [428032]
O44 - LFC:[MD5.67F9B5C7E215B48F9256757E9CC09A7B] - 22/12/2014 - 20:13:06 ---A- . (.Microsoft Corporation - Remote Access PPP.) -- C:\Windows\System32\rasppp.dll [176640]
O44 - LFC:[MD5.5E6E37DC2EFE39EC146271E22A16844F] - 22/12/2014 - 20:13:06 ---A- . (.Microsoft Corporation - Shell setup helper.) -- C:\Windows\System32\shsetup.dll [111104]
O44 - LFC:[MD5.050A774CF85E04EE4387515994B8455D] - 22/12/2014 - 20:13:07 ---A- . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\System32\eudcedit.exe [288256]
O44 - LFC:[MD5.3E158EB9DC295CA3EF8D1F1EF57ABEDD] - 22/12/2014 - 20:13:08 ---A- . (.Microsoft Corporation - Panneau de configuration Dépannage.) -- C:\Windows\System32\DiagCpl.dll [1188864]
O44 - LFC:[MD5.099972E1FAF4950D3994FBAB9DD21253] - 22/12/2014 - 20:13:08 ---A- . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\Drivers\scsiport.sys [140160]
O44 - LFC:[MD5.61AC3EFDFACFDD3F0F11DD4FD4044223] - 22/12/2014 - 20:13:09 ---A- . (.Microsoft Corporation - Application d’ouverture de session Userinit.) -- C:\Windows\System32\userinit.exe [26624]
O44 - LFC:[MD5.909C11946AC04EA54A98C97792DC3C18] - 22/12/2014 - 20:13:09 ---A- . (.Microsoft Corporation - DLL d’objets PrintUI.) -- C:\Windows\System32\puiobj.dll [324608]
O44 - LFC:[MD5.9FC4D46F7BCAD9EE8517171195917776] - 22/12/2014 - 20:13:09 ---A- . (.Microsoft Corporation - Microsoft TAPI3 Terminal Manager.) -- C:\Windows\System32\termmgr.dll [352768]
O44 - LFC:[MD5.B7A7EFA6DBB68401CFAB1C4252FD3257] - 22/12/2014 - 20:13:09 ---A- . (.Microsoft Corporation - Panneau de configuration Partage de fichier.) -- C:\Windows\System32\sharemediacpl.dll [316416]
O44 - LFC:[MD5.8A244E6F8004A421359812C3FC55AE1B] - 22/12/2014 - 20:13:09 ---A- . (.Microsoft Corporation - XPS Rasterization Service Component.) -- C:\Windows\System32\XpsRasterService.dll [135168]
O44 - LFC:[MD5.FC8771F45ECCCFD89684E38842539B9B] - 22/12/2014 - 20:13:10 ---A- . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\Drivers\mountmgr.sys [78208]
O44 - LFC:[MD5.26EF8C37B8D58E98EE49F0DA81E77283] - 22/12/2014 - 20:13:10 ---A- . (.Microsoft Corporation - Microsoft Digital Receiver Interface Class.) -- C:\Windows\System32\msdri.dll [417792]
O44 - LFC:[MD5.2D699FB6E89CE0D8DA14ECC03B3EDFE0] - 22/12/2014 - 20:13:10 ---A- . (.Microsoft Corporation - Pilote du bus de prise en charge des chemin.) -- C:\Windows\System32\Drivers\mpio.sys [130432]
O44 - LFC:[MD5.45F4E7BF43DB40A6C6B4D92C76CBC3F2] - 22/12/2014 - 20:13:10 ---A- . (.Microsoft Corporation - USB Video Class Driver.) -- C:\Windows\System32\Drivers\usbvideo.sys [146432]
O44 - LFC:[MD5.545BF7EAA24A9E062857D0742EC0B28A] - 22/12/2014 - 20:13:11 ---A- . (.Microsoft Corporation - Gestionnaire des tâches de Windows.) -- C:\Windows\System32\taskmgr.exe [227328]
O44 - LFC:[MD5.8483DD8F87DBE86AAB55BBF95C207061] - 22/12/2014 - 20:13:11 ---A- . (.Microsoft Corporation - Microsoft Distributed Transaction Coordinat.) -- C:\Windows\System32\mtxclu.dll [320512]
O44 - LFC:[MD5.14558D849EC14160AC3DACD8AC36E10A] - 22/12/2014 - 20:13:11 ---A- . (.Microsoft Corporation - Panneau de configuration d’affichage.) -- C:\Windows\System32\Display.dll [1040384]
O44 - LFC:[MD5.ABA2AAA6F31EE934A76C87B537515EC6] - 22/12/2014 - 20:13:11 ---A- . (.Microsoft Corporation - Synchronisation Microsoft Windows DXP..) -- C:\Windows\System32\DxpTaskSync.dll [1400320]
O44 - LFC:[MD5.39B9273CA01364E115B464416CFB729B] - 22/12/2014 - 20:13:13 ---A- . (.Microsoft - robocopy.) -- C:\Windows\System32\Robocopy.exe [98816]
O44 - LFC:[MD5.5997D769CDB108390DCFAEBF442BF816] - 22/12/2014 - 20:13:13 ---A- . (.Microsoft Corporation - Remote RPC Extension.) -- C:\Windows\System32\RpcRtRemote.dll [46080]
O44 - LFC:[MD5.6658F4404DE03D75FE3BA09F7ABA6A30] - 22/12/2014 - 20:13:13 ---A- . (.Microsoft Corporation - Windows HomeGroup.) -- C:\Windows\System32\ListSvc.dll [194560]
O44 - LFC:[MD5.12C1BBE5B01F554DC2FA3225131E2D2B] - 22/12/2014 - 20:13:13 ---A- . (.Microsoft Corporation - Windows Media Network Plugin Manager DLL.) -- C:\Windows\System32\WMNetMgr.dll [1003008]
O44 - LFC:[MD5.CC88EF08712C08C5F5FE74A395BA25AC] - 22/12/2014 - 20:13:14 ---A- . (.Microsoft Corporation - Réseaux sans fil favoris.) -- C:\Windows\System32\wlanpref.dll [1326592]
O44 - LFC:[MD5.5EFDBEAECD69E250E5BA4A2950203CD4] - 22/12/2014 - 20:13:14 ---A- . (.Microsoft Corporation - Sauvegarde Microsoft® Windows.) -- C:\Windows\System32\sdclt.exe [1131008]
O44 - LFC:[MD5.CF87A1DE791347E75B98885214CED2B8] - 22/12/2014 - 20:13:14 ---A- . (.Microsoft Corporation - Service de la plateforme de protection logi.) -- C:\Windows\System32\sppsvc.exe [3179520]
O44 - LFC:[MD5.4B55C9F9A93B3BFD01ED7366EB0B9D2E] - 22/12/2014 - 20:13:15 ---A- . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\Drivers\ataport.sys [132992]
O44 - LFC:[MD5.6944501ED659F2C835F8DD16182C9330] - 22/12/2014 - 20:13:15 ---A- . (.Microsoft Corporation - Accès distant PPP EAP-TLS.) -- C:\Windows\System32\rastls.dll [372224]
O44 - LFC:[MD5.45D9F6CD2469CDB6A640DD4BD2B01471] - 22/12/2014 - 20:13:15 ---A- . (.Microsoft Corporation - Co-installateur : NET.) -- C:\Windows\System32\nci.dll [78848]
O44 - LFC:[MD5.82E7ECE9096EEACB2EAC5644FE19A6F2] - 22/12/2014 - 20:13:15 ---A- . (.Microsoft Corporation - NTFS Utility DLL.) -- C:\Windows\System32\untfs.dll [346624]
O44 - LFC:[MD5.669E18322F05A14356E8F6DA16D15DA0] - 22/12/2014 - 20:13:15 ---A- . (.Microsoft Corporation - Panneau de configuration du coffre Windows.) -- C:\Windows\System32\Vault.dll [933376]
O44 - LFC:[MD5.250AA41DE690561AF1282D598914564C] - 22/12/2014 - 20:13:16 ---A- . (.Microsoft Corporation - Moteur de l’Éditeur de configuration de séc.) -- C:\Windows\System32\scesrv.dll [307712]
O44 - LFC:[MD5.8BCF1DCE05F4494C8891F33EEA450D0A] - 22/12/2014 - 20:13:17 ---A- . (.Microsoft Corporation - Analyseur de performances.) -- C:\Windows\System32\wdc.dll [1227776]
O44 - LFC:[MD5.6A1E8DEB746912DF47CF651E138401D7] - 22/12/2014 - 20:13:17 ---A- . (.Microsoft Corporation - Structured Query.) -- C:\Windows\System32\StructuredQuery.dll [363520]
O44 - LFC:[MD5.D2958325C1AE1AE37A83334C6229E3BC] - 22/12/2014 - 20:13:18 ---A- . (.Microsoft Corporation - ActiveX Interface Marshaling Library.) -- C:\Windows\System32\actxprxy.dll [309760]
O44 - LFC:[MD5.ADDB05C93272A62606599B24730BD645] - 22/12/2014 - 20:13:18 ---A- . (.Microsoft Corporation - Extension de l’environnement Device Stage.) -- C:\Windows\System32\DXP.dll [399872]
O44 - LFC:[MD5.67BCB4490E9C7307E39C150CC09BEF9A] - 22/12/2014 - 20:13:18 ---A- . (.Microsoft Corporation - Panneau de configuration Système ; onglet I.) -- C:\Windows\System32\netid.dll [117248]
O44 - LFC:[MD5.F87D30E72E03D579A5199CCB3831D6EA] - 22/12/2014 - 20:13:18 ---A- . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) -- C:\Windows\System32\umpo.dll [119808]
O44 - LFC:[MD5.280122DDCF04B378EDD1AD54D71C1E54] - 22/12/2014 - 20:13:19 ---A- . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\Drivers\netbt.sys [187904]
O44 - LFC:[MD5.53E054880ADBB856ECE6EB10EDBB8A32] - 22/12/2014 - 20:13:19 ---A- . (.Microsoft Corporation - Panneau de commande audio.) -- C:\Windows\System32\mmsys.cpl [905216]
O44 - LFC:[MD5.FCA71F6230075CD687189AC29AB06945] - 22/12/2014 - 20:13:19 ---A- . (.Microsoft Corporation - Panneau de configuration de Microsoft Windo.) -- C:\Windows\System32\AuxiliaryDisplayCpl.dll [665600]
O44 - LFC:[MD5.02530B0B7E048DD5AC8D52DAEACAEB2B] - 22/12/2014 - 20:13:19 ---A- . (.Microsoft Corporation - Proxy de l’agent de quarantaine.) -- C:\Windows\System32\QAGENT.DLL [171520]
O44 - LFC:[MD5.D5291C38F1AF2107810A24C6059F9EFD] - 22/12/2014 - 20:13:20 ---A- . (.Microsoft Corporation - Microsoft .NET Runtime IE resources.) -- C:\Windows\System32\mscorier.dll [155472]
O44 - LFC:[MD5.3925944734DFC5D2253F3DC5923F797D] - 22/12/2014 - 20:13:21 ---A- . (.Microsoft Corporation - Options d’alimentation du Panneau de config.) -- C:\Windows\System32\powercpl.dll [441856]
O44 - LFC:[MD5.9A892B3439884C62B04718F0303A49E9] - 22/12/2014 - 20:13:21 ---A- . (.Microsoft Corporation - Service homologue EAPHost Microsoft.) -- C:\Windows\System32\eapphost.dll [222208]
O44 - LFC:[MD5.4C63E00F2F4B5F86AB48A58CD990F212] - 22/12/2014 - 20:13:21 ---A- . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys [53120]
O44 - LFC:[MD5.E362FAA5E232D9A326F42D8F78AEA2D8] - 22/12/2014 - 20:13:21 ---A- . (.Microsoft Corporation - WMI SDK Provider Framework.) -- C:\Windows\System32\framedyn.dll [202752]
O44 - LFC:[MD5.34EEE0DFAADB4F691D6D5308A51315DC] - 22/12/2014 - 20:13:21 ---A- . (.Microsoft Corporation - Windows Connect Now - Service de registre d.) -- C:\Windows\System32\wcncsvc.dll [276992]
O44 - LFC:[MD5.DFEC71402D544893908744E4863DC969] - 22/12/2014 - 20:13:21 ---A- . (.Microsoft Corporation - Windows® installer.) -- C:\Windows\System32\msihnd.dll [337408]
O44 - LFC:[MD5.2003E9B15E1C502B146DAD2E383AC1E3] - 22/12/2014 - 20:13:22 ---A- . (.Microsoft Corporation - Gestion des tâches planifiées.) -- C:\Windows\System32\schtasks.exe [179712]
O44 - LFC:[MD5.CAFC0B884E5590B5E80D84F592388B3D] - 22/12/2014 - 20:13:22 ---A- . (.Microsoft Corporation - Objets de configuration du réseau.) -- C:\Windows\System32\tcpipcfg.dll [181760]
O44 - LFC:[MD5.674B0C0F6A448EB185CAAB9C51D44032] - 22/12/2014 - 20:13:22 ---A- . (.Microsoft Corporation - Options d’indexation.) -- C:\Windows\System32\srchadmin.dll [301568]
O44 - LFC:[MD5.A67E5F9A400F3BD1BE3D80613B45F708] - 22/12/2014 - 20:13:22 ---A- . (.Microsoft Corporation - Windows USB Class Driver BETA.) -- C:\Windows\System32\Drivers\winusb.sys [35968]
O44 - LFC:[MD5.09D786401F6CA6AEB16B2811B169F944] - 22/12/2014 - 20:13:23 ---A- . (.Microsoft Corporation - Auto File System Conversion Utility.) -- C:\Windows\System32\autoconv.exe [679424]
O44 - LFC:[MD5.672D7C5080ACB003343006405DA2E621] - 22/12/2014 - 20:13:23 ---A- . (.Microsoft Corporation - Cache de miniatures Microsoft.) -- C:\Windows\System32\thumbcache.dll [82944]
O44 - LFC:[MD5.B1603F0A972B94927B8EF5F04DF11855] - 22/12/2014 - 20:13:23 ---A- . (.Microsoft Corporation - Composant logiciel enfichable Moniteur de s.) -- C:\Windows\System32\ipsmsnap.dll [400896]
O44 - LFC:[MD5.B81E879AE660F9D244FC20EC8A26783E] - 22/12/2014 - 20:13:23 ---A- . (.Microsoft Corporation - Filtre MIME.) -- C:\Windows\System32\mimefilt.dll [42496]
O44 - LFC:[MD5.5F2122888583347C9B81724CF169EFC6] - 22/12/2014 - 20:13:23 ---A- . (.Microsoft Corporation - Informations système.) -- C:\Windows\System32\msinfo32.exe [303104]
O44 - LFC:[MD5.2607A85B6466C0110EA8ABB9D8CC83FC] - 22/12/2014 - 20:13:23 ---A- . (.Microsoft Corporation - Registry Configuration APIs.) -- C:\Windows\System32\regapi.dll [72192]
O44 - LFC:[MD5.A90DC9ABD65DB1A8902F361103029952] - 22/12/2014 - 20:13:24 ---A- . (.Microsoft Corporation - API de l’application d’assistance IP.) -- C:\Windows\System32\IPHLPAPI.DLL [103936]
O44 - LFC:[MD5.56CEED370508F69A1BA04939BD1BADDA] - 22/12/2014 - 20:13:24 ---A- . (.Microsoft Corporation - DLL MSUTB Server.) -- C:\Windows\System32\msutb.dll [167936]
O44 - LFC:[MD5.1BF0D4727FDB437D513CFF8A9359C050] - 22/12/2014 - 20:13:24 ---A- . (.Microsoft Corporation - Hardware Abstraction Layer DLL.) -- C:\Windows\System32\hal.dll [194432]
O44 - LFC:[MD5.1BF0D4727FDB437D513CFF8A9359C050] - 22/12/2014 - 20:13:24 ---A- . (.Microsoft Corporation - Hardware Abstraction Layer DLL.) -- C:\Windows\System32\halmacpi.dll [194432]
O44 - LFC:[MD5.2E77BAB79F078654782F83F0A0AEFE31] - 22/12/2014 - 20:13:24 ---A- . (.Microsoft Corporation - ProQuota.) -- C:\Windows\System32\proquota.exe [28672]
O44 - LFC:[MD5.C940F2F5C60B3727C5F18840735B229C] - 22/12/2014 - 20:13:24 ---A- . (.Microsoft Corporation - Session audio.) -- C:\Windows\System32\AudioSes.dll [195584]
O44 - LFC:[MD5.F88A52EB62019D6A62FDD9E08034DBD8] - 22/12/2014 - 20:13:25 ---A- . (.Microsoft Corporation - Auto Check Utility.) -- C:\Windows\System32\autochk.exe [668160]
O44 - LFC:[MD5.CF13841F9F2B231F0DF974425888B89A] - 22/12/2014 - 20:13:25 ---A- . (.Microsoft Corporation - Bibliothèque de ressources de démarrage.) -- C:\Windows\System32\bootres.dll [2217856]
O44 - LFC:[MD5.38CACBEB75E3F85CBF7E65522DFDA1B0] - 22/12/2014 - 20:13:25 ---A- . (.Microsoft Corporation - DLL d’application d’assistance Netio.) -- C:\Windows\System32\netiohlp.dll [166400]
O44 - LFC:[MD5.F68194F74350D4A2ADE98961E33F884C] - 22/12/2014 - 20:13:25 ---A- . (.Microsoft Corporation - Isolation graphique de périphérique audio W.) -- C:\Windows\System32\audiodg.exe [100864]
O44 - LFC:[MD5.95DE3CF54E0A360EED766DBDDF152F0D] - 22/12/2014 - 20:13:25 ---A- . (.Microsoft Corporation - Narrator.) -- C:\Windows\System32\Narrator.exe [1077248]
O44 - LFC:[MD5.68ECCA523ED760AAFC03C5D587569859] - 22/12/2014 - 20:13:25 ---A- . (.Microsoft Corporation - Security Accounts Manager Client DLL.) -- C:\Windows\System32\samcli.dll [51200]
O44 - LFC:[MD5.A475B7BB0CCCFD848AA26075E81D7888] - 22/12/2014 - 20:13:26 ---A- . (.Microsoft Corporation - Auto File System Format Utility.) -- C:\Windows\System32\autofmt.exe [658944]
O44 - LFC:[MD5.D5AEFAD57C08349A4393D987DF7C715D] - 22/12/2014 - 20:13:27 ---A- . (.Microsoft Corporation - DLL API MCI.) -- C:\Windows\System32\winmm.dll [194048]
