cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ Rapport de ZHPDiag v2015.3.5.26 - Nicolas Coolman (01/03/2015)
~ Lancé par Team-ba524 (05/03/2015 18:53:05)
~ Facebook : https://www.facebook.com/nicolascoolman1
~ Adresse du Forum http://forum.nicolascoolman.fr
~ Traduit par Nicolas Coolman
~ Etat de la version : Version à jour.
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Activate by user


---\\ Navigateurs Internet
MSIE: Internet Explorer v10.0.9200.17228
GCIE: Google Chrome v41.0.2272.76 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Français
Windows Server License Manager Script : OK
~ Windows(R) Operating System, VOLUME_KMSCLIENT channel
Windows ID Activation : OK
~ Windows Partial Key : CWCK7
Windows License : OK
~ Windows Remaining Initializations Number : 1000
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
Windows 8 Enterprise, 32-bit (Build 9200)

---\\ Logiciels de protection du système
Kaspersky Internet Security v15.0.2.361
Malwarebytes Anti-Malware version 2.0.4.1028
Windows Defender W8 (Deactivate)

---\\ Logiciels d'optimisation du système
CCleaner v5.03

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels

---\\ Informations sur le système
~ Processor: x86 Family 6 Model 15 Stepping 2, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 2557 MB (24% free)
System Restore: Activé (Enable)
System drive C: has 61 GB (73%) free of 83 GB

---\\ Mode de connexion au système
~ Computer Name: TEAMWO-4752
~ User Name: Team-ba524
~ All Users Names: Team-ba524, HomeGroupUser$, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Team-ba524\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Team-ba524\AppData\Roaming\
~ %Desktop% : C:\Users\Team-ba524\Desktop\
~ %Favorites% : C:\Users\Team-ba524\Favorites\
~ %LocalAppData% : C:\Users\Team-ba524\AppData\Local\
~ %StartMenu% : C:\Users\Team-ba524\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 61 Go of 83 Go)
D: Hard drive, Flash drive, Thumb drive (Free 63 Go of 66 Go)
E: CD-ROM drive (Free 0 Go of 2 Go)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 42 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.5B6ED1B57DBFF18D405A0260559B571E] - (.Microsoft Corporation - Explorateur Windows.) (.26/07/2012 - 03:50:01.) -- C:\Windows\Explorer.exe [2114936]
[MD5.7109FF769FFF962869C50D720F7AA7D7] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 03:21:01.) -- C:\Windows\System32\Wininit.exe [101376]
[MD5.E3E6612BAF16169FB6BDF08C51E7CE31] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.12/01/2015 - 05:07:48.) -- C:\Windows\System32\wininet.dll [1762816]
[MD5.89D6AFD5B257049375008BAA512910EE] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.12/04/2014 - 07:24:27.) -- C:\Windows\System32\Winlogon.exe [429056]
[MD5.FAB11E1AC62579A9BE21593319F8E464] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 03:20:01.) -- C:\Windows\System32\sppcomapi.dll [246784]
[MD5.B92C9A8C3CAE22129CC5B4A920B00608] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.29/05/2014 - 22:22:46.) -- C:\Windows\system32\Drivers\AFD.sys [439296]
[MD5.48D8C3F2006698691F5AE0BB595FDCC8] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 03:42:31.) -- C:\Windows\system32\Drivers\atapi.sys [22768]
[MD5.00B4FA77732C7823D292ECD672660882] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 02:38:28.) -- C:\Windows\system32\Drivers\Cdfs.sys [89088]
[MD5.4E707EC5071DD8F5C29A7410780BD4C3] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 02:33:53.) -- C:\Windows\system32\Drivers\Cdrom.sys [135680]
[MD5.B21FDAC50FCD4CE53C203F097273532A] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 02:34:25.) -- C:\Windows\system32\Drivers\DfsC.sys [92160]
[MD5.0E3FC2062E796F6A9B1ED995E1CBB25E] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.26/07/2012 - 02:34:53.) -- C:\Windows\system32\Drivers\HDAudBus.sys [62464]
[MD5.11EDC37780E8A2F8E311D73F7658A4D7] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 02:36:23.) -- C:\Windows\system32\Drivers\i8042prt.sys [89600]
[MD5.57B0C0D982013C72911A3F5CBA795034] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 02:29:57.) -- C:\Windows\system32\Drivers\IpNat.sys [126976]
[MD5.5FAC7AC77D9ADD42579EDF678F08DF9F] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 22:30:11.) -- C:\Windows\system32\Drivers\MRxSmb.sys [304128]
[MD5.303A053C25E468B9925C22288BEF8484] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 02:31:28.) -- C:\Windows\system32\Drivers\netBT.sys [254464]
[MD5.99C73E3FE9B36275BD91D2009F2BA2E0] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 09:53:24.) -- C:\Windows\system32\Drivers\ntfs.sys [1614568]
[MD5.8BCE63AF5B52642E832630F862DE96EF] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 02:38:17.) -- C:\Windows\system32\Drivers\Parport.sys [90624]
[MD5.6E0649D7325D85C47C844EB3267E4625] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 02:30:07.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [88064]
[MD5.2CAD2A13569741C67CD9C52F97E0F992] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 02:32:22.) -- C:\Windows\system32\Drivers\rdpdr.sys [156160]
[MD5.0886D9F1B5A5334FBB143A260E4BFB5C] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 04:17:16.) -- C:\Windows\system32\Drivers\tdx.sys [97792]
[MD5.8E15C3D58A8ADE841060661DBA6E7A9B] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.26/07/2012 - 03:39:34.) -- C:\Windows\system32\Drivers\volsnap.sys [282352]
~ Generic Processes: Scanned in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes Favoris (My Favorites) : 1/4
~ Mon Bureau (My Desktop) : 4/14
~ Menu demarrer (Programs) : 1/24
~ Hidden Files: Scanned in 00mn 00s



---\\ Processus lancés
[MD5.3E7332DE76AF4704B02036B2B49C662C] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) -- C:\Windows\system32\taskhostex.exe [53760] [PID.4160]
[MD5.E9E5DADB85F756F83B61816AE0287EEA] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avpui.exe [192160] [PID.2404]
[MD5.3C13F26A4766752314A5413038BD86B4] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbam.exe [7229752] [PID.3748]
[MD5.10AA923C7622D57C3D4B1D9A4EAF14BC] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe [31344744] [PID.7344]
[MD5.2B24F194FC5B657397ECB2923A68350E] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [5503768] [PID.3140]
[MD5.AD3A07FEBB3B9F0110C90C26FC95E029] - (.Microsoft Corporation - Runtime Broker.) -- C:\Windows\System32\RuntimeBroker.exe [29808] [PID.8052]
[MD5.F9B8C1C8E554BA21E95E476109092ECF] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [809288] [PID.6376]
[MD5.76A12E1111EFB89E20903096D7C3CAF6] - (.Kaspersky Lab ZAO - Kaspersky Native Messaging Server for plugi.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\plugin-nm-server.exe [854824] [PID.7448]
[MD5.846A5D42399957E08E547A0C912EC544] - (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) -- C:\Program Files\WinSCP\WinSCP.exe [9200984] [PID.5120]
[MD5.CEAA5817A65E914AA178B28F12359A46] - (.Microsoft Corporation - Microsoft Office Word.) -- C:\Program Files\Microsoft Office\Office12\WINWORD.exe [347432] [PID.6680]
[MD5.D5ABB3ABE528212FC51484C92AFB1B59] - (.Microsoft Corporation - Print driver host for applications.) -- C:\Windows\splwow64.exe [109056] [PID.7140]
[MD5.35F8A4C2ED66BDDC29C961419DEF147D] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8184320] [PID.10516]
[MD5.137A3F4BD47D5F91912350C13AA09B77] - (.Microsoft Corporation - Thumbnail Handler Extraction Host.) -- C:\Windows\System32\ThumbnailExtractionHost.exe [26112] [PID.0]
[MD5.5DAF7081A4BB112FA3F1915819330A3E] - (...) -- C:\Program Files\ZHPDiag\pv.exe [61440] [PID.0]
~ Processes Running: Scanned in 00mn 05s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Team-ba524\AppData\Local\Google\Chrome\User Data\Default\Preferences

---\\ Liste des dossiers d'extension Google Chrome
~ Google Lines Browser: 0 Scanned in 00mn 07s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll
~ Firefox Browser: 2 Scanned in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Google Inc. - Google Update.) (No version) -- (.not file.)
~ IE Browser: 9 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hôte est sain (The hosts file is clean) (21)
~ Hosts File: Scanned in 00mn 00s



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: VirtualKeyboardBrowserHelperObject - {4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\IEExt\ie_plugin.dll
O2 - BHO: ContentBlockerBrowserHelperObject - {93BC2EA7-2F17-4729-948A-D2E03FFB2412} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\IEExt\ie_plugin.dll
O2 - BHO: Safe Money Plugin - {AB379017-4C03-4E00-8EDF-E6D6AF7CCF82} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\IEExt\ie_plugin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
~ BHO: 8 Scanned in 00mn 00s



---\\ Applications lancées au démarrage du système (O4)
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd
O4 - HKUS\S-1-5-21-481104774-4238568591-2159240358-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKUS\S-1-5-21-481104774-4238568591-2159240358-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd
~ Application: Scanned in 00mn 00s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: Clavier virtuel - {5547CE1F-74E9-41E5-9CBF-5211ECC37341} . (...) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\kbrd.ico
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- C:\Program Files\Skype\Toolbars\Internet Explorer\icon.ico
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (...) -- C:\Program Files\Microsoft Office\Office12\REFBARH.ICO
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
~ Winsock: 6 Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{92D80051-622E-41D9-BE61-81D3CEADFD92}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{92D80051-622E-41D9-BE61-81D3CEADFD92}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Kaspersky Anti-Virus Service 15.0.2 (AVP15.0.2) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
~ Services: 5 Scanned in 00mn 30s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
[MD5.2B24F194FC5B657397ECB2923A68350E] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [5503768]
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [107848]
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [107848]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1084]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1084]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1088]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1088]
~ Scheduled Task: 6 Scanned in 00mn 13s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll
O40 - ASIC: Google Chrome - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google Inc. - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\41.0.2272.76\Installer\chrmstp.exe
~ Active Setup: 10 Scanned in 00mn 01s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (BasicDisplay) . (.Microsoft Corporation - Microsoft Basic Display Driver.) - C:\Windows\system32\drivers\BasicDisplay.sys
O41 - Driver: (BasicRender) . (.Microsoft Corporation - Microsoft Basic Render Driver.) - C:\Windows\system32\drivers\BasicRender.sys
O41 - Driver: cdrom.inf (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys
O41 - Driver: C:\Windows\System32\cscsvc.dll (CSC) . (.Microsoft Corporation - Windows Client Side Caching Driver.) - C:\Windows\System32\drivers\csc.sys
O41 - Driver: C:\Windows\System32\drivers\dam.sys (dam) . (.Microsoft Corporation - DAM Kernel Driver.) - C:\Windows\System32\drivers\dam.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (Dfsc) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (klhk) . (.Kaspersky Lab ZAO - KLHK [fre_win8_x86].) - C:\Windows\system32\DRIVERS\klhk.sys
O41 - Driver: (KLIF) . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_win8_x86].) - C:\Windows\System32\DRIVERS\klif.sys
O41 - Driver: oem1.inf (KLIM6) . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver [.) - C:\Windows\system32\DRIVERS\klim6.sys
O41 - Driver: (klpd) . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x86].) - C:\Windows\system32\DRIVERS\klpd.sys
O41 - Driver: (klwfp) . (.Kaspersky Lab ZAO - Network filtering component [fre_win8_x86].) - C:\Windows\system32\DRIVERS\klwfp.sys
O41 - Driver: (Klwtp) . (.Kaspersky Lab ZAO - Network filtering component.) - C:\Windows\system32\DRIVERS\klwtp.sys
O41 - Driver: (kneps) . (.Kaspersky Lab ZAO - KNEPS Power [fre_wxp_x86].) - C:\Windows\system32\DRIVERS\kneps.sys
O41 - Driver: (mbamchameleon) . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) - C:\Windows\system32\drivers\mbamchameleon.sys
O41 - Driver: mssmbios.inf (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: netnb.inf (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: npsvctrig.inf (npsvctrig) . (.Microsoft Corporation - Named pipe service triggers.) - C:\Windows\system32\drivers\npsvctrig.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\system32\DRIVERS\wanarp.sys
~ Drivers: 50 Scanned in 00mn 01s



