~ Rapport de ZHPDiag v2013.10.15.37 - Nicolas Coolman (15/10/2013) ~ Lancé par Marie-Anne (15/10/2013 18:24:41) ~ Adresse du Site Web http://nicolascoolman.webs.com ~ Forums gratuits d'Assistance à la désinfection : http://nicolascoolman.webs.com/apps/links/ ~ Traduit par Nicolas Coolman ~ Etat de la version : ~ Liste blanche : Désactivée par l'utilisateur ~ Elévation des Privilèges : OK ~ User Account Control (UAC): Activate by user ---\\ Navigateurs Internet MSIE: Internet Explorer v10.0.9200.16721 (Defaut) GCIE: Google Chrome v2.0.172.37 ---\\ Informations sur les produits Windows ~ Langage: Français Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK ~ Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : CGKHQ Windows License : OK ~ Windows Remaining Initializations Number : 3 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection du système avast! Free Antivirus v5.0.178.0 Microsoft Security Client FR-FR Language Pack v2.1.1116.0 Windows Defender W7 ---\\ Logiciels d'optimisation du système ---\\ Logiciels de partage PeerToPeer ---\\ Surveillance de Logiciels Adobe Flash Player 10 Plugin Adobe Reader 9.1 - Français Java 7 Update 25 ---\\ Informations sur le système ~ Processor: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 4063 MB (49% free) System Restore: Activé (Enable) System drive C: has 235 GB (81%) free of 289 GB ---\\ Mode de connexion au système ~ Computer Name: MARIE-ANNE-VAIO ~ User Name: Marie-Anne ~ All Users Names: Marie-Anne, HomeGroupUser$, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppZHP% : C:\Users\Marie-Anne\AppData\Roaming\ZHP\ ~ %AppData% : C:\Users\Marie-Anne\AppData\Roaming\ ~ %Desktop% : C:\Users\Marie-Anne\Desktop\ ~ %Favorites% : C:\Users\Marie-Anne\Favorites\ ~ %LocalAppData% : C:\Users\Marie-Anne\AppData\Local\ ~ %StartMenu% : C:\Users\Marie-Anne\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumération des unités disques C: Hard drive, Flash drive, Thumb drive (Free 235 Go of 289 Go) D: Floppy drive, Flash card reader, USB Key (Not Inserted) E: Floppy drive, Flash card reader, USB Key (Not Inserted) F: CD-ROM drive (Free 0 Go of 1 Go) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 30 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024] [MD5.D28B35DE88D27EFB27DF4B1E8319E3C0] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.22/09/2013 - 23:55:10.) -- C:\Windows\System32\wininet.dll [2241024] [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/11/2010 - 14:25:30.) -- C:\Windows\System32\Winlogon.exe [390656] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 14:27:26.) -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.314C17917AC8523EC77A710215012A65] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.14/09/2013 - 02:10:19.) -- C:\Windows\system32\Drivers\AFD.sys [497152] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 10:19:21.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 10:26:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 11:43:43.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224] [MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 10:23:20.) -- C:\Windows\system32\Drivers\netBT.sys [261632] [MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 15:45:08.) -- C:\Windows\system32\Drivers\ntfs.sys [1656680] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 11:52:35.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 10:21:56.) -- C:\Windows\system32\Drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 14:34:02.) -- C:\Windows\system32\Drivers\volsnap.sys [295808] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 1/3 ~ Mes Favoris (My Favorites) : 1/29 ~ Mes Documents (My Documents) : 1/44 ~ Mon Bureau (My Desktop) : 1/8 ~ Menu demarrer (Programs) : 1/22 ~ Hidden Files: Scanned in 00mn 00s ---\\ Processus lancés [MD5.5AF1E9600E3FF841E522703A4993ED0C] - (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe [186904] [PID.2452] [MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408] [PID.2740] =>Toolbar.Google [MD5.F44431CFD96428206039D3556311BF1B] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [19876968] [PID.2724] [MD5.A76E320727E68B366046708A833CEB5B] - (.Sony Corporation - Pas de description.) -- C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [317288] [PID.3364] [MD5.F6EA75A95BE7580273F6F4437E58A508] - (.Sony Corporation - Marketing Tools.) -- C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe [26624] [PID.3428] [MD5.5D2CD7F3F71145D9F5CCEBB5ECD477B3] - (.ALWIL Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [2559216] [PID.3444] [MD5.A1B303E029EE731119B1D985677FFAD2] - (.Ask - Ask Updater.) -- C:\Program Files (x86)\Ask.com\Updater\Updater.exe [1646216] [PID.3460] [MD5.5397E32E882C0148CEC13D9EACFB7157] - (.Microsoft Corporation - Internet Low-Mic Utility Tool.) -- C:\Program Files (x86)\Internet Explorer\IELowutil.exe [222208] [PID.5224] [MD5.21725D27021A41CD764BBFB4110CC918] - (.Microsoft® Corporation - Microsoft® Works Word Processor.) -- C:\Program Files (x86)\Microsoft Works\WksWP.exe [709984] [PID.3820] [MD5.34C62063019BF5925B336860137DA76C] - (.Microsoft® Corporation - Microsoft® Works Data Store.) -- C:\Program Files (x86)\Microsoft Works\WkDStore.exe [95584] [PID.5888] [MD5.387F4CC5CEA5EB43F7DF84A7E8568898] - (.Microsoft® Corporation - Microsoft® Works Font Cache.) -- C:\Program Files (x86)\Microsoft Works\wkgdcach.exe [91488] [PID.5804] [MD5.D6B7DDB68436F13C3CAE2B92524F1FEC] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\IEXPLORE.exe [770648] [PID.680] [MD5.BB4F6465EEB9ACAA5C60C36983740219] - (.Google Inc. - Google Toolbar Broker.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe [310352] [PID.1148] =>Toolbar.Google [MD5.72BE75AADEB890AE5BD8DEC30508F992] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8091648] [PID.6304] [MD5.63F6D08C54D5B3C1B12A6172032055C7] - (.ArcSoft, Inc. - MgiSvr.) -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960] [PID.2088] [MD5.6B31C9CB94927DBEEB62E15275F4CC54] - (.Sony Corporation - VAIO Event Service (Service Module).) -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe [205168] [PID.2116] [MD5.A63DC5C2EA944E6657203E0C8EDEAF61] - (.Microsoft Corporation - COM Surrogate.) -- C:\Windows\SysWOW64\DllHost.exe [7168] [PID.2184] [MD5.7CD368DFF5D7D4BA9F8F46F31EA8877D] - (.Sony Corporation - VAIO Event Service(Service Sub Module).) -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe [112488] [PID.2352] [MD5.06FE5BEDDADB158D84E6DE33CBE19F3E] - (.Sony Corporation - VAIO Content Folder Watcher.) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [642920] [PID.2820] [MD5.D8BEF4AC1EAC809DBDBD441D6CFF6C4C] - (.Sony Corporation - VAIO Entertainment Database Service.) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [206336] [PID.2924] [MD5.7548066DF68A8A1A56B043359F915F37] - (.Intel Corporation - RAID Monitor.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [354840] [PID.3012] [MD5.313CE91F1B734E2E02F0F4465B52115A] - (.Sony Corporation - VAIO Entertainment UPnP Client Adapter.) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [313264] [PID.812] ~ Processes Running: Scanned in 00mn 01s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20913.0.) -- c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS - Unity Player 2.6.1f3.) -- C:\Users\Marie-Anne\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll ~ Firefox Browser: 2 Scanned in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: UrlSearchHook Class [64Bits] - {00000000-6E41-4FD3-8538-502F5495E5FC} . (.Ask - Ask Toolbar.) (5.15.23.36191) -- C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll =>Toolbar.Ask R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)) -- C:\Windows\SysWOW64\ieframe.dll R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ~ IE Browser: 16 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Canon Easy-WebPrint EX BHO [64Bits] - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google O2 - BHO: Ask Toolbar BHO [64Bits] - {D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll =>Toolbar.Ask O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll ~ BHO: 10 Scanned in 00mn 00s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: Google Toolbar [64Bits] - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} Clé orpheline O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{D4027C7F-154A-4066-A1AD-4243D8127440} Clé orpheline ~ Toolbar: Scanned in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - GS\Desktop [Public]: Canon Easy-PhotoPrint EX.lnk . (.CANON INC. - Canon Easy-PhotoPrint EX.) -- C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\CNEZMAIN.exe O4 - GS\Desktop [Public]: Canon MP Navigator EX 3.0.lnk . (.CANON INC. - Canon MP Navigator EX.) -- C:\Program Files (x86)\Canon\MP Navigator EX 3.0\mpnex30.exe O4 - GS\Desktop [Public]: Canon MP550 series Manuel en ligne.lnk . (.CANON INC. - Easy Guide Viewer.) -- C:\Program Files (x86)\Canon\IJ Manual\Easy Guide Viewer\cmview.exe O4 - GS\Desktop [Public]: Canon My Printer.lnk . (.CANON INC. - Canon My Printer.) -- C:\Program Files\Canon\MyPrinter\BJMYPRT.exe O4 - GS\Desktop [Public]: Canon Solution Menu.lnk . (.CANON INC. - CNSLMAIN.) -- C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe O4 - GS\Desktop [Public]: Choix de navigateur .lnk . (.Microsoft Corporation - Choix de navigateur .) -- C:\Windows\System32\browserchoice.exe O4 - GS\Desktop [Public]: Enregistrement utilisateur de Canon MP550 series.LNK . (.CANON INC. - Canon User Registration.) -- C:\Program Files (x86)\Canon\IJEREG\MP550 series\IJEREG.exe O4 - GS\Desktop [Public]: Google Earth.lnk . (.Google - Google Earth.) -- C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe =>.Google Inc O4 - GS\Desktop [Public]: Logiciel de Synchronisation Orange.lnk . (.Voxmobili - Voxsync Desktop Companion.) -- C:\Program Files (x86)\Orange\Logiciel de Synchronisation Orange\Voxsync.exe O4 - GS\Program [Public]: Adobe Reader 9.lnk . (...) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-A91000000001}\SC_Reader.ico O4 - GS\Program [Public]: Centre de réinstallation VAIO.lnk . (...) -- C:\Program Files (x86)\Sony\VAIO Recovery\VAIORecv.exe O4 - GS\Program [Public]: Click to Disc Editor.lnk . (.Sony Corporation - ctdEditor.) -- C:\Program Files (x86)\Sony\Click to Disc Editor\ctdEditor.exe O4 - GS\Program [Public]: Click to Disc.lnk . (.Sony Corporation - AutoModeEntrance.) -- C:\Program Files (x86)\Sony\VAIO VP Utilities\VCAutoModeEntrance.exe O4 - GS\Program [Public]: Lanceur de tâches Microsoft Works.lnk . (.Microsoft® Corporation - Microsoft® Works.) -- C:\Program Files (x86)\Microsoft Works\MSWorks.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Microsoft Security Essentials.lnk . (...) -- C:\Program Files (x86)\Microsoft Security Client\msseces.exe (.not file.) O4 - GS\Program [Public]: MusicStation.lnk . (.Omnifone Ltd - MusicStation ™.) -- C:\Program Files (x86)\MusicStation\MusicStation.exe O4 - GS\Program [Public]: Outil de restauration de données VAIO.lnk . (.Sony Corporation - Restore Data.) -- C:\Program Files (x86)\Sony\VAIO Data Restore Tool\Restore.exe O4 - GS\Program [Public]: PMB.lnk . (.Sony Corporation - Browser.) -- C:\Program Files (x86)\Sony\Sony Picture Utility\PMBCore\SPUBrowser.exe O4 - GS\Program [Public]: Prise en charge du transfert VAIO.lnk . (.Sony Corporation - Prise en charge du transfert VAIO.) -- C:\Program Files (x86)\Sony\VAIO Transfer Support\VAIOTransfer.exe O4 - GS\Program [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - GS\Program [Public]: VAIO Content Exporter.lnk . (.Sony Corporation - VAIO Content Exporter.) -- C:\Program Files (x86)\Sony\VAIO VP Utilities\VCExporter.exe O4 - GS\Program [Public]: VAIO Control Center.lnk . (.Sony Corporation - VAIO Control Center.) -- C:\Program Files (x86)\Sony\VAIO Control Center\VAIO Control Center.exe O4 - GS\Program [Public]: VAIO Gate.lnk . (...) -- C:\Program Files (x86)\Sony\VAIO Gate\VAIO Gate.exe (.not file.) O4 - GS\Program [Public]: VAIO Media plus.lnk . (.Sony Corporation - VAIO Media plus.) -- C:\Program Files (x86)\Sony\VAIO Media plus\VMp.exe O4 - GS\Program [Public]: VAIO Movie Story.lnk . (.Sony Corporation - VAIO Movie Story.) -- C:\Program Files (x86)\Sony\VAIO Movie Story\VMStory.exe O4 - GS\Program [Public]: VAIO Update.lnk . (...) -- C:\Program Files (x86)\Sony\VAIO Update\VAIOUpdt.exe (.not file.) O4 - GS\Program [Public]: Visionneuse Microsoft Office PowerPoint 2007.lnk . (...) -- C:\Windows\Installer\{95120000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) -- C:\Windows\system32\WindowsAnytimeUpgradeUI.exe O4 - GS\Program [Public]: Windows DVD Maker.lnk . (...) -- C:\Program Files (x86)\DVD Maker\DVDMaker.exe (.not file.) O4 - GS\Program [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Live Mail.lnk . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\wlmail.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Live Movie Maker.lnk . (.Microsoft Corporation - Windows Live Movie Maker.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Live Photo Gallery.lnk . (.Microsoft Corporation - Windows Live Photo Gallery.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Program [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) -- C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) -- C:\Windows\system32\mblctr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Mise en route.) -- C:\Windows\system32\OobeFldr.dll =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) -- C:\Windows\system32\perfmon.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) -- C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\system32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\system32\taskschd.msc O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) -- C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) -- C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\QuickLaunch [Marie-Anne]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - GS\QuickLaunch [Marie-Anne]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\TaskBar [Marie-Anne]: PMB.lnk . (.Sony Corporation - Browser.) -- C:\Program Files (x86)\Sony\Sony Picture Utility\PMBCore\SPUBrowser.exe O4 - GS\TaskBar [Marie-Anne]: Traitement de texte Microsoft Works.lnk . (.Microsoft® Corporation - Microsoft® Works Word Processor.) -- C:\Windows\Installer\{0214A441-A4AB-43A8-8DEF-2F73C5364673}\WksWP.exe =>.Microsoft Corporation O4 - GS\TaskBar [Marie-Anne]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [Marie-Anne]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Program [Marie-Anne]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\Accessories [Marie-Anne]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Marie-Anne]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Marie-Anne]: Run.lnk - Clé orpheline O4 - GS\Accessories [Marie-Anne]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Marie-Anne]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\SystemTools [Marie-Anne]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\SendTo [Marie-Anne]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O4 - GS\Desktop [Marie-Anne]: Google.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\Desktop [Marie-Anne]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman O4 - GS\Desktop [Marie-Anne]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman ~ Global Startup: 80 Scanned in 00mn 01s ---\\ Applications lancées au démarrage du sytème (O4) O4 - GS\Startup [Public]: Bluetooth.lnk . (...) -- C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exe (.not file.) O4 - GS\Startup [Public]: Logiciel de Synchronisation Orange.lnk . (.Voxmobili - Voxsync Desktop Companion.) -- C:\Program Files (x86)\Orange\Logiciel de Synchronisation Orange\Voxsync.exe O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp O4 - HKLM\..\Run: [Skytel] . (.Realtek Semiconductor Corp. - Realtek Voice Manager.) -- C:\Program Files\Realtek\Audio\HDA\Skytel.exe =>.Realtek Semiconductor Corp O4 - HKLM\..\Run: [Apoint] C:\Program Files (x86)\Apoint\Apoint.exe (.not file.) O4 - HKLM\..\Run: [IAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jusched.exe =>.Oracle Corporation O4 - HKLM\..\Run: [CanonMyPrinter] . (.CANON INC. - Canon My Printer.) -- C:\Program Files\Canon\MyPrinter\BJMyPrt.exe O4 - HKLM\..\Run: [CanonSolutionMenu] . (.CANON INC. - CNSLMAIN.) -- C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- c:\Program Files\Microsoft Security Client\msseces.exe O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe =>Toolbar.Google O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O4 - HKCU\..\Run: [BrowserChoice] . (.Microsoft Corporation - Choix de navigateur .) -- C:\Windows\System32\browserchoice.exe O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe O4 - HKLM\..\Wow6432Node\Run: [ISBMgr.exe] . (.Sony Corporation - Pas de description.) -- C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe =>.Advanced Micro Devices, Inc O4 - HKLM\..\Wow6432Node\Run: [NortonOnlineBackupReminder] . (.Symantec Corporation - Norton Online Backup Service.) -- C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe O4 - HKLM\..\Wow6432Node\Run: [MarketingTools] . (.Sony Corporation - Marketing Tools.) -- C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe O4 - HKLM\..\Wow6432Node\Run: [avast5] . (.ALWIL Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe O4 - HKLM\..\Wow6432Node\Run: [ApnUpdater] . (.Ask - Ask Updater.) -- C:\Program Files (x86)\Ask.com\Updater\Updater.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-892531866-1525985878-1467063135-1001\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe =>Toolbar.Google O4 - HKUS\S-1-5-21-892531866-1525985878-1467063135-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O4 - HKUS\S-1-5-21-892531866-1525985878-1467063135-1001\..\Run: [BrowserChoice] . (.Microsoft Corporation - Choix de navigateur .) -- C:\Windows\System32\browserchoice.exe O4 - HKUS\S-1-5-21-892531866-1525985878-1467063135-1001\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation ~ Application: Scanned in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ IE Control Panel: 1 Scanned in 00mn 00s ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9) O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 [64Bits] - {CCA281CA-C863-46ef-9331-5C8D4460577F} . (...) -- C:\Program Files\WIDCOMM\Bluetooth Software\bt_hot_icon.ico ~ IE Extra Buttons: Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll ~ Winsock: 9 Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{C2E388CE-974E-4CFE-95C8-0D4102D51CE0}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CCS\Services\Tcpip\..\{F7114F42-AEAB-4B8A-8933-FE23AAC52AC1}: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{C2E388CE-974E-4CFE-95C8-0D4102D51CE0}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CS1\Services\Tcpip\..\{F7114F42-AEAB-4B8A-8933-FE23AAC52AC1}: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{C2E388CE-974E-4CFE-95C8-0D4102D51CE0}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CS2\Services\Tcpip\..\{F7114F42-AEAB-4B8A-8933-FE23AAC52AC1}: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.240 212.27.40.241 ~ Domain: Scanned in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) -- O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll ~ Winlogon: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ SSODL: 1 Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.ALWIL Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: Bluetooth Service (btwdins) . (.Broadcom Corporation. - Bluetooth Support Server.) - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc O23 - Service: Google Software Updater (gusvc) . (.Google - gusvc.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation - RAID Monitor.) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe O23 - Service: Roxio Upnp Server 10 (Roxio Upnp Server 10) . (.Sonic Solutions - RoxioUpnpService10 Module.) - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: CamMonitor (uCamMonitor) . (.ArcSoft, Inc. - MgiSvr.) - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe O23 - Service: VAIO Event Service (VAIO Event Service) . (.Sony Corporation - VAIO Event Service (Service Module).) - C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe O23 - Service: (VAIO Power Management) . (.Sony Corporation - SPMService.exe.) - C:\Program Files\Sony\VAIO Power Management\SPMService.exe O23 - Service: VAIO Content Folder Watcher (VCFw) . (.Sony Corporation - VAIO Content Folder Watcher.) - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe O23 - Service: VSNService (VSNService) . (.Sony Corporation - VAIO Smart Network Service.) - C:\Program Files\Sony\VAIO Smart Network\VSNService.exe O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) . (.Sony Corporation - VAIO Entertainment Database Service.) - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe ~ Services: 15 Scanned in 00mn 07s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ Enumère les données de BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Google Software Updater.job [1014] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1078] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1082] [MD5.A283108E14F3970432C21AF4C0CB1BCE] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [257416] [MD5.5D4BC124FAAE6730AC002CDB67BF1A1C] [APT] [Google Software Updater] (.Google.) -- C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [194032] [MD5.626A24ED1228580B9518C01930936DF9] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [133104] [MD5.626A24ED1228580B9518C01930936DF9] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [133104] [MD5.0C1ECB0C7A3B9A77B90ED753D15AFEDC] [APT] [Launch 7303] (.Voxmobili.) -- C:\Program Files (x86)\Orange\Logiciel de Synchronisation Orange\Voxsync.exe [684032] [MD5.AEF195FC98A19DB3BAF3A88D8708AFBF] [APT] [Scheduled Update for Ask Toolbar] (...) -- C:\Program Files (x86)\Ask.com\UpdateTask.exe [137864] =>Toolbar.Ask [MD5.6FF06B82464719EB9B2BB8C5708797ED] [APT] [VAIO Gate] (.Sony Corporation.) -- C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [1833872] [MD5.F1599A0D508D38AF2F1BB331776DA3E2] [APT] [VAIO Update] (.Sony Corporation.) -- C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [1157280] [MD5.0164F32D289642BD9AF64C5BB7CCCCBF] [APT] [VAIO Update Self Repair] (.Sony Corporation.) -- C:\Program Files\Sony\VAIO Update\VUSR.exe [617120] ~ Scheduled Task: 15 Scanned in 00mn 04s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Java (Sun) [64Bits] - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\regutils.dll O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Internet Explorer [64Bits] - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll ~ Active Setup: 11 Scanned in 00mn 00s ---\\ Pilotes lancés au démarrage du système (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys ~ Drivers: 60 Scanned in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Reader 9.1 - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-A91000000001} O42 - Logiciel: Alps Pointing-device for VAIO - (.ALPS ELECTRIC CO., LTD..) [HKLM][64Bits] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD} O42 - Logiciel: ArcSoft Magic-i Visual Effects 2 - (.ArcSoft.) [HKLM][64Bits] -- {7BB90344-0647-468E-925A-7F69F7983421} O42 - Logiciel: ArcSoft WebCam Companion 3 - (.ArcSoft.) [HKLM][64Bits] -- {DE8AAC73-6D8D-483E-96EA-CAEDDADB9079} O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM][64Bits] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE} =>Toolbar.Ask O42 - Logiciel: Atheros Client Installation Program - (.Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} O42 - Logiciel: Canon Easy-WebPrint EX - (...) [HKLM][64Bits] -- Easy-WebPrint EX O42 - Logiciel: Canon MP Navigator EX 3.0 - (...) [HKLM][64Bits] -- MP Navigator EX 3.0 O42 - Logiciel: Canon MP550 series MP Drivers - (...) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP550_series O42 - Logiciel: Canon Utilities Easy-PhotoPrint EX - (...) [HKLM][64Bits] -- Easy-PhotoPrint EX O42 - Logiciel: Canon Utilities My Printer - (...) [HKLM][64Bits] -- CanonMyPrinter O42 - Logiciel: Canon Utilities Solution Menu - (...) [HKLM][64Bits] -- CanonSolutionMenu O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {9EAC0E21-510E-4259-A9C6-F5D5B8969036} O42 - Logiciel: Click to Disc - (.Sony Corporation.) [HKLM][64Bits] -- {68A69CFF-130D-4CDE-AB0E-7374ECB144C8} O42 - Logiciel: Click to Disc Editor - (.Sony Corporation.) [HKLM][64Bits] -- InstallShield_{4DCEA9C1-4D6E-41BF-A854-28CFA8B56DBF} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: Enregistrement utilisateur de Canon MP550 series - (...) [HKLM][64Bits] -- Enregistrement utilisateur de Canon MP550 series O42 - Logiciel: Gestion de l’alimentation de VAIO - (.Sony Corporation.) [HKLM][64Bits] -- {5F5867F0-2D23-4338-A206-01A76C823924} O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} =>Toolbar.Google O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {96AD3B61-EAE2-11E2-9E72-B8AC6F98CCE3} O42 - Logiciel: Intel® Matrix Storage Manager - (.Intel Corporation.) [HKLM][64Bits] -- {9068B2BE-D93A-4C0A-861C-5E35E2C0E09E} O42 - Logiciel: Java 7 Update 25 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217017FF} O42 - Logiciel: Java(TM) 6 Update 14 (64-bit) - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86416014FF} O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} O42 - Logiciel: Logiciel de Synchronisation Orange - (.Orange.) [HKLM][64Bits] -- {C2EBC2F1-B766-4AE3-A10C-6EBBC1EE3B02} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {32E9C1A5-0FDA-4483-987D-DBABF9CC1DD8} O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {8D26D58C-3464-4C03-BB61-5695F984EFEF} O42 - Logiciel: Microsoft Security Client FR-FR Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {DC911ADF-7B60-40F2-A112-FB1EB6402D07} O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Security Client O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {0214A441-A4AB-43A8-8DEF-2F73C5364673} O42 - Logiciel: Music Transfer - (.Sony Corporation.) [HKLM][64Bits] -- {CE2121C6-C94D-4A73-8EA4-6943F33EE335} O42 - Logiciel: MusicStation - (.Omnifone.) [HKLM][64Bits] -- {51CFD8DC-5C66-42ec-9598-72E28FD62ED5} O42 - Logiciel: Norton Online Backup - (.Symantec.) [HKLM][64Bits] -- {C57BCDE1-7CB9-467D-B3BA-7E119916CDC1} O42 - Logiciel: Orange WebTV Player 1.29418 - (.Orange.) [HKLM][64Bits] -- Orange WebTV Player_is1 O42 - Logiciel: Outil de restauration de données VAIO - (.Sony Corporation.) [HKLM][64Bits] -- {57B955CE-B5D3-495D-AF1B-FAEE0540BFEF} O42 - Logiciel: Paramètres de contrôle du contenu VAIO - (.Sony Corporation.) [HKLM][64Bits] -- {23825B69-36DF-4DAD-9CFD-118D11D80F16} O42 - Logiciel: Paramètres des fonctions d'origine VAIO - (.Sony Corporation.) [HKLM][64Bits] -- {A63E7492-A0BC-4BB9-89A7-352965222380} O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3 O42 - Logiciel: Prise en charge du transfert VAIO - (.Sony Corporation.) [HKLM][64Bits] -- {5DDAFB4B-C52E-468A-9E23-3B0CEEB671BF} O42 - Logiciel: Realtek HDMI Audio Driver for ATI - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5449FB4F-1802-4D5B-A6D8-087DB1142147} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Roxio Central Audio - (.Roxio.) [HKLM][64Bits] -- {73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83} O42 - Logiciel: Roxio Central Copy - (.Roxio.) [HKLM][64Bits] -- {B6A26DE5-F2B5-4D58-9570-4FC760E00FCD} O42 - Logiciel: Roxio Central Core - (.Roxio.) [HKLM][64Bits] -- {ED439A64-F018-4DD4-8BA5-328D85AB09AB} O42 - Logiciel: Roxio Central Data - (.Roxio.) [HKLM][64Bits] -- {08E81ABD-79F7-49C2-881F-FD6CB0975693} O42 - Logiciel: Roxio Central Tools - (.Roxio.) [HKLM][64Bits] -- {1F54DAFA-9261-4A62-B59D-6C9F26B48FE4} O42 - Logiciel: Roxio Easy Media Creator 10 LJ - (.Roxio.) [HKLM][64Bits] -- {537BF16E-7412-448C-95D8-846E85A1D817} =>.Roxio O42 - Logiciel: Roxio Easy Media Creator Home - (.Roxio.) [HKLM][64Bits] -- {FE51662F-D8F6-43B5-99D9-D4894AF00F83} =>.Roxio O42 - Logiciel: Setting Utility Series - (.Sony Corporation.) [HKLM][64Bits] -- {A7DA438C-2E43-4C20-BFDA-C1F4A6208558} O42 - Logiciel: Skype™ 6.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D} O42 - Logiciel: Sony Home Network Library - (.Sony Corporation.) [HKLM][64Bits] -- {D03D02D8-AB64-4785-A48E-5AA8B0FB8C14} O42 - Logiciel: Sony Picture Utility - (.Sony Corporation.) [HKLM][64Bits] -- {D5068583-D569-468B-9755-5FBF5848F46F} O42 - Logiciel: Support de Présentation VAIO - (.Sony Corporation.) [HKLM][64Bits] -- {2018C019-30D9-4240-8C01-0865C10DCF5A} O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer O42 - Logiciel: VAIO Content Metadata Intelligent Analyzing Manager - (.Sony Corporation.) [HKLM][64Bits] -- {4882EBF5-CA37-4EF4-BCB8-9B0E78B907D0} O42 - Logiciel: VAIO Content Metadata Intelligent Network Service Manager - (.Sony Corporation.) [HKLM][64Bits] -- {4427F384-B5BE-4769-B7D0-C784FC321EB1} O42 - Logiciel: VAIO Content Metadata Manager Settings - (.Sony Corporation.) [HKLM][64Bits] -- {7395DD51-0D1A-47A7-9993-742073ECF4CE} O42 - Logiciel: VAIO Content Metadata XML Interface Library - (.Sony Corporation.) [HKLM][64Bits] -- {949419DF-F4AF-4693-B60A-522B24F233C6} O42 - Logiciel: VAIO Control Center - (.Sony Corporation.) [HKLM][64Bits] -- {72042FA6-5609-489F-A8EA-3C2DD650F667} O42 - Logiciel: VAIO DVD Menu Data Basic - (.Sony Corporation.) [HKLM][64Bits] -- {596BED91-A1D8-4DF1-8CD1-1C777F7588AC} O42 - Logiciel: VAIO Entertainment Platform - (.Sony Corporation.) [HKLM][64Bits] -- {6B1F20F2-6321-4669-A58C-33DF8E7517FF} O42 - Logiciel: VAIO Event Service - (.Sony Corporation.) [HKLM][64Bits] -- {C7477742-DDB4-43E5-AC8D-0259E1E661B1} O42 - Logiciel: VAIO Gate - (.Sony Corporation.) [HKLM][64Bits] -- {A7C30414-2382-4086-B0D6-01A88ABA21C3} O42 - Logiciel: VAIO Marketing Tools - (.Sony Corporation.) [HKLM][64Bits] -- MarketingTools O42 - Logiciel: VAIO Media plus - (.Sony Corporation.) [HKLM][64Bits] -- {8DE50158-80AA-4FF2-9E9F-0A7C46F71FCD} O42 - Logiciel: VAIO Media plus Opening Movie - (.Sony Corporation.) [HKLM][64Bits] -- {9238E8A4-BEBA-43A3-B926-769BDBF194C5} O42 - Logiciel: VAIO Movie Story - (.Sony Corporation.) [HKLM][64Bits] -- {B25563A0-41F4-4A81-A6C1-6DBC0911B1F3} O42 - Logiciel: VAIO Movie Story Template Data - (.Sony Corporation.) [HKLM][64Bits] -- {6FA8BA2C-052B-4072-B8E2-2302C268BE9E} O42 - Logiciel: VAIO NW screensaver - (.Sony Europe.) [HKLM][64Bits] -- VAIO NW screensaver O42 - Logiciel: VAIO Premium Partners 1.00 - (...) [HKLM][64Bits] -- VAIO Premium Partners 1.00 O42 - Logiciel: VAIO Quick Web Access - (.Sony Corporation.) [HKLM][64Bits] -- splashtop O42 - Logiciel: VAIO Quick Web Access - (.Sony Corporation.) [HKLM][64Bits] -- {931FE23C-BB40-4C7A-A594-DB35908D8E83} O42 - Logiciel: VAIO Smart Network - (.Sony Corporation.) [HKLM][64Bits] -- {0899D75A-C2FC-42EA-A702-5B9A5F24EAD5} O42 - Logiciel: VAIO Update - (.Sony Corporation.) [HKLM][64Bits] -- {9FF95DA2-7DA1-4228-93B7-DED7EC02B6B2} O42 - Logiciel: VAIO Wallpaper Contents - (.Sony Corporation.) [HKLM][64Bits] -- {D60F97EC-EF06-4E1E-B0D1-C2CBABA62FA3} O42 - Logiciel: VU5x64 - (.Sony Corporation .) [HKLM][64Bits] -- {6B7DE186-374B-4873-AEC1-7464DA337DD6} O42 - Logiciel: VU5x86 - (.Sony Corporation .) [HKLM][64Bits] -- {9D12A8B5-9D41-4465-BF11-70719EB0CD02} O42 - Logiciel: VU5x86 - (.Sony Corporation .) [HKLM][64Bits] -- {D2D23D08-D10E-43D6-883C-78E0B2AC9CC6} O42 - Logiciel: WIDCOMM Bluetooth Software - (.Broadcom Corporation.) [HKLM][64Bits] -- {9E9D49A4-1DF4-4138-B7DB-5D87A893088E} O42 - Logiciel: avast! Free Antivirus v5.0.178.0 - (.Alwil Software.) [HKLM][64Bits] -- avast5 ~ Logic: 142 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\ALWIL Software] [HKCU\Software\APN] [HKCU\Software\ATI] [HKCU\Software\Adobe] [HKCU\Software\Alps] [HKCU\Software\AppDataLow\Software\AskToolbar] [HKCU\Software\AppDataLow\Software\Canon] [HKCU\Software\AppDataLow\Software\Google] [HKCU\Software\AppDataLow\Software\JavaSoft] [HKCU\Software\AppDataLow\Software\Unity] [HKCU\Software\AppDataLow] [HKCU\Software\ArcSoft] [HKCU\Software\Ask.com] [HKCU\Software\Canon] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Google] [HKCU\Software\IM Providers] [HKCU\Software\JEDI-VCL] [HKCU\Software\JavaSoft] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\Macromedia] [HKCU\Software\MozillaPlugins] [HKCU\Software\Netscape] [HKCU\Software\Northcode Inc] [HKCU\Software\ODBC] [HKCU\Software\Policies] [HKCU\Software\Realtek] [HKCU\Software\Skype] [HKCU\Software\Sony Corporation] [HKCU\Software\Trolltech] [HKCU\Software\Unity] [HKCU\Software\Voxmobili] [HKCU\Software\Widcomm] [HKCU\Software\Wow6432Node] [HKCU\Software\YahooPartnerToolbar] [HKCU\Software\ZebHelpProcess Helper] [HKCU\Software\keyhole.com] [HKLM\Software\AMD] [HKLM\Software\ATI Technologies] [HKLM\Software\ATI] [HKLM\Software\Alps] [HKLM\Software\BrowserChoice] [HKLM\Software\CXT] [HKLM\Software\Canon] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\DeviceVM] [HKLM\Software\Google] [HKLM\Software\IM Providers] [HKLM\Software\Intel] [HKLM\Software\JavaSoft] [HKLM\Software\Macromedia] [HKLM\Software\MozillaPlugins] [HKLM\Software\ODBC] [HKLM\Software\Policies] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SRS Labs] [HKLM\Software\SiteAdvisor] [HKLM\Software\Sonic] [HKLM\Software\Sony Corporation] [HKLM\Software\Waves Audio] [HKLM\Software\Widcomm] [HKLM\Software\Wow6432Node\ALWIL Software] [HKLM\Software\Wow6432Node\APN] [HKLM\Software\Wow6432Node\ATI Technologies] [HKLM\Software\Wow6432Node\ATI] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\America Online] [HKLM\Software\Wow6432Node\ArcSoft] [HKLM\Software\Wow6432Node\AskToolbar] [HKLM\Software\Wow6432Node\Atheros] [HKLM\Software\Wow6432Node\CDDB] [HKLM\Software\Wow6432Node\Canon] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\Debug] [HKLM\Software\Wow6432Node\DeviceVM] [HKLM\Software\Wow6432Node\Digital River] [HKLM\Software\Wow6432Node\DivXNetworks] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\IM Providers] [HKLM\Software\Wow6432Node\InstallShield] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\JavaSoft] [HKLM\Software\Wow6432Node\JreMetrics] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\McAfeeInstaller] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\Orange] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.] [HKLM\Software\Wow6432Node\Realtek] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\Roxio] [HKLM\Software\Wow6432Node\Skype] [HKLM\Software\Wow6432Node\Sonic] [HKLM\Software\Wow6432Node\Sony Corporation] [HKLM\Software\Wow6432Node\SuppHelpDir] [HKLM\Software\Wow6432Node\Voxmobili] [HKLM\Software\Wow6432Node\Windows] [HKLM\Software\Wow6432Node\illiminable] [HKLM\Software\Wow6432Node] ~ Key Software: 160 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 08/09/2009 - 04:09:40 - [227,269] ----D C:\Program Files (x86)\Adobe O43 - CFD: 08/09/2009 - 04:44:17 - [111,914] ----D C:\Program Files (x86)\ArcSoft O43 - CFD: 06/05/2013 - 11:11:00 - [3,515] ----D C:\Program Files (x86)\Ask.com O43 - CFD: 11/07/2011 - 18:41:37 - [0,001] ----D C:\Program Files (x86)\Atheros O43 - CFD: 08/09/2009 - 04:10:40 - [80,625] ----D C:\Program Files (x86)\ATI Technologies O43 - CFD: 13/05/2010 - 15:30:55 - [320,899] ----D C:\Program Files (x86)\Canon O43 - CFD: 30/06/2013 - 10:30:35 - [469,765] ----D C:\Program Files (x86)\Common Files O43 - CFD: 08/09/2009 - 04:13:52 - [112,374] ----D C:\Program Files (x86)\Downloaded Installations O43 - CFD: 10/01/2010 - 21:36:38 - [423,311] ----D C:\Program Files (x86)\Google O43 - CFD: 05/01/2013 - 23:52:42 - [210,038] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 17/08/2009 - 14:15:20 - [58,970] ----D C:\Program Files (x86)\Intel O43 - CFD: 13/10/2013 - 22:01:34 - [5,325] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 30/06/2013 - 10:31:25 - [122,505] ----D C:\Program Files (x86)\Java O43 - CFD: 18/01/2010 - 18:20:09 - [0] ----D C:\Program Files (x86)\McAfee O43 - CFD: 30/01/2011 - 12:02:43 - [0] ----D C:\Program Files (x86)\Microsoft Antimalware O43 - CFD: 08/07/2012 - 11:33:09 - [362,664] ----D C:\Program Files (x86)\Microsoft Office O43 - CFD: 08/09/2009 - 04:33:05 - [7,431] ----D C:\Program Files (x86)\Microsoft Office Suite Activation Assistant O43 - CFD: 14/10/2013 - 18:03:21 - [1,552] ----D C:\Program Files (x86)\Microsoft Security Client O43 - CFD: 12/10/2013 - 22:13:01 - [40,851] ----D C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 15/12/2009 - 17:53:41 - [3,999] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 08/09/2009 - 04:35:08 - [0,331] ----D C:\Program Files (x86)\Microsoft Synchronization Services O43 - CFD: 19/10/2012 - 14:40:46 - [139,669] ----D C:\Program Files (x86)\Microsoft Works O43 - CFD: 28/06/2010 - 16:27:20 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 14/07/2009 - 07:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 17/12/2009 - 11:04:30 - [0] ----D C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 08/09/2009 - 04:35:28 - [13,716] ----D C:\Program Files (x86)\MusicStation O43 - CFD: 22/01/2010 - 16:38:43 - [11,539] ----D C:\Program Files (x86)\Orange O43 - CFD: 17/08/2009 - 13:53:40 - [69,875] ----D