O44 - LFC:[MD5.414DA952A35BF5D50192E28263B40577] - 22/12/2014 - 20:13:27 ---A- . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192]
O44 - LFC:[MD5.CB9E04DC05EACF5B9A36CA276D475006] - 22/12/2014 - 20:13:27 ---A- . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208]
O44 - LFC:[MD5.CFE599FA85D52F82327FA8C549AD9296] - 22/12/2014 - 20:13:27 ---A- . (.Microsoft Corporation - HBA API data interface dll for HBA_API_Rev_.) -- C:\Windows\System32\hbaapi.dll [66560]
O44 - LFC:[MD5.CEA80C80BED809AA0DA6FEBC04733349] - 22/12/2014 - 20:13:27 ---A- . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\Drivers\acpi.sys [274304]
O44 - LFC:[MD5.763FECDC3D30C815FE72DD57936C6CD1] - 22/12/2014 - 20:13:27 ---A- . (.Microsoft Corporation - Service Microsoft Panneau de saisie Tablet.) -- C:\Windows\System32\TabSvc.dll [73216]
O44 - LFC:[MD5.6FEC7B9A76B41D9AC67615A3040017F5] - 22/12/2014 - 20:13:27 ---A- . (.Microsoft Corporation - Service de gestion des informations d’ident.) -- C:\Windows\System32\vaultsvc.dll [196096]
O44 - LFC:[MD5.EE43346C7E4B5E63E54F927BABBB32FF] - 22/12/2014 - 20:13:27 ---A- . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\Drivers\udfs.sys [246784]
O44 - LFC:[MD5.F748F53FE09D21D8ECBB6421E6792024] - 22/12/2014 - 20:13:28 ---A- . (.Microsoft Corporation - Bibliothèque de demandeur IEEE 802.1X.) -- C:\Windows\System32\onex.dll [199168]
O44 - LFC:[MD5.754AFC50022C95DA7C86B7020DB78136] - 22/12/2014 - 20:13:28 ---A- . (.Microsoft Corporation - Composant de redirection du Gestionnaire de.) -- C:\Windows\System32\dwmredir.dll [97280]
O44 - LFC:[MD5.80C5342074711F098A00F71FFF262B3B] - 22/12/2014 - 20:13:28 ---A- . (.Microsoft Corporation - Windows Media Player Encoding Module.) -- C:\Windows\System32\WMPEncEn.dll [1624064]
O44 - LFC:[MD5.C262B132CF3790405A9AC8C5B18847A1] - 22/12/2014 - 20:13:31 ---A- . (.Microsoft Corporation - Application Experience Program Inventory Co.) -- C:\Windows\System32\aeinv.dll [302592]
O44 - LFC:[MD5.E1FB3706030FB4578A0D72C2FC3689E4] - 22/12/2014 - 20:13:31 ---A- . (.Microsoft Corporation - Service de périphériques d’images fixes.) -- C:\Windows\System32\wiaservc.dll [463360]
O44 - LFC:[MD5.1078F4A06BE5DACDC8429215ADAE8104] - 22/12/2014 - 20:13:31 ---A- . (.Microsoft Corporation - Éditeur de sonneries Microsoft.) -- C:\Windows\System32\DXPTaskRingtone.dll [630784]
O44 - LFC:[MD5.2D11BC8B460957E62E4420373A0D8BDA] - 22/12/2014 - 20:13:32 ---A- . (.Microsoft Corporation - API de contrôle d’image v2.) -- C:\Windows\System32\imapi2.dll [392192]
O44 - LFC:[MD5.1BE1A0487946F64AF5D2946AD1ECD596] - 22/12/2014 - 20:13:32 ---A- . (.Microsoft Corporation - Outil de clonage de système.) -- C:\Windows\System32\setupcl.exe [103936]
O44 - LFC:[MD5.CBBD4D79EEC3EF5A4ADAE9697944C6B9] - 22/12/2014 - 20:13:33 ---A- . (.Microsoft Corporation - Codeur Microsoft MPEG-2.) -- C:\Windows\System32\MSMPEG2ENC.DLL [830464]
O44 - LFC:[MD5.012C5F4E9349E711E11E0F19A8589F0A] - 22/12/2014 - 20:13:33 ---A- . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) -- C:\Windows\System32\Drivers\msahci.sys [28032]
O44 - LFC:[MD5.9E4B0E7472B4CEBA9E17F440B8CB0AB8] - 22/12/2014 - 20:13:33 ---A- . (.Microsoft Corporation - Pilote de spouleur Windows.) -- C:\Windows\System32\winspool.drv [320000]
O44 - LFC:[MD5.5461686CCA2FDA57B024547733AB42E3] - 22/12/2014 - 20:13:33 ---A- . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\Drivers\vhdmp.sys [160128]
O44 - LFC:[MD5.418E881201583A3039D81F43E39E6C78] - 22/12/2014 - 20:13:33 ---A- . (.Microsoft Corporation - Winstation Library.) -- C:\Windows\System32\winsta.dll [156672]
O44 - LFC:[MD5.938F39B50BAFE13D6F58C7790682C010] - 22/12/2014 - 20:13:34 ---A- . (.Microsoft Corporation - ASN.1 Runtime APIs.) -- C:\Windows\System32\msasn1.dll [34304]
O44 - LFC:[MD5.F74737E0EF87295E82EBD0A4B040539A] - 22/12/2014 - 20:13:34 ---A- . (.Microsoft Corporation - Composant de saisie tactile ou avec stylet.) -- C:\Windows\System32\wisptis.exe [334336]
O44 - LFC:[MD5.0B5FED26EA8686163591F2609DEF5C89] - 22/12/2014 - 20:13:34 ---A- . (.Microsoft Corporation - MCMDE DLL.) -- C:\Windows\System32\mcmde.dll [727040]
O44 - LFC:[MD5.9419ABF3163B6F0E3AD3DD2B381C879F] - 22/12/2014 - 20:13:35 ---A- . (.Microsoft Corporation - API Microsoft Smart Card.) -- C:\Windows\System32\WinSCard.dll [134656]
O44 - LFC:[MD5.414BBA67A3DED1D28437EB66AEB8A720] - 22/12/2014 - 20:13:35 ---A- . (.Microsoft Corporation - Journaux & alertes de performance.) -- C:\Windows\System32\pla.dll [1508864]
O44 - LFC:[MD5.A8CDF3768604FF95B54669E20053D569] - 22/12/2014 - 20:13:36 ---A- . (.Microsoft Corporation - Windows Security Center API.) -- C:\Windows\System32\wscapi.dll [51712]
O44 - LFC:[MD5.C6FA3CBF5C6BD7B9BCB63441C6D67EA7] - 22/12/2014 - 20:13:37 ---A- . (.Microsoft Corporation - Cadre de Diagnostic réseau.) -- C:\Windows\System32\netdiagfx.dll [225792]
O44 - LFC:[MD5.2DDEA2C345DA5BC589EFD398F220DB0E] - 22/12/2014 - 20:13:37 ---A- . (.Microsoft Corporation - Centre de synchronisation Microsoft.) -- C:\Windows\System32\SyncCenter.dll [2146304]
O44 - LFC:[MD5.1D3198205747685AAC2EED0B3BCD38C3] - 22/12/2014 - 20:13:37 ---A- . (.Microsoft Corporation - Co-installateur de pilote USB générique du.) -- C:\Windows\System32\TsUsbGDCoInstaller.dll [33280]
O44 - LFC:[MD5.3B28814B74E898750A139FA4CBDFDCF7] - 22/12/2014 - 20:13:37 ---A- . (.Microsoft Corporation - Moteur de sauvegarde Microsoft® Windows.) -- C:\Windows\System32\sdengin2.dll [907776]
O44 - LFC:[MD5.05D860DA1040F111503AC416CCEF2BCA] - 22/12/2014 - 20:13:37 ---A- . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\Drivers\sbp2port.sys [85376]
O44 - LFC:[MD5.B70B2E022318E7EF942EEAC7126E6972] - 22/12/2014 - 20:13:38 ---A- . (.Microsoft Corporation - Extension du composant logiciel enfichable.) -- C:\Windows\System32\fde.dll [124416]
O44 - LFC:[MD5.04DBF4B01EA4BF25A9A3E84AFFAC9B20] - 22/12/2014 - 20:13:38 ---A- . (.Microsoft Corporation - Remote Desktop Server Driver.) -- C:\Windows\System32\Drivers\termdd.sys [53120]
O44 - LFC:[MD5.DB846EECA70EE9D2E2FF31147C57B0F4] - 22/12/2014 - 20:13:38 ---A- . (.Microsoft Corporation - Windows Web Services Runtime.) -- C:\Windows\System32\webservices.dll [782336]
O44 - LFC:[MD5.181F69BC9C406B7FB5C0ADE8031630AC] - 22/12/2014 - 20:13:39 ---A- . (.Microsoft Corporation - Extension de l’environnement des appareils.) -- C:\Windows\System32\wpdshext.dll [2311168]
O44 - LFC:[MD5.3D6F22551D422F97AACB0BB927E4C846] - 22/12/2014 - 20:13:39 ---A- . (.Microsoft Corporation - Icône du système réseau.) -- C:\Windows\System32\pnidui.dll [1750528]
O44 - LFC:[MD5.6B140B1382F1FE04BA57B196AEB19725] - 22/12/2014 - 20:13:39 ---A- . (.Microsoft Corporation - Microsoft T2Embed Font Embedding.) -- C:\Windows\System32\t2embed.dll [109056]
O44 - LFC:[MD5.53946B69BA0836BD95B03759530C81EC] - 22/12/2014 - 20:13:40 ---A- . (.Microsoft Corporation - DLL du serveur SPD IPsec Windows.) -- C:\Windows\System32\IPSECSVC.DLL [350208]
O44 - LFC:[MD5.804D1B3F83682288619DF795543BF382] - 22/12/2014 - 20:13:40 ---A- . (.Microsoft Corporation - Interface utilisateur de consentement pour.) -- C:\Windows\System32\consent.exe [101760]
O44 - LFC:[MD5.F99A4D145C862CBAD61B409C0AB0CD65] - 22/12/2014 - 20:13:41 ---A- . (.Microsoft Corporation - Composant logiciel enfichable Gestion de st.) -- C:\Windows\System32\wlangpui.dll [411648]
O44 - LFC:[MD5.34391196FE00480C9ADBFBE215B6B28C] - 22/12/2014 - 20:13:41 ---A- . (.Microsoft Corporation - Hôte SHV de quarantaine.) -- C:\Windows\System32\QSHVHOST.DLL [167936]
O44 - LFC:[MD5.0F416E23DD2EB4DEBE70608020CFD283] - 22/12/2014 - 20:13:41 ---A- . (.Microsoft Corporation - Windows Media Playback/Authoring DLL.) -- C:\Windows\System32\WMVCORE.DLL [2504192]
O44 - LFC:[MD5.243974EC02F7AE49E4179C54624143AB] - 22/12/2014 - 20:13:42 ---A- . (.Microsoft Corporation - API MMDevice.) -- C:\Windows\System32\MMDevAPI.dll [213504]
O44 - LFC:[MD5.284B59D7B56FC76C80E622AB856B1FAB] - 22/12/2014 - 20:13:42 ---A- . (.Microsoft Corporation - Web DAV Client DLL.) -- C:\Windows\System32\davclnt.dll [80384]
O44 - LFC:[MD5.967EA5B213E9984CBE270205DF37755B] - 22/12/2014 - 20:13:43 ---A- . (.Microsoft Corporation - Fax Service.) -- C:\Windows\System32\FXSSVC.exe [523264]
O44 - LFC:[MD5.3E63222185341DCB8EEEDB8E2761EE6F] - 22/12/2014 - 20:13:43 ---A- . (.Microsoft Corporation - Implémentation du profil et de la numérisat.) -- C:\Windows\System32\scansetting.dll [246272]
O44 - LFC:[MD5.C3CD30495687C2A2F66A65CA6FD89BE9] - 22/12/2014 - 20:13:43 ---A- . (.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\System32\vds.exe [453632]
O44 - LFC:[MD5.673E55C3498EB970088E812EA820AA8F] - 22/12/2014 - 20:13:43 ---A- . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\Drivers\pci.sys [153984]
O44 - LFC:[MD5.2A3557DD3913F8D7CC5A5703083424D8] - 22/12/2014 - 20:13:44 ---A- . (.Microsoft Corporation - Agent AIT (Application Impact Telemetry).) -- C:\Windows\System32\aitagent.exe [119808]
O44 - LFC:[MD5.27A81A5FEB2ACF01D406EFE153E95D4C] - 22/12/2014 - 20:13:44 ---A- . (.Microsoft Corporation - Mise à jour des données de compatibilité de.) -- C:\Windows\System32\aepdu.dll [321536]
O44 - LFC:[MD5.73F6C5223F7E9B5780DD4A6C30FCF569] - 22/12/2014 - 20:13:45 ---A- . (.Microsoft Corporation - DLL de l’API des services Web pour périphér.) -- C:\Windows\System32\WSDApi.dll [458752]
O44 - LFC:[MD5.1319CD4619E96B156911CA3897563EBC] - 22/12/2014 - 20:13:45 ---A- . (.Microsoft Corporation - Module d’intégrité du code.) -- C:\Windows\System32\ci.dll [690680]
O44 - LFC:[MD5.2041012726EF7C95ED51C15C56545A7F] - 22/12/2014 - 20:13:45 ---A- . (.Microsoft Corporation - Net Command.) -- C:\Windows\System32\net1.exe [142336]
O44 - LFC:[MD5.A2718532AFF3B0F9C73D3034A1511F50] - 22/12/2014 - 20:13:45 ---A- . (.Microsoft Corporation - RPC HTTP DLL.) -- C:\Windows\System32\rpchttp.dll [139264]
O44 - LFC:[MD5.3B91EA6DC3AE6088C880AB9073A833C2] - 22/12/2014 - 20:13:45 ---A- . (.Microsoft Corporation - Windows Media Player Effects.) -- C:\Windows\System32\wmpeffects.dll [352256]
O44 - LFC:[MD5.8EC04CA86F1D68DA9E11952EB85973D6] - 22/12/2014 - 20:13:46 ---A- . (.Microsoft Corporation - Service de stratégie de diagnostic WDI.) -- C:\Windows\System32\dps.dll [144384]
O44 - LFC:[MD5.BDAC1AA64495D0F7E1FF810EBBF1F018] - 22/12/2014 - 20:13:47 ---A- . (.Microsoft Corporation - Bibliothèque de contrôles de l’expérience u.) -- C:\Windows\System32\comctl32.dll [530432]
O44 - LFC:[MD5.D27DDE7E0444C7F1819F958469EB7D93] - 22/12/2014 - 20:13:47 ---A- . (.Microsoft Corporation - DLL du service d’impression Internet.) -- C:\Windows\System32\inetpp.dll [126464]
O44 - LFC:[MD5.9DF9B31EAC1669F244C02B61F10D123A] - 22/12/2014 - 20:13:47 ---A- . (.Microsoft Corporation - Interface de gestion des paramètres de l’im.) -- C:\Windows\System32\printui.dll [932352]
O44 - LFC:[MD5.50AF423CC8915B0010F0A96BF78672E9] - 22/12/2014 - 20:13:47 ---A- . (.Microsoft Corporation - Print UI Cache.) -- C:\Windows\System32\prncache.dll [116736]
O44 - LFC:[MD5.F059EB4C9C256F62F196EAA439E28F74] - 22/12/2014 - 20:13:48 ---A- . (.Microsoft Corporation - HomeGroup Printing Support.) -- C:\Windows\System32\hgprint.dll [155136]
O44 - LFC:[MD5.55055F8AD8BE27A64C831322A780A228] - 22/12/2014 - 20:13:48 ---A- . (.Microsoft Corporation - Module spécifique de périphériques Microsof.) -- C:\Windows\System32\Drivers\msdsm.sys [116096]
O44 - LFC:[MD5.912649A1B3F9E6ACB3899FBDABA2ED5F] - 22/12/2014 - 20:13:48 ---A- . (.Microsoft Corporation - Objet du service d’environnement Systray.) -- C:\Windows\System32\stobject.dll [228352]
O44 - LFC:[MD5.D528BC58A489409BA40334EBF96A311B] - 22/12/2014 - 20:13:48 ---A- . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\Windows\System32\Drivers\rdbss.sys [242688]
O44 - LFC:[MD5.919001D2BB17DF06CA3F8AC16AD039F6] - 22/12/2014 - 20:13:49 ---A- . (.Microsoft Corporation - Fusion 2.5.) -- C:\Windows\System32\sxs.dll [380416]
O44 - LFC:[MD5.EAB975DB4C2805927FE5BD047D05C9AA] - 22/12/2014 - 20:13:49 ---A- . (.Microsoft Corporation - Noyau des Connexions réseau.) -- C:\Windows\System32\netshell.dll [2494464]
O44 - LFC:[MD5.7FF15A4F092CD4A96055BA69F903E3E9] - 22/12/2014 - 20:13:49 ---A- . (.Microsoft Corporation - Windows Socket 2.0 32-Bit DLL.) -- C:\Windows\System32\ws2_32.dll [206848]
O44 - LFC:[MD5.E6D90DC604F407B3B5E0FD285E46B2A0] - 22/12/2014 - 20:13:51 ---A- . (.Microsoft Corporation - API de chiffrement de lecteur BitLocker Win.) -- C:\Windows\System32\fveapi.dll [271664]
O44 - LFC:[MD5.B85B0267A743607052263447E6091E8C] - 22/12/2014 - 20:13:51 ---A- . (.Microsoft Corporation - Infrastructure de ruban Windows.) -- C:\Windows\System32\UIRibbon.dll [2983424]
O44 - LFC:[MD5.A3901CD2E276484003C2944F78BEB80E] - 22/12/2014 - 20:13:51 ---A- . (.Microsoft Corporation - Programme d’installation des packs de langu.) -- C:\Windows\System32\lpksetup.exe [477696]
O44 - LFC:[MD5.D64AF876D53ECA3668BB97B51B4E70AB] - 22/12/2014 - 20:13:52 ---A- . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960]
O44 - LFC:[MD5.4470B0943469C4AF5B114E420DCB1AEF] - 22/12/2014 - 20:13:52 ---A- . (.Microsoft Corporation - SQL Server ODBC Driver.) -- C:\Windows\System32\sqlsrv32.dll [778240]