---\\ Logiciels installés (O42)
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- InstallWIX_{02FECEE0-16B2-43DB-BC3B-C844477FC142}
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- {02FECEE0-16B2-43DB-BC3B-C844477FC142}
O42 - Logiciel: Malwarebytes Anti-Malware version 2.0.4.1028 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701}
O42 - Logiciel: Skype™ 7.2 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: WinSCP 5.1.4 - (.Martin Prikryl.) [HKLM] -- winscp3_is1
~ Logic: 20 Scanned in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\AppDataLow]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Google]
[HKCU\Software\IM Providers]
[HKCU\Software\KasperskyLab]
[HKCU\Software\Martin Prikryl]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Netscape]
[HKCU\Software\ODBC]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\RegisteredApplications]
[HKCU\Software\Skype]
[HKCU\Software\Trolltech]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\ZebHelpProcess Helper]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Google]
[HKLM\Software\IM Providers]
[HKLM\Software\Intel]
[HKLM\Software\KasperskyLab]
[HKLM\Software\Macromedia]
[HKLM\Software\Martin Prikryl]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\ODBC]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Skype]
[HKLM\Software\WinRAR]
~ Key Software: 68 Scanned in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 04/03/2015 - 13:17:22 - [0] ----D C:\Program Files\AVAST Software
O43 - CFD: 04/03/2015 - 21:23:53 - [] ----D C:\Program Files\CCleaner
O43 - CFD: 04/03/2015 - 14:10:36 - [] ----D C:\Program Files\Common Files
O43 - CFD: 04/03/2015 - 10:40:46 - [] -SH-D C:\Program Files\Fichiers communs
O43 - CFD: 04/03/2015 - 11:55:06 - [] ----D C:\Program Files\Google
O43 - CFD: 04/03/2015 - 16:44:09 - [] ----D C:\Program Files\Internet Explorer
O43 - CFD: 04/03/2015 - 13:21:20 - [] ----D C:\Program Files\Kaspersky Lab
O43 - CFD: 04/03/2015 - 11:54:49 - [] ----D C:\Program Files\Malwarebytes Anti-Malware
O43 - CFD: 04/03/2015 - 14:10:37 - [] ----D C:\Program Files\Microsoft Office
O43 - CFD: 04/03/2015 - 14:10:36 - [] ----D C:\Program Files\Microsoft Visual Studio
O43 - CFD: 04/03/2015 - 14:10:52 - [] ----D C:\Program Files\Microsoft Works
O43 - CFD: 26/07/2012 - 06:53:43 - [] ----D C:\Program Files\Microsoft.NET
O43 - CFD: 04/03/2015 - 14:10:44 - [] ----D C:\Program Files\MSBuild
O43 - CFD: 04/03/2015 - 13:55:00 - [] R---D C:\Program Files\Skype
O43 - CFD: 26/07/2012 - 06:04:59 - [0] --H-D C:\Program Files\Uninstall Information
O43 - CFD: 04/03/2015 - 16:43:11 - [] ----D C:\Program Files\Windows Defender
O43 - CFD: 04/03/2015 - 16:44:03 - [] ----D C:\Program Files\Windows Journal
O43 - CFD: 26/07/2012 - 08:24:28 - [] ----D C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 04/03/2015 - 16:42:25 - [] ----D C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 26/07/2012 - 06:53:56 - [] ----D C:\Program Files\Windows Multimedia Platform
O43 - CFD: 04/03/2015 - 10:40:46 - [] ----D C:\Program Files\Windows NT
O43 - CFD: 04/03/2015 - 16:41:50 - [] ----D C:\Program Files\Windows Photo Viewer
O43 - CFD: 26/07/2012 - 06:53:56 - [] ----D C:\Program Files\Windows Portable Devices
O43 - CFD: 26/07/2012 - 06:53:43 - [] -SH-D C:\Program Files\Windows Sidebar
O43 - CFD: 04/03/2015 - 15:18:44 - [] --H-D C:\Program Files\WindowsApps
O43 - CFD: 04/03/2015 - 12:26:47 - [] ----D C:\Program Files\WinRAR
O43 - CFD: 04/03/2015 - 14:13:25 - [] ----D C:\Program Files\WinSCP
O43 - CFD: 05/03/2015 - 18:51:55 - [] ----D C:\Program Files\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 04/03/2015 - 14:10:36 - [] ----D C:\Program Files\Common Files\DESIGNER
O43 - CFD: 04/03/2015 - 16:42:28 - [] ----D C:\Program Files\Common Files\microsoft shared
O43 - CFD: 26/07/2012 - 06:53:56 - [] ----D C:\Program Files\Common Files\Services
O43 - CFD: 04/03/2015 - 13:54:37 - [] ----D C:\Program Files\Common Files\Skype
O43 - CFD: 04/03/2015 - 14:07:57 - [] ----D C:\Program Files\Common Files\System
O43 - CFD: 26/07/2012 - 06:04:44 - [] -SH-D C:\ProgramData\Application Data
O43 - CFD: 04/03/2015 - 10:40:46 - [] -SH-D C:\ProgramData\Bureau
O43 - CFD: 26/07/2012 - 06:04:44 - [] -SH-D C:\ProgramData\Desktop
O43 - CFD: 26/07/2012 - 06:04:44 - [] -SH-D C:\ProgramData\Documents
O43 - CFD: 05/03/2015 - 17:14:48 - [] ----D C:\ProgramData\Kaspersky Lab
O43 - CFD: 04/03/2015 - 11:50:53 - [] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 04/03/2015 - 10:40:46 - [] -SH-D C:\ProgramData\Menu Démarrer
O43 - CFD: 04/03/2015 - 16:43:53 - [] -S--D C:\ProgramData\Microsoft
O43 - CFD: 04/03/2015 - 14:11:56 - [] ----D C:\ProgramData\Microsoft Help
O43 - CFD: 04/03/2015 - 10:40:46 - [] -SH-D C:\ProgramData\Modèles
O43 - CFD: 04/03/2015 - 11:43:30 - [] ----D C:\ProgramData\PRICache
O43 - CFD: 26/07/2012 - 08:28:03 - [] ----D C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 04/03/2015 - 14:26:59 - [] ----D C:\ProgramData\Skype
O43 - CFD: 26/07/2012 - 06:04:44 - [] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 26/07/2012 - 06:04:44 - [] -SH-D C:\ProgramData\Templates
O43 - CFD: 26/07/2012 - 06:53:44 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 04/03/2015 - 16:42:03 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 26/07/2012 - 08:28:06 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 04/03/2015 - 21:23:53 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 04/03/2015 - 11:55:19 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 04/03/2015 - 13:22:32 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
O43 - CFD: 26/07/2012 - 06:53:44 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 04/03/2015 - 11:54:49 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 04/03/2015 - 14:11:51 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 04/03/2015 - 14:26:57 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 26/07/2012 - 06:53:44 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 26/07/2012 - 06:53:44 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 26/07/2012 - 08:28:03 - [0] R-H-D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 04/03/2015 - 12:26:47 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 05/03/2015 - 18:51:56 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP =>.Nicolas Coolman
O43 - CFD: 04/03/2015 - 11:44:02 - [] ----D C:\Users\Team-ba524\AppData\Roaming\Adobe
O43 - CFD: 04/03/2015 - 14:43:12 - [] -S--D C:\Users\Team-ba524\AppData\Roaming\Microsoft
O43 - CFD: 05/03/2015 - 18:54:14 - [] ----D C:\Users\Team-ba524\AppData\Roaming\Skype
O43 - CFD: 04/03/2015 - 12:26:53 - [] ----D C:\Users\Team-ba524\AppData\Roaming\WinRAR
O43 - CFD: 05/03/2015 - 18:54:20 - [] ----D C:\Users\Team-ba524\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 04/03/2015 - 11:43:26 - [] -SH-D C:\Users\Team-ba524\AppData\Local\Application Data
O43 - CFD: 04/03/2015 - 11:55:20 - [] ----D C:\Users\Team-ba524\AppData\Local\Google
O43 - CFD: 04/03/2015 - 11:43:26 - [] -SH-D C:\Users\Team-ba524\AppData\Local\Historique
O43 - CFD: 04/03/2015 - 17:27:11 - [] ----D C:\Users\Team-ba524\AppData\Local\Microsoft
O43 - CFD: 04/03/2015 - 14:07:27 - [0] ----D C:\Users\Team-ba524\AppData\Local\Microsoft Help
O43 - CFD: 04/03/2015 - 11:44:02 - [] ----D C:\Users\Team-ba524\AppData\Local\Packages
O43 - CFD: 04/03/2015 - 11:50:42 - [] ----D C:\Users\Team-ba524\AppData\Local\Programs
O43 - CFD: 04/03/2015 - 13:54:53 - [] ----D C:\Users\Team-ba524\AppData\Local\Skype
O43 - CFD: 05/03/2015 - 18:54:05 - [] ----D C:\Users\Team-ba524\AppData\Local\Temp
O43 - CFD: 04/03/2015 - 11:43:26 - [] -SH-D C:\Users\Team-ba524\AppData\Local\Temporary Internet Files
O43 - CFD: 04/03/2015 - 11:43:34 - [0] ----D C:\Users\Team-ba524\AppData\Local\VirtualStore
O43 - CFD: 26/07/2012 - 06:53:44 - [] R---D C:\Users\Team-ba524\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 26/07/2012 - 06:53:43 - [] R---D C:\Users\Team-ba524\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 04/03/2015 - 16:53:13 - [] R---D C:\Users\Team-ba524\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 26/07/2012 - 06:53:44 - [] ----D C:\Users\Team-ba524\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 04/03/2015 - 16:53:13 - [] R---D C:\Users\Team-ba524\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 26/07/2012 - 06:53:43 - [] R---D C:\Users\Team-ba524\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 04/03/2015 - 12:26:47 - [] ----D C:\Users\Team-ba524\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
~ Program Folder: 86 Scanned in 00mn 00s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.A59EE353C1DDEE73E55AF3530A3B34C9] - 04/03/2015 - 10:38:42 ---A- . (...) -- C:\Windows\DtcInstall.log [1720]
O44 - LFC:[MD5.DC5AB81C800FFDAE2C16273C22BEAB6B] - 04/03/2015 - 10:38:54 ---A- . (...) -- C:\Windows\System32\netcfg-81994.txt [156]
O44 - LFC:[MD5.F7154C29BA9207BEF97A75B273B1EF3A] - 04/03/2015 - 10:38:54 ---A- . (...) -- C:\Windows\System32\netcfg-82477.txt [149]
O44 - LFC:[MD5.48DDFE7F3C91842749B7E663B0B79891] - 04/03/2015 - 10:38:55 ---A- . (...) -- C:\Windows\System32\netcfg-82976.txt [152]
O44 - LFC:[MD5.DD5C6872CC837CE1578656C368AF413C] - 04/03/2015 - 10:38:56 ---A- . (...) -- C:\Windows\System32\netcfg-83226.txt [1128]
O44 - LFC:[MD5.400D75DD81FA4467833C1643DF3AEE1D] - 04/03/2015 - 10:38:57 ---A- . (...) -- C:\Windows\System32\netcfg-85067.txt [142]
O44 - LFC:[MD5.DF6A09FAFBB6DAEBC9E3E9ED358E45F4] - 04/03/2015 - 10:38:57 ---A- . (...) -- C:\Windows\System32\netcfg-85348.txt [151]
O44 - LFC:[MD5.5D7632B6CD3792AFB78E585F65139D1D] - 04/03/2015 - 10:38:57 ---A- . (...) -- C:\Windows\System32\netcfg-85675.txt [152]
O44 - LFC:[MD5.DBA311666EE68046E631193B61538326] - 04/03/2015 - 10:38:58 ---A- . (...) -- C:\Windows\System32\netcfg-86034.txt [149]
O44 - LFC:[MD5.410E9022CF410786DEFB6F72F6D2A124] - 04/03/2015 - 10:38:58 ---A- . (...) -- C:\Windows\System32\netcfg-86284.txt [152]
O44 - LFC:[MD5.3BAF9333F21DBAD20890833D11F62660] - 04/03/2015 - 10:38:58 ---A- . (...) -- C:\Windows\System32\netcfg-86705.txt [153]
O44 - LFC:[MD5.9D05CF6DA2945BD7FF952910BAE86193] - 04/03/2015 - 10:38:59 ---A- . (...) -- C:\Windows\System32\netcfg-87282.txt [177]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 04/03/2015 - 10:39:09 ---A- . (...) -- C:\Windows\System32\atiicdxx.dat [0]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 04/03/2015 - 10:39:09 ---A- . (...) -- C:\Windows\ativpsrm.bin [0]
O44 - LFC:[MD5.E6A3D6D39C8FEC10DD5FCF1EB767713E] - 04/03/2015 - 10:39:15 ---A- . (...) -- C:\Windows\setupact.log [12853]
O44 - LFC:[MD5.C056DA47523A7EBDE96BF31A49CA05EE] - 04/03/2015 - 10:39:21 ---A- . (...) -- C:\Windows\System32\license.rtf [845]
O44 - LFC:[MD5.82A13232C05598BFABA48278F810D7C0] - 04/03/2015 - 11:42:38 ---A- . (...) -- C:\Windows\System32\netcfg-149994.txt [117]
O44 - LFC:[MD5.82A13232C05598BFABA48278F810D7C0] - 04/03/2015 - 11:42:38 ---A- . (...) -- C:\Windows\System32\netcfg-152927.txt [117]
O44 - LFC:[MD5.A3F4391DFDF2F9E9FE4EAD193265A5AD] - 04/03/2015 - 11:50:53 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [23256]
O44 - LFC:[MD5.9BD41E40039098BF5F8FE878A9A6989E] - 04/03/2015 - 11:50:53 ---A- . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\Drivers\mbamchameleon.sys [75480]
O44 - LFC:[MD5.92386EC021858B22B9716F1B03499489] - 04/03/2015 - 11:50:53 ---A- . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\Drivers\mwac.sys [51928]
O44 - LFC:[MD5.D02A9C84C43DE3FB01C7A242B6688724] - 04/03/2015 - 12:06:27 ---A- . (.Microsoft Corporation - Ressources de l’interface utilisateur parta.) -- C:\Windows\System32\wushareduxresources.dll [99328]
O44 - LFC:[MD5.C82C2AF93F819EE2A2A9C7AB0A531131] - 04/03/2015 - 12:06:27 ---A- . (.Microsoft Corporation - Windows Update client proxy stub 2.) -- C:\Windows\System32\wups2.dll [21504]
O44 - LFC:[MD5.B607284B548E9749B7DFE21F0B0EE376] - 04/03/2015 - 12:06:27 ---A- . (.Microsoft Corporation - Windows Update client proxy stub.) -- C:\Windows\System32\wups.dll [20992]
O44 - LFC:[MD5.CB50AA061BEBBD31DE39A6345AED1566] - 04/03/2015 - 12:19:48 ---A- . (...) -- C:\Windows\System32\netcfg-1352076.txt [250]
O44 - LFC:[MD5.8B74CC7C7BECBDF6C00060FAFB56A7BB] - 04/03/2015 - 12:33:03 ---A- . (.Microsoft Corporation - DLL des événements d’audit de la sécurité.) -- C:\Windows\System32\msaudite.dll [146944]
O44 - LFC:[MD5.CC826EE714E2625F2AF36CD25E69FF1D] - 04/03/2015 - 12:33:03 ---A- . (.Microsoft Corporation - Microsoft RemoteFX VM Transport.) -- C:\Windows\System32\rfxvmt.dll [30208]
O44 - LFC:[MD5.4DE5E4ADB2A45ABDEA5A977141FA2BDC] - 04/03/2015 - 12:33:03 ---A- . (.Microsoft Corporation - UMRDP Display Driver.) -- C:\Windows\System32\rdpudd.dll [214528]
O44 - LFC:[MD5.3A19DD75AB1ECF87885ED308DFB5D32B] - 04/03/2015 - 12:33:04 ---A- . (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll [17408]
O44 - LFC:[MD5.C9EAB99A77F1FD6ACA9366CF78628D84] - 04/03/2015 - 12:33:04 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecpkg.sys [156480]
O44 - LFC:[MD5.40083918DB637FCB8A2C2453A2284603] - 04/03/2015 - 12:33:04 ---A- . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\Windows\System32\Drivers\rdpvideominiport.sys [23272]
O44 - LFC:[MD5.80CAD18595095CE6FAFD7B72354ABB3D] - 04/03/2015 - 12:33:04 ---A- . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\TSpkg.dll [76800]
O44 - LFC:[MD5.E9FC4F9DFF3C996C2F0273F3358AC5CB] - 04/03/2015 - 12:33:05 ---A- . (.Microsoft Corporation - DLL RDPCore TS.) -- C:\Windows\System32\rdpcorets.dll [2801664]
O44 - LFC:[MD5.89D6AFD5B257049375008BAA512910EE] - 04/03/2015 - 12:33:06 ---A- . (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\winlogon.exe [429056]
O44 - LFC:[MD5.54A7E41968B1014510928096E812D6D8] - 04/03/2015 - 12:33:06 ---A- . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll [273920]
O44 - LFC:[MD5.1C0AC35405717EC499F5E2B8ADC28E97] - 04/03/2015 - 12:33:06 ---A- . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll [178688]
O44 - LFC:[MD5.2576E646F41F6E72BD57B952E93FBBCE] - 04/03/2015 - 12:33:06 ---A- . (.Microsoft Corporation - Service du gestionnaire de session locale.) -- C:\Windows\System32\lsm.dll [350720]
O44 - LFC:[MD5.9F7A3199ADD8D0A05EFFB84F0D414970] - 04/03/2015 - 12:33:11 ---A- . (.Microsoft Corporation - Runtime d’appel de procédure distante.) -- C:\Windows\System32\rpcrt4.dll [838144]
O44 - LFC:[MD5.04AE01AD604EAE0909283B90A9BD0BCB] - 04/03/2015 - 12:33:13 ---A- . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys [1229144]
O44 - LFC:[MD5.961DD6EC0AE6C048D0BA0AC650C6A8EF] - 04/03/2015 - 12:33:13 ---A- . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\Drivers\dxgmms1.sys [259816]
O44 - LFC:[MD5.56EA9EEC5687DBB8DD646A4F6D11FA1F] - 04/03/2015 - 13:05:19 ---A- . (...) -- C:\Windows\System32\netcfg-126579.txt [187]
O44 - LFC:[MD5.EA6D8A892F94827DB342101501366A66] - 04/03/2015 - 13:21:10 ---A- . (.Kaspersky Lab ZAO - Filter Core [fre_win8_x86].) -- C:\Windows\System32\Drivers\klflt.sys [120008]
O44 - LFC:[MD5.A3CA7505298AF5DAAF265222DC283624] - 04/03/2015 - 13:21:10 ---A- . (.Kaspersky Lab ZAO - KLHK [fre_win8_x86].) -- C:\Windows\System32\Drivers\klhk.sys [36040]
O44 - LFC:[MD5.C00592E6000FF54DD15F7119060C7265] - 04/03/2015 - 13:21:10 ---A- . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_win8_x86].) -- C:\Windows\System32\Drivers\klif.sys [673464]
O44 - LFC:[MD5.4736D2D2A5402BF4087D73D3EC9E9150] - 04/03/2015 - 13:22:02 ---A- . (...) -- C:\Windows\System32\netcfg-243673.txt [167]
O44 - LFC:[MD5.DAA6AAD525D12F8985695B882301336F] - 04/03/2015 - 14:08:00 ---A- . (...) -- C:\Windows\win.ini [167]
O44 - LFC:[MD5.9120713D1E8868D54B19B7C16648C5F3] - 04/03/2015 - 14:15:52 ---A- . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\Drivers\usb8023.sys [15872]
O44 - LFC:[MD5.C5AC3F6E50500596320747DC96C8316E] - 04/03/2015 - 14:16:26 ---A- . (.Microsoft Corporation - Client ActiveX des services Bureau à distan.) -- C:\Windows\System32\mstscax.dll [5095424]
O44 - LFC:[MD5.AC0B4E69B7CAC4643E3801C3C2169477] - 04/03/2015 - 14:16:26 ---A- . (.Microsoft Corporation - Client avec accès à distance.) -- C:\Windows\System32\aaclient.dll [269312]
O44 - LFC:[MD5.2BE2BCA9EE6BACA15D57871657E58B0C] - 04/03/2015 - 14:16:26 ---A- . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\System32\mstsc.exe [1049600]
O44 - LFC:[MD5.D4868697E71011CC2244D2244AED2FB5] - 04/03/2015 - 14:16:26 ---A- . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [573440]
O44 - LFC:[MD5.61FDC4560746FD5579B69A83E497E20C] - 04/03/2015 - 14:16:26 ---A- . (.Microsoft Corporation - Winstation Library.) -- C:\Windows\System32\winsta.dll [233472]
O44 - LFC:[MD5.ACA0196AB961743820B83C292884FDFB] - 04/03/2015 - 14:17:02 ---A- . (.Microsoft Corporation - Microsoft® C Runtime Library.) -- C:\Windows\System32\msvcp120_clr0400.dll [536776]
O44 - LFC:[MD5.8FE9867871C32E9B9A3276C61A0FACC0] - 04/03/2015 - 14:20:23 ---A- . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\Drivers\http.sys [640000]
O44 - LFC:[MD5.3213F234B8FC8D0869D50B98884EB5F4] - 04/03/2015 - 14:22:49 ---A- . (.Microsoft Corporation - Services de typographie Microsoft DirectX.) -- C:\Windows\System32\DWrite.dll [1421312]
O44 - LFC:[MD5.CD132421F3E2A665EB746ECBA74316A5] - 04/03/2015 - 14:23:06 ---A- . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll [666624]
O44 - LFC:[MD5.13937172E5F58FCF9DF67F252496B139] - 04/03/2015 - 14:23:06 ---A- . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll [187904]
O44 - LFC:[MD5.115DAE15480BA4FA00D11096EDA01A26] - 04/03/2015 - 14:34:22 ---A- . (.Microsoft Corporation - Exécuteur de file d’attente d’opérations pr.) -- C:\Windows\System32\poqexec.exe [132608]