C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - 07:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 08/09/2009 - 04:36:53 - [6,615] ----D C:\Program Files (x86)\Roxio O43 - CFD: 28/07/2013 - 11:19:23 - [19,225] R---D C:\Program Files (x86)\Skype O43 - CFD: 10/06/2010 - 23:29:25 - [874,176] ----D C:\Program Files (x86)\Sony O43 - CFD: 08/09/2009 - 04:44:11 - [5,222] ----D C:\Program Files (x86)\Sony Corporation O43 - CFD: 08/09/2009 - 04:36:06 - [2,052] ----D C:\Program Files (x86)\Symantec O43 - CFD: 17/08/2009 - 14:31:35 - [0] --H-D C:\Program Files (x86)\Temp O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information O43 - CFD: 08/09/2009 - 04:43:39 - [23,529] ----D C:\Program Files (x86)\VAIO NW screensavers O43 - CFD: 04/08/2013 - 10:05:31 - [0,500] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 14/04/2013 - 11:14:15 - [113,827] ----D C:\Program Files (x86)\Windows Live O43 - CFD: 08/07/2012 - 11:40:07 - [5,895] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 08/07/2012 - 11:40:07 - [4,791] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 14/07/2009 - 07:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 08/07/2012 - 11:40:07 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 08/07/2012 - 11:40:07 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 08/07/2012 - 11:40:07 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 15/10/2013 - 18:24:33 - [17,007] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman O43 - CFD: 08/09/2009 - 04:09:41 - [4,387] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 08/09/2009 - 04:15:57 - [12,454] ----D C:\Program Files (x86)\Common Files\ArcSoft O43 - CFD: 08/09/2009 - 04:30:32 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 08/09/2009 - 04:15:55 - [4,907] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 18/03/2012 - 23:32:55 - [257,272] ----D C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 08/09/2009 - 04:36:54 - [4,579] ----D C:\Program Files (x86)\Common Files\PX Storage Engine O43 - CFD: 08/09/2009 - 04:36:54 - [40,484] ----D C:\Program Files (x86)\Common Files\Roxio Shared O43 - CFD: 14/07/2009 - 05:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 14/04/2013 - 11:08:48 - [1,904] ----D C:\Program Files (x86)\Common Files\Skype O43 - CFD: 08/09/2009 - 04:36:32 - [1,625] ----D C:\Program Files (x86)\Common Files\Sonic Shared O43 - CFD: 08/09/2009 - 04:40:17 - [60,656] ----D C:\Program Files (x86)\Common Files\Sony Shared O43 - CFD: 14/07/2009 - 05:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 08/07/2012 - 11:40:06 - [42,206] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 08/09/2009 - 04:44:58 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 08/09/2009 - 04:09:53 - [0,001] ----D C:\ProgramData\Adobe O43 - CFD: 15/12/2009 - 17:48:39 - [2,692] ----D C:\ProgramData\Alwil Software O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Application Data O43 - CFD: 07/12/2010 - 23:15:26 - [1,613] ----D C:\ProgramData\ArcSoft O43 - CFD: 23/10/2011 - 11:43:33 - [0] ----D C:\ProgramData\Ask O43 - CFD: 11/07/2011 - 18:42:18 - [0,010] ----D C:\ProgramData\Atheros O43 - CFD: 08/09/2009 - 04:10:55 - [0] ----D C:\ProgramData\ATI O43 - CFD: 15/12/2009 - 17:12:49 - [0] -SH-D C:\ProgramData\Bureau O43 - CFD: 13/05/2010 - 15:27:07 - [20,344] --H-D C:\ProgramData\CanonBJ O43 - CFD: 13/05/2010 - 15:40:42 - [0,002] --H-D C:\ProgramData\CanonIJScan O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Documents O43 - CFD: 15/12/2009 - 17:12:49 - [0] -SH-D C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Favorites O43 - CFD: 08/09/2009 - 04:15:49 - [0,518] ----D C:\ProgramData\Google O43 - CFD: 19/09/2011 - 16:27:32 - [0,014] ----D C:\ProgramData\Google Updater O43 - CFD: 18/01/2010 - 18:20:13 - [0,015] ----D C:\ProgramData\McAfee O43 - CFD: 15/12/2009 - 17:12:49 - [0] -SH-D C:\ProgramData\Menu Démarrer O43 - CFD: 30/01/2011 - 12:02:11 - [547,231] -S--D C:\ProgramData\Microsoft O43 - CFD: 12/10/2013 - 22:16:49 - [0,055] ----D C:\ProgramData\Microsoft Help O43 - CFD: 15/12/2009 - 17:12:49 - [0] -SH-D C:\ProgramData\Modèles O43 - CFD: 08/09/2009 - 04:35:28 - [3,521] ----D C:\ProgramData\MusicStation O43 - CFD: 12/01/2010 - 22:45:20 - [0,002] ----D C:\ProgramData\Partner O43 - CFD: 08/09/2009 - 04:26:13 - [0] ----D C:\ProgramData\SiteAdvisor O43 - CFD: 28/07/2013 - 11:19:25 - [86,399] ----D C:\ProgramData\Skype O43 - CFD: 08/09/2009 - 04:37:00 - [0,001] ----D C:\ProgramData\Sonic O43 - CFD: 05/01/2013 - 23:53:02 - [980,133] ----D C:\ProgramData\Sony Corporation O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Start Menu O43 - CFD: 26/04/2010 - 15:17:40 - [0,001] ----D C:\ProgramData\Sun O43 - CFD: 08/09/2009 - 04:36:06 - [0,001] ----D C:\ProgramData\Symantec O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Templates O43 - CFD: 08/09/2009 - 04:37:05 - [16,081] ----D C:\ProgramData\Uninstall O43 - CFD: 12/01/2010 - 22:51:28 - [0] -SH-D C:\Users\Marie-Anne\AppData\Roaming\.# O43 - CFD: 23/04/2010 - 17:16:31 - [5,357] ----D C:\Users\Marie-Anne\AppData\Roaming\Adobe O43 - CFD: 22/01/2010 - 16:33:33 - [0,003] ----D C:\Users\Marie-Anne\AppData\Roaming\ArcSoft O43 - CFD: 15/12/2009 - 17:18:58 - [0] ----D C:\Users\Marie-Anne\AppData\Roaming\ATI O43 - CFD: 13/05/2010 - 15:40:42 - [0,042] ----D C:\Users\Marie-Anne\AppData\Roaming\Canon O43 - CFD: 15/12/2009 - 17:24:01 - [0,017] ----D C:\Users\Marie-Anne\AppData\Roaming\Google O43 - CFD: 15/12/2009 - 17:18:15 - [0] ----D C:\Users\Marie-Anne\AppData\Roaming\Identities O43 - CFD: 27/04/2010 - 21:34:55 - [0] ----D C:\Users\Marie-Anne\AppData\Roaming\InstallShield O43 - CFD: 15/12/2009 - 17:30:15 - [0,009] ----D C:\Users\Marie-Anne\AppData\Roaming\Macromedia O43 - CFD: 14/07/2009 - 17:35:05 - [0] ----D C:\Users\Marie-Anne\AppData\Roaming\Media Center Programs O43 - CFD: 15/10/2013 - 17:41:57 - [1,633] -S--D C:\Users\Marie-Anne\AppData\Roaming\Microsoft O43 - CFD: 15/10/2013 - 18:20:33 - [5,190] ----D C:\Users\Marie-Anne\AppData\Roaming\Skype O43 - CFD: 15/12/2009 - 17:53:41 - [0,135] ----D C:\Users\Marie-Anne\AppData\Roaming\Sony Corporation O43 - CFD: 22/01/2010 - 16:48:10 - [0,013] ----D C:\Users\Marie-Anne\AppData\Roaming\Template O43 - CFD: 22/01/2010 - 16:38:54 - [0,206] ----D C:\Users\Marie-Anne\AppData\Roaming\Voxmobili O43 - CFD: 29/07/2011 - 12:57:11 - [0] ----D C:\Users\Marie-Anne\AppData\Roaming\Windows Live Writer O43 - CFD: 15/10/2013 - 18:25:09 - [0,018] ----D C:\Users\Marie-Anne\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 04/08/2013 - 10:11:39 - [45,567] ----D C:\Users\Marie-Anne\AppData\Local\Adobe O43 - CFD: 06/05/2013 - 11:10:54 - [0,192] ----D C:\Users\Marie-Anne\AppData\Local\APN O43 - CFD: 15/12/2009 - 17:13:00 - [0] -SH-D C:\Users\Marie-Anne\AppData\Local\Application Data O43 - CFD: 22/01/2010 - 14:53:16 - [0] ----D C:\Users\Marie-Anne\AppData\Local\Apps O43 - CFD: 22/01/2010 - 16:33:33 - [0] ----D C:\Users\Marie-Anne\AppData\Local\ArcSoft O43 - CFD: 15/12/2009 - 17:18:58 - [0,056] ----D C:\Users\Marie-Anne\AppData\Local\ATI O43 - CFD: 13/06/2012 - 06:58:08 - [0] ----D C:\Users\Marie-Anne\AppData\Local\Canon Easy-PhotoPrint EX O43 - CFD: 12/06/2013 - 18:35:35 - [0] ----D C:\Users\Marie-Anne\AppData\Local\Diagnostics O43 - CFD: 15/10/2013 - 13:11:11 - [0] ----D C:\Users\Marie-Anne\AppData\Local\ElevatedDiagnostics O43 - CFD: 15/10/2013 - 10:06:42 - [15,110] ----D C:\Users\Marie-Anne\AppData\Local\Google O43 - CFD: 15/12/2009 - 17:13:00 - [0] -SH-D C:\Users\Marie-Anne\AppData\Local\Historique O43 - CFD: 26/12/2012 - 22:24:49 - [1162,931] ----D C:\Users\Marie-Anne\AppData\Local\Microsoft O43 - CFD: 02/06/2010 - 23:25:48 - [0,480] ----D C:\Users\Marie-Anne\AppData\Local\Microsoft Games O43 - CFD: 15/12/2009 - 22:48:52 - [0,002] ----D C:\Users\Marie-Anne\AppData\Local\Omnifone_Ltd O43 - CFD: 15/12/2009 - 17:19:10 - [0,001] ----D C:\Users\Marie-Anne\AppData\Local\Sony_Corporation O43 - CFD: 15/10/2013 - 18:23:11 - [73,778] ----D C:\Users\Marie-Anne\AppData\Local\Temp O43 - CFD: 15/12/2009 - 17:13:00 - [0] -SH-D C:\Users\Marie-Anne\AppData\Local\Temporary Internet Files O43 - CFD: 11/07/2011 - 19:05:13 - [0,075] ----D C:\Users\Marie-Anne\AppData\Local\Unity O43 - CFD: 31/05/2010 - 10:47:58 - [0] ----D C:\Users\Marie-Anne\AppData\Local\VirtualStore O43 - CFD: 26/12/2012 - 22:24:36 - [0,055] ----D C:\Users\Marie-Anne\AppData\Local\Windows Live O43 - CFD: 09/01/2011 - 15:45:56 - [0,618] ----D C:\Users\Marie-Anne\AppData\Local\Windows Live Writer O43 - CFD: 14/07/2009 - 06:54:32 - [0,014] R---D C:\Users\Marie-Anne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 17/09/2013 - 04:50:33 - [0] R---D C:\Users\Marie-Anne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 14/07/2009 - 06:49:38 - [0,001] R---D C:\Users\Marie-Anne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 17/09/2013 - 04:50:33 - [0] R---D C:\Users\Marie-Anne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup ~ 128 Dossiers CLSID vides (CLSID Empty Folders) ~ Program Folder: 262 Scanned in 00mn 03s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.56661BB55AE4633677F846FFCD080ECA] - 12/10/2013 - 19:24:44 ---A- . (.Microsoft Corporation - Nettoyage de la mise à jour.) -- C:\Windows\SysNative\scavengeui.dll [461312] O44 - LFC:[MD5.56661BB55AE4633677F846FFCD080ECA] - 12/10/2013 - 19:24:44 ---A- . (.Microsoft Corporation - Nettoyage de la mise à jour.) -- C:\Windows\System32\scavengeui.dll [461312] O44 - LFC:[MD5.88612F1CE3BF42256913BF6E61C70D52] - 12/10/2013 - 19:24:45 ---A- . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys [983488] O44 - LFC:[MD5.764DF431D13537A575752009E7740F18] - 12/10/2013 - 19:24:46 ---A- . (.Microsoft Corporation - WinFX OpenType/CFF Rasterizer.) -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll [124112] O44 - LFC:[MD5.764DF431D13537A575752009E7740F18] - 12/10/2013 - 19:24:46 ---A- . (.Microsoft Corporation - WinFX OpenType/CFF Rasterizer.) -- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll [124112] O44 - LFC:[MD5.70833F5A59F65908698093889C34BCA2] - 12/10/2013 - 19:24:59 ---A- . (.Microsoft Corporation - Win32 Emulation on NT64.) -- C:\Windows\SysNative\wow64.dll [243712] O44 - LFC:[MD5.70833F5A59F65908698093889C34BCA2] - 12/10/2013 - 19:24:59 ---A- . (.Microsoft Corporation - Win32 Emulation on NT64.) -- C:\Windows\System32\wow64.dll [243712] O44 - LFC:[MD5.63A580C88CFAF72A92550940054569EF] - 12/10/2013 - 19:25:00 ---A- . (.Microsoft Corporation - API avancées Windows 32.) -- C:\Windows\SysNative\advapi32.dll [878080] O44 - LFC:[MD5.63A580C88CFAF72A92550940054569EF] - 12/10/2013 - 19:25:00 ---A- . (.Microsoft Corporation - API avancées Windows 32.) -- C:\Windows\System32\advapi32.dll [878080] O44 - LFC:[MD5.A3FCC4F97551087D65F8FEE879FEF736] - 12/10/2013 - 19:25:00 ---A- . (.Microsoft Corporation - Bibliothèque de l’application auxiliaire de.) -- C:\Windows\SysNative\tdh.dll [859648] O44 - LFC:[MD5.A3FCC4F97551087D65F8FEE879FEF736] - 12/10/2013 - 19:25:00 ---A- . (.Microsoft Corporation - Bibliothèque de l’application auxiliaire de.) -- C:\Windows\System32\tdh.dll [859648] O44 - LFC:[MD5.CAAAC014C5C56A69F710B5F1B836DE22] - 12/10/2013 - 19:25:00 ---A- . (.Microsoft Corporation - DLL Couche NT.) -- C:\Windows\SysNative\ntdll.dll [1732032] O44 - LFC:[MD5.CAAAC014C5C56A69F710B5F1B836DE22] - 12/10/2013 - 19:25:00 ---A- . (.Microsoft Corporation - DLL Couche NT.) -- C:\Windows\System32\ntdll.dll [1732032] O44 - LFC:[MD5.5B9A6A310326D9C438F2C19FBBE97C97] - 12/10/2013 - 19:25:02 ---A- . (.Microsoft Corporation - NT Kernel & System.) -- C:\Windows\SysNative\ntoskrnl.exe [5549504] O44 - LFC:[MD5.5B9A6A310326D9C438F2C19FBBE97C97] - 12/10/2013 - 19:25:02 ---A- . (.Microsoft Corporation - NT Kernel & System.) -- C:\Windows\System32\ntoskrnl.exe [5549504] O44 - LFC:[MD5.19320B121BFE7462EADD50A42C81AFD0] - 12/10/2013 - 19:25:03 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\SysNative\win32k.sys [3155968] O44 - LFC:[MD5.19320B121BFE7462EADD50A42C81AFD0] - 12/10/2013 - 19:25:03 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [3155968] O44 - LFC:[MD5.314C17917AC8523EC77A710215012A65] - 12/10/2013 - 19:25:04 ---A- . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\Drivers\afd.sys [497152] O44 - LFC:[MD5.9A9F9F1A77D6A80EE28B57664F00013E] - 12/10/2013 - 19:25:04 ---A- . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\Windows\SysNative\mswsock.dll [327168] O44 - LFC:[MD5.9A9F9F1A77D6A80EE28B57664F00013E] - 12/10/2013 - 19:25:04 ---A- . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\Windows\System32\mswsock.dll [327168] O44 - LFC:[MD5.40AF23633D197905F03AB5628C558C51] - 12/10/2013 - 19:25:04 ---A- . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\Drivers\tcpip.sys [1903552] O44 - LFC:[MD5.0EB0E5D22B1760F2DBCE632F2DD7A54D] - 12/10/2013 - 19:25:05 ---A- . (.Microsoft Corporation - Fichier DLL du service DAV pour le Web.) -- C:\Windows\SysNative\WebClnt.dll [259584] O44 - LFC:[MD5.0EB0E5D22B1760F2DBCE632F2DD7A54D] - 12/10/2013 - 19:25:05 ---A- . (.Microsoft Corporation - Fichier DLL du service DAV pour le Web.) -- C:\Windows\System32\WebClnt.dll [259584] O44 - LFC:[MD5.B32AB94A432289AC2DF77A3DCAD32EED] - 12/10/2013 - 19:25:05 ---A- . (.Microsoft Corporation - Web DAV Client DLL.) -- C:\Windows\SysNative\davclnt.dll [102400] O44 - LFC:[MD5.B32AB94A432289AC2DF77A3DCAD32EED] - 12/10/2013 - 19:25:05 ---A- . (.Microsoft Corporation - Web DAV Client DLL.) -- C:\Windows\System32\davclnt.dll [102400] O44 - LFC:[MD5.1A4F75E63C9FB84B85DFFC6B63FD5404] - 12/10/2013 - 19:25:05 ---A- . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\Drivers\mrxdav.sys [140800] O44 - LFC:[MD5.597C3699384E53CC59587ED50CCE5CA2] - 12/10/2013 - 19:25:06 ---A- . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\Drivers\hidclass.sys [76800] O44 - LFC:[MD5.856E76B3641746ABBC2946BED1372098] - 12/10/2013 - 19:25:06 ---A- . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\Drivers\hidparse.sys [32896] O44 - LFC:[MD5.80B0F7D5CCF86CEB5D402EAAF61FEC31] - 12/10/2013 - 19:25:06 ---A- . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\usbcir.sys [100864] O44 - LFC:[MD5.9661DA76B4531B2DA272ECCE25A8AF24] - 12/10/2013 - 19:25:06 ---A- . (.Microsoft Corporation - USB Scanner Driver.) -- C:\Windows\System32\Drivers\usbscan.sys [42496] O44 - LFC:[MD5.1F775DA4CF1A3A1834207E975A72E9D7] - 12/10/2013 - 19:25:06 ---A- . (.Microsoft Corporation - USB Video Class Driver.) -- C:\Windows\System32\Drivers\usbvideo.sys [185344] O44 - LFC:[MD5.E2C933EDBC389386EBE6D2BA953F43D8] - 12/10/2013 - 19:25:11 ---A- . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\Windows\System32\Drivers\Wdf01000.sys [785624] O44 - LFC:[MD5.142671F462619CB64BA74F5B70136CB4] - 12/10/2013 - 19:25:12 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\SysNative\atmlib.dll [46080] O44 - LFC:[MD5.142671F462619CB64BA74F5B70136CB4] - 12/10/2013 - 19:25:12 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\System32\atmlib.dll [46080] O44 - LFC:[MD5.D6BAE9B4B210D71CDDADC224CEFCDB5F] - 12/10/2013 - 19:25:12 ---A- . (.Microsoft Corporation - Font Subsetting DLL.) -- C:\Windows\SysNative\fontsub.dll [100864] O44 - LFC:[MD5.D6BAE9B4B210D71CDDADC224CEFCDB5F] - 12/10/2013 - 19:25:12 ---A- . (.Microsoft Corporation - Font Subsetting DLL.) -- C:\Windows\System32\fontsub.dll [100864] O44 - LFC:[MD5.E1BB958681BE311E7CFF06CFEC5F1F2B] - 12/10/2013 - 19:25:13 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\SysNative\atmfd.dll [368128] O44 - LFC:[MD5.E1BB958681BE311E7CFF06CFEC5F1F2B] - 12/10/2013 - 19:25:13 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\System32\atmfd.dll [368128] O44 - LFC:[MD5.A5ED9421B8D09ED4F57CDA386307713E] - 12/10/2013 - 19:25:13 ---A- . (.Microsoft Corporation - DCI Manager.) -- C:\Windows\SysNative\dciman32.dll [14336] O44 - LFC:[MD5.A5ED9421B8D09ED4F57CDA386307713E] - 12/10/2013 - 19:25:13 ---A- . (.Microsoft Corporation - DCI Manager.) -- C:\Windows\System32\dciman32.dll [14336] O44 - LFC:[MD5.796B47A4B82EF1C39F13435B88834C48] - 12/10/2013 - 19:25:13 ---A- . (.Microsoft Corporation - Language Pack.) -- C:\Windows\SysNative\lpk.dll [41472] O44 - LFC:[MD5.796B47A4B82EF1C39F13435B88834C48] - 12/10/2013 - 19:25:13 ---A- . (.Microsoft Corporation - Language Pack.) -- C:\Windows\System32\lpk.dll [41472] O44 - LFC:[MD5.9028D1621C43DF8DFBD1C76860412A11] - 12/10/2013 - 19:25:15 ---A- . (.Microsoft Corporation - Bibliothèque de contrôles de l’expérience u.) -- C:\Windows\SysNative\comctl32.dll [633856] O44 - LFC:[MD5.9028D1621C43DF8DFBD1C76860412A11] - 12/10/2013 - 19:25:15 ---A- . (.Microsoft Corporation - Bibliothèque de contrôles de l’expérience u.) -- C:\Windows\System32\comctl32.dll [633856] O44 - LFC:[MD5.C53BA50404665A17707D9D4FD78699CB] - 12/10/2013 - 21:05:18 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\SysNative\MRT.exe [80541720] O44 - LFC:[MD5.C53BA50404665A17707D9D4FD78699CB] - 12/10/2013 - 21:05:18 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [80541720] O44 - LFC:[MD5.F026C6F104758D0EB215B017016FAE27] - 12/10/2013 - 21:14:31 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysNative\mshtml.dll [19252224] O44 - LFC:[MD5.F026C6F104758D0EB215B017016FAE27] - 12/10/2013 - 21:14:31 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [19252224] O44 - LFC:[MD5.CCDB8FDC289AA9AFA5F8827A2ADB21AD] - 12/10/2013 - 21:14:33 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\SysNative\ieframe.dll [15404544] O44 - LFC:[MD5.CCDB8FDC289AA9AFA5F8827A2ADB21AD] - 12/10/2013 - 21:14:33 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\System32\ieframe.dll [15404544] O44 - LFC:[MD5.D28B35DE88D27EFB27DF4B1E8319E3C0] - 12/10/2013 - 21:14:35 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\SysNative\wininet.dll [2241024] O44 - LFC:[MD5.D28B35DE88D27EFB27DF4B1E8319E3C0] - 12/10/2013 - 21:14:35 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2241024] O44 - LFC:[MD5.16A3E229F60FA4B05573A0937AB3C3CB] - 12/10/2013 - 21:14:36 ---A- . (.Microsoft Corporation - JScript Proxy Auto-Configuration.) -- C:\Windows\SysNative\jsproxy.dll [53248] O44 - LFC:[MD5.16A3E229F60FA4B05573A0937AB3C3CB] - 12/10/2013 - 21:14:36 ---A- . (.Microsoft Corporation - JScript Proxy Auto-Configuration.) -- C:\Windows\System32\jsproxy.dll [53248] O44 - LFC:[MD5.882AC0DD997CFC90FBB468D698BD55C6] - 12/10/2013 - 21:14:38 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysNative\urlmon.dll [1365504] O44 - LFC:[MD5.882AC0DD997CFC90FBB468D698BD55C6] - 12/10/2013 - 21:14:38 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [1365504] O44 - LFC:[MD5.D383602755758FA81166B0FD8AFE6D40] - 12/10/2013 - 21:14:40 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\SysNative\jscript9.dll [3959296] O44 - LFC:[MD5.D383602755758FA81166B0FD8AFE6D40] - 12/10/2013 - 21:14:40 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript9.dll [3959296] O44 - LFC:[MD5.7B4E06047031B2AAA4AE10F00C59BFC7] - 12/10/2013 - 21:14:42 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\SysNative\jscript.dll [855552] O44 - LFC:[MD5.7B4E06047031B2AAA4AE10F00C59BFC7] - 12/10/2013 - 21:14:42 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript.dll [855552] O44 - LFC:[MD5.214E39F0A8E382F1889B26B46DE0AF81] - 12/10/2013 - 21:14:42 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\SysNative\msfeeds.dll [603136] O44 - LFC:[MD5.214E39F0A8E382F1889B26B46DE0AF81] - 12/10/2013 - 21:14:42 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\System32\msfeeds.dll [603136] O44 - LFC:[MD5.199BD40B1890E1EEFF7438B59787534F] - 12/10/2013 - 21:14:44 ---A- . (.Microsoft Corporation - Run time utility for Internet Explorer.) -- C:\Windows\SysNative\iertutil.dll [2647552] O44 - LFC:[MD5.199BD40B1890E1EEFF7438B59787534F] - 12/10/2013 - 21:14:44 ---A- . (.Microsoft Corporation - Run time utility for Internet Explorer.) -- C:\Windows\System32\iertutil.dll [2647552] O44 - LFC:[MD5.742B2C69643527763E162C0BA923D086] - 12/10/2013 - 21:14:45 ---A- . (.Microsoft Corporation - IE Sysprep Provider.) -- C:\Windows\SysNative\iesysprep.dll [136704] O44 - LFC:[MD5.742B2C69643527763E162C0BA923D086] - 12/10/2013 - 21:14:45 ---A- . (.Microsoft Corporation - IE Sysprep Provider.) -- C:\Windows\System32\iesysprep.dll [136704] O44 - LFC:[MD5.4163195B6D07D3434BDEA78C293B7E0E] - 12/10/2013 - 21:14:45 ---A- . (.Microsoft Corporation - Registers custom PKEYs for IE.) -- C:\Windows\SysNative\RegisterIEPKEYs.exe [89600] O44 - LFC:[MD5.4163195B6D07D3434BDEA78C293B7E0E] - 12/10/2013 - 21:14:45 ---A- . (.Microsoft Corporation - Registers custom PKEYs for IE.) -- C:\Windows\System32\RegisterIEPKEYs.exe [89600] O44 - LFC:[MD5.A80B91A93EDFFDE3DD2646D6E4CDDC44] - 12/10/2013 - 21:14:46 ---A- . (.Microsoft Corporation - IOD Version Map.) -- C:\Windows\SysNative\iesetup.dll [67072] O44 - LFC:[MD5.A80B91A93EDFFDE3DD2646D6E4CDDC44] - 12/10/2013 - 21:14:46 ---A- . (.Microsoft Corporation - IOD Version Map.) -- C:\Windows\System32\iesetup.dll [67072] O44 - LFC:[MD5.38CFAC1BAFEBC8B0AF8A22093803D38E] - 12/10/2013 - 21:14:46 ---A- . (.Microsoft Corporation - Traitement de RunOnce complet avec interfac.) -- C:\Windows\SysNative\iernonce.dll [39936] O44 - LFC:[MD5.38CFAC1BAFEBC8B0AF8A22093803D38E] - 12/10/2013 - 21:14:46 ---A- . (.Microsoft Corporation - Traitement de RunOnce complet avec interfac.) -- C:\Windows\System32\iernonce.dll [39936] O44 - LFC:[MD5.C4DDAC3F3062739C4C2BB759B36E005D] - 12/10/2013 - 21:14:46 ---A- . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\SysNative\ie4uinit.exe [51712] O44 - LFC:[MD5.C4DDAC3F3062739C4C2BB759B36E005D] - 12/10/2013 - 21:14:46 ---A- . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [51712] O44 - LFC:[MD5.991A9D6B797B4D7E9EB29BE1FB4B1D28] - 12/10/2013 - 21:14:47 ---A- . (.Microsoft Corporation - Moteur de l’interface utilisateur d’Interne.) -- C:\Windows\SysNative\ieui.dll [526336] O44 - LFC:[MD5.991A9D6B797B4D7E9EB29BE1FB4B1D28] - 12/10/2013 - 21:14:47 ---A- . (.Microsoft Corporation - Moteur de l’interface utilisateur d’Interne.) -- C:\Windows\System32\ieui.dll [526336] O44 - LFC:[MD5.990235D752A40F5F8243ED537FAB2035] - 12/10/2013 - 21:14:49 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\SysNative\mshtml.tlb [2706432] O44 - LFC:[MD5.990235D752A40F5F8243ED537FAB2035] - 12/10/2013 - 21:14:49 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2706432] O44 - LFC:[MD5.A44E5F48DBBCE071B7094F3A1FBD5EC4] - 13/10/2013 - 20:59:55 ---A- . (...) -- C:\Windows\PFRO.log [408418] O44 - LFC:[MD5.F27429B7EE03797B1A7AA6B115A8969E] - 13/10/2013 - 21:03:43 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [361952] O44 - LFC:[MD5.F27429B7EE03797B1A7AA6B115A8969E] - 13/10/2013 - 21:03:43 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [361952] O44 - LFC:[MD5.F4F7A6422E7CC2613D5085B562F3DBC6] - 13/10/2013 - 21:11:02 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1549936] O44 - LFC:[MD5.4522BED47B90C333BCE7B65B0BDFD78E] - 13/10/2013 - 21:11:02 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [106622] O44 - LFC:[MD5.FE130AB9E3A73BB6C7F5BD547CCD9C36] - 13/10/2013 - 21:11:02 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [130988] O44 - LFC:[MD5.2CDBC5C7F357F12DEA37B9179D84151E] - 13/10/2013 - 21:11:02 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [616242] O44 - LFC:[MD5.216BA477B37FE5F553AD10590143470F] - 13/10/2013 - 21:11:02 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [704714] O44 - LFC:[MD5.F4F7A6422E7CC2613D5085B562F3DBC6] - 13/10/2013 - 21:11:02 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1549936] O44 - LFC:[MD5.4522BED47B90C333BCE7B65B0BDFD78E] - 13/10/2013 - 21:11:02 ---A- . (...) -- C:\Windows\System32\perfc009.dat [106622] O44 - LFC:[MD5.FE130AB9E3A73BB6C7F5BD547CCD9C36] - 13/10/2013 - 21:11:02 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [130988] O44 - LFC:[MD5.2CDBC5C7F357F12DEA37B9179D84151E] - 13/10/2013 - 21:11:02 ---A- . (...) -- C:\Windows\System32\perfh009.dat [616242] O44 - LFC:[MD5.216BA477B37FE5F553AD10590143470F] - 13/10/2013 - 21:11:02 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [704714] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 14/10/2013 - 15:26:43 --HA- . (...) -- C:\Windows\System32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf [0] O44 - LFC:[MD5.E185BDA84E5F03F4E1D8DCA30E209277] - 14/10/2013 - 17:03:38 ---A- . (...) -- C:\Windows\epplauncher.mif [1912] O44 - LFC:[MD5.280E90CBF4B2DDD169F0728CB44D726F] - 14/10/2013 - 17:05:29 ---A- . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\Drivers\usbhub.sys [343040] O44 - LFC:[MD5.311C1DD1088E55BEAE15954D17F50646] - 14/10/2013 - 17:05:29 ---A- . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\Drivers\usbehci.sys [52736] O44 - LFC:[MD5.9406D801042FAF859CF81B2C886413DC] - 14/10/2013 - 17:05:29 ---A- . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbohci.sys [25600] O44 - LFC:[MD5.E73A7A04FDAC9DD46EE2A4257F09E91C] - 14/10/2013 - 17:05:29 ---A- . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\Drivers\usbport.sys [325120] O44 - LFC:[MD5.A83D0EC9AE4C31704442099D40BA2471] - 14/10/2013 - 17:05:29 ---A- . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbuhci.sys [30720] O44 - LFC:[MD5.ACCEA6BC68D0C9A78EB97EE159028B4E] - 14/10/2013 - 17:05:29 ---A- . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\Drivers\usbccgp.sys [99840] O44 - LFC:[MD5.861C197502A5057E68F0AC75D9EFCDD7] - 14/10/2013 - 17:05:29 ---A- . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\Drivers\usbd.sys [7808] O44 - LFC:[MD5.A6009E619295B1D15E900E734F621EAB] - 15/10/2013 - 14:16:34 ---A- . (...) -- C:\Windows\setupact.log [56915] O44 - LFC:[MD5.5D1F720018D5FCC7D490DC310F162B36] - 15/10/2013 - 16:43:09 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1510922] O44 - LFC:[MD5.2116934CCF427091AA72FA1881702C2D] - 15/10/2013 - 17:13:54 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] ~ Files: 103 Scanned in 00mn 15s ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.C94F9F2AA2D4C9688320BE7EEC091819] - 12/10/2013 - 19:06:31 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf O45 - LFCP:[MD5.8B6771AEEE32001F0C84B90BC6CA5866] - 14/10/2013 - 15:16:46 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx O45 - LFCP:[MD5.06ED8CDE1A1BBDEDB2FB1E9196CC16C2] - 14/10/2013 - 15:17:46 ---A- - C:\Windows\Prefetch\AgCx_SC1.db O45 - LFCP:[MD5.BD1FED9A1A68832F3FCAE4E5614D661A] - 14/10/2013 - 17:10:44 ---A- - C:\Windows\Prefetch\AgCx_SC4.db O45 - LFCP:[MD5.4DA9F55525CDF4767ACBA0D2A70AD829] - 15/10/2013 - 13:11:14 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin O45 - LFCP:[MD5.0C11F75006FF6CCEE79E27BFAA4A5A58] - 15/10/2013 - 14:17:38 ---A- - C:\Windows\Prefetch\CSC.EXE-F8803EEA.pf O45 - LFCP:[MD5.DD01404EB7C4B774F7D69AE410F10E5C] - 15/10/2013 - 14:17:38 ---A- - C:\Windows\Prefetch\CVTRES.EXE-CB8485B0.pf O45 - LFCP:[MD5.B6A29171A4894088F57412B504A8F9F2] - 15/10/2013 - 14:17:45 ---A- - C:\Windows\Prefetch\IELOWUTIL.EXE-EE8999C6.pf O45 - LFCP:[MD5.E7845E431A2BFD1154628F0A94DF5466] - 15/10/2013 - 14:18:15 ---A- - C:\Windows\Prefetch\APNTEX.EXE-32BDD4AA.pf O45 - LFCP:[MD5.04259B76706EC0B248089CE29D6A8288] - 15/10/2013 - 14:18:24 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-B597A9D1.pf O45 - LFCP:[MD5.BE9F6F9E8F085F96994A54C40564BF15] - 15/10/2013 - 14:18:42 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-2E02FDCA.pf O45 - LFCP:[MD5.AB4BC27FC5F38C8E11C62D536377E1A0] - 15/10/2013 - 14:19:47 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-8CE1A322.pf O45 - LFCP:[MD5.56A920B79609CCBB1C06A060AD82F52F] - 15/10/2013 - 14:19:49 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-16B291C4.pf O45 - LFCP:[MD5.03B584C039B9F6D6FFD5EE925579CF0F] - 15/10/2013 - 14:19:59 ---A- - C:\Windows\Prefetch\GOOGLEUPDATERSERVICE.EXE-A6285BB5.pf O45 - LFCP:[MD5.B167E053BF0629D954ADA6EB711372D7] - 15/10/2013 - 14:21:02 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-BB21CD77.pf O45 - LFCP:[MD5.B6CF81EE00542EC5B6ADDDCAC0145903] - 15/10/2013 - 14:21:56 ---A- - C:\Windows\Prefetch\ACTIVATION.EXE-91A34A7B.pf O45 - LFCP:[MD5.9918F59ACC6E36753D79A5AE264D35B5] - 15/10/2013 - 14:29:49 ---A- - C:\Windows\Prefetch\WERMGR.EXE-F439C551.pf O45 - LFCP:[MD5.B9D57206787586E661DB07EC29DC2771] - 15/10/2013 - 14:59:00 ---A- - C:\Windows\Prefetch\TASKENG.EXE-35FA9C06.pf O45 - LFCP:[MD5.6E089F67C342DA590AE18030A6CBA97F] - 15/10/2013 - 14:59:02 ---A- - C:\Windows\Prefetch\VSSVC.EXE-6C8F0C66.pf O45 - LFCP:[MD5.878A3D2C0616B79F7D153462B16F2BC2] - 15/10/2013 - 15:19:00 ---A- - C:\Windows\Prefetch\WMPNSCFG.EXE-18FC9E64.pf O45 - LFCP:[MD5.6088FD3627526B47F0032C7916E3A712] - 15/10/2013 - 15:50:18 ---A- - C:\Windows\Prefetch\Layout.ini O45 - LFCP:[MD5.0C2E71705237553ED334DFD0E94130D4] - 15/10/2013 - 16:01:36 ---A- - C:\Windows\Prefetch\IGFXSRVC.EXE-C5618119.pf O45 - LFCP:[MD5.F429A93D60F7C6023DDE0C2740130195] - 15/10/2013 - 16:01:52 ---A- - C:\Windows\Prefetch\SIDEBAR.EXE-BA7094F6.pf O45 - LFCP:[MD5.7DFEAC89EA4ECEADBBCE484CAD5C1FC0] - 15/10/2013 - 16:03:40 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-44EEA6DB.pf O45 - LFCP:[MD5.8A8C9DA1B74DD4452B40B42711BA7128] - 15/10/2013 - 16:03:44 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-C6C77A76.pf O45 - LFCP:[MD5.231022662C7C8E6A62D0ED160D592377] - 15/10/2013 - 16:03:47 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-97E896B7.pf O45 - LFCP:[MD5.D98362576501B1AC6E2F025121FE1B45] - 15/10/2013 - 16:03:56 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-853558FF.pf O45 - LFCP:[MD5.04A201595CE6FB04F498D3B776087F0D] - 15/10/2013 - 16:04:03 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-DBFD3554.pf O45 - LFCP:[MD5.B92EC105A5C06760111AA8A719E0EAEA] - 15/10/2013 - 16:11:38 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-C5670914.pf O45 - LFCP:[MD5.42CD83A15BF00CE79CB64833038B7E38] - 15/10/2013 - 16:21:43 ---A- - C:\Windows\Prefetch\MSSPELLCHECKINGFACILITY.EXE-2435B712.pf O45 - LFCP:[MD5.A58297BA6C1FDF6FCD02349EB1522ACD] - 15/10/2013 - 16:26:46 ---A- - C:\Windows\Prefetch\MBLCTR.EXE-0EB0FDF9.pf O45 - LFCP:[MD5.B6589784C03F45CCCF951FA26D0AFE96] - 15/10/2013 - 16:26:52 ---A- - C:\Windows\Prefetch\MOBSYNC.EXE-B307E1CC.pf O45 - LFCP:[MD5.18F59A52016FAE56EF5B18384B435706] - 15/10/2013 - 16:27:05 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-D9DCD0F3.pf O45 - LFCP:[MD5.4071306DFC1F6AF010EA4DDD2421DF3C] - 15/10/2013 - 16:27:57 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-6A07DE60.pf O45 - LFCP:[MD5.BF6B33AC95C215FCD8940D6802AB729A] - 15/10/2013 - 16:27:57 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-FC7C086C.pf O45 - LFCP:[MD5.9327673AD52F98AA532BC530DA944BB3] - 15/10/2013 - 16:28:35 ---A- - C:\Windows\Prefetch\USERACCOUNTCONTROLSETTINGS.EX-381ECB63.pf O45 - LFCP:[MD5.70C1FDD808A8AF03900956CD4640A6B4] - 15/10/2013 - 16:36:00 ---A- - C:\Windows\Prefetch\FLASHPLAYERUPDATESERVICE.EXE-0129C0B2.pf O45 - LFCP:[MD5.D23EB7BC2E4E7D698AA1BA6C1CDC2A07] - 15/10/2013 - 16:42:05 ---A- - C:\Windows\Prefetch\EXCEL.EXE-DF9C9784.pf O45 - LFCP:[MD5.DF601E7089FB1270E2A513BD1901FFB1] - 15/10/2013 - 16:42:07 ---A- - C:\Windows\Prefetch\SETUP.EXE-CE57E542.pf O45 - LFCP:[MD5.67F38C14BD05BBF6E4E1A3EB289760CC] - 15/10/2013 - 16:42:38 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-766EFF52.pf O45 - LFCP:[MD5.C1E35F9DC0B68E919550C9F743E8438C] - 15/10/2013 - 16:42:42 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-E8B8DD29.pf O45 - LFCP:[MD5.5A01E6AC49A3749241978C5D4B535579] - 15/10/2013 - 17:12:23 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-A0F5E092.pf O45 - LFCP:[MD5.F9E4019AED18DDC51D3785D9E282BF3C] - 15/10/2013 - 17:14:30 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-058FE8F5.pf O45 - LFCP:[MD5.341561D1BEFBF4D8A1F103496D84FF21] - 15/10/2013 - 17:14:31 ---A- - C:\Windows\Prefetch\GOOGLETOOLBARUSER_32.EXE-66EEE4D2.pf =>Toolbar.Google O45 - LFCP:[MD5.8361B54F6F3D31D58558AE016A5991E3] - 15/10/2013 - 17:14:33 ---A- - C:\Windows\Prefetch\FLASHUTIL64_11_9_900_117_ACTI-AECBD10D.pf O45 - LFCP:[MD5.430CE23E17968C42BC3297473D5CC8F0] - 15/10/2013 - 17:14:34 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-AB22E9A6.pf O45 - LFCP:[MD5.55B88281743D4053B74EB3E9F96ECBA9] - 15/10/2013 - 17:17:00 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-0E1E7B82.pf O45 - LFCP:[MD5.FEE0FABF43D8AB093F68B794E8CD16D3] - 15/10/2013 - 17:17:39 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-A033F7A0.pf O45 - LFCP:[MD5.1A838EA4A157283F56823CE33706D4C7] - 15/10/2013 - 17:18:08 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-892531866-1525985878-1467063135-1001.db O45 - LFCP:[MD5.0330F1958DBE8305C4ADFAF0F4C6808D] - 15/10/2013 - 17:18:08 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-892531866-1525985878-1467063135-1001.db O45 - LFCP:[MD5.3C1F30EF92FC254FBF67CC21B265C3DF] - 15/10/2013 - 17:19:23 ---A- - C:\Windows\Prefetch\MPCMDRUN.EXE-BA176062.pf O45 - LFCP:[MD5.5F451B008CC0B3F87D0EF09A6476E09D] - 15/10/2013 - 17:22:45 ---A- - C:\Windows\Prefetch\CONSENT.EXE-40419367.pf O45 - LFCP:[MD5.4F18EF3624136BAF6F3C47A043213710] - 15/10/2013 - 17:22:50 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-6389524F.pf O45 - LFCP:[MD5.88B1C036AA893AC8A0824EB69583C35C] - 15/10/2013 - 17:22:52 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-7DBD11A9.pf O45 - LFCP:[MD5.281A5289B12294F8BDF746EF276F4A1A] - 15/10/2013 - 17:22:56 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-1008B3D4.pf O45 - LFCP:[MD5.E2FC539D1D6F513545866F242ACF8B85] - 15/10/2013 - 17:22:56 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-C8EFB528.pf O45 - LFCP:[MD5.CD415C0304AB426CE2F663909AF2172D] - 15/10/2013 - 17:22:57 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db O45 - LFCP:[MD5.FF534C31BDEDA037A3B086DF1B681DEE] - 15/10/2013 - 17:22:57 ---A- - C:\Windows\Prefetch\AgRobust.db O45 - LFCP:[MD5.9F28B7A904789057AAF2D7423C38BD37] - 15/10/2013 - 17:22:58 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db O45 - LFCP:[MD5.D87B9B7DA68148E8C4AE33D9FEA430C1] - 15/10/2013 - 17:22:58 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db O45 - LFCP:[MD5.AE998C2489D23F73EDE522C5A57D6DE5] - 15/10/2013 - 17:23:15 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-4B6CB38A.pf O45 - LFCP:[MD5.60B7D3F49A6CE9B2ECDD4523D25DB2AF] - 15/10/2013 - 17:23:19 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-44162447.pf O45 - LFCP:[MD5.7B8CFC98895DD5ED67C81F1E2DB4B75F] - 15/10/2013 - 17:23:19 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-69C456C3.pf O45 - LFCP:[MD5.D216525CD81F722B1E9F93495FA07C51] - 15/10/2013 - 17:23:58 ---A- - C:\Windows\Prefetch\INTERNETWRAPPER.EXE-D4EC69B8.pf O45 - LFCP:[MD5.F835AEBE91D481E22895EB0D918AE06F] - 15/10/2013 - 17:24:32 ---A- - C:\Windows\Prefetch\ZHPHEP.EXE-257D8644.pf O45 - LFCP:[MD5.8A234CF7F1BA376F6BA2FC6BECDEB98A] - 15/10/2013 - 17:24:40 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-960426D8.pf O45 - LFCP:[MD5.E15C309CA79ECA059A62438FB00CF81C] - 15/10/2013 - 17:24:42 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-6A1D0894.pf O45 - LFCP:[MD5.F6099C3E58862123699E3ADCF9C8E5D7] - 15/10/2013 - 17:24:51 ---A- - C:\Windows\Prefetch\CONHOST.EXE-0C6456FB.pf O45 - LFCP:[MD5.B960D52B9A97B932F30BBACA6D22D3A3] - 15/10/2013 - 17:24:51 ---A- - C:\Windows\Prefetch\CSCRIPT.EXE-FCD9ABA9.pf O45 - LFCP:[MD5.7CAD46D97E7B8151EBE4A622F8D31C2B] - 15/10/2013 - 17:24:51 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-39F97B2D.pf O45 - LFCP:[MD5.2E46B7A4D8753DD39C1D36F3EAC62EC0] - 15/10/2013 - 17:24:52 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-96070FE0.pf O45 - LFCP:[MD5.212BD8DF09A93B223420491A3611B29E] - 15/10/2013 - 17:24:53 ---A- - C:\Windows\Prefetch\PV.EXE-0748338F.pf O45 - LFCP:[MD5.62DCB472CC8014D43D5AEC8DBF7DC57B] - 15/10/2013 - 17:24:58 ---A- - C:\Windows\Prefetch\CMD.EXE-6D6290C5.pf O45 - LFCP:[MD5.D4375386A9005B8C799EB9F71DA2EF64] - 15/10/2013 - 17:24:58 ---A- - C:\Windows\Prefetch\SUBINACL.EXE-3DCC0576.pf O45 - LFCP:[MD5.1758729E916761B3B245AAADCBCE117C] - 15/10/2013 - 17:25:08 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-DC1676CD.pf O45 - LFCP:[MD5.9242AA0C6239CB83455FCE2CBD6EBE72] - 27/09/2013 - 13:35:54 ---A- - C:\Windows\Prefetch\AgCx_SC2.db ~ Prefetcher: 76 Scanned in 00mn 00s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll ~ LSA: 9 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ CSB: 13 Scanned in 00mn 00s ---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ TDSD: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ MSCP: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ MWPS: 16 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 ~ MWPE Keys: 3 Scanned in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088] O58 - SDL:[MD5.0ACC06FCF46F64ED4F11E57EE461C1F4] - 05/10/2009 - 07:34:00 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\System32\athrx.sys [1542656] O58 - SDL:[MD5.49452BFCEC22F36A7A9B9C2181BC3042] - 20/11/2008 - 20:19:06 ---A- . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- C:\Windows\SysWOW64\drivers\pxhelp20.sys [43872] ~ Drivers: 16 Scanned in 00mn 00s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 12/10/2013 - 18:25:52 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Adobe\Acrobat\9.0\SharedDataEvents [5120] O61 - LFC: 12/10/2013 - 18:25:52 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Adobe\Acrobat\9.0\UserCache.bin [59091] O61 - LFC: 12/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Sony Corporation\Sony Picture Utility\ExtTools\1.xml [939] O61 - LFC: 12/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Sony Corporation\Sony Picture Utility\ExtTools\2.xml [939] O61 - LFC: 12/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Sony Corporation\Sony Picture Utility\ExtTools\3.xml [931] O61 - LFC: 12/10/2013 - 18:25:54 ---A- . (...) -- C:\Users\Marie-Anne\Downloads\2013-09-26 CCL (1).lnk [810] O61 - LFC: 12/10/2013 - 18:25:54 ---A- . (...) -- C:\Users\Marie-Anne\Downloads\2013-09-26 CCL.lnk [810] O61 - LFC: 12/10/2013 - 18:25:57 ---A- . (...) -- C:\Users\Marie-Anne\Downloads\pieces jointes_12_10_2013 (1).zip [1908] O61 - LFC: 12/10/2013 - 18:25:57 ---A- . (...) -- C:\Users\Marie-Anne\Downloads\pieces jointes_12_10_2013.zip [1908] O61 - LFC: 13/10/2013 - 18:25:46 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Google\Toolbar Cache\7.5.4601.54\fr\translate_element.js.content [2381] O61 - LFC: 13/10/2013 - 18:25:46 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Google\Toolbar Cache\7.5.4601.54\fr\translate_languages.json.content [1497] O61 - LFC: 13/10/2013 - 18:25:47 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\au-descriptor-1.7.0_40-b43.xml [8891] O61 - LFC: 13/10/2013 - 18:25:52 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Adobe\Flash Player\AssetCache\TQZKTVSG\381814F6F5270FFBB27E244D6138BC023AF911D5.heu [149] O61 - LFC: 13/10/2013 - 18:25:52 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Adobe\Flash Player\AssetCache\TQZKTVSG\440AE73B017A477382DEFF7C0DBE4896FED21079.heu [149] O61 - LFC: 13/10/2013 - 18:25:52 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Adobe\Flash Player\AssetCache\TQZKTVSG\6344DCC80A9A6A3676DCEA0C92C8C45EFD2F3220.heu [149] O61 - LFC: 13/10/2013 - 18:25:52 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Adobe\Flash Player\AssetCache\TQZKTVSG\871F12AF0853C06E4EB80A1CCAB295CEADBB817A.heu [149] O61 - LFC: 13/10/2013 - 18:25:52 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Adobe\Flash Player\AssetCache\TQZKTVSG\C3306B26751D6A80EB1FCB651912469AE18819AB.heu [150] O61 - LFC: 14/10/2013 - 18:25:47 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\FXSTIFFDebugLogFile.txt [0] O61 - LFC: 14/10/2013 - 18:25:48 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\wmplog00.sqm [140] O61 - LFC: 14/10/2013 - 18:25:48 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\wmplog01.sqm [1482] O61 - LFC: 14/10/2013 - 18:25:48 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\wmplog02.sqm [1482] O61 - LFC: 14/10/2013 - 18:25:50 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\~AutoSave-00000001.wps [9216] O61 - LFC: 14/10/2013 - 18:25:50 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\~DF0E48DF4BD8CF8D40.TMP [45056] O61 - LFC: 14/10/2013 - 18:25:50 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\~DF1216BED4DFEBC620.TMP [16384] O61 - LFC: 14/10/2013 - 18:25:50 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\~DF256784C026A90122.TMP [28672] O61 - LFC: 14/10/2013 - 18:25:50 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\~DFA972568CE1EACC7D.TMP [20480] O61 - LFC: 14/10/2013 - 18:25:50 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\~DFE594DDD00288899B.TMP [16384] O61 - LFC: 14/10/2013 - 18:25:50 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\~DFEA343A4B6439D8A9.TMP [16384] O61 - LFC: 15/10/2013 - 18:25:37 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\ATI\ACE\Manifest.Bin [27796] O61 - LFC: 15/10/2013 - 18:25:37 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\ATI\ACE\Manifest.xml [20186] O61 - LFC: 15/10/2013 - 18:25:37 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\ATI\ACE\Profiles.xml [11259] O61 - LFC: 15/10/2013 - 18:25:46 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Google\Toolbar Cache\7.5.4601.54\profile_picture_RQCMDB9B5YO4BY12NBOV.png.content [930] O61 - LFC: 15/10/2013 - 18:25:46 --HA- . (...) -- C:\Users\Marie-Anne\AppData\Local\IconCache.db [3446500] O61 - LFC: 15/10/2013 - 18:25:47 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Sony_Corporation\MarketingTools.exe_Url_4qhystxebk2xbeocaxwsu22eusprd2ck\1.21.0.0\user.config [1570] O61 - LFC: 15/10/2013 - 18:25:48 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\Skype\DbTemp\temp-YvHMf3Mj2uLgbVPYMIZqcdV2 [20480] O61 - LFC: 15/10/2013 - 18:25:48 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\Skype\DbTemp\temp-jQVORtRpRgpXP4txfUUrysau [4616] O61 - LFC: 15/10/2013 - 18:25:50 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Local\Temp\~AutoSave-00000002.wps [9216] O61 - LFC: 15/10/2013 - 18:25:52 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Google\Local Search History\google%2Eweb%5Fhistory.w [52] O61 - LFC: 15/10/2013 - 18:25:52 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Google\Local Search History\google%2Eweb.w [16590] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Microsoft\Office\Excel12.pip [1544] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Microsoft\Office\Recent\BILAN AFOC.LNK [1075] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Microsoft\Office\Recent\Mes documents.LNK [923] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Microsoft\Spelling\fr-FR\default.acl [2] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Microsoft\Spelling\fr-FR\default.dic [2] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Microsoft\Spelling\fr-FR\default.exc [2] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\misse19771\bistats.db [77824] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\misse19771\bistats.db-journal [37448] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\misse19771\config.xml [8557] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\misse19771\dc.db [49152] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\misse19771\eas.db [81920] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\misse19771\httpfe\cookies.dat [2] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\misse19771\keyval.db [45056] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\misse19771\main.db [536576] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\misse19771\main.db-journal [41552] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\misse19771\mmanager\mediacache.ldb [40] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\misse19771\settings\restorer.queue [55] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\misse19771\simcache\streamlist [44] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\misse19771\thmanager\thcache.ldb [40] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\shared.xml [84473] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\shared_dynco\dc.db [2232320] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\shared_dynco\dc.db-journal [1190672] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\shared_httpfe\queue.db [77824] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Skype\shared_httpfe\queue.db-journal [41552] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Voxmobili\Log\LogError.txt [215930] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\ZHP\Log.txt [18813] =>.Nicolas Coolman O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\ZHP\TestsZHPDiag.txt [2988] =>.Nicolas Coolman O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\Documents\BILAN AFOC.xlsx [12851] O61 - LFC: 15/10/2013 - 18:25:53 ---A- . (...) -- C:\Users\Marie-Anne\Documents\configuration de pc.txt [24937] O61 - LFC: 15/10/2013 - 18:25:53 --H-- . (...) -- C:\Users\Marie-Anne\AppData\Roaming\Microsoft\Office\Recent\index.dat [112] O61 - LFC: 15/10/2013 - 18:25:54 ---A- . (...) -- C:\Users\Marie-Anne\Downloads\ColorsOfNaturePopkovAlexandr.themepack [8500959] O61 - LFC: 15/10/2013 - 18:25:54 ---A- . (...) -- C:\Users\Marie-Anne\Downloads\GardenGlimpses3RanganDas.themepack [19499146] O61 - LFC: 15/10/2013 - 18:25:57 ---A- . (...) -- C:\Users\Marie-Anne\Downloads\LifeInLavender.themepack [17775109] O61 - LFC: 15/10/2013 - 18:25:57 ---A- . (...) -- C:\Users\Marie-Anne\Downloads\PanoramicBeaches.deskthemepack [14780124] O61 - LFC: 15/10/2013 - 18:25:57 ---A- . (...) -- C:\Users\Marie-Anne\Downloads\SleepyKittens.themepack [11223215] O61 - LFC: 15/10/2013 - 18:25:57 ---A- . (.Nicolas Coolman.) -- C:\Users\Marie-Anne\Downloads\ZHPDiag2 (1).exe [6835755] =>.Nicolas Coolman O61 - LFC: 15/10/2013 - 18:25:57 ---A- . (.Nicolas Coolman.) -- C:\Users\Marie-Anne\Downloads\ZHPDiag2.exe [6835755] =>.Nicolas Coolman ~ 15 Fichiers temporaires (Temporary files) ~ Files: 76 Scanned in 00mn 21s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman ~ ADS: Scanned in 00mn 00s ---\\ Liste les services legacy du registre (LALS) (O64) O64 - Services: CurCS - 14/09/2013 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD O64 - Services: CurCS - 19/10/2009 - C:\Windows\System32\Drivers\aswFsBlk.sys (aswFsBlk) .(.ALWIL Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK O64 - Services: CurCS - 19/10/2009 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.ALWIL Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT O64 - Services: CurCS - 19/10/2009 - C:\Windows\System32\Drivers\aswRdr.sys (aswRdr) .(.ALWIL Software - avast! TDI RDR Driver.) - LEGACY_ASWRDR O64 - Services: CurCS - 19/10/2009 - C:\Windows\System32\Drivers\aswSP.sys (aswSP) .(.ALWIL Software - avast! self protection module.) - LEGACY_ASWSP O64 - Services: CurCS - 19/10/2009 - C:\Windows\System32\Drivers\aswTdi.sys (aswTdi) .(.ALWIL Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\Beep.sys (Beep) .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP O64 - Services: CurCS - 04/07/2012 - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\cdfs.sys (cdfs) .(.Microsoft Corporation - CD-ROM File System Driver.) - LEGACY_CDFS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS O64 - Services: CurCS - 02/06/2012 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE O64 - Services: CurCS - 01/08/2013 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\fastfat.sys (fastfat) .(.Microsoft Corporation - Fast FAT File System Driver.) - LEGACY_FASTFAT O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR O64 - Services: CurCS - 24/01/2013 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (IpFilterDriver) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_IPFILTERDRIVER O64 - Services: CurCS - 02/06/2012 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD O64 - Services: CurCS - 02/06/2012 - C:\Windows\System32\Drivers\ksecpkg.sys (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR O64 - Services: CurCS - 18/06/2013 - C:\Windows\System32\DRIVERS\MpFilter.sys (MpFilter) .(.Microsoft Corporation - Microsoft antimalware file system filter dr.) - LEGACY_MPFILTER O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10 O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\msisadrv.sys (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\nwifi.sys (NativeWifiP) .(.Microsoft Corporation - Pilote de miniport WiFi natif.) - LEGACY_NATIVEWIFIP O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\DRIVERS\ndisuio.sys (Ndisuio) .(.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) - LEGACY_NDISUIO O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT O64 - Services: CurCS - 18/06/2013 - C:\Windows\System32\DRIVERS\NisDrvWFP.sys (NisDrv) .(.Microsoft Corporation - Microsoft Network Realtime Inspection Drive.) - LEGACY_NISDRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pcw.sys (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\peauth.sys (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR O64 - Services: CurCS - 10/06/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\spldr.sys (spldr) .(.Microsoft Corporation - loader for security processor.) - LEGACY_SPLDR O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2 O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP O64 - Services: CurCS - 03/10/2012 - C:\Windows\System32\drivers\tcpipreg.sys (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\DRIVERS\udfs.sys (udfs) .(.Microsoft Corporation - UDF File System Driver.) - LEGACY_UDFS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\vwififlt.sys (vwififlt) .