O44 - LFC:[MD5.80B562B5B59ED850C328DD75F964F3D8] - 22/12/2014 - 20:13:52 ---A- . (.Microsoft Corporation - VPNIKE Protocol Engine - Test dll.) -- C:\Windows\System32\vpnike.dll [242176]
O44 - LFC:[MD5.1B133875B8AA8AC48969BD3458AFE9F5] - 22/12/2014 - 20:13:53 ---A- . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\Windows\System32\Drivers\1394ohci.sys [164864]
O44 - LFC:[MD5.60B7C0FEAD45F2066E5B805A91F4F0FC] - 22/12/2014 - 20:13:53 ---A- . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\System32\calc.exe [776192]
O44 - LFC:[MD5.61D57A5D7C6D9AFE10E77DAE6E1B445E] - 22/12/2014 - 20:13:53 ---A- . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\Windows\System32\QAGENTRT.DLL [330240]
O44 - LFC:[MD5.81C0FA250EF6DC1C6B3FA2BCE81D6C2E] - 22/12/2014 - 20:13:54 ---A- . (.Microsoft Corporation - API de l’outil d’évaluation système Windows.) -- C:\Windows\System32\WinSATAPI.dll [335872]
O44 - LFC:[MD5.E87F5393F7D8CE2FACC4DFF703531392] - 22/12/2014 - 20:13:54 ---A- . (.Microsoft Corporation - GDI Client DLL.) -- C:\Windows\System32\gdi32.dll [304640]
O44 - LFC:[MD5.53AF1750FD45DDD705C9B68C7DC58827] - 22/12/2014 - 20:13:55 ---A- . (.Microsoft Corporation - DLL de rendu vidéo amélioré.) -- C:\Windows\System32\evr.dll [488448]
O44 - LFC:[MD5.0411B7958C524BB2E91EE1B3035FE321] - 22/12/2014 - 20:13:55 ---A- . (.Microsoft Corporation - DirectX Graphics Infrastructure.) -- C:\Windows\System32\dxgi.dll [508416]
O44 - LFC:[MD5.8B57A1AD493653BB57F281FE75DD175B] - 22/12/2014 - 20:13:55 ---A- . (.Microsoft Corporation - Natural Language Development Platform 6.) -- C:\Windows\System32\NaturalLanguage6.dll [801280]
O44 - LFC:[MD5.1C3E8371377E988B683797A132EFFE1B] - 22/12/2014 - 20:13:55 ---A- . (.Microsoft Corporation - Plug-in de compatibilité descendante du Pla.) -- C:\Windows\System32\taskcomp.dll [305152]
O44 - LFC:[MD5.53223B673A3FA2F9A4D1C31C8D3F6CD8] - 22/12/2014 - 20:13:55 ---A- . (.Microsoft Corporation - Windows Image Helper.) -- C:\Windows\System32\dbghelp.dll [854016]
O44 - LFC:[MD5.CEB46AB7C01C9F825F8CC6BABC18166A] - 22/12/2014 - 20:13:55 ---A- . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\Drivers\mrxdav.sys [115712]
O44 - LFC:[MD5.B47CD1B9551DA3DE9166D6DD17E6FD82] - 22/12/2014 - 20:13:56 ---A- . (.Microsoft Corporation - Fournisseur de services de chiffrement Micr.) -- C:\Windows\System32\basecsp.dll [144768]
O44 - LFC:[MD5.BFEBB6F76A0988A38260870C61A6D1B7] - 22/12/2014 - 20:13:56 ---A- . (.Microsoft Corporation - Media Foundation ReadWrite DLL.) -- C:\Windows\System32\mfreadwrite.dll [196608]
O44 - LFC:[MD5.8999B8631C7FD9F7F9EC3CAFD953BA24] - 22/12/2014 - 20:13:57 ---A- . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\Windows\System32\mswsock.dll [232448]
O44 - LFC:[MD5.871917B07A141BFF43D76D8844D48106] - 22/12/2014 - 20:13:57 ---A- . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\Drivers\http.sys [513536]
O44 - LFC:[MD5.E9E01EB683C132F7FA27CD607B8A2B63] - 22/12/2014 - 20:13:57 ---A- . (.Microsoft Corporation - Service client DHCP.) -- C:\Windows\System32\dhcpcore.dll [254464]
O44 - LFC:[MD5.5992A9DF57FD5E6960FDCC2DB69867F7] - 22/12/2014 - 20:13:58 ---A- . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll [2755072]
O44 - LFC:[MD5.971A36C4827AD1AE2A54E6407478921A] - 22/12/2014 - 20:13:58 ---A- . (.Microsoft Corporation - Bibliothèque de points de protection partag.) -- C:\Windows\System32\spp.dll [172544]
O44 - LFC:[MD5.108C2CFA5527458C096A699929ECBD80] - 22/12/2014 - 20:13:58 ---A- . (.Microsoft Corporation - Interface utilisateur du gestionnaire d’inf.) -- C:\Windows\System32\credui.dll [168960]
O44 - LFC:[MD5.4F2659160AFCCA990305816946F69407] - 22/12/2014 - 20:13:58 ---A- . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\Windows\System32\taskeng.exe [192000]
O44 - LFC:[MD5.75EA62927355189876081EF863064982] - 22/12/2014 - 20:14:00 ---A- . (.Microsoft Corporation - Indicateur d’état de la connectivité réseau.) -- C:\Windows\System32\ncsi.dll [152064]
O44 - LFC:[MD5.2F6C94BA73C976FAF939358D84E653E9] - 22/12/2014 - 20:14:00 ---A- . (.Microsoft Corporation - Module azroles.) -- C:\Windows\System32\azroles.dll [762880]
O44 - LFC:[MD5.1869BD251211FB6275067372A45682D6] - 22/12/2014 - 20:14:00 ---A- . (.Microsoft Corporation - PRS CPL.) -- C:\Windows\System32\werconcpl.dll [1063936]
O44 - LFC:[MD5.16F9DE9F9D122DBE0B6E7F28AFE3EE04] - 22/12/2014 - 20:14:01 ---A- . (.Microsoft Corporation - Application de démarrage Reprise à partir d.) -- C:\Windows\System32\winresume.exe [442720]
O44 - LFC:[MD5.245F4691314F42D4D1BC06442F0B2086] - 22/12/2014 - 20:14:01 ---A- . (.Microsoft Corporation - DLL Serveur SAM.) -- C:\Windows\System32\samsrv.dll [551424]
O44 - LFC:[MD5.E7C54812A2AAF43316EB6930C1FFA108] - 22/12/2014 - 20:14:02 ---A- . (.Microsoft Corporation - Pilote NDIS 6.20.) -- C:\Windows\System32\Drivers\ndis.sys [712576]
O44 - LFC:[MD5.912084381D30D8B89EC4E293053F4710] - 22/12/2014 - 20:14:03 ---A- . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) -- C:\Windows\System32\nlasvc.dll [242688]
O44 - LFC:[MD5.A8BB45F9ECAD993461E0FEF8E2A99152] - 22/12/2014 - 20:14:03 ---A- . (.Microsoft Corporation - DLL API LDAP Win32.) -- C:\Windows\System32\Wldap32.dll [269824]
O44 - LFC:[MD5.71D5EBEFC617B84E1136F3F0E07A88F5] - 22/12/2014 - 20:14:03 ---A- . (.Microsoft Corporation - Media Foundation Direct Show wrapper DLL.) -- C:\Windows\System32\mfds.dll [296448]
O44 - LFC:[MD5.F497F67932C6FA693D7DE2780631CFE7] - 22/12/2014 - 20:14:03 ---A- . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\Drivers\volsnap.sys [245632]
O44 - LFC:[MD5.12C45E3CB6D65F73209549E2D02ECA7A] - 22/12/2014 - 20:14:03 ---A- . (.Microsoft Corporation - Système de propriétés Microsoft.) -- C:\Windows\System32\propsys.dll [988160]
O44 - LFC:[MD5.1E2BAC209D184BB851E1A187D8A29136] - 22/12/2014 - 20:14:04 ---A- . (.Microsoft Corporation - Moteur de filtrage de base.) -- C:\Windows\System32\BFE.DLL [494592]
O44 - LFC:[MD5.D0481FB85BEEDD30A0884BE327880F80] - 22/12/2014 - 20:14:04 ---A- . (.Microsoft Corporation - WMI SDK Provider Framework.) -- C:\Windows\System32\framedynos.dll [206336]
O44 - LFC:[MD5.7660F01D3B38ACA1747E397D21D790AF] - 22/12/2014 - 20:14:07 ---A- . (.Microsoft Corporation - Distributed COM Services.) -- C:\Windows\System32\rpcss.dll [376832]
O44 - LFC:[MD5.AD7B9C14083B52BC532FBA5948342B98] - 22/12/2014 - 20:14:07 ---A- . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe [302592]
O44 - LFC:[MD5.D1DE1EAFDE97BE41CF6585027FF3E732] - 22/12/2014 - 20:14:08 ---A- . (.Microsoft Corporation - DLL commune de boîtes de dialogues.) -- C:\Windows\System32\comdlg32.dll [485888]
O44 - LFC:[MD5.4D65A07B795D6674312F879D09AA7663] - 22/12/2014 - 20:14:08 ---A- . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712]
O44 - LFC:[MD5.3A11396EAC2414012155AB14E5C1E332] - 22/12/2014 - 20:14:08 ---A- . (.Microsoft Corporation - Software Protection Platform Windows Plugin.) -- C:\Windows\System32\sppwinob.dll [412160]
O44 - LFC:[MD5.A9D880F97530D5B8FEE278923349929D] - 22/12/2014 - 20:14:09 ---A- . (.Microsoft Corporation - Fichier DLL du service DAV pour le Web.) -- C:\Windows\System32\WebClnt.dll [204800]
O44 - LFC:[MD5.E1068D2D6D4D3465E7C0CB4B2F08F9F5] - 22/12/2014 - 20:14:09 ---A- . (.Microsoft Corporation - OS Loader.) -- C:\Windows\System32\winload.exe [508904]
O44 - LFC:[MD5.CE3B4E731638D2EF62FCB419BE0D39F0] - 22/12/2014 - 20:14:09 ---A- . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [473600]
O44 - LFC:[MD5.D15618A0FF8DBC2C5BF3726BACC75A0B] - 22/12/2014 - 20:14:09 ---A- . (.Microsoft Corporation - Userenv.) -- C:\Windows\System32\userenv.dll [81920]
O44 - LFC:[MD5.9C8E9CAAF237E8CD8BEBDE700AAFF9E0] - 22/12/2014 - 20:14:09 ---A- . (.Microsoft Corporation - Xps Object Model in memory creation and des.) -- C:\Windows\System32\xpsservices.dll [1712640]
O44 - LFC:[MD5.34BEF0783E17E760BE6DBEFB888A94B8] - 22/12/2014 - 20:14:10 ---A- . (.Microsoft Corporation - Composant logiciel enfichable Certificats.) -- C:\Windows\System32\certmgr.dll [1555456]
O44 - LFC:[MD5.8CC3C111D653E96F3EA1590891491D71] - 22/12/2014 - 20:14:11 ---A- . (.Microsoft Corporation - Bibliothèque d’utilitaires légers du Shell.) -- C:\Windows\System32\shlwapi.dll [350208]
O44 - LFC:[MD5.E98278865E8DABA21CFE5FE4BE34210A] - 22/12/2014 - 20:14:11 ---A- . (.Microsoft Corporation - Composants API de l’appareil mobile Windows.) -- C:\Windows\System32\PortableDeviceApi.dll [547840]
O44 - LFC:[MD5.5232D090B7540F90E9BF6DDC2EBB5CA2] - 22/12/2014 - 20:14:11 ---A- . (.Microsoft Corporation - Resource cache builder tool.) -- C:\Windows\System32\mcbuilder.exe [220672]
O44 - LFC:[MD5.4AE380F39A0032EAB7DD953030B26D28] - 22/12/2014 - 20:14:12 ---A- . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664]
O44 - LFC:[MD5.421D9645B72CD341ECDBB0FCE06C97DE] - 22/12/2014 - 20:14:12 ---A- . (.Microsoft Corporation - Software Protection Platform Plugins.) -- C:\Windows\System32\sppobjs.dll [974336]
O44 - LFC:[MD5.7A82634C75F5CD12EFCF43897A2E28CE] - 22/12/2014 - 20:14:13 ---A- . (.Microsoft Corporation - API d’acquisition d’images du système de fi.) -- C:\Windows\System32\imapi2fs.dll [732160]
O44 - LFC:[MD5.B350525D71B42CF9366AF7443BBA21E6] - 22/12/2014 - 20:14:13 ---A- . (.Microsoft Corporation - Client Gestion des droits Windows.) -- C:\Windows\System32\msdrm.dll [341504]
O44 - LFC:[MD5.CDD35C1CE1EBFE80C055691CDC8DF443] - 22/12/2014 - 20:14:13 ---A- . (.Microsoft Corporation - Interface utilisateur d’authentification Wi.) -- C:\Windows\System32\authui.dll [1792000]
O44 - LFC:[MD5.653CF8E759C4B13C5507B70BD383F158] - 22/12/2014 - 20:14:14 ---A- . (.Microsoft Corporation - DLL du Gestionnaire de nœud MMC.) -- C:\Windows\System32\mmcndmgr.dll [2151936]
O44 - LFC:[MD5.C02F50BBC064689FE3FCD89348C884EB] - 22/12/2014 - 20:14:14 ---A- . (.Microsoft Corporation - Extensible Performance Counter Shim.) -- C:\Windows\System32\netfxperf.dll [49488]
O44 - LFC:[MD5.4C1E16B9A53102C8D6FBA587CBCB95DE] - 22/12/2014 - 20:14:14 ---A- . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll [257024]
O44 - LFC:[MD5.8AEA9A37C1A3565A204D37C5E72AB791] - 22/12/2014 - 20:14:14 ---A- . (.Microsoft Corporation - Service du gestionnaire de session locale.) -- C:\Windows\System32\lsm.exe [267776]
O44 - LFC:[MD5.C9FB8C3D650EF8BD76865EC20A19A5BC] - 22/12/2014 - 20:14:15 ---A- . (.Microsoft - Filtre du convertisseur RDP (redirecteur).) -- C:\Windows\System32\DShowRdpFilter.dll [252928]
O44 - LFC:[MD5.954EA9B34F155C844B11F4047A8F6F89] - 22/12/2014 - 20:14:15 ---A- . (.Microsoft Corporation - API UPnP de Point de contrôle.) -- C:\Windows\System32\upnp.dll [206848]
O44 - LFC:[MD5.95E2376B3323F062EB562B8586D0F14A] - 22/12/2014 - 20:14:15 ---A- . (.Microsoft Corporation - API avancées Windows 32.) -- C:\Windows\System32\advapi32.dll [640512]
O44 - LFC:[MD5.63B282FB2550893724647A359BA2323F] - 22/12/2014 - 20:14:16 ---A- . (.Microsoft Corporation - DLL de l’utilitaire d’indexation du contenu.) -- C:\Windows\System32\Query.dll [1363456]
O44 - LFC:[MD5.1B91CD34EA3A90AB6A4EF0550174F4CC] - 22/12/2014 - 20:14:16 ---A- . (.Microsoft Corporation - Service WSMan.) -- C:\Windows\System32\WsmSvc.dll [1175040]
O44 - LFC:[MD5.6D13E1406F50C66E2A95D97F22C47560] - 22/12/2014 - 20:14:17 ---A- . (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\winlogon.exe [286720]
O44 - LFC:[MD5.F1DD3ACAEE5E6B4BBC69BC6DF75CEF66] - 22/12/2014 - 20:14:17 ---A- . (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\user32.dll [811520]
O44 - LFC:[MD5.402D0425A26A0660BC1299A5854A4785] - 22/12/2014 - 20:14:17 ---A- . (.Microsoft Corporation - Windows Media Video Decoder.) -- C:\Windows\System32\WMVDECOD.DLL [1619456]
O44 - LFC:[MD5.1DB71A41DAEE6B3F8CD0DDA8209FA2D5] - 22/12/2014 - 20:14:18 ---A- . (.Microsoft Corporation - Microsoft Windows Codecs Library.) -- C:\Windows\System32\WindowsCodecs.dll [1010688]
O44 - LFC:[MD5.1FF7E4F548C7C372C804938F0D5B36AE] - 22/12/2014 - 20:14:18 ---A- . (.Microsoft Corporation - Objets de configuration du réseau.) -- C:\Windows\System32\netcfgx.dll [406528]
O44 - LFC:[MD5.C1809B9907ADEDAF16F50C894100883B] - 22/12/2014 - 20:14:19 ---A- . (.Microsoft Corporation - DLL des services Net Logon.) -- C:\Windows\System32\netlogon.dll [563712]
O44 - LFC:[MD5.33D933951E1DD39BA9A973CA5651BC90] - 22/12/2014 - 20:14:19 ---A- . (.Microsoft Corporation - Direct3D 11 Runtime.) -- C:\Windows\System32\d3d11.dll [522752]
O44 - LFC:[MD5.209A3B1901B83AEB8527ED211CCE9E4C] - 22/12/2014 - 20:14:19 ---A- . (.Microsoft Corporation - Service de cliché instantané de volumes Mic.) -- C:\Windows\System32\VSSVC.exe [1025536]
O44 - LFC:[MD5.8E8C92DD50F6B34907813AFDC0C8F7DD] - 22/12/2014 - 20:14:19 ---A- . (.Microsoft Corporation - Windows Symbolic Debugger Engine.) -- C:\Windows\System32\dbgeng.dll [2522624]
O44 - LFC:[MD5.59D16C3D5CC0D573256A01783ED5CCB4] - 22/12/2014 - 20:14:20 ---A- . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [2291712]
O44 - LFC:[MD5.863F793D15B4026B1A5FDECA873D4D84] - 22/12/2014 - 20:14:21 ---A- . (.Microsoft Corporation - Fichier DLL du client de compatibilité des.) -- C:\Windows\System32\apphelp.dll [295936]