O44 - LFC:[MD5.77A8C35CA0804AF869180CA598F8D26D] - 04/03/2015 - 14:41:05 ---A- . (.Microsoft Corporation - Moteur de stockage extensible pour Microsof.) -- C:\Windows\System32\esent.dll [2382336]
O44 - LFC:[MD5.E7F5FD46572B6975C51EA62B22BD0B07] - 04/03/2015 - 14:41:08 ---A- . (.Microsoft Corporation - Device Inventory Library.) -- C:\Windows\System32\devinv.dll [325120]
O44 - LFC:[MD5.92D3EB1D4EA7158539F65F9FB32895E3] - 04/03/2015 - 14:41:08 ---A- . (.Microsoft Corporation - Mise à jour des données de compatibilité de.) -- C:\Windows\System32\aepdu.dll [202752]
O44 - LFC:[MD5.09F92F901E2A780252114D807F840031] - 04/03/2015 - 14:41:08 ---A- . (.Microsoft Corporation - Mise à jour des données de compatibilité de.) -- C:\Windows\System32\invagent.dll [620544]
O44 - LFC:[MD5.11386929817578527304A361458A51C7] - 04/03/2015 - 14:41:09 ---A- . (.Microsoft Corporation - Application Experience Program Cache.) -- C:\Windows\System32\aepic.dll [159744]
O44 - LFC:[MD5.ACBAD9B5140657987A6CD5DEA448CCD6] - 04/03/2015 - 14:41:09 ---A- . (.Microsoft Corporation - Application Experience Program Inventory Co.) -- C:\Windows\System32\aeinv.dll [886784]
O44 - LFC:[MD5.C518B0A8102FDEF709B4666E87C39D2A] - 04/03/2015 - 14:41:09 ---A- . (.Microsoft Corporation - Compatibility Appraiser.) -- C:\Windows\System32\appraiser.dll [766976]
O44 - LFC:[MD5.ACB06E8D11C7C853AFF8307186FC2458] - 04/03/2015 - 14:41:09 ---A- . (.Microsoft Corporation - General Telemetry.) -- C:\Windows\System32\generaltel.dll [482304]
O44 - LFC:[MD5.AD5FE8D9BD84C438CC8536FFE6CAC11B] - 04/03/2015 - 14:42:23 ---A- . (.Microsoft Corporation - Microsoft Remote Desktop Services Web Proxy.) -- C:\Windows\System32\TSWbPrxy.exe [56320]
O44 - LFC:[MD5.BF8830A4BDD019BBDB676CBFAAB65847] - 04/03/2015 - 14:44:03 ---A- . (.Microsoft Corporation - Microsoft DTV-DVD Video Decoder.) -- C:\Windows\System32\msmpeg2vdec.dll [2400256]
O44 - LFC:[MD5.E1337CBF81DBABF9CC5C6E286BC0CEEA] - 04/03/2015 - 14:45:08 ---A- . (.Microsoft Corporation - Agent de récupération Microsoft Windows.) -- C:\Windows\System32\ReAgentc.exe [24064]
O44 - LFC:[MD5.038AB49C160A4636D4E103A1FF34B9A5] - 04/03/2015 - 14:45:08 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\oleaut32.dll [567808]
O44 - LFC:[MD5.C023A2D6BBC87CC7649AB066EC898E06] - 04/03/2015 - 14:45:09 ---A- . (.Microsoft Corporation - GDI Client DLL.) -- C:\Windows\System32\gdi32.dll [1075712]
O44 - LFC:[MD5.43647B730E82998201C61CA7FF7B524A] - 04/03/2015 - 14:45:11 ---A- . (...) -- C:\Windows\System32\ApnDatabase.xml [391526]
O44 - LFC:[MD5.FC925BF83D0EA5E0E524F86E310D64F4] - 04/03/2015 - 14:45:13 ---A- . (.Microsoft Corporation - Client Gestion des droits Windows.) -- C:\Windows\System32\msdrm.dll [451072]
O44 - LFC:[MD5.5F96687B87B35AB996FE125DC0288544] - 04/03/2015 - 14:45:15 ---A- . (.Microsoft Corporation - Direct3D 11 Runtime.) -- C:\Windows\System32\d3d11.dll [1711616]
O44 - LFC:[MD5.E7CCBE84264E073BB307839E01A33BF7] - 04/03/2015 - 14:45:15 ---A- . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Inter.) -- C:\Windows\System32\msieftp.dll [273408]
O44 - LFC:[MD5.09246837DE0FB0AB51EF2CE4B17BDE83] - 04/03/2015 - 14:45:16 ---A- . (.Microsoft Corporation - Codec pour photographie Windows Media Photo.) -- C:\Windows\System32\WMPhoto.dll [368640]
O44 - LFC:[MD5.EE25AE660465CA935F5DD3AA00CCF3EB] - 04/03/2015 - 14:45:16 ---A- . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\Drivers\mrxdav.sys [122880]
O44 - LFC:[MD5.BB494AA9267EBD12DEC13025C2CE9359] - 04/03/2015 - 14:45:17 ---A- . (.Microsoft Corporation - DLL de l’agent de récupération Microsoft Wi.) -- C:\Windows\System32\ReAgent.dll [375808]
O44 - LFC:[MD5.EA9DFB62FE9DBA06983225DAF942C388] - 04/03/2015 - 14:45:17 ---A- . (.Microsoft Corporation - Microsoft Windows Reset Engine Mig Wrapper.) -- C:\Windows\System32\resetengmig.dll [733184]
O44 - LFC:[MD5.AC73B3669DF91270F175526B6BA98FB6] - 04/03/2015 - 14:45:17 ---A- . (.Microsoft Corporation - Moteur de réinitialisation Microsoft Window.) -- C:\Windows\System32\reseteng.dll [847360]
O44 - LFC:[MD5.FBAE48BB41890B38F8220C043C3B378C] - 04/03/2015 - 14:45:17 ---A- . (.Microsoft Corporation - Réinitialisation de Microsoft Windows.) -- C:\Windows\System32\sysreset.exe [117248]
O44 - LFC:[MD5.4B38E4C990EF80D03BEF9586F273C149] - 04/03/2015 - 14:45:18 ---A- . (.Microsoft Corporation - Microsoft GDI+.) -- C:\Windows\System32\GdiPlus.dll [1437184]
O44 - LFC:[MD5.95CB3B8A0E5B7B44B4EF6DCD4CD76EA4] - 04/03/2015 - 14:45:20 ---A- . (.Microsoft Corporation - DLL d’exécution de l’infrastructure de test.) -- C:\Windows\System32\Windows.ApplicationModel.Store.TestingFramework.dll [124928]
O44 - LFC:[MD5.319959AB944F14C9D0AB38A7112F0E89] - 04/03/2015 - 14:45:20 ---A- . (.Microsoft Corporation - DLL d’exécution du Windows Store.) -- C:\Windows\System32\Windows.ApplicationModel.Store.dll [143872]
O44 - LFC:[MD5.5D1163E01087D9C142FF1FCFEB67BF42] - 04/03/2015 - 14:45:21 ---A- . (.Microsoft Corporation - DLL WSShared.) -- C:\Windows\System32\WSShared.dll [566784]
O44 - LFC:[MD5.29CFA452E16610B587D4CAF180048212] - 04/03/2015 - 14:45:21 ---A- . (.Microsoft Corporation - Mise en œuvre de l'interface utilisateur de.) -- C:\Windows\System32\NotificationUI.exe [509256]
O44 - LFC:[MD5.57F794FDACC45FABCEFE7C941EF8413F] - 04/03/2015 - 14:45:24 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\System32\atmlib.dll [35328]
O44 - LFC:[MD5.4B4E4FE26318D7428B74340B3F67D283] - 04/03/2015 - 14:45:24 ---A- . (.Microsoft Corporation - DCI Manager.) -- C:\Windows\System32\dciman32.dll [10752]
O44 - LFC:[MD5.87EC7DE8D6242D6FCC671DED285F66C6] - 04/03/2015 - 14:45:24 ---A- . (.Microsoft Corporation - Font Subsetting DLL.) -- C:\Windows\System32\fontsub.dll [75776]
O44 - LFC:[MD5.36D755FFED947A08B1650ACE9644FAB8] - 04/03/2015 - 14:45:24 ---A- . (.Microsoft Corporation - Language Pack.) -- C:\Windows\System32\lpk.dll [3072]
O44 - LFC:[MD5.27E18DC09423730863241E3F207A36C4] - 04/03/2015 - 14:45:25 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\System32\atmfd.dll [300032]
O44 - LFC:[MD5.96E88C54A0CF32A74483819DA7DA3A15] - 04/03/2015 - 14:45:26 ---A- . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\Drivers\mrxsmb20.sys [167424]
O44 - LFC:[MD5.5FAC7AC77D9ADD42579EDF678F08DF9F] - 04/03/2015 - 14:45:26 ---A- . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\Drivers\mrxsmb.sys [304128]
O44 - LFC:[MD5.F2F3B9B3070F9B28D08B9097FA01B7FC] - 04/03/2015 - 14:45:28 ---A- . (.Microsoft Corporation - Extension du Panneau de configuration du sy.) -- C:\Windows\System32\SysFxUI.dll [336896]
O44 - LFC:[MD5.861715D570A2DE8A9FF8A1B41B21DF0F] - 04/03/2015 - 14:45:28 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmk.sys [83456]
O44 - LFC:[MD5.50B8D915F3514EC8BE7DF0D2EDEC44BA] - 04/03/2015 - 14:45:28 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmkaud.sys [5120]
O44 - LFC:[MD5.19EBD4DA50D9AA30F406B9E5D9C2C38C] - 04/03/2015 - 14:45:28 ---A- . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\Windows\System32\Drivers\portcls.sys [219136]
O44 - LFC:[MD5.5B06CCC1AA681AE9C88880353BA408A1] - 04/03/2015 - 14:45:28 ---A- . (.Microsoft Corporation - SysFx DSP.) -- C:\Windows\System32\WMALFXGFXDSP.dll [1262744]
O44 - LFC:[MD5.097C8D0212D302D85733A2CB82758EE5] - 04/03/2015 - 14:45:29 ---A- . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) -- C:\Windows\System32\nlasvc.dll [287232]
O44 - LFC:[MD5.BFD2283E06C7E7E6ACDB82A384F38896] - 04/03/2015 - 14:45:29 ---A- . (.Microsoft Corporation - Indicateur d’état de la connectivité réseau.) -- C:\Windows\System32\ncsi.dll [284160]
O44 - LFC:[MD5.A1E1605A90D6867ECF1F1FDBD2E3138D] - 04/03/2015 - 14:45:29 ---A- . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\System32\nlaapi.dll [55296]
O44 - LFC:[MD5.022D85677F134B87CF52B7B4D387E597] - 04/03/2015 - 14:45:36 ---A- . (.Microsoft Corporation - Microsoft DirectPlay NAT Helper PAST.) -- C:\Windows\System32\dpnhpast.dll [8192]
O44 - LFC:[MD5.C60D976C593DA85D9A6AAE569D326482] - 04/03/2015 - 14:45:36 ---A- . (.Microsoft Corporation - Microsoft DirectPlay NAT Helper UPNP.) -- C:\Windows\System32\dpnhupnp.dll [8192]
O44 - LFC:[MD5.B37864BD79669F54FF17CB0C690D45ED] - 04/03/2015 - 14:45:36 ---A- . (.Microsoft Corporation - Microsoft DirectPlay NAT Helper UPnP.) -- C:\Windows\System32\dpnathlp.dll [58880]
O44 - LFC:[MD5.BCDEAC7B23D1FE80F1DDE28A1EB3F7B1] - 04/03/2015 - 14:45:36 ---A- . (.Microsoft Corporation - Microsoft DirectPlay.) -- C:\Windows\System32\dpnet.dll [375808]
O44 - LFC:[MD5.2B8D80A99DE3241D8B70AB5398FEB529] - 04/03/2015 - 14:45:36 ---A- . (.Microsoft Corporation - Microsoft DirectPlay8 Address.) -- C:\Windows\System32\dpnaddr.dll [2560]
O44 - LFC:[MD5.582AC4D3649CCB8091A44A0C6663126F] - 04/03/2015 - 14:45:36 ---A- . (.Microsoft Corporation - Microsoft DirectPlay8 Lobby.) -- C:\Windows\System32\dpnlobby.dll [3072]
O44 - LFC:[MD5.62D43E81869DEF3F98BCD42DC529A905] - 04/03/2015 - 14:45:36 ---A- . (.Microsoft Corporation - Serveur Microsoft DirectPlay 8.) -- C:\Windows\System32\dpnsvr.exe [32256]
O44 - LFC:[MD5.54DEECA318F4EA694F5FA66AAA68BB0D] - 04/03/2015 - 14:45:37 ---A- . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [944640]
O44 - LFC:[MD5.4E2A0C91A8246AB25B140695123EAECA] - 04/03/2015 - 14:45:42 ---A- . (.Microsoft Corporation - MSXML 6.0.) -- C:\Windows\System32\msxml6.dll [1802240]
O44 - LFC:[MD5.58A3A3B69D236F27D33A90B46CA898E5] - 04/03/2015 - 14:45:42 ---A- . (.Microsoft Corporation - XML Resources.) -- C:\Windows\System32\msxml6r.dll [2048]
O44 - LFC:[MD5.254D04B140C9F4A2034F3A8F6BE51696] - 04/03/2015 - 14:45:44 ---A- . (.Microsoft Corporation - Assistant Compatibilité des programmes.) -- C:\Windows\System32\pcalua.exe [11776]
O44 - LFC:[MD5.A18D56307DD1AAD593E8421A90E29755] - 04/03/2015 - 14:45:44 ---A- . (.Microsoft Corporation - Program Compatibility Assistant Diagnostic.) -- C:\Windows\System32\pcadm.dll [24064]
O44 - LFC:[MD5.519CBD4EA8F0046B40768FC5E7330503] - 04/03/2015 - 14:45:44 ---A- . (.Microsoft Corporation - Ressources d’événement de l’Assistant Compa.) -- C:\Windows\System32\pcaevts.dll [11776]
O44 - LFC:[MD5.B06FF821B79BED0912579A48140A4C46] - 04/03/2015 - 14:45:44 ---A- . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) -- C:\Windows\System32\pcasvc.dll [333824]
O44 - LFC:[MD5.1F3780A663053B4CAF108C3524E8CD40] - 04/03/2015 - 14:45:49 ---A- . (.Microsoft Corporation - Édition DirectShow..) -- C:\Windows\System32\qedit.dll [497152]
O44 - LFC:[MD5.B92C9A8C3CAE22129CC5B4A920B00608] - 04/03/2015 - 14:45:53 ---A- . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\Drivers\afd.sys [439296]
O44 - LFC:[MD5.066A5B50F8584260369130476EA38841] - 04/03/2015 - 14:45:58 ---A- . (.Microsoft Corporation - Environnement RemoteApp.) -- C:\Windows\System32\rdpshell.exe [269312]
O44 - LFC:[MD5.6954431724A32132E8961D9BA2708786] - 04/03/2015 - 14:45:58 ---A- . (.Microsoft Corporation - Microsoft ® Console Based Script Host.) -- C:\Windows\System32\cscript.exe [115712]
O44 - LFC:[MD5.55C7A599269BDC4772E795A1327ECFAA] - 04/03/2015 - 14:45:58 ---A- . (.Microsoft Corporation - Microsoft ® Script Runtime.) -- C:\Windows\System32\scrrun.dll [156160]
O44 - LFC:[MD5.23D0BC752AB7539D9886D4E56BF8F69F] - 04/03/2015 - 14:45:58 ---A- . (.Microsoft Corporation - Windows ® Script Component Runtime.) -- C:\Windows\System32\scrobj.dll [162304]
O44 - LFC:[MD5.339C34B05E8DE8E28168F07864E0186E] - 04/03/2015 - 14:45:59 ---A- . (.Microsoft Corporation - Media Foundation Crash Dump Encryption DLL.) -- C:\Windows\System32\EncDump.dll [100864]
O44 - LFC:[MD5.14EA6FE8ED73A091C34721FEA64B415E] - 04/03/2015 - 14:46:00 ---A- . (.Microsoft Corporation - DLL du rapport d’erreurs Windows.) -- C:\Windows\System32\wer.dll [355840]
O44 - LFC:[MD5.166EAA5CF3E56E4D677FE4D64772646A] - 04/03/2015 - 14:46:00 ---A- . (.Microsoft Corporation - DLL du rapport d’incident dans le mode util.) -- C:\Windows\System32\Faultrep.dll [332800]
O44 - LFC:[MD5.8ADF476F1C61468BA27247049A705C4E] - 04/03/2015 - 14:46:00 ---A- . (.Microsoft Corporation - Générateur de points de terminaison du serv.) -- C:\Windows\System32\AudioEndpointBuilder.dll [136704]
O44 - LFC:[MD5.EC640AAEA81793E35BA469D321722EE8] - 04/03/2015 - 14:46:00 ---A- . (.Microsoft Corporation - Rapport d’erreurs Windows.) -- C:\Windows\System32\WerFaultSecure.exe [23552]
O44 - LFC:[MD5.3631AE3089DE4FAA50D3BD62E370299E] - 04/03/2015 - 14:46:00 ---A- . (.Microsoft Corporation - Rapports de problèmes Windows.) -- C:\Windows\System32\WerFault.exe [385768]
O44 - LFC:[MD5.AF1692285B91D18934D69632974C17C4] - 04/03/2015 - 14:46:00 ---A- . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [596480]
O44 - LFC:[MD5.13A69B4411F31F865EFA42D47566FA2A] - 04/03/2015 - 14:46:01 ---A- . (.Microsoft Corporation - Windows Briefcase Engine.) -- C:\Windows\System32\synceng.dll [72192]
O44 - LFC:[MD5.9A52C66DEB2CC84A185811E9D26C9650] - 04/03/2015 - 14:46:09 ---A- . (.Microsoft Corporation - Microsoft Windows Codecs Library.) -- C:\Windows\System32\WindowsCodecs.dll [1338880]
O44 - LFC:[MD5.D617571F2FEC34485C110CC62183CC3C] - 04/03/2015 - 14:46:11 ---A- . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [170496]
O44 - LFC:[MD5.6E3FE9ED37F6B3EE671AB3893DF8717A] - 04/03/2015 - 14:46:11 ---A- . (.Microsoft Corporation - Windows NT Image Helper.) -- C:\Windows\System32\imagehlp.dll [59392]
O44 - LFC:[MD5.BA8C7A66612AE592C95621D0EDC9016D] - 04/03/2015 - 14:46:14 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [3400704]
O44 - LFC:[MD5.C7E96470AD5552C67092B073B667121B] - 04/03/2015 - 14:46:15 ---A- . (.Microsoft Corporation - Bibliothèque Microsoft D2D.) -- C:\Windows\System32\d2d1.dll [3288576]
O44 - LFC:[MD5.CB0AD586EA7C13AEF616848B64C5CC53] - 04/03/2015 - 14:46:15 ---A- . (.Microsoft Corporation - Direct3D 10 Rasterizer.) -- C:\Windows\System32\d3d10warp.dll [2032640]
O44 - LFC:[MD5.C75F0198F2E86A0F9B47501B99F635B2] - 04/03/2015 - 14:48:15 ---A- . (.Microsoft Corporation - NT Kernel & System.) -- C:\Windows\System32\ntoskrnl.exe [5578560]
O44 - LFC:[MD5.CC74C56FB3FD2793A2AF7D2CA253C460] - 04/03/2015 - 14:48:16 ---A- . (.Microsoft Corporation - Moteur de l’Éditeur de configuration de séc.) -- C:\Windows\System32\scesrv.dll [318464]
O44 - LFC:[MD5.E2FAEFE3E5BE30BAF59951D053769835] - 04/03/2015 - 14:48:17 ---A- . (.Microsoft Corporation - DLL du client API BASE Windows NT.) -- C:\Windows\System32\kernel32.dll [1011712]
O44 - LFC:[MD5.157FA08A7E30735A032C08F39F6F7C55] - 04/03/2015 - 14:48:45 ---A- . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\usbcir.sys [87040]
O44 - LFC:[MD5.03E855AD3F47B802542B0812F47FB9BD] - 04/03/2015 - 14:49:10 ---A- . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\Drivers\usbhub.sys [334680]
O44 - LFC:[MD5.09C8E68669444AFE92B71480110952B1] - 04/03/2015 - 14:49:10 ---A- . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\Drivers\usbehci.sys [64344]
O44 - LFC:[MD5.D3641BCE4BE9858423CF0FA843A77AC1] - 04/03/2015 - 14:49:10 ---A- . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbohci.sys [22016]
O44 - LFC:[MD5.FDC6B192EDAB57EB891AA9418C713197] - 04/03/2015 - 14:49:10 ---A- . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\Drivers\usbport.sys [380248]
O44 - LFC:[MD5.043BC3831B94A57122BE351658B61DC2] - 04/03/2015 - 14:49:10 ---A- . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbuhci.sys [24576]
O44 - LFC:[MD5.D982889116DBD5B36DA276B3C52BC751] - 04/03/2015 - 14:49:10 ---A- . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\Drivers\usbccgp.sys [84992]
O44 - LFC:[MD5.7EADA9537CE615D4A5C0CD56E0B6F87B] - 04/03/2015 - 14:49:10 ---A- . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\Drivers\usbd.sys [18776]
O44 - LFC:[MD5.1136EC767D7915D0F945E38BBC64024C] - 04/03/2015 - 14:49:11 ---A- . (.Microsoft Corporation - Bibliothèque de contrôles de l’expérience u.) -- C:\Windows\System32\comctl32.dll [541696]
O44 - LFC:[MD5.F4C1E92962A66CEB7A49811BE62ABA5A] - 04/03/2015 - 14:49:12 ---A- . (.Microsoft Corporation - MSXML 3.0.) -- C:\Windows\System32\msxml3.dll [1418752]
O44 - LFC:[MD5.14AF2FDF422E64F5D287B94E7CDEB13E] - 04/03/2015 - 14:49:12 ---A- . (.Microsoft Corporation - USB Controller Extension.) -- C:\Windows\System32\Drivers\UCX01000.SYS [180568]
O44 - LFC:[MD5.BAF8495C4D3301C3C75A88454C53517F] - 04/03/2015 - 14:49:12 ---A- . (.Microsoft Corporation - USB XHCI Driver.) -- C:\Windows\System32\Drivers\USBXHCI.SYS [268120]
O44 - LFC:[MD5.99E8E756A1439E5AE74414755A899D6A] - 04/03/2015 - 14:49:12 ---A- . (.Microsoft Corporation - USB3 HUB Driver.) -- C:\Windows\System32\Drivers\USBHUB3.SYS [362328]
O44 - LFC:[MD5.808A03D1997C002A9CA1E22B0F0C968B] - 04/03/2015 - 14:53:20 ---A- . (.Microsoft Corporation - Microsoft® FSRM internal proxy/stub.) -- C:\Windows\System32\srm_ps.dll [15872]
O44 - LFC:[MD5.5B488A0F3D51B3680E725BA8A8446FCE] - 04/03/2015 - 14:53:20 ---A- . (.Microsoft Corporation - Microsoft® File Server Resource Management.) -- C:\Windows\System32\srmtrace.dll [68096]
O44 - LFC:[MD5.6EAEB51D664FEBA37E2066695446978D] - 04/03/2015 - 14:53:20 ---A- . (.Microsoft Corporation - Windows Media MPEG-4 S Video Decoder.) -- C:\Windows\System32\MP4SDECD.DLL [436736]
O44 - LFC:[MD5.E96DC59126525C543CD16A2B19B00373] - 04/03/2015 - 14:53:21 ---A- . (.Microsoft Corporation - Assistant Acquisition de photographies Wind.) -- C:\Windows\System32\wiaacmgr.exe [83968]
O44 - LFC:[MD5.CDB8444909594C181BCFB36B29A7FE75] - 04/03/2015 - 14:53:21 ---A- . (.Microsoft Corporation - DLL Serveur SAM.) -- C:\Windows\System32\samsrv.dll [543232]