O44 - LFC:[MD5.10FB16B50AFFDA6D44588F3C445DC273] - 22/12/2014 - 20:14:21 ---A- . (.Microsoft Corporation - Installation de L’API Windows.) -- C:\Windows\System32\setupapi.dll [1667584]
O44 - LFC:[MD5.CA9F7888B524D8100B977C81F44C3234] - 22/12/2014 - 20:14:21 ---A- . (.Microsoft Corporation - Services HTTP Windows.) -- C:\Windows\System32\winhttp.dll [351232]
O44 - LFC:[MD5.04B88428A872390D235BE52D38A9D4EF] - 22/12/2014 - 20:14:22 ---A- . (.Microsoft Corporation - API de configuration 802.3.) -- C:\Windows\System32\dot3api.dll [91136]
O44 - LFC:[MD5.8DCB990113DEF9255445B17D7F6DA64A] - 22/12/2014 - 20:14:22 ---A- . (.Microsoft Corporation - Plugin MF RDP.) -- C:\Windows\System32\tsmf.dll [270848]
O44 - LFC:[MD5.BD2978E85EF0007A89F7BB1367C007DD] - 22/12/2014 - 20:14:23 ---A- . (.Microsoft Corporation - Composant Connexion RemoteApp et Bureau à d.) -- C:\Windows\System32\TSWorkspace.dll [597504]
O44 - LFC:[MD5.886B0EAA3B0FE76B3204E687C8DA6F66] - 22/12/2014 - 20:14:23 ---A- . (.Microsoft Corporation - Outil d’évaluation du système Windows.) -- C:\Windows\System32\WinSAT.exe [3367424]
O44 - LFC:[MD5.732488BDBE0FC1B6D1AC9DD1D6CDE282] - 22/12/2014 - 20:14:24 ---A- . (.Microsoft Corporation - Nettoyage du Service Pack.) -- C:\Windows\System32\scavengeui.dll [136704]
O44 - LFC:[MD5.ECF036299AA554B5E0455262857B39D0] - 22/12/2014 - 20:14:25 ---A- . (.Microsoft Corporation - Diagnostics de performances Microsoft.) -- C:\Windows\System32\diagperf.dll [863744]
O44 - LFC:[MD5.691E3285E53DCA558E1A84667F13E15A] - 22/12/2014 - 20:14:25 ---A- . (.Microsoft Corporation - Exécutable du service de moteur de sauvegar.) -- C:\Windows\System32\wbengine.exe [1203200]
O44 - LFC:[MD5.9835584E999D25004E1EE8E5F3E3B881] - 22/12/2014 - 20:14:25 ---A- . (.Microsoft Corporation - Service de protection Microsoft.) -- C:\Windows\System32\MPSSVC.dll [566272]
O44 - LFC:[MD5.497E59D9F01C6F247E72222A61835119] - 22/12/2014 - 20:14:26 ---A- . (.Microsoft Corporation - Bibliothèque principale du Gestionnaire de.) -- C:\Windows\System32\dwmcore.dll [1371136]
O44 - LFC:[MD5.7D34AF98A706230CC2DEDFE0CABF87AB] - 22/12/2014 - 20:14:26 ---A- . (.Microsoft Corporation - ODBC Driver Manager.) -- C:\Windows\System32\odbc32.dll [573440]
O44 - LFC:[MD5.E897EAF5ED6BA41E081060C9B447A673] - 22/12/2014 - 20:14:27 ---A- . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408]
O44 - LFC:[MD5.6400774E903729ADD0A62A24A334EE56] - 22/12/2014 - 20:14:27 ---A- . (.Microsoft Corporation - Runtime d’appel de procédure distante.) -- C:\Windows\System32\rpcrt4.dll [653312]
O44 - LFC:[MD5.61B1ED5F429EFAC7E2036769870AB93E] - 22/12/2014 - 20:14:28 ---A- . (.Microsoft Corporation - Client Microsoft® Active Directory Certific.) -- C:\Windows\System32\certcli.dll [342016]
O44 - LFC:[MD5.590D5C506044FE02FF7643E32FF9BDAC] - 22/12/2014 - 20:14:28 ---A- . (.Microsoft Corporation - DLL du rapport d’erreurs Windows.) -- C:\Windows\System32\wer.dll [381440]
O44 - LFC:[MD5.382C804C92811BE57829D8E550A900E2] - 22/12/2014 - 20:14:28 ---A- . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [521216]
O44 - LFC:[MD5.68B4A549D0B56A4DD9A488751037CF09] - 22/12/2014 - 20:14:29 ---A- . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\System32\mstsc.exe [1049600]
O44 - LFC:[MD5.23E9DCEE1D2BBA23EA5B50F76F633A0A] - 22/12/2014 - 20:14:29 ---A- . (.Microsoft Corporation - SP Installer.) -- C:\Windows\System32\spinstall.exe [456192]
O44 - LFC:[MD5.D0804290B30C58652724344365C89D12] - 22/12/2014 - 20:14:29 ---A- . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\spreview.exe [280576]
O44 - LFC:[MD5.544EFF88AC6C85DF5A4D6F18DFE08CFC] - 22/12/2014 - 20:14:32 ---A- . (.Microsoft Corporation - API COM du Planificateur de tâches.) -- C:\Windows\System32\taskschd.dll [505856]
O44 - LFC:[MD5.F95622F161474511B8D80D6B093AA610] - 22/12/2014 - 20:14:32 ---A- . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [674304]
O44 - LFC:[MD5.6EF5F3F18413C367195F06E503AB86A6] - 22/12/2014 - 20:14:33 ---A- . (.Microsoft Corporation - Direct3D 9 Runtime.) -- C:\Windows\System32\d3d9.dll [1828352]
O44 - LFC:[MD5.13337A3FB17F2242487FD45488ED0485] - 22/12/2014 - 20:14:34 ---A- . (.Microsoft Corporation - Microsoft® Volume Shadow Copy Requestor/Wri.) -- C:\Windows\System32\vssapi.dll [1128448]
O44 - LFC:[MD5.6581B52E133CC6D00661C58968C7E212] - 22/12/2014 - 20:14:34 ---A- . (.Microsoft Corporation - SearchFolder.) -- C:\Windows\System32\SearchFolder.dll [646144]
O44 - LFC:[MD5.241E015DD809CFB23242F890B1FC575B] - 22/12/2014 - 20:14:35 ---A- . (.Microsoft Corporation - Service journal des événements.) -- C:\Windows\System32\wevtsvc.dll [1086976]
O44 - LFC:[MD5.E2A17BCC08D92F42E08AF6BA2F93ABA7] - 22/12/2014 - 20:14:36 ---A- . (.Microsoft Corporation - ExplorerFrame.) -- C:\Windows\System32\ExplorerFrame.dll [1493504]
O44 - LFC:[MD5.928CF7268086631F54C3D8E17238C6DD] - 22/12/2014 - 20:14:36 ---A- . (.Microsoft Corporation - Microsoft OLE pour Windows.) -- C:\Windows\System32\ole32.dll [1414144]
O44 - LFC:[MD5.E585445D5021971FAE10393F0F1C3961] - 22/12/2014 - 20:14:37 ---A- . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728]
O44 - LFC:[MD5.B8CBB46B42570D373C9933FBDF25EBCE] - 22/12/2014 - 20:14:38 ---A- . (...) -- C:\Windows\System32\systemsf.ebd [146852]
O44 - LFC:[MD5.8371F19E329B6CD650A6A9E9BF41EB2D] - 22/12/2014 - 20:14:38 ---A- . (.Microsoft Corporation - RDP Display Driver.) -- C:\Windows\System32\rdpdd.dll [213504]
O44 - LFC:[MD5.13A1F9A72F81509658F3E0B6AC2AD994] - 22/12/2014 - 20:14:40 ---A- . (.Microsoft Corporation - Microsoft.WindowsFirewall.SnapIn.) -- C:\Windows\System32\AuthFWSnapin.dll [5066752]
O44 - LFC:[MD5.198366199A9F342EF87978D79308B49F] - 22/12/2014 - 20:14:41 ---A- . (.Microsoft Corporation - Moteur de calcul des mesures d’analyse de f.) -- C:\Windows\System32\RacEngn.dll [1115136]
O44 - LFC:[MD5.A04BB13F8A72F8B6E8B4071723E4E336] - 22/12/2014 - 20:14:42 ---A- . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592]
O44 - LFC:[MD5.0C4E035C7F105F1299258C90886C64C5] - 22/12/2014 - 20:14:44 ---A- . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\Drivers\hwpolicy.sys [14208]
O44 - LFC:[MD5.CB7A9ABB12B8415BCE5D74994C7BA3AE] - 22/12/2014 - 20:14:44 ---A- . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\Drivers\msiscsi.sys [233344]
O44 - LFC:[MD5.1957D49A9613FAAD1C73B508CCE02AA5] - 22/12/2014 - 20:14:45 ---A- . (.Microsoft Corporation - Windows Media Player.) -- C:\Windows\System32\wmp.dll [11410432]
O44 - LFC:[MD5.A2AEEAB451AD341070F9B8F8E1A2EC28] - 22/12/2014 - 20:14:45 ---A- . (.Microsoft Corporation - Windows Presentation Foundation Host Proxy.) -- C:\Windows\System32\PresentationHostProxy.dll [99176]
O44 - LFC:[MD5.6A08F1C87BBF6197F5DAD95CF41E5175] - 22/12/2014 - 20:14:45 ---A- . (.Microsoft Corporation - Windows Presentation Foundation Host.) -- C:\Windows\System32\PresentationHost.exe [295264]
O44 - LFC:[MD5.29BC473072568C072EC8B176498DE996] - 22/12/2014 - 20:14:48 ---A- . (.Microsoft Corporation - Client d’inscription des services de certif.) -- C:\Windows\System32\CertEnroll.dll [1334272]
O44 - LFC:[MD5.82FA3C4C5752C7F630FA39005B2FC8C8] - 22/12/2014 - 20:14:48 ---A- . (.Microsoft Corporation - Intel Microcode Update Library.) -- C:\Windows\System32\mcupdate_GenuineIntel.dll [520064]
O44 - LFC:[MD5.FDBA1DEC4F9BE4274A00B9B850C63484] - 22/12/2014 - 20:14:49 ---A- . (.Microsoft Corporation - DLL Media Foundation.) -- C:\Windows\System32\mf.dll [3207680]
O44 - LFC:[MD5.283E4E276D023DC20E7C9F8DFB4A3204] - 22/12/2014 - 20:14:51 ---A- . (.Microsoft Corporation - Interface utilisateur de l’Assistant SPC.) -- C:\Windows\System32\spwizui.dll [253952]
O44 - LFC:[MD5.D83947A58613E9091B4C9CC0F1546A8D] - 22/12/2014 - 20:14:51 ---A- . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [297808]
O44 - LFC:[MD5.23FBEA5DCE05E2A848483A9AB6256E9E] - 22/12/2014 - 20:14:54 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate.exe [322048]
O44 - LFC:[MD5.716A8BB33CE8EA28D57FC3050D8C027F] - 22/12/2014 - 20:14:56 ---A- . (.Microsoft Corporation - Windows Rights Management Desktop Security.) -- C:\Windows\System32\secproc.dll [428032]
O44 - LFC:[MD5.49E29F981428DA9FA5FC264E0A7C8935] - 22/12/2014 - 20:14:56 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate_isv.exe [327168]
O44 - LFC:[MD5.B5842E6BCD0CFDCA40795EEB33042E4E] - 22/12/2014 - 20:14:58 ---A- . (.Microsoft Corporation - Windows Rights Management Desktop Security.) -- C:\Windows\System32\secproc_isv.dll [423936]
O44 - LFC:[MD5.36650D618CA34C9D357DFD3D89B2C56F] - 22/12/2014 - 20:15:00 ---A- . (.Microsoft Corporation - Hôte de service Superfetch.) -- C:\Windows\System32\sysmain.dll [1159168]
O44 - LFC:[MD5.AB9EB3745B03AE67AB241A82338DEA7B] - 22/12/2014 - 20:15:02 ---A- . (.Microsoft Corporation - Bibliothèque partagée MFCDLL - Version comm.) -- C:\Windows\System32\mfc40u.dll [954288]
O44 - LFC:[MD5.2A6C1373D88B6D5933383B9F5C034CB9] - 22/12/2014 - 20:15:03 ---A- . (.Microsoft Corporation - Bibliothèque partagée MFCDLL - Version comm.) -- C:\Windows\System32\mfc40.dll [954752]
O44 - LFC:[MD5.78B7A3BDA25C90DAA50D36A56A8D1351] - 22/12/2014 - 20:15:04 ---A- . (.Microsoft Corporation - Direct3D 10 Rasterizer.) -- C:\Windows\System32\d3d10warp.dll [1171456]
O44 - LFC:[MD5.B78AF77C0F1627969DAB04E17870618C] - 22/12/2014 - 20:15:10 ---A- . (.Microsoft Corporation - Extension de stratégie de groupe pour la re.) -- C:\Windows\System32\TsUsbRedirectionGroupPolicyExtension.dll [11776]
O44 - LFC:[MD5.FD1D6C73E6333BE727CBCC6054247654] - 22/12/2014 - 20:15:10 ---A- . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\Windows\System32\Drivers\TsUsbFlt.sys [52224]
O44 - LFC:[MD5.518318A103C888001054EFA1236E5033] - 22/12/2014 - 20:15:17 ---A- . (.Microsoft Corporation - Bibliothèque d'assistance au déploiement de.) -- C:\Windows\System32\dfshim.dll [1130824]
O44 - LFC:[MD5.C04E8D0509505AB8D8C5623E94458831] - 23/12/2014 - 17:40:47 ---A- . (.Microsoft Corporation - Microsoft Class Mini-driver.) -- C:\Windows\System32\msclmd.dll [152576]
O44 - LFC:[MD5.42A05B9A151F1021361719EBE758F1E8] - 23/12/2014 - 19:28:42 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [436688]
O44 - LFC:[MD5.CA13972EF57130E7D4B900C1174F015F] - 23/12/2014 - 19:37:34 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1694208]
O44 - LFC:[MD5.5A71A665659E6A38D65C5C0E692315CB] - 23/12/2014 - 19:37:34 ---A- . (...) -- C:\Windows\System32\perfc009.dat [124144]
O44 - LFC:[MD5.E5673A43CDAE4C683B0FB5D120AE177A] - 23/12/2014 - 19:37:34 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [153830]
O44 - LFC:[MD5.E2AFE6A101524CC055A34C7633A30138] - 23/12/2014 - 19:37:34 ---A- . (...) -- C:\Windows\System32\perfh009.dat [662950]
O44 - LFC:[MD5.DDD9C54494E9AAE26E7076A53F0C2C84] - 23/12/2014 - 19:37:34 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [759200]
O44 - LFC:[MD5.F419D738BD2AE58D9DF2F9FEB5F43842] - 28/12/2014 - 13:33:08 ---A- . (.Microsoft Corporation - Windows Update Application Launcher.) -- C:\Windows\System32\wuapp.exe [33792]
O44 - LFC:[MD5.5AA2CAD923E9E647276A61387E83DDD0] - 28/12/2014 - 13:33:09 ---A- . (.Microsoft Corporation - Windows Update Vista Web Control.) -- C:\Windows\System32\wuwebv.dll [179656]
O44 - LFC:[MD5.867148EBF47E7E7E7B21C07B4A981929] - 28/12/2014 - 13:33:25 ---A- . (.Microsoft Corporation - API du client Windows Update.) -- C:\Windows\System32\wuapi.dll [581600]
O44 - LFC:[MD5.372218B80DEF827063049EBEE76B7501] - 28/12/2014 - 13:33:25 ---A- . (.Microsoft Corporation - Windows Update WUDriver Stub.) -- C:\Windows\System32\wudriver.dll [92672]
O44 - LFC:[MD5.255F0417EC31C71585824269522EC8E9] - 28/12/2014 - 13:33:26 ---A- . (.Microsoft Corporation - Windows Update client proxy stub.) -- C:\Windows\System32\wups.dll [36320]
O44 - LFC:[MD5.D9B0134913E5EF007AF82A418C503322] - 28/12/2014 - 13:33:53 ---A- . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1973728]
O44 - LFC:[MD5.EC6E2DB67695966DF22CF5EBEFC1D305] - 28/12/2014 - 13:33:53 ---A- . (.Microsoft Corporation - Expérience utilisateur du client Windows Up.) -- C:\Windows\System32\wucltux.dll [2425856]
O44 - LFC:[MD5.459E257F8915D44B23ACB46211FD45D0] - 28/12/2014 - 13:33:54 ---A- . (.Microsoft Corporation - Windows Update client proxy stub 2.) -- C:\Windows\System32\wups2.dll [45536]
O44 - LFC:[MD5.072678E0D68E9C3A7960328671134C7B] - 28/12/2014 - 13:33:54 ---A- . (.Microsoft Corporation - Windows Update.) -- C:\Windows\System32\wuauclt.exe [54240]
O44 - LFC:[MD5.0D52BAFFACAA0ADCEDE58B4ADFBD4AB8] - 29/12/2014 - 17:21:59 ---A- . (...) -- C:\Windows\PFRO.log [816]
O44 - LFC:[MD5.6466BDF1BD5A2E34A073D8BFBA78D314] - 29/12/2014 - 17:22:10 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.D74E3C688AA4F552EB9F55CB8EA67170] - 29/12/2014 - 17:22:22 ---A- . (...) -- C:\Windows\setupact.log [56]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 29/12/2014 - 17:22:22 ---A- . (...) -- C:\Windows\setuperr.log [0]
O44 - LFC:[MD5.4B15F5F0758015E186C1BED5266DF7DD] - 29/12/2014 - 17:34:21 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1627606]
~ Files: 726 Scanned in 00mn 46s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
~ LSA: 8 Scanned in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ CSB: 13 Scanned in 00mn 00s



---\\ Clé de registre Shell MountPoints2 (MPSK) (O51)
O51 - MPSK:{6972e9eb-792d-11df-b707-a26b56f9f201}\AutoRun\command. (...) -- E:\WD SmartWare.exe (.not file.)
O51 - MPSK:{6972e9ff-792d-11df-b707-a26b56f9f201}\AutoRun\command. (...) -- I:\WD SmartWare.exe (.not file.)
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ TDSD: 3 Scanned in 00mn 00s



---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ MSCP: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "SoftwareSASGeneration"=1
~ MWPS: 17 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "AllowLegacyWebView"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "AllowUnhashedWebView"=1
~ MWPE Keys: 2 Scanned in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [422976]
O58 - SDL:14/07/2009 - 02:26:17 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [297552]
O58 - SDL:14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\Drivers\adpu320.sys [146512]
O58 - SDL:02/10/2009 - 09:59:16 ---A- . (.ITETech - AF9015 BDA Driver.) -- C:\Windows\System32\Drivers\AF15BDA.sys [489952]
O58 - SDL:14/07/2009 - 02:26:15 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\Drivers\aliide.sys [14400]
O58 - SDL:11/03/2011 - 06:38:37 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [80256]
O58 - SDL:14/07/2009 - 02:26:15 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows fa.) -- C:\Windows\System32\Drivers\amdsbs.sys [159312]
O58 - SDL:11/03/2011 - 06:38:37 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [22400]
O58 - SDL:14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [76368]
O58 - SDL:14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [86608]
O58 - SDL:23/11/2014 - 20:58:11 ---A- . (...) -- C:\Windows\System32\Drivers\aswHwid.sys [24184] =>.ALWIL Software
O58 - SDL:23/11/2014 - 20:58:11 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\System32\Drivers\aswMonFlt.sys [70384]
O58 - SDL:28/11/2011 - 18:52:19 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\System32\Drivers\aswRdr.sys [34392]
O58 - SDL:23/11/2014 - 20:58:11 ---A- . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\Drivers\aswRdr2.sys [81768]
O58 - SDL:23/11/2014 - 20:58:11 ---A- . (...) -- C:\Windows\System32\Drivers\aswRvrt.sys [49944] =>.ALWIL Software
O58 - SDL:26/11/2014 - 16:57:15 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\Drivers\aswsnx.sys [787800]
O58 - SDL:26/11/2014 - 16:57:03 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\Drivers\aswsp.sys [423784]
O58 - SDL:23/11/2014 - 20:58:12 ---A- . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\Drivers\aswStm.sys [91496]
O58 - SDL:23/11/2014 - 20:58:12 ---A- . (...) -- C:\Windows\System32\Drivers\aswVmm.sys [206248] =>.ALWIL Software
O58 - SDL:05/08/2011 - 11:02:46 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\System32\Drivers\athr.sys [2203648]
O58 - SDL:13/07/2009 - 23:02:49 ---A- . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gigabit Ethernet..) -- C:\Windows\System32\Drivers\b57nd60x.sys [229888]
O58 - SDL:13/07/2009 - 23:53:28 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltLo.sys [13568]
O58 - SDL:13/07/2009 - 23:53:28 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [5248]
O58 - SDL:14/07/2009 - 01:57:25 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\BrSerId.sys [272128]
O58 - SDL:13/07/2009 - 23:53:32 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\Drivers\BrSerWdm.sys [62336]
O58 - SDL:13/07/2009 - 23:53:33 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\Drivers\BrUsbMdm.sys [12160]
O58 - SDL:13/07/2009 - 23:53:33 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\Drivers\BrUsbSer.sys [11904]
O58 - SDL:13/07/2009 - 23:02:48 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbdx.sys [430080]
O58 - SDL:05/10/2006 - 03:42:42 ----- . (.Sonic Solutions - CDR4 CD and DVD Place Holder Driver (see PxHelp).) -- C:\Windows\System32\Drivers\cdr4_xp.sys [2432]
O58 - SDL:05/10/2006 - 03:42:42 ----- . (.Sonic Solutions - CDRAL Place Holder Driver (see PxHelp).) -- C:\Windows\System32\Drivers\cdralw2k.sys [2560]
O58 - SDL:14/07/2009 - 02:26:21 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\cmdide.sys [15952]
O58 - SDL:14/07/2009 - 02:20:28 ---A- . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\Drivers\djsvs.sys [70720]
O58 - SDL:14/07/2009 - 02:20:28 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [453712]
O58 - SDL:13/07/2009 - 23:02:48 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbdx.sys [3100160]
O58 - SDL:13/07/2009 - 23:54:14 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [26624]
O58 - SDL:14/07/2009 - 02:20:28 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [67152]
O58 - SDL:04/06/2009 - 10:43:16 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\Drivers\iaStor.sys [330264]
O58 - SDL:11/03/2011 - 06:38:51 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\Drivers\iaStorV.sys [332160]
O58 - SDL:31/03/2010 - 14:39:26 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdkmd32.sys [8744448]
O58 - SDL:14/07/2009 - 02:20:36 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [41040]
O58 - SDL:08/01/2010 - 02:09:14 ---A- . (.Intel(R) Corporation - Intel(R) High Definition Audio HDMI.) -- C:\Windows\System32\Drivers\IntcHdmi.sys [126976]
O58 - SDL:24/07/2009 - 15:20:28 ---A- . (.Initio Corporation - Initio Default Vendor Specific Device Driver.) -- C:\Windows\System32\Drivers\ivusb.sys [25112]
O58 - SDL:14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_fc.sys [95824]
O58 - SDL:14/07/2009 - 02:20:37 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [89168]
O58 - SDL:14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [54864]
O58 - SDL:14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [96848]
O58 - SDL:14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7 for x86.) -- C:\Windows\System32\Drivers\megasas.sys [30800]
O58 - SDL:14/07/2009 - 02:20:36 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [235584]
O58 - SDL:14/07/2009 - 02:20:44 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [44624]
O58 - SDL:28/06/2007 - 11:44:58 ---A- . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\Drivers\nmwcd.sys [137216]
O58 - SDL:28/06/2007 - 11:44:16 ---A- . (.Nokia - Nokia USB Phone Generic Client.) -- C:\Windows\System32\Drivers\nmwcdc.sys [8320]
O58 - SDL:11/03/2011 - 06:39:00 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [117120]
O58 - SDL:11/03/2011 - 06:39:00 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [143744]
O58 - SDL:23/02/2008 - 03:38:33 ----- . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- C:\Windows\System32\Drivers\pxhelp20.sys [43872]
O58 - SDL:14/07/2009 - 02:19:04 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\Drivers\ql2300.sys [1383488]
O58 - SDL:14/07/2009 - 02:19:04 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\ql40xx.sys [106064]
O58 - SDL:20/08/2009 - 23:04:54 ---A- . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Driver.) -- C:\Windows\System32\Drivers\Rt86win7.sys [189440]
O58 - SDL:19/08/2009 - 02:30:42 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\RTKVHDA.sys [2752352]
O58 - SDL:25/11/2010 - 05:59:16 ---A- . (.Realtek Semiconductor Corporation - Realtek RTL8192S USB NDIS Driver.) -- C:\Windows\System32\Drivers\RTL8192su.sys [603240]
O58 - SDL:28/05/2009 - 07:38:12 ---A- . (.SAMSUNG ELECTRONICS - SAMSUNG Kernel Driver.) -- C:\Windows\System32\Drivers\SABI.sys [10752]
O58 - SDL:13/07/2009 - 21:50:20 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [20480]
O58 - SDL:28/01/2004 - 15:03:26 ---A- . (.Texas Instruments Incorporated - SilvrLnk.sys.) -- C:\Windows\System32\Drivers\SilvrLnk.sys [21456]
O58 - SDL:14/07/2009 - 02:19:04 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [40016]
O58 - SDL:14/07/2009 - 02:19:04 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [77888]
O58 - SDL:14/07/2009 - 02:19:04 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [21072]
O58 - SDL:26/02/2010 - 09:33:00 ---A- . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\Drivers\SynTP.sys [242992]
O58 - SDL:28/09/2010 - 15:44:52 ---A- . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\Drivers\usbaapl.sys [41984]
O58 - SDL:14/07/2009 - 02:19:10 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [16976]
O58 - SDL:14/07/2009 - 02:19:11 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [141904]
O58 - SDL:13/02/2009 - 10:02:52 ---A- . (.Western Digital Technologies - WD SCSI Architecture Model (SAM) driver.) -- C:\Windows\System32\Drivers\wdcsam.sys [11520]
O58 - SDL:13/07/2009 - 22:40:41 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:13/07/2009 - 22:40:44 ---A- . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:13/07/2009 - 22:40:40 ---A- . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:13/07/2009 - 22:40:43 ---A- . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:13/07/2009 - 22:40:43 ---A- . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:13/07/2009 - 22:40:23 ---A- . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:13/07/2009 - 22:40:31 ---A- . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:13/07/2009 - 22:40:35 ---A- . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:13/07/2009 - 22:40:39 ---A- . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:13/07/2009 - 22:40:27 ---A- . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:13/07/2009 - 22:40:11 ---A- . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:13/07/2009 - 22:40:15 ---A- . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:13/07/2009 - 22:40:17 ---A- . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:13/07/2009 - 22:40:19 ---A- . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:13/07/2009 - 22:40:13 ---A- . (...) -- C:\Windows\System32\NTIO804.SYS [34672]
~ Drivers: 85 Scanned in 00mn 58s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 29/12/2014 - 17:43:38 ---A- . (.Nicolas Coolman.) -- C:\Users\Nanou\Downloads\ZHPDiag2(1).exe [6867801] =>.Nicolas Coolman
O61 - LFC: 29/12/2014 - 17:43:38 ---A- . (.Nicolas Coolman.) -- C:\Users\Nanou\Downloads\ZHPDiag2-2014.12.25.178.exe [5243904] =>.Nicolas Coolman
O61 - LFC: 29/12/2014 - 17:43:38 ---A- . (.Nicolas Coolman.) -- C:\Users\Nanou\Downloads\ZHPDiag2.exe [6304096] =>.Nicolas Coolman
~ 26 Fichiers temporaires (Temporary files)
~ 11 Fichiers cookies (Cookies files)
~ Files: 3 Scanned in 00mn 28s