O44 - LFC:[MD5.79B9CED0DB5052A4F96CD9B70C74CFC8] - 04/03/2015 - 14:53:21 ---A- . (.Microsoft Corporation - DLL du service d’impression Internet.) -- C:\Windows\System32\inetpp.dll [125440]
O44 - LFC:[MD5.B97D79348D195E6437778081DBA0542F] - 04/03/2015 - 14:53:21 ---A- . (.Microsoft Corporation - Extension noyau pour la gestion des ressour.) -- C:\Windows\System32\srmshell.dll [128000]
O44 - LFC:[MD5.C4EF58B96A3DF00A2F4E8662C8741F2A] - 04/03/2015 - 14:53:21 ---A- . (.Microsoft Corporation - Windows Media Runtime DLL.) -- C:\Windows\System32\Windows.Media.dll [261120]
O44 - LFC:[MD5.353B29C0D49D595DAD7C0AB63C099377] - 04/03/2015 - 14:53:22 ---A- . (.Microsoft Corporation - Moniteur de port d’imprimante WSD.) -- C:\Windows\System32\WSDMon.dll [215040]
O44 - LFC:[MD5.933DBF31E0632B96B74D1A1230AA2199] - 04/03/2015 - 14:53:22 ---A- . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [741376]
O44 - LFC:[MD5.7A63087EDE3504684055A57A45E2AFF9] - 04/03/2015 - 14:53:23 ---A- . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\HdAudio.sys [277504]
O44 - LFC:[MD5.8F47F5F31F001C4F97840DB723618DD0] - 04/03/2015 - 14:53:24 ---A- . (.Microsoft Corporation - GPIO Button Driver.) -- C:\Windows\System32\Drivers\msgpiowin32.sys [24808]
O44 - LFC:[MD5.7289BE4566F0E5126868EB6E4292CC3C] - 04/03/2015 - 14:53:24 ---A- . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\Drivers\partmgr.sys [74984]
O44 - LFC:[MD5.1E0DFBB85EA37AB2BA780EA9AB522026] - 04/03/2015 - 14:53:26 ---A- . (.Microsoft Corporation - Installation de L’API Windows.) -- C:\Windows\System32\setupapi.dll [1752064]
O44 - LFC:[MD5.84BD45C2D0D582A7F3AA1C0D99D5C36D] - 04/03/2015 - 14:53:28 ---A- . (.Microsoft Corporation - Microsoft® File Server Resource Management.) -- C:\Windows\System32\srmstormod.dll [202752]
O44 - LFC:[MD5.7194769CA375358E5BD89929C2C47B4C] - 04/03/2015 - 14:53:29 ---A- . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1532928]
O44 - LFC:[MD5.B333AC31035042FA1869B79A8BE41469] - 04/03/2015 - 14:53:30 ---A- . (.Microsoft Corporation - DLL de MSCTF Server.) -- C:\Windows\System32\msctf.dll [890880]
O44 - LFC:[MD5.8515F96E2188A98F42C4D906ED787849] - 04/03/2015 - 14:53:30 ---A- . (.Microsoft Corporation - Microsoft Management Console.) -- C:\Windows\System32\mmc.exe [1611776]
O44 - LFC:[MD5.1C51CD68DB8C774E4C69CD628CFC4C80] - 04/03/2015 - 14:53:49 ---A- . (.Microsoft Corporation - API en mode utilisateur FWP/IPsec.) -- C:\Windows\System32\FWPUCLNT.DLL [245248]
O44 - LFC:[MD5.7DC6585B20C14FC1A2BFB16BCDE2FB7F] - 04/03/2015 - 14:53:49 ---A- . (.Microsoft Corporation - Application d’assistance Netsh de la platef.) -- C:\Windows\System32\nshwfp.dll [702464]
O44 - LFC:[MD5.EDAB8FE00AF69FD2E5759AED2967C4DD] - 04/03/2015 - 14:53:49 ---A- . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [683520]
O44 - LFC:[MD5.0BF829460F9FFE58E80383AE54B4E544] - 04/03/2015 - 14:53:49 ---A- . (.Microsoft Corporation - Moteur de filtrage de base.) -- C:\Windows\System32\BFE.DLL [473600]
O44 - LFC:[MD5.CE1FD9BFE0EBFF5B57FCEB1CC620ACA8] - 04/03/2015 - 14:53:49 ---A- . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\Windows\System32\Drivers\wfplwfs.sys [38720]
O44 - LFC:[MD5.2939B7C8F291680F5803DEBB4BCA52E4] - 04/03/2015 - 14:54:00 ---A- . (.Microsoft Corporation - Bibliothèque d’objets et de contrôles de do.) -- C:\Windows\System32\shdocvw.dll [199168]
O44 - LFC:[MD5.3EC71FD47C9E2BC3BD0F1660B7F92A6C] - 04/03/2015 - 14:54:40 ---A- . (.Microsoft Corporation - Crypto API32.) -- C:\Windows\System32\crypt32.dll [1569792]
O44 - LFC:[MD5.6C3F68096889CFD2D1CC68212C736E60] - 04/03/2015 - 14:54:52 ---A- . (.Microsoft Corporation - DLL du fournisseur du service de gestion d’.) -- C:\Windows\System32\dimsroam.dll [38400]
O44 - LFC:[MD5.8BE0E10A872DB03E12E9E7AACB5F1707] - 04/03/2015 - 14:54:52 ---A- . (.Microsoft Corporation - Dialogue du Sélecteur d’objet.) -- C:\Windows\System32\objsel.dll [559104]
O44 - LFC:[MD5.60650221CA2C39B70E0DDAB942831420] - 04/03/2015 - 14:54:52 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecdd.sys [80728]
O44 - LFC:[MD5.DE44077D44B27F8560B3ABF9EFFE63BB] - 04/03/2015 - 14:54:52 ---A- . (.Microsoft Corporation - LSA SSPI RPC interface DLL.) -- C:\Windows\System32\sspisrv.dll [16384]
O44 - LFC:[MD5.EA154EBBD85C649ED42C3BA43AD539FF] - 04/03/2015 - 14:54:52 ---A- . (.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\System32\lsass.exe [23552]
O44 - LFC:[MD5.1AD2DB7B187610B67E69F4A34A4E0708] - 04/03/2015 - 14:54:53 ---A- . (.Microsoft Corporation - DLL du client API BASE Windows NT.) -- C:\Windows\System32\KernelBase.dll [755712]
O44 - LFC:[MD5.FD775E4EBF260D8694D8E0DB9E3C1841] - 04/03/2015 - 14:54:53 ---A- . (.Microsoft Corporation - DPAPI Server.) -- C:\Windows\System32\dpapisrv.dll [141312]
O44 - LFC:[MD5.2256281385DCD8B389F976EB7475B455] - 04/03/2015 - 14:54:53 ---A- . (.Microsoft Corporation - Security Support Provider Interface.) -- C:\Windows\System32\sspicli.dll [131584]
O44 - LFC:[MD5.CB65E0A0F926497B74C01E91349BD5FD] - 04/03/2015 - 14:55:38 ---A- . (.Microsoft Corporation - Interface utilisateur de consentement pour.) -- C:\Windows\System32\consent.exe [104792]
O44 - LFC:[MD5.2153ADB83E48B54B384FF9651D695913] - 04/03/2015 - 14:55:38 ---A- . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [52224]
O44 - LFC:[MD5.977D36EA5A97EF972EEEEA97D33A98C5] - 04/03/2015 - 14:55:38 ---A- . (.Microsoft Corporation - Windows® installer.) -- C:\Windows\System32\msihnd.dll [295424]
O44 - LFC:[MD5.E08AD6127CFD2B2196E0219D535443F1] - 04/03/2015 - 14:55:39 ---A- . (.Microsoft Corporation - Interface utilisateur d’authentification Wi.) -- C:\Windows\System32\authui.dll [2037760]
O44 - LFC:[MD5.1122B660FD27AB3BC94534B5EA98259C] - 04/03/2015 - 14:55:40 ---A- . (.Microsoft Corporation - ActiveX Interface Marshaling Library.) -- C:\Windows\System32\actxprxy.dll [754176]
O44 - LFC:[MD5.63AECC991FF55C65F583A2D16BDB6AE5] - 04/03/2015 - 14:55:40 ---A- . (.Microsoft Corporation - Windows Installer.) -- C:\Windows\System32\msi.dll [2416640]
O44 - LFC:[MD5.FC6608DAC34E4392DFA1F3321C3E9445] - 04/03/2015 - 14:55:47 ---A- . (.Microsoft Corporation - TWINUI.) -- C:\Windows\System32\twinui.dll [8858624]
O44 - LFC:[MD5.02969E220C69344334E406EBDC50504B] - 04/03/2015 - 14:57:23 ---A- . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\Windows\System32\Drivers\WdBoot.sys [29688]
O44 - LFC:[MD5.B726D9B4EB781FCB3097CBA80C3BE167] - 04/03/2015 - 14:57:24 ---A- . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\Windows\System32\Drivers\WdFilter.sys [231080]
O44 - LFC:[MD5.D4672231F8BA23F726F0705EA03D57C2] - 04/03/2015 - 14:57:29 ---A- . (.Microsoft Corporation - Accès distant PPP EAP-TLS.) -- C:\Windows\System32\rastls.dll [510464]
O44 - LFC:[MD5.6C034D54DA0E13EEE5AE1A014964C209] - 04/03/2015 - 14:57:31 ---A- . (.Microsoft Corporation - Dialogues communs de certificats Microsoft.) -- C:\Windows\System32\cryptdlg.dll [25088]
O44 - LFC:[MD5.A30A616F4026FD52E519EA401DE0C2FC] - 04/03/2015 - 14:57:35 ---A- . (.Microsoft Corporation - Accessibilité au Clavier visuel.) -- C:\Windows\System32\osk.exe [1440256]
O44 - LFC:[MD5.62FB9CC2F6E0EF8015EA06ECFD746154] - 04/03/2015 - 14:57:55 ---A- . (.Microsoft Corporation - Nettoyage des fichiers d’installation.) -- C:\Windows\System32\setupcln.dll [76800]
O44 - LFC:[MD5.B7267F83DE710AF993A15380C1F33239] - 04/03/2015 - 14:57:56 ---A- . (...) -- C:\Windows\System32\OEMLicense.dll [83968]
O44 - LFC:[MD5.EC598115895C5E2BFCC3EC6D1DD5E1E2] - 04/03/2015 - 14:57:57 ---A- . (.Microsoft Corporation - Client de gestion de licences du Windows St.) -- C:\Windows\System32\WSClient.dll [167424]
O44 - LFC:[MD5.EE5C5712BBA245CD0C394EF54410CBEB] - 04/03/2015 - 14:57:57 ---A- . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\Windows\System32\Drivers\dam.sys [51544]
O44 - LFC:[MD5.810B2358688A62CD67F0FBC699628D48] - 04/03/2015 - 14:57:57 ---A- . (.Microsoft Corporation - Windows Store Licensing Sync Client.) -- C:\Windows\System32\WSSync.dll [159232]
O44 - LFC:[MD5.4A4A793059187D8C85797F0FB8D9E48C] - 04/03/2015 - 14:57:58 ---A- . (.Microsoft Corporation - Dll de client de gestion de licences du log.) -- C:\Windows\System32\sppc.dll [91648]
O44 - LFC:[MD5.AFC77B1BD4E14302C93F5E05D5B261DD] - 04/03/2015 - 14:57:58 ---A- . (.Microsoft Corporation - Software Protection Platform Windows Plugin.) -- C:\Windows\System32\sppwinob.dll [330752]
O44 - LFC:[MD5.3BB3B6ECD7A7244089062FF077E3844A] - 04/03/2015 - 14:57:58 ---A- . (.Microsoft Corporation - Windows Setup UI.) -- C:\Windows\System32\WinSetupUI.dll [81920]
O44 - LFC:[MD5.7069B004CC64092FC3CA9129C39CDB19] - 04/03/2015 - 14:57:59 ---A- . (.Microsoft Corporation - Software Protection Platform Plugins.) -- C:\Windows\System32\sppobjs.dll [991232]
O44 - LFC:[MD5.9E172AED2556DF2048DD9020B302F09C] - 04/03/2015 - 14:58:01 ---A- . (.Microsoft Corporation - Service du Windows Store.) -- C:\Windows\System32\WSService.dll [2156392]
O44 - LFC:[MD5.34E2F63B923188EF08379BA7441BBA56] - 04/03/2015 - 14:58:04 ---A- . (.Microsoft Corporation - Service de la plateforme de protection logi.) -- C:\Windows\System32\sppsvc.exe [3831808]
O44 - LFC:[MD5.81F2FEE55660E51820C93A388AE8FEB9] - 04/03/2015 - 14:58:29 ---A- . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\Drivers\monitor.sys [24064]
O44 - LFC:[MD5.3C3C50AA12E2E48A9FEAA4BF5AA789A0] - 04/03/2015 - 14:58:29 ---A- . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\Drivers\mouhid.sys [20992]
O44 - LFC:[MD5.73DC5278EE0A0F01750A0DEF17FE7EFD] - 04/03/2015 - 14:58:30 ---A- . (.Microsoft Corporation - DeviceItem inproc devquery subsystem.) -- C:\Windows\System32\DevDispItemProvider.dll [36352]
O44 - LFC:[MD5.EDB8FBC09360E47A1C13162420D1B030] - 04/03/2015 - 14:58:30 ---A- . (.Microsoft Corporation - Function Discovery Printer Proxy Dll.) -- C:\Windows\System32\WSDPrintProxy.DLL [59392]
O44 - LFC:[MD5.97E3BDF2EFD08A767C359C7A37416F94] - 04/03/2015 - 14:58:30 ---A- . (.Microsoft Corporation - Ndis IM Platform MUX Notify Object.) -- C:\Windows\System32\NdisImPlatform.dll [94208]
O44 - LFC:[MD5.7F8D446C49D3052CD364C01477BCE5ED] - 04/03/2015 - 14:58:30 ---A- . (.Microsoft Corporation - Setting Synchronization Information.) -- C:\Windows\System32\SettingSyncInfo.dll [100864]
O44 - LFC:[MD5.5E00A1785DD1E430FFA95B97A34DBC5B] - 04/03/2015 - 14:58:30 ---A- . (.Microsoft Corporation - Tâche d’analyse de l’intégrité des données.) -- C:\Windows\System32\discan.dll [120832]
O44 - LFC:[MD5.EC9B71B41184284E65F496B39C572F30] - 04/03/2015 - 14:58:31 ---A- . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\storahci.sys [66280]
O44 - LFC:[MD5.67A05BE41C37A3BF140377C0CEFFC309] - 04/03/2015 - 14:58:31 ---A- . (.Microsoft Corporation - Panneau de configuration - Gestion de l’ali.) -- C:\Windows\System32\powercfg.cpl [145408]
O44 - LFC:[MD5.A3E6E1E7DA37D0C919D2A0EA1C18A9F9] - 04/03/2015 - 14:58:31 ---A- . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\Windows\System32\Drivers\tpm.sys [121576]
O44 - LFC:[MD5.2F5D913671946E1823526728D41CA1BF] - 04/03/2015 - 14:58:32 ---A- . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\Drivers\FWPKCLNT.SYS [271080]
O44 - LFC:[MD5.B09CD9E2CF8AADA4C71534A356AD5210] - 04/03/2015 - 14:58:32 ---A- . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\Windows\System32\Drivers\dumpsd.sys [104168]
O44 - LFC:[MD5.FE79AC1E9A85CDC76AF6DFDB1B06CBE7] - 04/03/2015 - 14:58:33 ---A- . (.Microsoft Corporation - DLL du moniteur de port d’impression dynami.) -- C:\Windows\System32\usbmon.dll [192000]
O44 - LFC:[MD5.725EF6FE7EDB150BF25B3D8EA7819FD4] - 04/03/2015 - 14:58:33 ---A- . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\Windows\System32\Drivers\sdbus.sys [158952]
O44 - LFC:[MD5.2C574148A7DB534A72199D775591D1B4] - 04/03/2015 - 14:58:33 ---A- . (.Microsoft Corporation - Synchronisation des paramètres.) -- C:\Windows\System32\SettingSync.dll [356352]
O44 - LFC:[MD5.C0F61FCAB858FBF0A4D554F9939FA3FC] - 04/03/2015 - 14:58:33 ---A- . (.Microsoft Corporation - Windows Runtime OnlineId Authentication DLL.) -- C:\Windows\System32\Windows.Security.Authentication.OnlineId.dll [504320]
O44 - LFC:[MD5.27AD1D070DFF4F508F063779CC8882C4] - 04/03/2015 - 14:58:33 ---A- . (.Microsoft Corporation - Énumérateur d’appareil mobile.) -- C:\Windows\System32\wpdbusenum.dll [79872]
O44 - LFC:[MD5.E6C1B5B2788C76C3A6565CFCE4A512CE] - 04/03/2015 - 14:58:34 ---A- . (.Microsoft Corporation - Créer un espace de travail Windows To Go.) -- C:\Windows\System32\pwcreator.exe [673280]
O44 - LFC:[MD5.0BF4D74962263306006C82DFBB114554] - 04/03/2015 - 14:58:34 ---A- . (.Microsoft Corporation - Driver Store API.) -- C:\Windows\System32\drvstore.dll [550912]
O44 - LFC:[MD5.BAD3F8C116412AF06DEE2883333BAB9E] - 04/03/2015 - 14:58:34 ---A- . (.Microsoft Corporation - Service Broker pour les événements horaires.) -- C:\Windows\System32\TimeBrokerServer.dll [114176]
O44 - LFC:[MD5.AEF67EF55A41965A0CAB23CCCC57E442] - 04/03/2015 - 14:58:35 ---A- . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\Drivers\storport.sys [302824]
O44 - LFC:[MD5.9C4CD6ADB8FB30BAA1B642FFFD04E194] - 04/03/2015 - 14:58:35 ---A- . (.Microsoft Corporation - WinMDE DLL.) -- C:\Windows\System32\winmde.dll [893952]
O44 - LFC:[MD5.2072CE914C627A37E8CC8592E68A8851] - 04/03/2015 - 14:58:36 ---A- . (.Microsoft Corporation - Objets de configuration du réseau.) -- C:\Windows\System32\netcfgx.dll [357888]
O44 - LFC:[MD5.20A4983586DC02E81D4CC17A3D0399DF] - 04/03/2015 - 14:58:36 ---A- . (.Microsoft Corporation - Service Broker pour les événements système.) -- C:\Windows\System32\SystemEventsBrokerServer.dll [117760]
O44 - LFC:[MD5.993062837897D9E9B57F43E35C21BFB1] - 04/03/2015 - 14:58:36 ---A- . (.Microsoft Corporation - WMPMDE DLL.) -- C:\Windows\System32\wmpmde.dll [820224]
O44 - LFC:[MD5.54574CAD4D52690EA31BB5BE4DF00608] - 04/03/2015 - 14:58:39 ---A- . (.Microsoft Corporation - Media Foundation ASF Source and Sink DLL.) -- C:\Windows\System32\mfasfsrcsnk.dll [850944]
O44 - LFC:[MD5.A2476B7D165AFB10A8FA4E335DEC9E88] - 04/03/2015 - 14:59:19 ---A- . (.Microsoft Corporation - Décodeur vidéo Windows Media.) -- C:\Windows\System32\WMVDECOD.DLL [2620928]
O44 - LFC:[MD5.4C48253C6A21CCEBA071B58A5CDF17C1] - 04/03/2015 - 14:59:34 ---A- . (.Microsoft Corporation - Microsoft® C Runtime Library.) -- C:\Windows\System32\msvcr120_clr0400.dll [875688]
O44 - LFC:[MD5.688C938523639C1A96A66B3832B7E74F] - 04/03/2015 - 15:01:03 ---A- . (.Microsoft Corporation - Fichier DLL de ressources des fuseaux horai.) -- C:\Windows\System32\tzres.dll [2048]
O44 - LFC:[MD5.E4301756EADB8C9D9B5987EE23D67A28] - 04/03/2015 - 15:01:03 ---A- . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.DLL [9374208]
O44 - LFC:[MD5.9373236B1D10BAC4792EA623208A95E9] - 04/03/2015 - 15:01:04 ---A- . (.Microsoft Corporation - File History Service Control Library.) -- C:\Windows\System32\fhsvcctl.dll [16896]
O44 - LFC:[MD5.44D1EF3CDB0B286FD73A7C0144CC6B1E] - 04/03/2015 - 15:01:04 ---A- . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\Drivers\wanarp.sys [70656]
O44 - LFC:[MD5.22703DE87E9566FF0E44908A1A7C6521] - 04/03/2015 - 15:01:04 ---A- . (.Microsoft Corporation - Microsoft Windows Media Component Removal F.) -- C:\Windows\System32\dxmasf.dll [4608]
O44 - LFC:[MD5.22703DE87E9566FF0E44908A1A7C6521] - 04/03/2015 - 15:01:04 ---A- . (.Microsoft Corporation - Microsoft Windows Media Component Removal F.) -- C:\Windows\System32\msdxm.ocx [4608]
O44 - LFC:[MD5.71F6E2AF63B0E52B36CEE7F0AE076A18] - 04/03/2015 - 15:01:04 ---A- . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\Drivers\ndistapi.sys [20480]
O44 - LFC:[MD5.7CACC55F59D825EA184717C1186C8222] - 04/03/2015 - 15:01:04 ---A- . (.Microsoft Corporation - Remote Access Media DLL for COM ports.) -- C:\Windows\System32\rasser.dll [22016]
O44 - LFC:[MD5.F90D455A2AFC571AB0BFDB90E577C8F8] - 04/03/2015 - 15:01:04 ---A- . (.Microsoft Corporation - TAPI Kernel-Mode Service Provider.) -- C:\Windows\System32\kmddsp.tsp [38912]
O44 - LFC:[MD5.48C9E66EFA123124684AB88DC6C966FC] - 04/03/2015 - 15:01:04 ---A- . (.Microsoft Corporation - Windows Media Player System Preparation DLL.) -- C:\Windows\System32\spwmp.dll [9216]
O44 - LFC:[MD5.0C7BD537688249BF9FA0B058B1F8EA56] - 04/03/2015 - 15:01:05 ---A- . (.Microsoft Corporation - Bibliothèque d’intégration de lecture autom.) -- C:\Windows\System32\fhautoplay.dll [57856]
O44 - LFC:[MD5.6A809BC09C2C8F1AEE88817B03CB3D42] - 04/03/2015 - 15:01:06 ---A- . (.Microsoft Corporation - File History HomeGroup Listener.) -- C:\Windows\System32\fhlisten.dll [51200]
O44 - LFC:[MD5.68BE6A900D57802040DADBB0E8A10BCB] - 04/03/2015 - 15:01:06 ---A- . (.Microsoft Corporation - File History Search Protocol Handler.) -- C:\Windows\System32\fhsrchph.dll [51712]
O44 - LFC:[MD5.9CF0CADE97F69850C46FE6FC6BE672A7] - 04/03/2015 - 15:01:06 ---A- . (.Microsoft Corporation - Fournisseur de service TAPI proxy NDIS.) -- C:\Windows\System32\ndptsp.tsp [51200]
O44 - LFC:[MD5.01FE24E46308425762D44ED6873432D6] - 04/03/2015 - 15:01:06 ---A- . (.Microsoft Corporation - Gestionnaire de tâches de l’historique des.) -- C:\Windows\System32\fhtask.dll [32768]
O44 - LFC:[MD5.48C690A3F2106A23B261442E08992E08] - 04/03/2015 - 15:01:06 ---A- . (.Microsoft Corporation - Microsoft Search Hooks.) -- C:\Windows\System32\msshooks.dll [10752]
O44 - LFC:[MD5.CF3FE167858C4DC3E853AFCC43AB4B7F] - 04/03/2015 - 15:01:06 ---A- . (.Microsoft Corporation - Microsoft Search Proxy.) -- C:\Windows\System32\mssprxy.dll [35328]
O44 - LFC:[MD5.A2CA4D86A8790B11BBC88B9C6C0E22D3] - 04/03/2015 - 15:01:06 ---A- . (.Microsoft Corporation - Outil de gestion de l’historique des fichie.) -- C:\Windows\System32\fhmanagew.exe [137216]