---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Liste les services legacy du registre (LALS) (O64)
O64 - Services: CurCS - 23/11/2014 - C:\Windows\system32\drivers\aswHwid.sys (aswHwid) .(...) - LEGACY_ASWHWID
O64 - Services: CurCS - 23/11/2014 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT
O64 - Services: CurCS - 23/11/2014 - C:\Windows\system32\drivers\aswRdr2.sys (aswRdr) .(.AVAST Software - avast! WFP Redirect Driver.) - LEGACY_ASWRDR
O64 - Services: CurCS - 23/11/2014 - C:\Windows\System32\Drivers\aswRvrt.sys (aswRvrt) .(...) - LEGACY_ASWRVRT
O64 - Services: CurCS - 26/11/2014 - C:\Windows\system32\drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX
O64 - Services: CurCS - 26/11/2014 - C:\Windows\system32\drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP
O64 - Services: CurCS - 23/11/2014 - C:\Windows\System32\Drivers\aswVmm.sys (aswVmm) .(...) - LEGACY_ASWVMM
O64 - Services: CurCS - 28/05/2009 - C:\windows\system32\Drivers\SABI.sys (SABI) .(.SAMSUNG ELECTRONICS - SAMSUNG Kernel Driver.) - LEGACY_SABI
O64 - Services: CurCS - 13/07/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
O64 - Services: CurCS - 14/10/2009 - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys (TuneUpUtilitiesDrv) .(.TuneUp Software - TuneUp Utilities Driver.) - LEGACY_TUNEUPUTILITIESDRV
O64 - Services: CurCS - 23/11/2014 - C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys (VBoxAswDrv) .(.Avast Software - VirtualBox Support Driver.) - LEGACY_VBOXASWDRV
~ Legacy: 98 Scanned in 00mn 00s



---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
~ FASS Keys: 11 Scanned in 00mn 00s



---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: C:\Users\Nanou\AppData\Roaming\Mozilla\Firefox\Profiles\rld6zihy.default\searchplugins\conduit.xml
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.AboutPrivacyUrl", "http://www.conduit.com/privacy/Default.aspx");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.CTID", "CT2567681");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.CurrentServerDate", "23-7-2010");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.DialogsAlignMode", "LTR");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.DownloadReferralCookieData", "");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.EMailNotifierPollDate", "Fri Jul 23 2010 10:09:10 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedLastCount2929882609848814406", 644);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214203", "Fri Jul 23 2010 09:46:58 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214209", "Fri Jul 23 2010 09:46:58 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214215", "Fri Jul 23 2010 09:46:58 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214221", "Fri Jul 23 2010 09:46:58 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214227", "Fri Jul 23 2010 09:46:59 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214233", "Fri Jul 23 2010 09:46:59 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214239", "Fri Jul 23 2010 09:46:59 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214245", "Fri Jul 23 2010 09:46:59 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214251", "Fri Jul 23 2010 09:46:59 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214257", "Fri Jul 23 2010 09:46:59 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214263", "Fri Jul 23 2010 09:46:59 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214269", "Fri Jul 23 2010 09:46:59 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214275", "Fri Jul 23 2010 09:46:59 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214281", "Fri Jul 23 2010 09:46:59 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214287", "Fri Jul 23 2010 09:46:59 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214293", "Fri Jul 23 2010 09:46:59 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214299", "Fri Jul 23 2010 09:47:00 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214305", "Fri Jul 23 2010 09:47:00 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214311", "Fri Jul 23 2010 09:47:00 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783214317", "Fri Jul 23 2010 09:47:00 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedPollDate129227257783370573", "Fri Jul 23 2010 09:47:00 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedTTL129227257783214203", 30);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedTTL129227257783214209", 2);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedTTL129227257783214215", 2);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedTTL129227257783214227", 2);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedTTL129227257783214233", 30);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedTTL129227257783214251", 5);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedTTL129227257783214257", 5);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedTTL129227257783214263", 5);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FeedTTL129227257783214281", 5);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FirstServerDate", "14-7-2010");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FirstTime", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FirstTimeFF3", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FirstTimeSettingsDone", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.FixPageNotFoundErrors", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.GroupingServerCheckInterval", 1440);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.GroupingServiceUrl", "http://grouping.services.conduit.com/");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.Initialize", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.InitializeCommonPrefs", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.InstallationAndCookieDataSentCount", 3);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.InstallationType", "UnknownIntegration");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.InstalledDate", "Wed Jul 14 2010 20:59:18 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.InvalidateCache", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.IsGrouping", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.IsMulticommunity", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.IsOpenThankYouPage", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.IsOpenUninstallPage", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.LanguagePackLastCheckTime", "Thu Jul 22 2010 13:25:11 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.LanguagePackReloadIntervalMM", 1440);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.LanguagePackServiceUrl", "http://translation.users.conduit.com/Translation.ashx");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.LastLogin_2.6.0.15", "Fri Jul 23 2010 09:46:58 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.LatestVersion", "2.1.0.18");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.Locale", "fr-fr");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.LoginCache", 4);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.MCDetectTooltipHeight", "83");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.MCDetectTooltipUrl", "http://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.MCDetectTooltipWidth", "295");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.RadioIsPodcast", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.RadioLastCheckTime", "Thu Jul 22 2010 13:25:11 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.RadioLastUpdateIPServer", "3");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.RadioLastUpdateServer", "3");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.RadioMediaID", "9962");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.RadioMediaType", "Media Player");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.RadioMenuSelectedID", "EBRadioMenu_CT25676819962");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.RadioStationName", "California%20Rock");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.RadioStationURL", "http://feedlive.net/california.asx");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.SHRINK_TOOLBAR", 1);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.SavedHomepage", "resource:/browserconfig.properties");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.SearchEngine", "Recherche||http://search.conduit.com/Results.aspx?q=UCM_SEARCH_TERM&ctid=CT2567681&octid=EB_O[...]
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.SearchFromAddressBarIsInit", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.SearchFromAddressBarUrl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2567681&q=");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.SearchInNewTabEnabled", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.SearchInNewTabIntervalMM", 1440);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.SearchInNewTabLastCheckTime", "Thu Jul 22 2010 13:25:10 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.SearchInNewTabServiceUrl", "http://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.SearchInNewTabUsageUrl", "http://Usage.Hosting.conduit-services.com/UsageService.asmx/UsersRequests?ctid=EB_T[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.SettingsCheckIntervalMin", 120);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.SettingsLastCheckTime", "Fri Jul 23 2010 09:46:56 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.SettingsLastUpdate", "1279788592");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.ThirdPartyComponentsInterval", 504);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.ThirdPartyComponentsLastCheck", "Wed Jul 14 2010 20:59:18 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.ThirdPartyComponentsLastUpdate", "1279107309");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.TrusteLinkUrl", "http://www.truste.org/pvr.php?page=validate&softwareProgramId=101&sealid=112");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.UserID", "UN97149100528461763");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.ValidationData_Search", 2);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.ValidationData_Toolbar", 2);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.WeatherNetwork", "");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.WeatherPollDate", "Fri Jul 23 2010 09:46:59 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.WeatherUnit", "C");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.alertChannelId", "960546");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.backendstorage.http://cmg1_conduit-widgets_com/miniquarium.miniquarium_closed", "66616C7365"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.clientLogIsEnabled", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.clientLogServiceUrl", "http://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.myStuffEnabled", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.myStuffPublihserMinWidth", 400);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.myStuffSearchUrl", "http://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&oct[...]
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.myStuffServiceIntervalMM", 1440);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.myStuffServiceUrl", "http://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2567681.uninstallLogServiceUrl", "http://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678..clientLogIsEnabled", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678..clientLogServiceUrl", "http://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678..uninstallLogServiceUrl", "http://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.AboutPrivacyUrl", "http://www.conduit.com/privacy/Default.aspx");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.BrowserCompStateIsOpen_129579220236217502", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.BrowserCompStateIsOpen_130067977588633691", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.BrowserCompStateIsOpen_1359634298000", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.CTID", "CT2786678");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.CurrentServerDate", "29-6-2013");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.DSChangedManually", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.DSInstall", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.DialogsAlignMode", "LTR");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.DialogsGetterLastCheckTime", "Sun Jun 23 2013 18:38:20 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.DownloadReferralCookieData", "");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.EMailNotifierPollDate", "Wed Apr 10 2013 13:55:29 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedLastCount5690698542593514850", 501);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedPollDate2429156812186649977", "Wed Apr 10 2013 13:35:30 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedPollDate2429156813040823546", "Wed Apr 10 2013 13:35:29 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedPollDate2429156813130095866", "Wed Apr 10 2013 13:35:29 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedPollDate2429156813224203613", "Wed Apr 10 2013 13:35:29 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedPollDate2429156813230837251", "Wed Apr 10 2013 13:35:30 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedPollDate2429156813454291735", "Wed Apr 10 2013 13:35:29 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedPollDate2429156813729834876", "Wed Apr 10 2013 13:35:29 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedPollDate2429156813860870021", "Wed Apr 10 2013 13:35:30 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedPollDate2429156814264681793", "Wed Apr 10 2013 13:35:30 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedPollDate2429156814863075366", "Wed Apr 10 2013 13:35:29 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedPollDate2429156815257761081", "Wed Apr 10 2013 13:35:29 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedTTL2429156813040823546", 15);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedTTL2429156813130095866", 10);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedTTL2429156813454291735", 5);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedTTL2429156813729834876", 5);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FeedTTL2429156814264681793", 5);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FirstServerDate", "25-4-2012");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FirstTime", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FirstTimeFF3", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.FixPageNotFoundErrors", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.GroupingServerCheckInterval", 1440);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.GroupingServiceUrl", "http://grouping.services.conduit.com/");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.HPInstall", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.HasUserGlobalKeys", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.HomePageProtectorEnabled", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.HomepageBeforeUnload", "http://www.google.fr/");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.Initialize", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.InitializeCommonPrefs", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.InstallationAndCookieDataSentCount", 3);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.InstallationType", "Unknown");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.InstalledDate", "Wed Apr 25 2012 11:56:01 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.IsAlertDBUpdated", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.IsGrouping", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.IsInitSetupIni", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.IsMulticommunity", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.IsOpenThankYouPage", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.IsOpenUninstallPage", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.IsProtectorsInit", true); =>PUP.Mocaflix
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.LanguagePackLastCheckTime", "Sat Jun 29 2013 15:40:12 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.LanguagePackReloadIntervalMM", 1440);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.LanguagePackServiceUrl", "http://translation.users.conduit.com/Translation.ashx");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.LastLogin_3.12.0.7", "Fri Apr 27 2012 18:38:52 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.LastLogin_3.12.2.3", "Thu Jun 07 2012 17:53:50 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.LastLogin_3.13.0.6", "Sat Jul 21 2012 16:17:40 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.LastLogin_3.14.1.0", "Wed Aug 29 2012 13:13:38 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.LastLogin_3.15.1.0", "Mon Feb 25 2013 20:23:03 GMT+0100");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.LastLogin_3.18.0.7", "Sat Jun 29 2013 15:40:12 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.LatestVersion", "3.18.0.7");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.Locale", "en");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.MCDetectTooltipHeight", "83");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.MCDetectTooltipUrl", "http://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.MCDetectTooltipWidth", "295");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.MyStuffEnabledAtInstallation", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.OriginalFirstVersion", "3.12.0.7");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.SearchCaption", "uTorrentBar Customized Web Search"); =>P2P.µTorrent
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.SearchEngineBeforeUnload", "chrome://browser-region/locale/region.properties");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.SearchFromAddressBarIsInit", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.SearchFromAddressBarUrl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&SearchSource=2&q=");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.SearchInNewTabEnabled", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.SearchInNewTabIntervalMM", 1440);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.SearchInNewTabLastCheckTime", "Sat Jun 29 2013 15:40:11 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.SearchInNewTabServiceUrl", "http://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID&UM=UM_ID"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.SearchProtectorEnabled", false); =>PUP.SearchProtect
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.SearchProtectorToolbarDisabled", true); =>PUP.SearchProtect
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.SendProtectorDataViaLogin", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.ServiceMapLastCheckTime", "Sat Jun 29 2013 15:40:11 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.SettingsLastCheckTime", "Sat Jun 29 2013 15:40:11 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.SettingsLastUpdate", "1372493506");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.TBHomePageUrl", "http://search.conduit.com/?ctid=CT2786678&SearchSource=13");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.ThirdPartyComponentsInterval", 504);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.ThirdPartyComponentsLastCheck", "Wed Mar 20 2013 17:15:24 GMT+0100");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.ThirdPartyComponentsLastUpdate", "1331805997");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.ToolbarDisabled", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.ToolbarShrinkedFromSetup", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.TrusteLinkUrl", "http://trust.conduit.com/CT2786678");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolb[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.UserID", "UN95377498933877352");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.ValidationData_Toolbar", 2);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.WeatherNetwork", "");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.WeatherPollDate", "Wed Apr 10 2013 13:35:30 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.WeatherUnit", "C");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.alertChannelId", "1178763");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7e+x305",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7e.:2z527",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7e06cg5el8:", "6E6D6B6D6E6B726F7473");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7e06cg5el;8i:k", "247E2D2F226A74737173747178757A79242F4B49474F42357D5D5C3D");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7e0x305",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7e2x305",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7e31;cj7fk;kg#ncep@mc+vkn",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7e3x305",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7e4x305",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7e7x305",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7e8x305",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7e;x305",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7e=x305",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7eax305",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7ebx305",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b+7ecx305",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b-0?3g>d", "663A3C6A6D746C6E7A43767674207C7D4D7B254E227E522A2253575629265A2D285F3260");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b-0?3g@6:5;", "");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b-0?3gfa7ef", "2B2E2C3D");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b-3=3eccja=f>", "247E333D2C452F4135276F292A212C393D44307832332A354448584C3A232E333E58604F645[...]
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b/>01=9a6k6O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b3=>@44i48?", "372C2D326975763342363341484779213F3E484F4E4D4648502B564B4E2E5959595F4C564F376[...]3=>@44i48?", "372C2D326975763342363341484779213F3E484F4E4D4648502B564B4E2E5959595F4C564F376[...]3=>@44i48?", "372C2D326975763342363341484779213F3E484F4E4D4648502B564B4E2E5959595F4C564F376[...]3=>@44i48?", "372C2D326975763342363341484779213F3E484F4E4D4648502B564B4E2E5959595F4C564F376[...]
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b5ba==9cjag", "6B6D70713F6F72747A7577777579767D4C4E7C4D7D");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b6b11g4c56b>f;p;anr@p", "6E6D6B6D6E6B726F7372747476");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b9643g3/9e", "6A");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b;45>:bi9i7ie", "2B2E2C3D");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b<:222h64<", "393F352F3E");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b<:222h64O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b=+03eh8h8j?:", "4443");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b?+e2a52d8", "372C2D326975762E3A3C7B3A39434A494841434B2651464929655046566470727951555E5E52")[...]
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9b?b0d:8aj62O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage./9ba@0<0bi6a7gn:6@l?", "6E6B");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.cb_experience_000", "3532");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.cb_firstuse0100", "31");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.cb_user_id_000", "43423636323539323135333533315F46697265666F78");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.cbcountry_000", "4652");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.cbcountry_001", "4652");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.cbfirsttime", "5765642041707220323520323031322031313A35363A313320474D542B30323030");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.cbopenmamsettings", "30");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.facebook_mode", "32");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.facebook_user_locale", "656E");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_appsdata",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_appstate_couponbuddy", "6F6E");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_appstate_pricegong", "6F6E"); =>Adware.PriceGong
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_appstatereporttime", "31333635353933373335313431");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_configuration", "7B22636F6E66696775726174696F6E223A5B7B226964223A22436F75706F6E42756464[...]
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_currentversion", "312E342E342E36");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_first_time", "31");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_lastlogintime", "31333635353933373335313030");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_localization",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_settings1.4.3.2", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74[...]
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_settings1.4.4.6", "7B22537461747573223A22737563636565646564222C2244617461223A7B22696E74[...]
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_showclosebutton", "74727565");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_showwelcomegadget", "66616C7365");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.mam_gk_userid", "38663763333937662D303763372D343535342D393736662D326565613432396465656366");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.pg_enable", "74727565");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.searchappstate", "33");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.searchapptracking", "73656E74");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.sf_just_installed", "46414C5345");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.sf_status", "454E41424C4544");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.sf_user_id", "6369645F38343230313331373233313232343432373737");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.backendstorage.url_history0001",
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.globalFirstTimeInfoLastCheckTime", "Tue Apr 02 2013 20:01:05 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.homepageProtectorEnableByLogin", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.initDone", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.isAppTrackingManagerOn", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.myStuffEnabled", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.myStuffPublihserMinWidth", 400);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.myStuffSearchUrl", "http://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&oct[...]
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.myStuffServiceIntervalMM", 1440);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.myStuffServiceUrl", "http://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.navigateToUrlOnSearch", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.oldAppsList", "129295695672325902,129295695672325903,1000234,129789450454597254,1000034,129526967958500204,12[...]
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.revertSettingsEnabled", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.searchProtectorDialogDelayInSec", 10); =>PUP.SearchProtect
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.searchProtectorEnableByLogin", true); =>PUP.SearchProtect
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.testingCtid", "");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.toolbarAppMetaDataLastCheckTime", "Sat Jun 29 2013 15:40:12 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.toolbarContextMenuLastCheckTime", "Thu Apr 04 2013 19:39:10 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CT2786678.usagesFlag", 2);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ConduitSearchList", "uTorrentBar Customized Web Search"); =>P2P.µTorrent
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://Settings.toolbar.search.conduit.com/root/CT2786678/CT2786678", "\"cd0248073fe35fe07b325025[...]
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://alerts.conduit-services.com/root/1178763/1174448/FR", "\"0\""); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://alerts.conduit-services.com/root/909619/905414/FR", "\"0\""); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://appsmetadata.toolbar.conduit-services.com/?ctid=CT2786678", "\"1362324159\""); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en", "G9mW7heT/8xIX1frcdu[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en", "mfQ70fvlD2zuBxSBj8rQ[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en", "UgzXjW7BIkfdx+x39Ru[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en", "4BgM4MhF/sOgPsDNmIs3Yw[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"0ea11bd291bce1:0\""); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.engine.conduit-services.com/DLG.pkg?ver=3.3.3.2", "\"07b2625f8cb1:0\""); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.12.0.7", "\"4ead38b3e6bcd1:0\"")[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.12.2.3", "\"4ead38b3e6bcd1:0\"")[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13.0.6", "\"04afd94b864cd1:0\"")[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14.1.0", "\"0e0a4327275cd1:0\"")[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.15.1.0", "\"0343677cfb1cd1:0\"")[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.18.0.7", "\"0343677cfb1cd1:0\"")[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://servicemap.conduit-services.com/Toolbar/?ownerId=CT2786678", "\"dbe4460d95840339477519b3f7[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://settings.engine.conduit-services.com/?browser=FF&lut=0", "634303635100000000"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://settings.engine.conduit-services.com/?browser=FF&lut=1/11/2011 5:25:10 PM", "6343354438900[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://settings.engine.conduit-services.com/?browser=FF&lut=2/17/2011 12:59:49 PM", "634339976460[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://settings.engine.conduit-services.com/?browser=FF&lut=2/22/2011 6:54:06 PM", "6343561183100[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://settings.engine.conduit-services.com/?browser=FF&lut=3/13/2011 11:17:11 AM", "634356118310[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://translation.toolbar.conduit-services.com/?locale=EB_LOCALE", "\"a0d9ddc6cde9509f52b61de15d[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ETag.http://translation.toolbar.conduit-services.com/?locale=en", "\"fbcf283faa1728e9448e1646d0ceed22\[...] =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.EngineOwner", "ConduitEngine"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.EngineOwnerGuid", "engine@conduit.com");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.EngineOwnerToolbarId", "conduitengine"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.IsEngineShown", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Nanou\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\rld6zihy.def[...]
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.18.0.7");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.MiniIPageGadgetSize.http://facebook.conduitapps.com/v3.13/gadget.html", "409x461");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.OriginalEngineOwner", "ConduitEngine"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "engine@conduit.com");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "conduitengine"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "chrome://browser-region/locale/region.properties");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ToolbarsList", "CT2567681,ConduitEngine,CT2786678"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ToolbarsList2", "CT2567681,CT2786678");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.ToolbarsList4", "CT2786678");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.alert.alertDialogsGetterLastCheckTime", "Mon Apr 18 2011 19:18:41 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.alert.alertInfoInterval", 1440);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Sat Jun 18 2011 16:25:56 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.alert.clientsServerUrl", "http://alert.client.conduit.com");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.alert.locale", "en");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.alert.loginLastCheckTime", "Tue Jun 28 2011 18:19:55 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1305622559");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.alert.servicesServerUrl", "http://alert.services.conduit.com");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.alert.showTrayIcon", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.alert.userId", "903c2b00-7c7c-4b40-89c0-f92a00e88a2c");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Thu Jul 22 2010 13:25:11 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.globalUserId", "d01e1318-09d1-4062-8634-b4f42ef30b5a");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT2786678");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Wed Apr 10 2013 13:35:32 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.alertEnabled", true);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Tue Apr 09 2013 18:01:25 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.clientsServerUrl", "http://alert.client.conduit.com");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.locale", "en");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Tue Apr 09 2013 18:01:17 GMT+0200");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.servicesServerUrl", "http://alert.services.conduit.com");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.showTrayIcon", false);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.notifications.userId", "581f3e26-9853-4716-92e8-91180460b703");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.originalHomepage", "http://www.google.fr/");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("CommunityToolbar.originalSearchEngine", "chrome://browser-region/locale/region.properties");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.AppTrackingLastCheckTime", "Sat May 07 2011 21:55:56 GMT+0200"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.CTID", "ConduitEngine"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.DialogsGetterLastCheckTime", "Tue Jun 28 2011 18:19:41 GMT+0200"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.FirstServerDate", "01/17/2011 21"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.FirstTime", true); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.FirstTimeFF3", true); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.HasUserGlobalKeys", true); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.Initialize", true); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.InitializeCommonPrefs", true); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.InstalledDate", "Mon Jan 17 2011 19:37:54 GMT+0100"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.IsMulticommunity", false); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.IsOpenThankYouPage", false); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.IsOpenUninstallPage", true); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.LanguagePackLastCheckTime", "Tue Jun 28 2011 18:19:41 GMT+0200"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.LastLogin_3.2.3.3", "Wed Jan 19 2011 18:06:12 GMT+0100"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.LastLogin_3.2.5.2", "Sun Mar 27 2011 11:11:07 GMT+0200"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.LastLogin_3.3.3.2", "Tue Jun 28 2011 21:19:25 GMT+0200"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.SearchFromAddressBarIsInit", true); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.SettingsLastCheckTime", "Tue Jun 28 2011 21:19:25 GMT+0200"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.UserID", "UN47575869993733089"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.approveUntrustedApps", true); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.componentAlertEnabled", false); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.engineLocale", "fr"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.enngineContextMenuLastCheckTime", "Tue Jun 28 2011 18:19:41 GMT+0200"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.globalFirstTimeInfoLastCheckTime", "Tue Jun 28 2011 18:19:41 GMT+0200"); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.initDone", true); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.isAppTrackingManagerOn", true); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.isDetectionEnabled", false); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.usageEnabled", false); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("ConduitEngine.usagesFlag", 2); =>Toolbar.Conduit
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("browser.search.defaultthis.engineName", "uTorrentBar Customized Web Search"); =>P2P.µTorrent
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("browser.search.defaulturl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&SearchSource=3&q={searchTerms}");
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.admin", false); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.aflt", "orgnl"); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.bbDpng", 29); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.cntry", "FR"); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.dfltSrch", false); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.excTlbr", false); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.firstRun", false); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.hdrMd5", "50463FDB6D9CA90CDBD94DE573798953"); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.hmpg", false); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.id", "e82b96256fe9479d992db14ac90033d9"); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.instlDay", "15205"); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.lastActv", "22"); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.lastDP", 29); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.lastVrsnTs", ""); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.mntrFFxVrsn", "33.0"); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.newTab", true); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.newTabUrl", "http://search.babylon.com/?babsrc=NT_FFUP"); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.noFFXTlbr", false); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.propectorlck", 158416866); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.ptch_0717", true); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.sid", "e82b96256fe9479d992db14ac90033d9"); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.smplGrp", "azb"); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.BabylonToolbar.storage\\storage\\mpvinpagemutex", "fc74da51c9ccc4e13ceabc2265a2a896@@@Mon Dec 29 2014 13:57:[...] =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.enabledAddons", "ffxtlbr%40babylon.com:1.2.0,%7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:34.0.5"); =>PUP.Babylon
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules./v1/update/rule/foo.bar.style", "some style"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules./v1/update/rule/foo.bar.url", "testik.bb"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.ask.com.style", ".WRCN {display:none} #yui-main .tsrc_vnru .title + .WRCN, #yui-main #teoma-[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.ask.com.url", "^http(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.atlas.cz.style", ".WRCN {display:none} .result .WRCN {display:inline !important; background:[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.atlas.cz.url", "^http\\:\\/\\/searchatlas\\.centrum\\.cz\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.atlas.sk.style", ".WRCN {display:none} .katalogSponsorItem .WRCN {display:inline !important;[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.atlas.sk.url", "^http\\:\\/\\/hladaj\\.atlas\\.sk\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.baidu.com.style", ".WRCN {display:none} .result .f .WRCN {display:inline !important; backgro[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.baidu.com.url", "^http\\:\\/\\/www\\.baidu\\.com\\/.*"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.bing.com.style", ".WRCN {display:none} .sb_tlst .WRCN, .sp_pss .WRCN {display:inline !import[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.bing.com.url", "^http(s)?\\:\\/\\/www\\.bing\\.com\\/(.)*"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.centrum.cz.style", ".WRCN {display:none} .results-list h3 > .WRCN {display:inline !important[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.centrum.cz.url", "^http(s)?\\:\\/\\/search\\.centrum\\.cz\\/(.)*"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.centrum.sk.style", ".WRCN {display:none} .katalogSponsorItem .WRCN {display:inline !importan[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.centrum.sk.url", "^http\\:\\/\\/search\\.centrum\\.sk\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.delicious.com.style", ".WRCN {display:none} .taggedlink + .WRCN, .data .full-url .WRCN {disp[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.delicious.com.url", "^http\\:\\/\\/www\\.delicious\\.com\\/(.)*"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.dmoz.org.style", ".WRCN {display:none} ol.site li .WRCN{display:inline !important; backgroun[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.dmoz.org.url", "^http\\:\\/\\/www\\.dmoz\\.org\\/search(.)+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.excite.com.style", ".WRCN {display:none} .listing .resultsLink + .WRCN {display:inline !impo[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.excite.com.url", "^http\\:\\/\\/msxml\\.excite\\.com\\/excite\\/ws\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.facebook.com.style", ".WRCN {display:none} .WRCN {display:none} .uiAttachmentTitle .WRCN, .u[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.facebook.com.url", "^http\\:\\/\\/www\\.facebook\\.com\\/.*"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.fastweb.it.style", ".WRCN {display:none} .gs-title .WRCN {display:inline !important; backgro[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.fastweb.it.url", "^http\\:\\/\\/www\\.fastweb\\.it\\/portale\\/google\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.gazeta.pl.style", ".WRCN {display:none} .res_body .res_entry .WRCN {display:inline !importan[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.gazeta.pl.url", "^http\\:\\/\\/szukaj\\.gazeta\\.pl\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.google.com.style", ".WRCN {display:none} .r .WRCN, .osl .WRCN, .bc .WRCN, .fc .WRCN, #rhslin[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.google.com.url", "^http(s)?\\:\\/\\/((www|encrypted)\\.)?google\\.(com?\\.[a-z]{2}|[a-z]{2,}[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.interia.pl.style", ".WRCN {display:none} .row .WRCN {display:inline !important; background: [...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.interia.pl.url", "^http\\:\\/\\/(www\\.)?google\\.interia\\.pl\\/szukaj\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.lycos.com.style", ".WRCN {display:none} .results .WRCN {display:inline !important; backgroun[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.lycos.com.url", "^http\\:\\/\\/search\\.lycos\\.(com?\\.[a-z]{2}|[a-z]{2,})\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.onet.pl.style", ".WRCN {display:none} #main .link .WRCN {display:inline !important; backgrou[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.onet.pl.url", "^http\\:\\/\\/szukaj\\.onet\\.pl\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.paginegialle.it.style", ".WRCN {display:none} .lnkwww + .WRCN {display:inline !important; ba[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.paginegialle.it.url", "^http\\:\\/\\/www\\.paginegialle\\.it\\/pgol\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.public.avast.com.style", ".WRCN {display:inline; background: url(\"IMAGE\") right no-repeat}[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.public.avast.com.url", "^http(s)?\\:\\/\\/public\\.avast\\.com\\/(.)*"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.rambler.ru.style", ".WRCN {display:none} .search-results .title + .WRCN {display:inline !imp[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.rambler.ru.url", "^http\\:\\/\\/nova\\.rambler\\.ru\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.scroogle.org.style", "a + .WRCN {display:inline !important; background: url(\"IMAGE\") right[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.scroogle.org.url", "^http\\:\\/\\/www\\.scroogle\\.org\\/.*"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.seznam.cz.style", ".WRCN {display:none} #results .text .WRCN, .sklik-title > .WRCN {display:[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.seznam.cz.url", "^http(s)?\\:\\/\\/search\\.seznam\\.cz\\/(.)*"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.sky.com.style", ".WRCN {display:none} #results h3 .WRCN, #sponsored_top h3 .WRCN {display:in[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.sky.com.url", "^http\\:\\/\\/search\\.sky\\.com/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.slashdot.org.style", ".WRCN {display:none} .body i .WRCN {display:inline !important; backgro[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.slashdot.org.url", "^http\\:\\/\\/slashdot\\.org\\/.*"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.terra.com.br.style", ".WRCN {display:none} .col-left-full .list-results .WRCN {display:inlin[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.terra.com.br.url", "^http\\:\\/\\/buscador\\.terra\\.com\\.br\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.tiscali.it.style", ".WRCN {display:none} .item .WRCN {display:inline !important; background:[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.tiscali.it.url", "^http\\:\\/\\/search\\.tiscali\\.it\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.twitter.com.style", ".WRCN {display:none} .entry-content .web + .WRCN, .twtr-tweet-text .twt[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.twitter.com.url", "^http://twitter\\.com\\/.*"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.uol.com.br.style", ".WRCN {display:none} #results dt .WRCN, #results .link .WRCN {display:in[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.uol.com.br.url", "^http\\:\\/\\/(.\\.)?busca\\.uol\\.com\\.br\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.virgilio.it.style", ".WRCN {display:none} .risultati .record .WRCN {display:inline !importan[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.virgilio.it.url", "^http\\:\\/\\/ricerca\\.virgilio\\.it\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.virginmedia.com.style", ".WRCN {display:none} .result-title .WRCN {display:inline !important[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.virginmedia.com.url", "^http\\:\\/\\/search\\.virginmedia\\.com\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.whereis.com.style", ".WRCN {display:none} .priority_url .WRCN {display:inline !important; ba[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.whereis.com.url", "^http\\:\\/\\/www\\.whereis\\.com\\/.*"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.wp.pl.style", ".WRCN {display:none} .rek big .WRCN {display:inline !important; background: u[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.wp.pl.url", "^http\\:\\/\\/szukaj\\.wp\\.pl\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.yahoo.com.style", ".WRCN {display:none} .sm-hd .WRCN, .sm-links .WRCN, .res h3 > .WRCN {disp[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.yahoo.com.url", "^http(s)?\\:\\/\\/((.)+\\.)?search\\.yahoo\\.com\\/(.)*"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.yandex.ru.style", ".WRCN {display:none} .b-serp-item__title-link + .WRCN {display:inline !im[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.yandex.ru.url", "^http\\:\\/\\/yandex\\.ru\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.yell.com.style", ".WRCN {display:none} .advert-content .WRCN, .other-cta .WRCN {display:inli[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.yell.com.url", "^http\\:\\/\\/www\\.yell\\.com\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.zoznam.sk.style", ".WRCN {display:none} .box_content .link_right .link_title + .WRCN {displa[...] =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("extensions.wrc.SearchRules.zoznam.sk.url", "^http\\:\\/\\/www\\.zoznam\\.sk\\/.+"); =>Toolbar.Ask
O69 - SBI: prefs.js [Nanou - rld6zihy.default] user_pref("keyword.URL", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&SearchSource=2&q=");
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {1F096B29-E9DA-4D64-8D63-936BE7762CC5} - (Search the web (Babylon)) - http://search.babylon.com =>PUP.Babylon
O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} [DefaultScope] - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKCU] {afdbddaa-5d3f-42ee-b79c-185a7020515b} - (Messenger Plus Live France Customized Web Search) - http://search.conduit.com
~ Keys: Scanned in 00mn 01s