O44 - LFC:[MD5.891C9F27FDF801DB98F1CBFA7A5B5192] - 04/03/2015 - 15:01:06 ---A- . (.Microsoft Corporation - PKM Perfmon Counter DLL.) -- C:\Windows\System32\msscntrs.dll [48640]
O44 - LFC:[MD5.2E9563DE4546895B45504A2114FDB58C] - 04/03/2015 - 15:01:06 ---A- . (.Microsoft Corporation - Remote Access Device DLL for modems, PADs a.) -- C:\Windows\System32\rasmxs.dll [32768]
O44 - LFC:[MD5.BDB045E0A7F8F2D5F49DAB65E214E3E1] - 04/03/2015 - 15:01:06 ---A- . (.Microsoft Corporation - Responsable du nettoyage du disque Historiq.) -- C:\Windows\System32\fhcleanup.dll [44032]
O44 - LFC:[MD5.5DE7D9506F686D5599855F46F5048C45] - 04/03/2015 - 15:01:06 ---A- . (.Microsoft Corporation - mssitlb.) -- C:\Windows\System32\mssitlb.dll [94208]
O44 - LFC:[MD5.DADF2DD0BA2D40998572448B13B58F72] - 04/03/2015 - 15:01:07 ---A- . (.Microsoft Corporation - Classes d’assistance Diagnostics RAS.) -- C:\Windows\System32\rasdiag.dll [59392]
O44 - LFC:[MD5.15930121533C05802966370CA9BC9D9C] - 04/03/2015 - 15:01:07 ---A- . (.Microsoft Corporation - File History Catalog Library.) -- C:\Windows\System32\fhcat.dll [184320]
O44 - LFC:[MD5.4C69BD24C86972A8653B7B900DF76432] - 04/03/2015 - 15:01:07 ---A- . (.Microsoft Corporation - File History Custom Shell Library.) -- C:\Windows\System32\fhshl.dll [110080]
O44 - LFC:[MD5.795310EF141889D66988A816C303BA50] - 04/03/2015 - 15:01:07 ---A- . (.Microsoft Corporation - File History Search API.) -- C:\Windows\System32\fhsrchapi.dll [58368]
O44 - LFC:[MD5.B8C10B9DE50120E8CA3E995F94CA80D7] - 04/03/2015 - 15:01:07 ---A- . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\Drivers\ndproxy.sys [48640]
O44 - LFC:[MD5.2754F16876B03037CCA6FBD8C20E1686] - 04/03/2015 - 15:01:07 ---A- . (.Microsoft Corporation - Service d’historique des fichiers.) -- C:\Windows\System32\fhsvc.dll [95232]
O44 - LFC:[MD5.EE6CD55E45FB9022B90C12B760A32876] - 04/03/2015 - 15:01:08 ---A- . (.Microsoft Corporation - Connecteur Microsoft Search pour Outlook.) -- C:\Windows\System32\mssphtb.dll [186880]
O44 - LFC:[MD5.492EDFADEFB48CCAE6D848BC484E9630] - 04/03/2015 - 15:01:08 ---A- . (.Microsoft Corporation - FM IFS Utility DLL.) -- C:\Windows\System32\fmifs.dll [41984]
O44 - LFC:[MD5.49236509A2FB427738E6529425D12775] - 04/03/2015 - 15:01:08 ---A- . (.Microsoft Corporation - Gestionnaire de configuration de l’historiq.) -- C:\Windows\System32\fhcfg.dll [239616]
O44 - LFC:[MD5.E33FA199B9C01D9A74E94294C4AA1E8D] - 04/03/2015 - 15:01:08 ---A- . (.Microsoft Corporation - Moteur d’historique des fichiers.) -- C:\Windows\System32\fhengine.dll [181760]
O44 - LFC:[MD5.9133AFFBA020B97100703DB8E598C73F] - 04/03/2015 - 15:01:08 ---A- . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\Windows\System32\Drivers\hidbth.sys [81920]
O44 - LFC:[MD5.463628A91197979E29B3794D8CCB7600] - 04/03/2015 - 15:01:08 ---A- . (.Microsoft Corporation - Service Centre de sécurité de Windows.) -- C:\Windows\System32\wscsvc.dll [77312]
O44 - LFC:[MD5.2616F018CF3BB7D8CEE0C00EE5730898] - 04/03/2015 - 15:01:08 ---A- . (.Microsoft Corporation - XPS to GDI Converter.) -- C:\Windows\System32\XpsGdiConverter.dll [364544]
O44 - LFC:[MD5.B92C32E87DB80A5359AF9899DB5246AA] - 04/03/2015 - 15:01:08 ---A- . (.Microsoft Corporation - iuilp.) -- C:\Windows\System32\iuilp.dll [201216]
O44 - LFC:[MD5.505D57E20CF71CB5075B54A9AC265332] - 04/03/2015 - 15:01:09 ---A- . (.Microsoft Corporation - Audio Ks Endpoint.) -- C:\Windows\System32\AUDIOKSE.dll [463768]
O44 - LFC:[MD5.450DBA20B14DA7F827C71F880483B859] - 04/03/2015 - 15:01:09 ---A- . (.Microsoft Corporation - Disk Management Snap-in Support Library.) -- C:\Windows\System32\dmvdsitf.dll [155648]
O44 - LFC:[MD5.CE3EE84318F36CEFFE8B35F97BFA2804] - 04/03/2015 - 15:01:09 ---A- . (.Microsoft Corporation - Media Foundation ReadWrite DLL.) -- C:\Windows\System32\mfreadwrite.dll [214528]
O44 - LFC:[MD5.973490D8FA14A14C6307BC4F672178DB] - 04/03/2015 - 15:01:10 ---A- . (.Microsoft Corporation - API du Centre de sécurité Windows.) -- C:\Windows\System32\wscapi.dll [123880]
O44 - LFC:[MD5.66468E54263663E8586D78331139C677] - 04/03/2015 - 15:01:10 ---A- . (.Microsoft Corporation - File History Event Listener Library.) -- C:\Windows\System32\fhevents.dll [55296]
O44 - LFC:[MD5.98AE6E68249F47584EB5353D2E371AF4] - 04/03/2015 - 15:01:10 ---A- . (.Microsoft Corporation - Media Foundation Media Engine DLL.) -- C:\Windows\System32\MFMediaEngine.dll [361984]
O44 - LFC:[MD5.C043356858B65CEC5B751CE74F013125] - 04/03/2015 - 15:01:10 ---A- . (.Microsoft Corporation - Microsoft Robocopy.) -- C:\Windows\System32\Robocopy.exe [106496]
O44 - LFC:[MD5.BB208BC1082B114AFBBE6CCBE42AA6CA] - 04/03/2015 - 15:01:10 ---A- . (.Microsoft Corporation - Microsoft Windows Search Filter Host.) -- C:\Windows\System32\SearchFilterHost.exe [171008]
O44 - LFC:[MD5.C4006F04178E58192FFD0A82A5E5E897] - 04/03/2015 - 15:01:10 ---A- . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\Drivers\srvnet.sys [196096]
O44 - LFC:[MD5.1F8B4D03B06617338750496530A92BE5] - 04/03/2015 - 15:01:10 ---A- . (.Microsoft Corporation - Windows.Networking.BackgroundTransfer DLL.) -- C:\Windows\System32\Windows.Networking.BackgroundTransfer.dll [268800]
O44 - LFC:[MD5.FAF5D49C4AB753F034CBB11EC4FA2A03] - 04/03/2015 - 15:01:10 ---A- . (.Microsoft Corporation - XPS Rasterization Service Component.) -- C:\Windows\System32\XpsRasterService.dll [155136]
O44 - LFC:[MD5.59E6B13F5B86545C2CD5A72575FAE99F] - 04/03/2015 - 15:01:11 ---A- . (.Microsoft Corporation - Code Integrity Module.) -- C:\Windows\System32\ci.dll [457624]
O44 - LFC:[MD5.73D493E784E73F32F67735AD58A53616] - 04/03/2015 - 15:01:11 ---A- . (.Microsoft Corporation - Créateur de support de récupération.) -- C:\Windows\System32\RecoveryDrive.exe [614912]
O44 - LFC:[MD5.D54A923CB6EEA45576380C197A480142] - 04/03/2015 - 15:01:11 ---A- . (.Microsoft Corporation - DLL Windows.Networking.) -- C:\Windows\System32\Windows.Networking.dll [411136]
O44 - LFC:[MD5.A3F4696A85745A9D4F161DD7A0E40510] - 04/03/2015 - 15:01:11 ---A- . (.Microsoft Corporation - Objets de configuration RAS.) -- C:\Windows\System32\rascfg.dll [108544]
O44 - LFC:[MD5.DD81ABA1081A9A4E2999568C0DB61A49] - 04/03/2015 - 15:01:11 ---A- . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\Windows\System32\Drivers\srv2.sys [494592]
O44 - LFC:[MD5.701B9B1100E251A9125BD72307ABACFF] - 04/03/2015 - 15:01:11 ---A- . (.Microsoft Corporation - Plateforme de recherche Microsoft Vista.) -- C:\Windows\System32\mssvp.dll [659456]
O44 - LFC:[MD5.1CC2D02C8C6EDE438BB3117F209A9B51] - 04/03/2015 - 15:01:12 ---A- . (.Microsoft Corporation - Application de démarrage Reprise à partir d.) -- C:\Windows\System32\winresume.efi [1034976]
O44 - LFC:[MD5.45FCEB32E3DD66D972689A1E988DA1A2] - 04/03/2015 - 15:01:12 ---A- . (.Microsoft Corporation - Application de démarrage Reprise à partir d.) -- C:\Windows\System32\winresume.exe [939424]
O44 - LFC:[MD5.3673C692D7B891F3DA325D4279F319C5] - 04/03/2015 - 15:01:12 ---A- . (.Microsoft Corporation - Cœur de la plateforme de notifications de t.) -- C:\Windows\System32\wpncore.dll [393216]
O44 - LFC:[MD5.99C5C9A23C0ACA073E94F0DA6FC41CCC] - 04/03/2015 - 15:01:12 ---A- . (.Microsoft Corporation - Isolation graphique de périphérique audio W.) -- C:\Windows\System32\audiodg.exe [207576]
O44 - LFC:[MD5.0DF7B4FA8DF9FF09CE2533135D959257] - 04/03/2015 - 15:01:12 ---A- . (.Microsoft Corporation - OS Loader.) -- C:\Windows\System32\winload.efi [1166720]
O44 - LFC:[MD5.CEE54E54BD041B55C59ACF43D3293EB5] - 04/03/2015 - 15:01:12 ---A- . (.Microsoft Corporation - OS Loader.) -- C:\Windows\System32\winload.exe [1063936]
O44 - LFC:[MD5.58ABD60925CE849CEAEBAC105E74BE5A] - 04/03/2015 - 15:01:13 ---A- . (.Microsoft Corporation - Audio Engine.) -- C:\Windows\System32\AudioEng.dll [426024]
O44 - LFC:[MD5.031397F2F9B2445CD901C8694E4012FD] - 04/03/2015 - 15:01:13 ---A- . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) -- C:\Windows\System32\SearchIndexer.exe [670208]
O44 - LFC:[MD5.434D27871C24D123038BCE8507010276] - 04/03/2015 - 15:01:13 ---A- . (.Microsoft Corporation - Microsoft Enhanced Cryptographic Provider.) -- C:\Windows\System32\rsaenh.dll [252928]
O44 - LFC:[MD5.1F2C7F52F7A53751ED38287EF90942C8] - 04/03/2015 - 15:01:13 ---A- . (.Microsoft Corporation - Session audio.) -- C:\Windows\System32\AudioSes.dll [324368]
O44 - LFC:[MD5.2D4D99D1D23B5274B2948C15FDC747F1] - 04/03/2015 - 15:01:14 ---A- . (.Microsoft Corporation - Composant de redirection du Gestionnaire de.) -- C:\Windows\System32\dwmredir.dll [139264]
O44 - LFC:[MD5.177ACE35AE6DCB6EB52BDECF02BE025F] - 04/03/2015 - 15:01:14 ---A- . (.Microsoft Corporation - Hôte de la fenêtre de la console.) -- C:\Windows\System32\conhost.exe [300032]
O44 - LFC:[MD5.49CDF50EDBC11418B1A33959A99961EA] - 04/03/2015 - 15:01:14 ---A- . (.Microsoft Corporation - Microsoft Search Protocol Handler.) -- C:\Windows\System32\mssph.dll [403968]
O44 - LFC:[MD5.4DD38C9F28B9A0D8B1635580E8DF7D86] - 04/03/2015 - 15:01:14 ---A- . (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) -- C:\Windows\System32\SearchProtocolHost.exe [302592]
O44 - LFC:[MD5.8C7EE53A9F6A5F01E77DBB81654E5B66] - 04/03/2015 - 15:01:14 ---A- . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\Windows\System32\Drivers\PEAuth.sys [709632]
O44 - LFC:[MD5.D958511991F7AD1F07D14E23E443C8C7] - 04/03/2015 - 15:01:14 ---A- . (.Microsoft Corporation - Realtek Network Kernel Debug Extensibility.) -- C:\Windows\System32\kd_02_10ec.dll [248576]
O44 - LFC:[MD5.6F0D063678B5DF7B9D0A9656571C4BA3] - 04/03/2015 - 15:01:15 ---A- . (.Microsoft Corporation - DLL Couche NT.) -- C:\Windows\System32\ntdll.dll [1476024]
O44 - LFC:[MD5.9398353A04C00C3B9B7A9A45DF3C13A9] - 04/03/2015 - 15:01:17 ---A- . (.Microsoft Corporation - Media Foundation Audio Decoders.) -- C:\Windows\System32\MSAudDecMFT.dll [1113600]
O44 - LFC:[MD5.4B6BCFDA47A2E55C326494F12452D36B] - 04/03/2015 - 15:01:22 ---A- . (.Microsoft Corporation - Recherche intégrée Microsoft.) -- C:\Windows\System32\mssrch.dll [1593344]
O44 - LFC:[MD5.18152CAB34DF83B2B16A7FC0BFE80AAB] - 04/03/2015 - 15:01:23 ---A- . (.Microsoft Corporation - Microsoft Tripoli Query.) -- C:\Windows\System32\tquery.dll [2767360]
O44 - LFC:[MD5.06C5E22E47C68A204CAA7206ECD6E58B] - 04/03/2015 - 15:01:27 ---A- . (.Microsoft Corporation - Windows Media Player.) -- C:\Windows\System32\wmp.dll [11878912]
O44 - LFC:[MD5.6498FE5EEE819307EDE2FE17CE849994] - 04/03/2015 - 15:01:41 ---A- . (.Microsoft Corporation - CertUtil.exe.) -- C:\Windows\System32\certutil.exe [1013248]
O44 - LFC:[MD5.A50E9F5111BFB5451750F1A66DFC088B] - 04/03/2015 - 15:01:41 ---A- . (.Microsoft Corporation - Crypto Network Related API.) -- C:\Windows\System32\cryptnet.dll [109056]
O44 - LFC:[MD5.3674D14E4B7D4700BFF7D06DC608334E] - 04/03/2015 - 15:01:55 ---A- . (.Microsoft Corporation - Application Reputation APIs Dll.) -- C:\Windows\System32\apprepapi.dll [87040]
O44 - LFC:[MD5.14CCD65AE749AC76584CA5F0916300D3] - 04/03/2015 - 15:01:55 ---A- . (.Microsoft Corporation - Services de chiffrement.) -- C:\Windows\System32\cryptsvc.dll [51712]
O44 - LFC:[MD5.AA4D1D67CFC5C9BC17163FA619A070FA] - 04/03/2015 - 15:01:55 ---A- . (.Microsoft Corporation - Tâche AppRepSync.) -- C:\Windows\System32\apprepsync.dll [74240]
O44 - LFC:[MD5.F7A43B51E2C1D7C332FB17D0A804AF60] - 04/03/2015 - 15:01:56 ---A- . (.Microsoft Corporation - Microsoft Trust Verification APIs.) -- C:\Windows\System32\wintrust.dll [261120]
O44 - LFC:[MD5.0DBBC71202B69442AA872DEF925B2A11] - 04/03/2015 - 15:02:00 ---A- . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\Windows\System32\Drivers\BtaMPM.sys [14848]
O44 - LFC:[MD5.D72CF256D62187FF5C5FC5A686454285] - 04/03/2015 - 15:02:01 ---A- . (.Microsoft Corporation - Authentification de zone d’accès sans fil M.) -- C:\Windows\System32\hotspotauth.dll [179712]
O44 - LFC:[MD5.2F72163647BFCA2394F7E7A7AEEEBFC1] - 04/03/2015 - 15:02:01 ---A- . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\Drivers\ks.sys [242688]
O44 - LFC:[MD5.622266A0B510A4826EA23BD153905ABA] - 04/03/2015 - 15:02:01 ---A- . (.Microsoft Corporation - Liste les tâches en cours d’exécution.) -- C:\Windows\System32\tasklist.exe [80896]
O44 - LFC:[MD5.403C9BA247F4D4C0E4FF6FFA5F096EF6] - 04/03/2015 - 15:02:01 ---A- . (.Microsoft Corporation - Minipilote HID mains libres Bluetooth.) -- C:\Windows\System32\Drivers\BthhfHid.sys [22528]
O44 - LFC:[MD5.01A3E2BA453DFB6B5CC1F5EE34A7DF13] - 04/03/2015 - 15:02:01 ---A- . (.Microsoft Corporation - Programme d’installation de la classe de co.) -- C:\Windows\System32\wpd_ci.dll [586240]
O44 - LFC:[MD5.B40442F17F77B11F5F1BA961BB806E2B] - 04/03/2015 - 15:02:01 ---A- . (.Microsoft Corporation - Service de rapport d’erreurs Windows.) -- C:\Windows\System32\wersvc.dll [75776]
O44 - LFC:[MD5.473201A0FFA27C9B174D97A05D1AF791] - 04/03/2015 - 15:02:01 ---A- . (.Microsoft Corporation - Terminer les processus.) -- C:\Windows\System32\taskkill.exe [79360]
O44 - LFC:[MD5.AC297CC1D37245B26D9E79EB98BCE18F] - 04/03/2015 - 15:02:02 ---A- . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\Drivers\crashdmp.sys [53992]
O44 - LFC:[MD5.E2CA40BC789F2DCEC08C25CDF3D7705D] - 04/03/2015 - 15:02:02 ---A- . (.Microsoft Corporation - Mbnapi.) -- C:\Windows\System32\WWanAPI.dll [370688]
O44 - LFC:[MD5.FAF2FE558E26AB6677ED112F8C1EC0DF] - 04/03/2015 - 15:02:02 ---A- . (.Microsoft Corporation - Microsoft Windows Mobile Broadband SMS API.) -- C:\Windows\System32\mbsmsapi.dll [157696]
O44 - LFC:[MD5.99C73E3FE9B36275BD91D2009F2BA2E0] - 04/03/2015 - 15:02:02 ---A- . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\Drivers\ntfs.sys [1614568]
O44 - LFC:[MD5.BA4A9A39B776E0765505094FF231FC48] - 04/03/2015 - 15:02:03 ---A- . (.Microsoft Corporation - Extension de synchronisation d’itinérance W.) -- C:\Windows\System32\wlroamextension.dll [410624]
O44 - LFC:[MD5.4F7981232826D677FBE4D3D37845ADD7] - 04/03/2015 - 15:02:03 ---A- . (.Microsoft Corporation - HID de contrôle à distance audio/vidéo Blue.) -- C:\Windows\System32\Drivers\BthAvrcpTg.sys [30208]
O44 - LFC:[MD5.714F5CAA4510805BD29DF7BE4587F770] - 04/03/2015 - 15:02:03 ---A- . (.Microsoft Corporation - Pilote NDIS 6.30.) -- C:\Windows\System32\Drivers\ndis.sys [817384]
O44 - LFC:[MD5.47596B119D4FD13BF457B0E3C36F0FF5] - 04/03/2015 - 15:02:03 ---A- . (.Microsoft Corporation - Windows Networking Connectivity Runtime DLL.) -- C:\Windows\System32\Windows.Networking.Connectivity.dll [197632]
O44 - LFC:[MD5.FF5ACC9AA26A3FBDC2ECFDA51A735960] - 04/03/2015 - 15:02:04 ---A- . (.Microsoft Corporation - Windows DirectUser Engine.) -- C:\Windows\System32\duser.dll [567808]
O44 - LFC:[MD5.F1879A05E8C55E4A5F4B6775E84FDB1A] - 04/03/2015 - 15:02:30 ---A- . (.Microsoft Corporation - Bibliothèque commune du Gestionnaire de res.) -- C:\Windows\System32\srm.dll [278528]
O44 - LFC:[MD5.FB024B219E56E53E3F43D5B038299C83] - 04/03/2015 - 15:02:30 ---A- . (.Microsoft Corporation - Client Action corrective en cas d’accès ref.) -- C:\Windows\System32\adrclient.dll [104448]
O44 - LFC:[MD5.595A06F77522936B3985828BF18B9580] - 04/03/2015 - 15:02:30 ---A- . (.Microsoft Corporation - Microsoft® File Server Storage Reports Scan.) -- C:\Windows\System32\srmscan.dll [487936]
O44 - LFC:[MD5.250266FC5422B017DF31E2DEBCAA5B14] - 04/03/2015 - 15:02:30 ---A- . (.Microsoft Corporation - Service de résolution du cache DNS.) -- C:\Windows\System32\dnsrslvr.dll [160768]
O44 - LFC:[MD5.0BE9606A1175C7400ED862991453A847] - 04/03/2015 - 15:02:31 ---A- . (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [458240]
O44 - LFC:[MD5.BDE81573863F60B45D9AF102A343B267] - 04/03/2015 - 15:02:31 ---A- . (.Microsoft Corporation - Media Foundation MPEG2 Source and Sink DLL.) -- C:\Windows\System32\mfmpeg2srcsnk.dll [513536]
O44 - LFC:[MD5.A2D2528E451C96F71230DAF3BC6B9797] - 04/03/2015 - 15:02:31 ---A- . (.Microsoft Corporation - Microsoft® File Server Resource Management.) -- C:\Windows\System32\srmclient.dll [987136]
O44 - LFC:[MD5.E26F65C88E31C613C79E547807D561B0] - 04/03/2015 - 15:02:35 ---A- . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [17562112]
O44 - LFC:[MD5.DAC22605AF96F5B27C41102BEF828563] - 04/03/2015 - 15:02:55 ---A- . (.Microsoft Corporation - DLL du schéma d’audit de sécurité.) -- C:\Windows\System32\adtschema.dll [717824]
O44 - LFC:[MD5.52E765579CA945A32CB9537DEA7328F9] - 04/03/2015 - 15:02:55 ---A- . (.Microsoft Corporation - DLL serveur LSA.) -- C:\Windows\System32\lsasrv.dll [1026560]
O44 - LFC:[MD5.55FCB7C401960CB5974951C20727FA9E] - 04/03/2015 - 15:02:55 ---A- . (.Microsoft Corporation - SHCORE.) -- C:\Windows\System32\SHCore.dll [452608]
O44 - LFC:[MD5.20E38B2719D0B12D56F3DB4E526995C4] - 04/03/2015 - 15:02:55 ---A- . (.Microsoft Corporation - Utilisateur du Panneau de configuration.) -- C:\Windows\System32\usercpl.dll [961536]
O44 - LFC:[MD5.4077527E9743ECD9261C3BC32E3DB338] - 04/03/2015 - 15:02:56 ---A- . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\Drivers\cng.sys [492200]
O44 - LFC:[MD5.2B3289A8FF425A2421C940E839A16EC0] - 04/03/2015 - 15:03:02 ---A- . (.Microsoft Corporation - Microsoft Fax API Support DLL.) -- C:\Windows\System32\FXSAPI.dll [227840]
O44 - LFC:[MD5.D9D2DB0BB5B8FF79E1012A61EBA6356E] - 04/03/2015 - 15:03:02 ---A- . (.Microsoft Corporation - Microsoft Fax Server Extended COM Client In.) -- C:\Windows\System32\FXSCOMEX.dll [499712]
O44 - LFC:[MD5.91D7857BB977249F442EDD53CA2122CF] - 04/03/2015 - 15:03:03 ---A- . (.Microsoft Corporation - RPC HTTP DLL.) -- C:\Windows\System32\rpchttp.dll [141824]
O44 - LFC:[MD5.AA0796E335B8913322EF3B5B0FFC3663] - 04/03/2015 - 15:03:03 ---A- . (.Microsoft Corporation - WSMAN WMI Provider.) -- C:\Windows\System32\WsmWmiPl.dll [227328]
O44 - LFC:[MD5.0C9B762B708E45EE6B513243C905C37E] - 04/03/2015 - 15:03:06 ---A- . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\Drivers\Classpnp.sys [297792]
O44 - LFC:[MD5.E95E502611E33E83FF1FE0C0A143B74B] - 04/03/2015 - 15:03:06 ---A- . (.Microsoft Corporation - Service WSMan.) -- C:\Windows\System32\WsmSvc.dll [2043392]
O44 - LFC:[MD5.DDE2F09A73C3F929E8AC8DB267BD4F9C] - 04/03/2015 - 15:03:07 ---A- . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\Drivers\tcpip.sys [1799488]
O44 - LFC:[MD5.61ADD65C9D1E2EAF8BB080A4D6AAB055] - 04/03/2015 - 15:03:11 ---A- . (.Microsoft Corporation - Auto Check Utility.) -- C:\Windows\System32\autochk.exe [793088]
O44 - LFC:[MD5.7B7C5753CB4B555C9BC4ADCEE344B811] - 04/03/2015 - 15:03:11 ---A- . (.Microsoft Corporation - NTFS Utility DLL.) -- C:\Windows\System32\untfs.dll [482816]
O44 - LFC:[MD5.C63B2B4344A57596229D7E0179904A26] - 04/03/2015 - 15:03:12 ---A- . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\Drivers\hidclass.sys [61440]
O44 - LFC:[MD5.C548379CDF15397075F00EE42C3D765B] - 04/03/2015 - 15:03:12 ---A- . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\Drivers\hidparse.sys [26496]
O44 - LFC:[MD5.804019176228EBE260A821C5688CAFD2] - 04/03/2015 - 15:03:12 ---A- . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\Windows\System32\Drivers\hidi2c.sys [30208]
O44 - LFC:[MD5.48ADFEFD445291AE7D619B3F4638B092] - 04/03/2015 - 15:03:12 ---A- . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidusb.sys [19456]
O44 - LFC:[MD5.3B68E41FDF2B053F148E4AA0B456A435] - 04/03/2015 - 15:03:12 ---A- . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\Drivers\usbprint.sys [18944]
O44 - LFC:[MD5.E404E1649DC1CCDEEAD46C4B5F2E07DA] - 04/03/2015 - 15:03:31 ---A- . (.Microsoft Corporation - MUI Callback for font registry settings.) -- C:\Windows\System32\muifontsetup.dll [14336]
O44 - LFC:[MD5.E2A0A49905CC14690B3433F7019BCBDC] - 04/03/2015 - 15:03:32 ---A- . (.Microsoft Corporation - DLL du Panneau de configuration.) -- C:\Windows\System32\intl.cpl [389632]
O44 - LFC:[MD5.3A57A288F098188E92C6B0309CBC50B2] - 04/03/2015 - 15:03:32 ---A- . (.Microsoft Corporation - Network List Manager Proxy.) -- C:\Windows\System32\npmproxy.dll [18432]
O44 - LFC:[MD5.25C45D6CA270F0DF1D815939B0150D89] - 04/03/2015 - 15:03:32 ---A- . (.Microsoft Corporation - Processus hôte pour Tâches Windows.) -- C:\Windows\System32\taskhost.exe [53760]
O44 - LFC:[MD5.3E7332DE76AF4704B02036B2B49C662C] - 04/03/2015 - 15:03:32 ---A- . (.Microsoft Corporation - Processus hôte pour Tâches Windows.) -- C:\Windows\System32\taskhostex.exe [53760]
O44 - LFC:[MD5.D83276FC6EA62F04E57E3EFC48017167] - 04/03/2015 - 15:03:32 ---A- . (.Microsoft Corporation - Windows Background Broker Infrastructure.) -- C:\Windows\System32\biwinrt.dll [92160]
O44 - LFC:[MD5.AE0B528E34C66B32646CB1F87CF19A51] - 04/03/2015 - 15:03:33 ---A- . (.Microsoft Corporation - AppX Deployment Extensions DLL.) -- C:\Windows\System32\AppXDeploymentExtensions.dll [554496]
O44 - LFC:[MD5.10B7F2AFB7E77E5AF276B1E2CE51A13B] - 04/03/2015 - 15:03:33 ---A- . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\DevicePairing.dll [449536]
O44 - LFC:[MD5.0A52F0EF8C82A1FB42894B3EB88823E9] - 04/03/2015 - 15:03:33 ---A- . (.Microsoft Corporation - Loupe Microsoft.) -- C:\Windows\System32\Magnify.exe [758784]
O44 - LFC:[MD5.4541B58F5EF208B02FC27905D9D27103] - 04/03/2015 - 15:03:33 ---A- . (.Microsoft Corporation - Microsoft AuthHost.) -- C:\Windows\System32\AuthHost.exe [103176]
O44 - LFC:[MD5.5C9F014F1D52160CEC897C7A684673AA] - 04/03/2015 - 15:03:33 ---A- . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\Windows\System32\Drivers\spaceport.sys [238336]
O44 - LFC:[MD5.D273CCF1F17F43A7E26DEEDC4C329287] - 04/03/2015 - 15:03:34 ---A- . (.Microsoft Corporation - Assistant Connexion à des lecteurs ou des e.) -- C:\Windows\System32\netplwiz.dll [151040]
O44 - LFC:[MD5.EBD3510794753FC266A556EF6ECBFBFD] - 04/03/2015 - 15:03:34 ---A- . (.Microsoft Corporation - DLL source et récepteur MPEG4 Media Foundat.) -- C:\Windows\System32\mfmp4srcsnk.dll [411136]
O44 - LFC:[MD5.82E03C39A0CA7B3803C46DB54BA30F88] - 04/03/2015 - 15:03:34 ---A- . (.Microsoft Corporation - Objet du service d’environnement Systray.) -- C:\Windows\System32\stobject.dll [303616]
O44 - LFC:[MD5.58F99F74C33B7615ABEECF70BAD5FE1E] - 04/03/2015 - 15:03:34 ---A- . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\Windows\System32\Drivers\pdc.sys [57576]
O44 - LFC:[MD5.891643DA7B69CC3031F057BC88FEB997] - 04/03/2015 - 15:03:34 ---A- . (.Microsoft Corporation - Process State Manager (PSM) Service.) -- C:\Windows\System32\psmsrv.dll [73728]
O44 - LFC:[MD5.CCD0AAF957BE9FF1EF46E59A2824E992] - 04/03/2015 - 15:03:34 ---A- . (.Microsoft Corporation - Service d’infrastructure des tâches en arri.) -- C:\Windows\System32\bisrv.dll [143360]
O44 - LFC:[MD5.5E2E8C5A7BEB50BE68C64833F9D8FE4F] - 04/03/2015 - 15:03:34 ---A- . (.Microsoft Corporation - Stratégie de groupe Client de préférences.) -- C:\Windows\System32\gpprefcl.dll [582144]
O44 - LFC:[MD5.A5189CC0316DDCD935F360E26904ECA9] - 04/03/2015 - 15:03:36 ---A- . (.Microsoft - Système d’évaluation de l’âge russe.) -- C:\Windows\System32\rars.rs [14848]
O44 - LFC:[MD5.4811BEA676D8355C158246D1F9B7A4F2] - 04/03/2015 - 15:03:36 ---A- . (.Microsoft Corporation - Network List Manager.) -- C:\Windows\System32\netprofm.dll [115712]
O44 - LFC:[MD5.5F27960598F19E9509289DCAA6F6BA84] - 04/03/2015 - 15:03:37 ---A- . (.Microsoft Corporation - BCP47 Language Classes.) -- C:\Windows\System32\BCP47Langs.dll [309760]
O44 - LFC:[MD5.393C22E7945CB7EC7951978F2B304251] - 04/03/2015 - 15:03:37 ---A- . (.Microsoft Corporation - DLL du Gestionnaire de processus d’arrière-.) -- C:\Windows\System32\ubpm.dll [247296]
O44 - LFC:[MD5.58E8D9AD811E1BAEA04EAFB7D987FEA9] - 04/03/2015 - 15:03:37 ---A- . (.Microsoft Corporation - Gestionnaire de listes de réseaux.) -- C:\Windows\System32\netprofmsvc.dll [371200]
O44 - LFC:[MD5.ED1CBB55D5946520994FCD8CA9596D9D] - 04/03/2015 - 15:03:37 ---A- . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\Windows\System32\Drivers\rdbss.sys [320512]
O44 - LFC:[MD5.3F2E97730BE6855F51E2512B377E346E] - 04/03/2015 - 15:03:38 ---A- . (.Microsoft Corporation - Hôte de service Superfetch.) -- C:\Windows\System32\sysmain.dll [1049600]
O44 - LFC:[MD5.E82EB02032AE8F6EF6A122A580BBA330] - 04/03/2015 - 15:03:39 ---A- . (.Microsoft Corporation - DLL du serveur de déploiement d’AppX.) -- C:\Windows\System32\AppXDeploymentServer.dll [975360]
O44 - LFC:[MD5.8F5EB145F14A727611E5EA71154F8CB6] - 04/03/2015 - 15:03:42 ---A- . (.Microsoft Corporation - Windows.UI.Xaml dll.) -- C:\Windows\System32\Windows.UI.Xaml.dll [10788864]
O44 - LFC:[MD5.A2C7DD72861F271D6916BBB866ABE48F] - 04/03/2015 - 15:03:55 ---A- . (.Microsoft Corporation - Gestionnaire de liaisons d’objets2.) -- C:\Windows\System32\packager.dll [68096]
O44 - LFC:[MD5.A1246471DC24E227A692AAAA1E6E4E19] - 04/03/2015 - 15:03:58 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2706432]
O44 - LFC:[MD5.306921B0C3135AB6D554D9AB9B1319C6] - 04/03/2015 - 15:03:59 ---A- . (.Microsoft Corporation - Convertisseur Microsoft HTML.) -- C:\Windows\System32\html.iec [361984]
O44 - LFC:[MD5.4A982801D55D2BA46CB449E05419864D] - 04/03/2015 - 15:03:59 ---A- . (.Microsoft Corporation - DLL de gestion d'utilisateur local et de co.) -- C:\Windows\System32\msrating.dll [163840]
O44 - LFC:[MD5.AB6BCCAD359BC856D25DE8E24EDEB28B] - 04/03/2015 - 15:03:59 ---A- . (.Microsoft Corporation - IE Sysprep Provider.) -- C:\Windows\System32\iesysprep.dll [109056]
O44 - LFC:[MD5.54B6FF5C83264E126F452B67C6A6D227] - 04/03/2015 - 15:03:59 ---A- . (.Microsoft Corporation - IOD Version Map.) -- C:\Windows\System32\iesetup.dll [61440]
O44 - LFC:[MD5.95DB60B7C34D03BF5AD29108DA33B986] - 04/03/2015 - 15:03:59 ---A- . (.Microsoft Corporation - JScript Proxy Auto-Configuration.) -- C:\Windows\System32\jsproxy.dll [39936]
O44 - LFC:[MD5.9EB70952A0FAC274C1A91C792C7CCA2B] - 04/03/2015 - 15:03:59 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\System32\msfeeds.dll [493056]
O44 - LFC:[MD5.D212F4FC0125511F78605CA25BCF2118] - 04/03/2015 - 15:03:59 ---A- . (.Microsoft Corporation - Microsoft® HTML Editing Component.) -- C:\Windows\System32\mshtmled.dll [80384]
O44 - LFC:[MD5.37BE69922168AFB6FE670130DDFB5B89] - 04/03/2015 - 15:03:59 ---A- . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\System32\iedkcs32.dll [226816]
O44 - LFC:[MD5.45F9ADEC5CDE7EF2E163456B607A5468] - 04/03/2015 - 15:03:59 ---A- . (.Microsoft Corporation - Traitement de RunOnce complet avec interfac.) -- C:\Windows\System32\iernonce.dll [33280]
O44 - LFC:[MD5.45F21E19D8439D0921A41E24AC80B159] - 04/03/2015 - 15:03:59 ---A- . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [42496]
O44 - LFC:[MD5.E7CBC8B370FFBB747F881FE412F0231B] - 04/03/2015 - 15:03:59 ---A- . (.Microsoft Corporation - Windows User Experience Session Initializat.) -- C:\Windows\System32\UXInit.dll [44032]
O44 - LFC:[MD5.0A683FA60296BAE195EA7CD80674C87A] - 04/03/2015 - 15:04:00 ---A- . (.Microsoft Corporation - Bibliothèque de thèmes Ux Microsoft.) -- C:\Windows\System32\uxtheme.dll [661504]
O44 - LFC:[MD5.0B994708438B6F9C6E23E7A28AFB69B2] - 04/03/2015 - 15:04:00 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript.dll [690688]
O44 - LFC:[MD5.2AF08425D146B5DA5F9FED68AB8AE3AE] - 04/03/2015 - 15:04:00 ---A- . (.Microsoft Corporation - Microsoft ® VBScript.) -- C:\Windows\System32\vbscript.dll [523264]
O44 - LFC:[MD5.AE1DFAAA1C6F63458781818FC7B91F5E] - 04/03/2015 - 15:04:00 ---A- . (.Microsoft Corporation - Panneau de configuration Internet.) -- C:\Windows\System32\inetcpl.cpl [1441280]
O44 - LFC:[MD5.F96293ED1CB4B14C9F2EBB62471E9649] - 04/03/2015 - 15:04:01 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [1181696]
O44 - LFC:[MD5.E3E6612BAF16169FB6BDF08C51E7CE31] - 04/03/2015 - 15:04:02 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1762816]
O44 - LFC:[MD5.95563088877284C52782FCBEF273927D] - 04/03/2015 - 15:04:02 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript9.dll [2861568]
O44 - LFC:[MD5.DD77EF92BEEDB21E95CD05F5FE02D8C2] - 04/03/2015 - 15:04:05 ---A- . (.Microsoft Corporation - Utilitaire à l’exécution pour Internet Expl.) -- C:\Windows\System32\iertutil.dll [2055168]
O44 - LFC:[MD5.E1DF011E33D61EF8041D6B42C8D556DD] - 04/03/2015 - 15:04:08 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\System32\ieframe.dll [13761024]
O44 - LFC:[MD5.C901A53BF5C517D9FC054905B52FBAD0] - 04/03/2015 - 15:04:42 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [14373376]
O44 - LFC:[MD5.CE52E627A0F86FFF0119EF18A6CD6D39] - 04/03/2015 - 15:04:57 ---A- . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\Drivers\vhdmp.sys [368448]
O44 - LFC:[MD5.515EC27D2A99355D8EC9C3E053765A07] - 04/03/2015 - 15:04:57 ---A- . (.Microsoft Corporation - Windows Update Wu exports.) -- C:\Windows\System32\wuaext.dll [16384]
O44 - LFC:[MD5.DBD45269B9CC4DDAB5ECE4B37A102B8A] - 04/03/2015 - 15:04:58 ---A- . (.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\System32\services.exe [334336]
O44 - LFC:[MD5.B32CADACF12BBC7664BA7918DA024F71] - 04/03/2015 - 15:04:58 ---A- . (.Microsoft Corporation - DLL de spouleur local.) -- C:\Windows\System32\localspl.dll [832512]
O44 - LFC:[MD5.106C1870C1092753EFBD3B20F7D457B7] - 04/03/2015 - 15:04:58 ---A- . (.Microsoft Corporation - Fournisseur d’impression de rendu côté clie.) -- C:\Windows\System32\win32spl.dll [503808]
O44 - LFC:[MD5.81A5EC21D4E9D79B9D5CD5157369D818] - 04/03/2015 - 15:05:18 ---A- . (.Microsoft Corporation - Authentication Provider.) -- C:\Windows\System32\storewuauth.dll [149504]
O44 - LFC:[MD5.37F618AE1774365785A650B31DF506A1] - 04/03/2015 - 15:05:18 ---A- . (.Microsoft Corporation - Windows Update Application Launcher.) -- C:\Windows\System32\wuapp.exe [35328]
O44 - LFC:[MD5.BC1914848D6FF6B37C1817432907015A] - 04/03/2015 - 15:05:18 ---A- . (.Microsoft Corporation - Windows Update Vista Web Control.) -- C:\Windows\System32\wuwebv.dll [128000]
O44 - LFC:[MD5.D5D7C1D89B21AAE8FAA4B6D7055AC5B4] - 04/03/2015 - 15:05:18 ---A- . (.Microsoft Corporation - Windows Update WUDriver Stub.) -- C:\Windows\System32\wudriver.dll [86528]
O44 - LFC:[MD5.392619A4A264FF3A6C4D96FC6388F1F6] - 04/03/2015 - 15:05:18 ---A- . (.Microsoft Corporation - Windows Update.) -- C:\Windows\System32\wuauclt.exe [52632]
O44 - LFC:[MD5.455218E5B08A062B7EBD44E9CF7FAE5C] - 04/03/2015 - 15:05:19 ---A- . (.Microsoft Corporation - API du client Windows Update.) -- C:\Windows\System32\wuapi.dll [630272]
O44 - LFC:[MD5.678E2E5DF43D1D0171A96DBA23013700] - 04/03/2015 - 15:05:19 ---A- . (.Microsoft Corporation - Expérience utilisateur du client Windows Up.) -- C:\Windows\System32\wucltux.dll [1557504]
O44 - LFC:[MD5.CF64BCDDA0F0738ED829EFA79726EBB0] - 04/03/2015 - 15:05:19 ---A- . (.Microsoft Corporation - Windows Update Modern WuApp.) -- C:\Windows\System32\WUSettingsProvider.dll [216576]
O44 - LFC:[MD5.DE1FCA39610FD18852FB31F79E81BEBA] - 04/03/2015 - 15:05:21 ---A- . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2601472]
O44 - LFC:[MD5.F1F89FA475E12684BB0EBA360FC0EB7C] - 04/03/2015 - 15:05:31 ---A- . (.Microsoft Corporation - Fournisseur de sécurité TLS/SSL.) -- C:\Windows\System32\schannel.dll [318976]
O44 - LFC:[MD5.800AB1F0B0A71D163A28F8B83A157B3D] - 04/03/2015 - 15:05:31 ---A- . (.Microsoft Corporation - Microsoft SChannel Provider.) -- C:\Windows\System32\ncryptsslp.dll [72192]
O44 - LFC:[MD5.4AA741DEA4DB428BEEE54C3B14A4AA71] - 04/03/2015 - 15:05:44 ---A- . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\Drivers\WdfLdr.sys [47832]
O44 - LFC:[MD5.25944D2CC49E0A6C581D02A74B7D6645] - 04/03/2015 - 15:05:44 ---A- . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\Windows\System32\Drivers\Wdf01000.sys [527064]
O44 - LFC:[MD5.3B26DCAB842C280FA7271FF2B58D3293] - 04/03/2015 - 15:19:04 ---A- . (.Microsoft Corporation - Microsoft ASP.NET Performance Counter Shim.) -- C:\Windows\System32\aspnet_counters.dll [28352]
O44 - LFC:[MD5.FD1915B728CC359F2FACC234F419BC8C] - 04/03/2015 - 15:58:22 ---A- . (.Microsoft Corporation - Windows Globalization.) -- C:\Windows\System32\Windows.Globalization.dll [601088]
O44 - LFC:[MD5.65CE473E4368E67D6EDB5D86646C08F3] - 04/03/2015 - 15:58:23 ---A- . (...) -- C:\Windows\System32\locale.nls [478296]
O44 - LFC:[MD5.79CD788F17C0D836180BD89730DB8F87] - 04/03/2015 - 16:02:38 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [113756392]
O44 - LFC:[MD5.5A48FF73B231D8A219AD381EA966BC63] - 04/03/2015 - 16:17:04 ---A- . (.Microsoft Corporation - Microsoft® Volume Shadow Copy Requestor/Wri.) -- C:\Windows\System32\vssapi.dll [1195520]
O44 - LFC:[MD5.BFA3D6F077AEFBEE04EF1B775A8C3AFE] - 04/03/2015 - 16:17:04 ---A- . (.Microsoft Corporation - Service de cliché instantané de volumes Mic.) -- C:\Windows\System32\VSSVC.exe [1151488]
O44 - LFC:[MD5.1B0CCFDF7C1D1FE543CAB4C2B4CD52AB] - 04/03/2015 - 16:17:05 ---A- . (.Microsoft Corporation - Bibliothèque de suivi du service VSS Micros.) -- C:\Windows\System32\vsstrace.dll [52224]
O44 - LFC:[MD5.4D49E796F93BE211F537B18F03E89428] - 04/03/2015 - 16:17:05 ---A- . (.Microsoft Corporation - Microsoft® Volume Shadow Copy Service event.) -- C:\Windows\System32\eventcls.dll [15360]
O44 - LFC:[MD5.1D1160025F0D219B1A7F6F07427921BA] - 04/03/2015 - 16:48:06 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerApp.exe [714184]
O44 - LFC:[MD5.E0F55473626F3DD8FEC780E58244A52B] - 04/03/2015 - 16:48:06 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [106440]
O44 - LFC:[MD5.3A425E50F5A1000E06E0ADBEF033C07D] - 04/03/2015 - 16:51:53 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [426224]
O44 - LFC:[MD5.E7CCA21CEC1A45F3EA10D117075830E4] - 04/03/2015 - 20:50:08 ---A- . (.KJ inside - Soul's Activator in KJ project.) -- C:\Windows\System32\SLCHook.dll [92160]
O44 - LFC:[MD5.AFBDFA6B744D2CB34B5CDFC9E11AC6ED] - 04/03/2015 - 20:51:38 ---A- . (...) -- C:\Windows\PFRO.log [376278]
O44 - LFC:[MD5.529E7378E228F7F677C7749F42C14E09] - 04/03/2015 - 20:58:50 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1703826]
O44 - LFC:[MD5.22C04A9BE744854B1B7FBC53091D27AA] - 04/03/2015 - 20:58:50 ---A- . (...) -- C:\Windows\System32\perfc009.dat [124636]
O44 - LFC:[MD5.ACC39104E81E0B4328823261E75E2F86] - 04/03/2015 - 20:58:50 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [147664]
O44 - LFC:[MD5.B9BC81129E88217BE7842DF16F18DFF8] - 04/03/2015 - 20:58:50 ---A- . (...) -- C:\Windows\System32\perfh009.dat [674750]
O44 - LFC:[MD5.E00A1CC5B8AB00E61C45B33CA280B713] - 04/03/2015 - 20:58:50 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [763316]
O44 - LFC:[MD5.FA4AA2287845A648FA13F27A4F65C737] - 05/03/2015 - 10:48:10 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.8E2E9CCD873ABF180F48BCAEEEBE347D] - 05/03/2015 - 17:36:10 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\MBAMSwissArmy.sys [114904]
O44 - LFC:[MD5.A60293DCDBC795CA682CF2C587345FB2] - 05/03/2015 - 18:28:08 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1212300]
~ Files: 450 Scanned in 00mn 47s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Fournisseur de sécurité TLS/SSL.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Live Security Package.) -- C:\Windows\System32\livessp.dll
~ LSA: 9 Scanned in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (...) -- C:\Windows\System32\Drivers\rdpencdd.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ CSB: 17 Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ TDSD: 3 Scanned in 00mn 00s