---\\ Enumère les service demarrés par Svchost (SSS) (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [674304]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [473600]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [90624]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [49664]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [300544]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [242176]
O83 - Search Svchost Services: UxTuneUp (UxTuneUp) . (.TuneUp Software - TuneUp Theme Extension.) -- C:\Windows\System32\uxtuneup.dll [30024]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [521216]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [1973728]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [585728]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [499712]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [21504]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [49664]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [71168]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [113664]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800]
~ Services: 33 Scanned in 00mn 00s



---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.1FE339E72FE03A27DD9D5A9A357CFE7D] [SPRF][17/08/2009] (...) -- C:\ProgramData\FullRemove.exe [131368]
[MD5.8C91E72BBF74CA05D41633EFE0CC061F] [SPRF][30/08/2010] (...) -- C:\Users\Nanou\AppData\Roaming\mdbu.bin [211915]
~ Files: 2 Scanned in 00mn 00s



---\\ Recherche de clés de registre Tracing (O100)
HKLM\SOFTWARE\Microsoft\Tracing\ApnStub_RASAPI32 =>Toolbar.Ask
HKLM\SOFTWARE\Microsoft\Tracing\ApnStub_RASMANCS =>Toolbar.Ask
HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASAPI32 =>Toolbar.Ask
HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASMANCS =>Toolbar.Ask
HKLM\SOFTWARE\Microsoft\Tracing\BabylonToolbarsrv_RASAPI32 =>PUP.Babylon
HKLM\SOFTWARE\Microsoft\Tracing\BabylonToolbarsrv_RASMANCS =>PUP.Babylon
HKLM\SOFTWARE\Microsoft\Tracing\OfferBox_RASAPI32 =>PUP.OfferBox
HKLM\SOFTWARE\Microsoft\Tracing\OfferBox_RASMANCS =>PUP.OfferBox
HKLM\SOFTWARE\Microsoft\Tracing\PerformanceOptimizer_RASAPI32 =>PUP.PerformanceOptimizer
~ BTK: 343 Scanned in 00mn 01s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 20/12/2014 267440 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Demand 23/11/2014 3192344 | (AvastVBoxSvc) . (.Avast Software.) - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
SS - | Auto 21/10/2014 107912 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 21/10/2014 107912 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 04/10/2012 194032 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Demand 29/12/2014 114800 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Auto 05/09/2013 171680 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SS - | Demand 21/05/2010 435016 | (TuneUp.Defrag) . (.TuneUp Software.) - C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe
SR - | Auto 03/12/2014 81088 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
SR - | Auto 16/10/2010 37664 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 23/11/2014 50344 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - | Disabled 10/07/1658 0 | (avast! Firewall) . (...) - C:\Program Files\AVAST Software\Avast\afwServ.exe
SR - | Auto 27/07/2010 345376 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Auto 07/05/2010 1051976 | (TuneUp.UtilitiesSvc) . (.TuneUp Software.) - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
SR - | Auto 14/07/2009 20992 | C:\Windows\System32\uxtuneup.dll (UxTuneUp) . (.TuneUp Software.) - C:\Windows\System32\svchost.exe
SR - | Auto 14/07/2009 20992 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 14/07/2009 20992 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 28s



---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Run by Nanou at 29/12/2014 17:45:18
device: opened successfully
user: MBR read successfully
Disk trace:
called modules: ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys halmacpi.dll
C:\windows\system32\DRIVERS\iaStor.sys Intel Corporation Intel Matrix Storage Manager driver
1 nt!IofCallDriver[0x83870FC6] >> \Device\Harddisk0\DR0[0x86F9D030]
3 CLASSPNP[0x8A77B59E] >> nt!IofCallDriver[0x83870FC6] >> \Device\Ide\IAAStorageDevice-0[0x86524028]
kernel: MBR read successfully
user & kernel MBR OK
~ MBR: 13 Scanned in 00mn 02s



---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by Nanou at 29/12/2014 17:45:20
********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR: Scanned in 00mn 04s



---\\ Scan Additionnel (O88)
Database Version : 13026 - (27/12/2014)
Clés trouvées (Keys found) : 23
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 10
Fichiers trouvés (Files found) : 4

[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1F096B29-E9DA-4D64-8D63-936BE7762CC5}] =>PUP.Babylon
[HKLM\Software\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}] =>Adware.iWinArcade
[HKLM\Software\Classes\protector_dll.protectorbho.1] =>PUP.BProtector
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}] =>Toolbar.Conduit
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}] =>Toolbar.Conduit
[HKLM\Software\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}] =>Adware.CDNHelper
[HKLM\Software\Classes\CLSID\{E46C8196-B634-44a1-AF6E-957C64278AB1}] =>PUP.Babylon
[HKLM\Software\Classes\AppID\escort.dll] =>PUP.Babylon
[HKLM\Software\Classes\protector_dll.protectorbho] =>PUP.BProtector
[HKLM\Software\Google\Chrome\Extensions\bjeikeheijdjdfjbmknpefojickbkmom] =>PUP.OfferBox
[HKLM\Software\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb] =>PUP.Babylon
[HKCU\Software\OfferBox] =>PUP.OfferBox
[HKLM\Software\OfferBox] =>PUP.OfferBox
[HKLM\Software\Microsoft\Tracing\offerbox_RASAPI32] =>PUP.OfferBox
[HKLM\Software\Microsoft\Tracing\offerbox_RASMANCS] =>PUP.OfferBox
[HKCU\Software\InstallCore] =>Adware.InstallCore
[HKLM\Software\Microsoft\Tracing\apnstub_RASMANCS] =>Toolbar.Ask
[HKLM\Software\Microsoft\Tracing\apnstub_RASAPI32] =>Toolbar.Ask
[HKLM\Software\Microsoft\Tracing\AskInstallChecker_RASMANCS] =>Toolbar.Ask
[HKLM\Software\Microsoft\Tracing\AskInstallChecker_RASAPI32] =>Toolbar.Ask
[HKLM\Software\Messenger Plus!\OpenCandy] =>Adware.OpenCandy
[HKLM\Software\Classes\Toolbar.CT2567681] =>Toolbar.Conduit
[HKLM\Software\Classes\Toolbar.CT2643111] =>Toolbar.Conduit
C:\Users\Nanou\AppData\Roaming\Mozilla\Firefox\Profiles\rld6zihy.default\extensions\ffxtlbr@babylon.com =>PUP.Babylon^
C:\Users\Nanou\AppData\Roaming\Mozilla\Firefox\Profiles\rld6zihy.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} =>P2P.µTorrent^
C:\Program Files\OfferBox =>PUP.OfferBox^
C:\Users\Nanou\AppData\Roaming\OfferBox =>PUP.OfferBox^
C:\Program Files\Conduit =>Toolbar.Conduit
C:\Users\Nanou\AppData\LocalLow\BabylonToolbar =>PUP.Babylon
C:\Users\Nanou\AppData\LocalLow\Conduit =>Toolbar.Conduit
C:\Users\Nanou\AppData\Roaming\Mozilla\Firefox\Profiles\rld6zihy.default\Conduit =>Toolbar.Conduit
C:\Users\Nanou\AppData\Roaming\Mozilla\Firefox\Profiles\rld6zihy.default\ConduitEngine =>Toolbar.Conduit
C:\Users\Nanou\AppData\Roaming\Mozilla\Firefox\Profiles\rld6zihy.default\Extensions\engine@conduit.com =>Toolbar.Conduit
C:\Users\Nanou\AppData\Roaming\Mozilla\Firefox\Profiles\rld6zihy.default\SearchPlugins\conduit.xml =>Toolbar.Conduit
[HKCU\Software\AppDataLow\Software\Conduit] =>Toolbar.Conduit^
[HKCU\Software\Conduit] =>Toolbar.Conduit^
[HKLM\Software\Conduit] =>Toolbar.Conduit^
~ Additionnel Scan: 281544 Items scanned in 00mn 54s



---\\ Informations complémentaires sur les modules
~ http://nicolascoolman.fr/r5-internet-explorer-proxy-management-iepm/ =>.Internet Explorer, Proxy Management (R5)
~ http://nicolascoolman.fr/o2-browser-helper-objects-de-navigateur/ =>.Browser Helper Objects de navigateur (O2)
~ http://nicolascoolman.fr/o3-internet-explorer-toolbars/ =>.Internet Explorer Toolbars (O3)
~ http://nicolascoolman.fr/o4-applications-demarrees-par-le-registre/ =>.Applications lancées au démarrage du système (O4)
~ http://nicolascoolman.fr/o51-mountpoints2-shell-key-mpsk/ =>.Clé de registre Shell MountPoints2 (MPSK) (O51)
~ AMI: 5 Scanned in 00mn 00s



---\\ Récapitulatif des détections trouvées sur votre station
http://nicolascoolman.fr/pup-babylon =>PUP.Babylon
http://nicolascoolman.fr/toolbar-conduit =>Toolbar.Conduit
http://nicolascoolman.fr/adware-installcore =>Adware.InstallCore
http://nicolascoolman.fr/pup-offerbox =>PUP.OfferBox
http://nicolascoolman.fr/pup-mocaflix =>PUP.Mocaflix
http://nicolascoolman.fr/pup-searchprotect =>PUP.SearchProtect
http://www.nicolascoolman.fr/blog/ =>@44i48?", "372C2D326975763342363341484779213F3E484F4E4D4648502B564B4E2E5959595F4C564F376[...]3=>@44i48?", "372C2D326975763342363341484779213F3E484F4E4D4648502B564B4E2E5959595F4C564F376[...]3=>@44i48?", "372C2D326975763342363341484779213F3E484F4E4D4648502B564B4E2E5959595F4C564F376[...]3=>@44i48?", "372C2D326975763342363341484779213F3E484F4E4D4648502B564B4E2E5959595F4C564F376[...]
http://nicolascoolman.fr/adware-pricegong =>Adware.PriceGong
http://nicolascoolman.fr/toolbar-ask =>Toolbar.Ask
http://www.nicolascoolman.fr/blog/ =>PUP.PerformanceOptimizer
http://nicolascoolman.fr/adware-iwinarcade =>Adware.iWinArcade
http://nicolascoolman.fr/pup-bprotector =>PUP.BProtector
http://www.nicolascoolman.fr/blog/ =>Adware.CDNHelper
http://nicolascoolman.fr/adware-opencandy =>Adware.OpenCandy
~ MSI: 14 link(s) detected in 00mn 00s



End of the scan (2441 lines in 06mn 04s)(0)

Publicité


Signaler le contenu de ce document

Publicité