---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ MSCP: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableCursorSuppression"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "SoftwareSASGeneration"=1
~ MWPS: 18 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveTypeAutoRun"=28
~ MWPE Keys: 1 Scanned in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:26/07/2012 - 03:42:31 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [85232]
O58 - SDL:26/07/2012 - 03:42:31 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [424176]
O58 - SDL:26/07/2012 - 03:42:31 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [298736]
O58 - SDL:26/07/2012 - 03:42:31 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\Drivers\adpu320.sys [147696]
O58 - SDL:26/07/2012 - 03:42:31 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [67312]
O58 - SDL:26/07/2012 - 03:42:31 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows fa.) -- C:\Windows\System32\Drivers\amdsbs.sys [213744]
O58 - SDL:26/07/2012 - 03:42:31 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [22256]
O58 - SDL:26/07/2012 - 03:42:30 ---A- . (.PMC-Sierra, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [91888]
O58 - SDL:26/07/2012 - 03:42:30 ---A- . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [94448]
O58 - SDL:25/07/2012 - 22:49:35 ---A- . (.Advanced Micro Devices, Inc. - Pilote en mode noyau ATI Radeon.) -- C:\Windows\System32\Drivers\atikmdag.sys [10071552]
O58 - SDL:29/06/2012 - 02:00:56 ---A- . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\Drivers\atikmpag.sys [290304]
O58 - SDL:25/07/2012 - 22:49:37 ---A- . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gigabit Ethernet..) -- C:\Windows\System32\Drivers\b57nd60x.sys [361984]
O58 - SDL:14/01/2013 - 19:10:56 ---A- . (.Kaspersky Lab UK Ltd - Cryptographic Module.) -- C:\Windows\System32\Drivers\cm_km_w.sys [189136]
O58 - SDL:26/07/2012 - 03:42:33 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [56048]
O58 - SDL:26/07/2012 - 03:42:33 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\Drivers\iaStorV.sys [333552]
O58 - SDL:26/07/2012 - 03:42:33 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [42224]
O58 - SDL:31/03/2014 - 09:47:08 ---A- . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\Drivers\kl1.sys [143968]
O58 - SDL:19/08/2014 - 11:31:38 ---A- . (.Kaspersky Lab ZAO - Virtual Disk fre_win8_x86.) -- C:\Windows\System32\Drivers\kldisk.sys [38408]
O58 - SDL:27/07/2012 - 16:38:24 ---A- . (.Kaspersky Lab - Klelam Mini-Filter [fre_win8_x86].) -- C:\Windows\System32\Drivers\klelam.sys [24496]
O58 - SDL:28/11/2014 - 17:19:36 ---A- . (.Kaspersky Lab ZAO - Filter Core [fre_win8_x86].) -- C:\Windows\System32\Drivers\klflt.sys [120008]
O58 - SDL:22/10/2014 - 20:13:10 ---A- . (.Kaspersky Lab ZAO - KLHK [fre_win8_x86].) -- C:\Windows\System32\Drivers\klhk.sys [36040]
O58 - SDL:13/12/2014 - 17:21:10 ---A- . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_win8_x86].) -- C:\Windows\System32\Drivers\klif.sys [673464]
O58 - SDL:10/10/2014 - 16:02:54 ---A- . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver [fre_win8_x86].) -- C:\Windows\System32\Drivers\klim6.sys [26312]
O58 - SDL:30/10/2014 - 03:22:12 ---A- . (.Kaspersky Lab ZAO - KLKBDFLT Keyboard Device Filter [fre_win8_x86].) -- C:\Windows\System32\Drivers\klkbdflt.sys [26824]
O58 - SDL:08/08/2013 - 15:10:58 ---A- . (.Kaspersky Lab ZAO - KLMOUFLT Mouse Device Filter [fre_win8_x86].) -- C:\Windows\System32\Drivers\klmouflt.sys [25696]
O58 - SDL:12/04/2013 - 13:34:48 ---A- . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x86].) -- C:\Windows\System32\Drivers\klpd.sys [14432]
O58 - SDL:20/11/2014 - 12:38:56 ---A- . (.Kaspersky Lab ZAO - Network filtering component [fre_win8_x86].) -- C:\Windows\System32\Drivers\klwfp.sys [57544]
O58 - SDL:22/11/2014 - 13:12:36 ---A- . (.Kaspersky Lab ZAO - Network filtering component.) -- C:\Windows\System32\Drivers\klwtp.sys [64200]
O58 - SDL:10/11/2014 - 16:48:04 ---A- . (.Kaspersky Lab ZAO - KNEPS Power [fre_wxp_x86].) -- C:\Windows\System32\Drivers\kneps.sys [148296]
O58 - SDL:26/07/2012 - 03:42:33 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [93424]
O58 - SDL:26/07/2012 - 03:42:33 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [78576]
O58 - SDL:26/07/2012 - 03:42:33 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [100592]
O58 - SDL:26/07/2012 - 03:42:33 ---A- . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sss.sys [68848]
O58 - SDL:21/11/2014 - 05:14:06 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [23256]
O58 - SDL:21/11/2014 - 05:14:10 ---A- . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\Drivers\mbamchameleon.sys [75480]
O58 - SDL:05/03/2015 - 17:36:10 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\MBAMSwissArmy.sys [114904]
O58 - SDL:26/07/2012 - 03:42:33 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\Drivers\megasas.sys [45296]
O58 - SDL:26/07/2012 - 03:42:15 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [283888]
O58 - SDL:26/07/2012 - 03:42:15 ---A- . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\Drivers\mvumis.sys [59120]
O58 - SDL:21/11/2014 - 05:14:24 ---A- . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\Drivers\mwac.sys [51928]
O58 - SDL:26/07/2012 - 03:42:15 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [45808]
O58 - SDL:26/07/2012 - 03:42:15 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [120048]
O58 - SDL:26/07/2012 - 03:42:15 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [141552]
O58 - SDL:26/07/2012 - 06:52:42 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [20480]
O58 - SDL:26/07/2012 - 03:42:15 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [41200]
O58 - SDL:26/07/2012 - 03:42:16 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [79088]
O58 - SDL:26/07/2012 - 03:42:15 ---A- . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Windows x86.) -- C:\Windows\System32\Drivers\stexstor.sys [26352]
O58 - SDL:26/07/2012 - 03:42:18 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [18160]
O58 - SDL:26/07/2012 - 03:42:19 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [155376]
O58 - SDL:26/07/2012 - 03:42:19 ---A- . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\Drivers\VSTXRAID.SYS [285424]
O58 - SDL:25/07/2012 - 22:52:51 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:25/07/2012 - 22:52:51 ---A- . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:25/07/2012 - 22:52:51 ---A- . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:25/07/2012 - 22:52:52 ---A- . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:25/07/2012 - 22:52:52 ---A- . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:25/07/2012 - 22:52:54 ---A- . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:25/07/2012 - 22:52:54 ---A- . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:25/07/2012 - 22:52:54 ---A- . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:25/07/2012 - 22:52:54 ---A- . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:25/07/2012 - 22:52:54 ---A- . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:25/07/2012 - 22:52:51 ---A- . (...) -- C:\Windows\System32\NTIO.SYS [33968]
O58 - SDL:25/07/2012 - 22:52:51 ---A- . (...) -- C:\Windows\System32\NTIO404.SYS [34688]
O58 - SDL:25/07/2012 - 22:52:51 ---A- . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:25/07/2012 - 22:52:51 ---A- . (...) -- C:\Windows\System32\NTIO412.SYS [35552]
O58 - SDL:25/07/2012 - 22:52:51 ---A- . (...) -- C:\Windows\System32\NTIO804.SYS [34688]
~ Drivers: 65 Scanned in 00mn 06s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 04/03/2015 - 18:55:27 ---A- . (...) -- C:\Users\Team-ba524\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [361866]
O61 - LFC: 04/03/2015 - 18:55:33 ---A- . (...) -- C:\Users\Team-ba524\Downloads\wrar521fr.exe [1808016]
O61 - LFC: 04/03/2015 - 18:55:33 ---A- . (.Kaspersky Lab.) -- C:\Users\Team-ba524\Downloads\kis15.0.2.361fr-fr.exe [197326464]
O61 - LFC: 04/03/2015 - 18:55:33 ---A- . (.Nicolas Coolman.) -- C:\Users\Team-ba524\Downloads\ZHPDiag2.exe [6876286] =>.Nicolas Coolman
O61 - LFC: 04/03/2015 - 18:55:33 ---A- . (.Piriform Ltd.) -- C:\Users\Team-ba524\Downloads\ccsetup503.exe [5325696]
O61 - LFC: 04/03/2015 - 18:55:33 ---A- . (.Skype Technologies S.A..) -- C:\Users\Team-ba524\Downloads\SkypeSetup.exe [1380448]
O61 - LFC: 05/03/2015 - 18:55:26 ---A- . (...) -- C:\Users\Team-ba524\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]
O61 - LFC: 05/03/2015 - 18:55:33 ---A- . (.Nicolas Coolman.) -- C:\Users\Team-ba524\Downloads\ZHPDiag2 (1).exe [6876286] =>.Nicolas Coolman
O61 - LFC: 28/02/2015 - 18:55:27 ---A- . (.Google Inc..) -- C:\Users\Team-ba524\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.7.771\_platform_specific\win_x86\widevinecdmadapter.dll [189768]
~ 441 Fichiers temporaires (Temporary files)
~ 30 Fichiers cookies (Cookies files)
~ Files: 9 Scanned in 00mn 07s



---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2015 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 11 Scanned in 00mn 00s



---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com
~ Keys: Scanned in 00mn 00s



---\\ Enumère les service demarrés par Svchost (SSS) (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [169984]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [115200]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [115200]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [242176]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1285632]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [683520]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [87552]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à distance.) -- C:\Windows\System32\rasmans.dll [302080]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [81920]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [49152]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [392192]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [245760]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2601472]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [630272]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [506368]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [741376]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [20992]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [52224]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [115200]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [89088]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [944640]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [166400]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [60928]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [105472]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [170496]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [249344]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [59392]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [73216]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [33280]
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1532928]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [154112]
O83 - Search Svchost Services: SystemEventsBroker (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) -- C:\Windows\System32\SystemEventsBrokerServer.dll [117760]
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [161792]
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Microsoft.) -- C:\Windows\System32\ncasvc.dll [138752]
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [152064]
~ Services: 35 Scanned in 00mn 00s



---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.3B73580EFEF22A517417E37E7B6ED629] [SPRF][04/03/2015] (...) -- C:\ProgramData\ntuser.dat [262144]
~ Files: 1 Scanned in 00mn 00s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Auto 04/03/2015 107848 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 04/03/2015 107848 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Auto 02/01/2015 315488 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SS - | Demand 26/07/2012 23040 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 23/12/2014 193400 | (AVP15.0.2) . (.Kaspersky Lab ZAO.) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe
SR - | Auto 21/11/2014 1871160 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
SR - | Auto 21/11/2014 969016 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
SR - | Demand 22/09/2014 14456 | (WinDefend) . (.Microsoft Corporation.) - C:\Program Files\Windows Defender\MsMpEng.exe
~ Services: Scanned in 00mn 18s



---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
~ MBR: 1 Scanned in 00mn 02s



---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by Team-ba524 at 05/03/2015 18:56:54
********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR: Scanned in 00mn 04s



---\\ Scan Additionnel (O88)
Database Version : 13008 - (01/03/2015)
Clés trouvées (Keys found) : 0
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 0
Fichiers trouvés (Files found) : 0

~ Additionnel Scan: 202916 Items scanned in 00mn 54s



---\\ Informations complémentaires sur les modules
~ http://nicolascoolman.fr/r5-internet-explorer-proxy-management-iepm/ =>.Internet Explorer, Proxy Management (R5)
~ http://nicolascoolman.fr/o2-browser-helper-objects-de-navigateur/ =>.Browser Helper Objects de navigateur (O2)
~ http://nicolascoolman.fr/o4-applications-demarrees-par-le-registre/ =>.Applications lancées au démarrage du système (O4)
~ AMI: 3 Scanned in 00mn 00s



End of the scan (1232 lines in 04mn 50s)(0.10)

Publicité


Signaler le contenu de ce document

Publicité