(.Microsoft Corporation - Virtual WiFi Filter Driver.) - LEGACY_VWIFIFLT O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6 O64 - Services: CurCS - 25/06/2013 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\wfplwf.sys (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF O64 - Services: CurCS - 26/07/2012 - C:\Windows\System32\drivers\WudfPf.sys (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF ~ Legacy: 115 Scanned in 00mn 00s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ~ FASS Keys: 18 Scanned in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) O69 - SBI: SearchScopes [HKCU] A9762B3A17604D56AA4C859A325749CE - (Google) - http://www.google.com O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {07C9380F-DC4D-43D1-BBEC-D26E70104F30} - (Google) - http://www.google.fr O69 - SBI: SearchScopes [HKCU] {2E77316A-C7E1-4C17-8FC3-5EEA7A52FEF6} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {3F4D2FC1-7356-47B7-BE11-3C103941527A} - (Ask Search) - http://websearch.ask.com =>Toolbar.Ask O69 - SBI: SearchScopes [HKCU] {4789DFAD-197B-444C-B4AE-BBCD480014FB} - (eBay) - http://rover.ebay.com O69 - SBI: SearchScopes [HKCU] {61E53AF5-23FC-4C47-97BB-261E367ACAA5} - (Zinio) - http://services.zinio.com O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - http://www.google.com ~ Keys: Scanned in 00mn 00s ---\\ Enumère les service demarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ~ Services: 32 Scanned in 00mn 00s ---\\ Recherche particulière à la racine du système (SPRF) (O84) [MD5.CE755676AE6D27A1EFEEFB0F3C70A929] [SPRF][21/06/2013] (.Ask.com - AskStub Application.) -- C:\Users\Marie-Anne\AppData\Local\Temp\APNStub.exe [358600] [MD5.B1957B038895642DF9F662326E7D4DDC] [SPRF][22/06/2013] (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Users\Marie-Anne\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe [903080] [MD5.B62642CCA92F8F5E0E18D83560CBDA70] [SPRF][28/08/2013] (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Users\Marie-Anne\AppData\Local\Temp\jre-7u40-windows-i586-iftw.exe [913832] [MD5.0D736AAAB3A5ACFD3A4605730A8AA33A] [SPRF][28/07/2013] (.Skype Technologies S.A. - Skype.) -- C:\Users\Marie-Anne\AppData\Local\Temp\SkypeSetup.exe [31945320] [MD5.55BD613FAE401B7D16A43F8E4DC5BBAF] [SPRF][22/08/2012] (...) -- C:\Users\Marie-Anne\AppData\Roaming\wklnhst.dat [404] [MD5.D67BFE18B2A3AD0C67252B8BA3DBD151] [SPRF][15/09/2005] (.Voxmobili - VoxsyncX Module.) -- C:\Windows\Downloaded Program Files\VoxsyncX.dll [95840] ~ Files: 6 Scanned in 00mn 01s ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "WMP-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-P2PHost-In-TCP" | In - None - P6 - TRUE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "{1CB3C177-A922-4669-9791-579617B6A98C}" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe O87 - FAEL: "{E43163C2-452E-4312-9E4A-5FCDF9E2B335}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe O87 - FAEL: "{8D8E1115-CD63-4737-8D38-AE59524BCCAC}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O87 - FAEL: "{834F3465-3C96-4605-93DF-0A6BB553B37F}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{F778104C-F3EB-44C7-8395-34B6471CE48C}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{46EDFC3B-0C7E-4BC7-8E85-D5C50A927ED5}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{A2FF33CC-F5CD-41CB-9D91-CAA2DDD75BE7}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{135E1543-09B6-4512-A987-B30107FE225B}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{D3F97895-7E37-4343-986B-C38E6901DA03}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{6E412B04-EB37-42E8-B4B1-509BFEA4C358}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{730A5A02-76EB-41E3-A7D8-125C2F8A1537}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{FFCB4ED0-A409-42ED-9443-7A43F3C7AFAB}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{EB366998-53BD-4B5C-A92B-E213C66DC169}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{45043989-FBBF-4E6E-B353-6A8ED00E30BC}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{EED58CDA-3736-4354-A064-6149626968C4}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{0CDA41BF-9B09-44FC-8F2E-1550B2141527}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{94E935C0-FFDE-4300-BC2B-D5B0ECD93EA6}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{A26AE4FC-9422-4B12-B5D8-C961B2C549E8}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{10BE4642-C64B-465C-B464-AF376466BF06}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{BE9C3371-5872-4C6E-AE6D-882204F58890}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{E9C56C3A-0BEA-4E5C-BDDC-92FBB2FB9B59}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{8EB7AFF1-D9AF-49C0-9E28-E2A4DFD67742}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{09167FFE-AFF9-46E4-98C5-D699E042038D}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "{29340709-B4CD-46AC-9729-07A3F31D25D2}" |In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (.not file.) O87 - FAEL: "{EEADB210-E7BA-4315-96FB-F58CE39B9C0E}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\System32\svchost.exe O87 - FAEL: "{D2AF7B13-53B8-4FF7-B834-B4C165B68A2B}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Sync.) -- C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe O87 - FAEL: "{38956BDA-49B7-4AD6-B41E-03B61A01DC4C}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{02CB7866-7C83-43B0-B1D5-99A0CC83572D}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe O87 - FAEL: "{7A507A48-1E28-491E-B076-2EA1D462CBBB}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Communications Platform.) -- C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe ~ Firewall: 196 Scanned in 00mn 01s ---\\ Enumère les codes produits des logiciels (PUC) (O90) O90 - PUC: "000021090200C0400000000000F01FEC" . (.Module de compatibilité pour Microsoft Office System 2007.) -- C:\Windows\Installer\{90120000-0020-040C-0000-0000000FF1CE}\O12ConvIcon.exe O90 - PUC: "00002159FA00C0400000000000F01FEC" . (.Microsoft Office PowerPoint Viewer 2007 (French).) -- C:\Windows\Installer\{95120000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe,0 =>.Microsoft Corporation O90 - PUC: "076CFAAAB965F2A4284B2449E5D03EFE" . (.Windows Live Writer.) -- C:\Windows\Installer\{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}\ApplicationIcon.ico O90 - PUC: "11F12B5E3396B0E42AC597363E0CD711" . (.Windows Live Messenger.) -- C:\Windows\Installer\{E5B21F11-6933-4E0B-A25C-7963E3C07D11}\MsblIco.Exe O90 - PUC: "12E0CAE9E01595249A6C5F5D8B690963" . (.Catalyst Control Center - Branding.) -- C:\Windows\Installer\{9EAC0E21-510E-4259-A9C6-F5D5B8969036}\ARPPRODUCTICON.exe O90 - PUC: "144A4120BA4A8A34D8FEF2375C636437" . (.Microsoft Works.) -- C:\Windows\Installer\{0214A441-A4AB-43A8-8DEF-2F73C5364673}\MSWorks.exe O90 - PUC: "16B3DA692EAE2E11E9278BCAF689CC3E" . (.Google Earth.) -- C:\Windows\Installer\{96AD3B61-EAE2-11E2-9E72-B8AC6F98CCE3}\ARPPRODUCTICON.exe O90 - PUC: "1C9AECD4E6D4FB148A4582FC8A5BD6FB" . (.Click to Disc Editor.) -- C:\Windows\Installer\{4DCEA9C1-4D6E-41BF-A854-28CFA8B56DBF}\ARPPRODUCTICON.exe O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon O90 - PUC: "1D77E5759E92CE82D7825FBABA272C07" . (.Catalyst Control Center Graphics Full Existing.) -- C:\Windows\Installer\{575E77D1-29E9-28EC-7D28-F5ABAB72C270}\ARPPRODUCTICON.exe O90 - PUC: "1EDCB75C9BC7D7643BABE7119961DC1C" . (.Norton Online Backup.) -- C:\Windows\Installer\{C57BCDE1-7CB9-467D-B3BA-7E119916CDC1}\Icon.ico O90 - PUC: "3ABF4AB3EE53B3E3268D06A60F279205" . (.ccc-core-static.) -- C:\Windows\Installer\{3BA4FBA3-35EE-3E3B-62D8-606AF0722950}\ARPPRODUCTICON.exe O90 - PUC: "46A934DE810F4DD4B85A23D858BA90BA" . (.Roxio Central Core.) -- C:\Windows\Installer\{ED439A64-F018-4DD4-8BA5-328D85AB09AB}\RoxioCentral.exe O90 - PUC: "47EE7AA8A411FFFF1B2DEA4D0777369C" . (.ccc-utility64.) -- C:\Windows\Installer\{8AA7EE74-114A-FFFF-B1D2-AED4707763C9}\ARPPRODUCTICON.exe O90 - PUC: "487EA05EEBAFAD641A8FB7B665CD2BE2" . (.Microsoft Office Suite Activation Assistant.) -- C:\Windows\Installer\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}\ARPPRODUCTICON.exe O90 - PUC: "4A94D9E94FD183147BBDD5788A3980E8" . (.WIDCOMM Bluetooth Software.) -- C:\Windows\Installer\{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}\ARPPRODUCTICON.exe O90 - PUC: "5ED62A6B5B2F85D45907F47C060EF0DC" . (.Roxio Central Copy.) -- C:\Windows\Installer\{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}\RoxioCentral.exe O90 - PUC: "68AB67CA7DA76301B7449A0100000010" . (.Adobe Reader 9.1 - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-A91000000001}\SC_Reader.ico O90 - PUC: "75D80145606AB477AB13C639360B3BA3" . (.Catalyst Control Center Graphics Light.) -- C:\Windows\Installer\{54108D57-A606-774B-BA31-6C9363B0B33A}\ARPPRODUCTICON.exe O90 - PUC: "90B87ECAC0DB4A6E210542285B1A628B" . (.Catalyst Control Center Graphics Full New.) -- C:\Windows\Installer\{ACE78B09-BD0C-E6A4-1250-2482B5A126B8}\ARPPRODUCTICON.exe O90 - PUC: "916FAFA87DF1DB17621FE8DEC9C1A8D8" . (.Catalyst Control Center Graphics Previews Common.) -- C:\Windows\Installer\{8AFAF619-1FD7-71BD-26F1-8EED9C1C8A8D}\ARPPRODUCTICON.exe O90 - PUC: "9D34FBAD4011467429B7B5DE21473A0B" . (.Runtime.) -- C:\Windows\Installer\{DABF43D9-1104-4764-927B-5BED1274A3B0}\ARPPRODUCTICON.exe O90 - PUC: "A0BC5702F62DAAD44B42059792B634AB" . (.Windows Live FolderShare.) -- C:\Windows\Installer\{2075CB0A-D26F-4DAA-B424-5079296B43BA}\FolderShare48x48.ico O90 - PUC: "A28B4D68DEBAA244EB686953B7074FEF" . (.Ask Toolbar.) -- C:\Program Files (x86)\Ask.com\favicon.ico =>Toolbar.Ask O90 - PUC: "AFAD45F1162926A45BD9C6F9624BF84E" . (.Roxio Central Tools.) -- C:\Windows\Installer\{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}\RoxioCentral.exe O90 - PUC: "BC42CB4A7C8FBF72145D744A5030A114" . (.ATI Catalyst Install Manager.) -- C:\Windows\Installer\{A4BC24CB-F8C7-27FB-41D5-47A405031A41}\ARPPRODUCTICON.exe O90 - PUC: "BE31195E5820DFB43AA77BE9CAB6F8B4" . (.Microsoft SQL Server Compact 3.5 SP1 English.) -- C:\Windows\Installer\{E59113EB-0285-4BFD-A37A-B79EAC6B8F4B}\ProductIcon O90 - PUC: "C32EF13904BBA7C45A49BD5309D8E838" . (.VAIO Quick Web Access.) -- C:\Windows\Installer\{931FE23C-BB40-4C7A-A594-DB35908D8E83}\ARPPRODUCTICON.exe O90 - PUC: "CD8DFC1566C5ce245989272EF86DE25D" . (.MusicStation.) -- C:\Windows\Installer\{51CFD8DC-5C66-42ec-9598-72E28FD62ED5}\ARPPRODUCTICON.exe O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- c:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon O90 - PUC: "DBA18E807F972C9488F1DFC60B796539" . (.Roxio Central Data.) -- C:\Windows\Installer\{08E81ABD-79F7-49C2-881F-FD6CB0975693}\RoxioCentral.exe O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype™ 6.6.) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe O90 - PUC: "EC3EE25F2B6A2E364954CE29EE1CBF09" . (.Catalyst Control Center Localization All.) -- C:\Windows\Installer\{F52EE3CE-A6B2-63E2-9445-EC92EEC1FB90}\ARPPRODUCTICON.exe O90 - PUC: "EF430A0F159017FE41E50FFD635F2A30" . (.Catalyst Control Center Core Implementation.) -- C:\Windows\Installer\{F0A034FE-0951-EF71-145E-F0DF36F5A203}\ARPPRODUCTICON.exe O90 - PUC: "F26615EF6F8D5B34999D4D98A40FF038" . (.Roxio Easy Media Creator Home.) -- C:\Windows\Installer\{FE51662F-D8F6-43B5-99D9-D4894AF00F83}\ARPPRODUCTICON.exe =>.Roxio O90 - PUC: "F92F4A37CA13DBE4AAB1C05C1FC8F838" . (.Roxio Central Audio.) -- C:\Windows\Installer\{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}\RoxioCentral.exe O90 - PUC: "FC2716785901F1810B73A617235314F7" . (.Catalyst Control Center Graphics Previews Vista.) -- C:\Windows\Installer\{876172CF-1095-181F-B037-6A713235417F}\ARPPRODUCTICON.exe O90 - PUC: "FD97738F5F1E2A347AEB37F258F6DA7B" . (.Microsoft SQL Server Compact 3.5 SP1 x64 English.) -- C:\Windows\Installer\{F83779DF-E1F5-43A2-A7BE-732F856FADB7}\ProductIcon ~ Update Products: 139 Scanned in 00mn 00s ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) [MD5.3E2C2F30D352F10C456C9595B5A2A7C4] [WIS][08/07/2009] (.Omnifone - MusicStation.) -- C:\Windows\Installer\13658c.msi [1028608] [MD5.AF37905D2DF162B3BF78C8B1FD1C755C] [WIS][06/05/2013] (.Ask.com - Blank Project Template.) -- C:\Windows\Installer\14cc23.msi [4074496] [MD5.07E91ACDEB6178A22266A05FA75B4E25] [WIS][27/07/2009] (.ATI - Branding.) -- C:\Windows\Installer\1a4cb.msi [396288] [MD5.FCA4E0721766C58B4F8A3990A636F70F] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a4d2.msi [2826240] [MD5.097C3C51422AE9BBC202514CE13AF8D9] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a4d9.msi [6873088] [MD5.D30406C3E9922C9BC3D5BD1B8CF6455B] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a4e0.msi [410112] [MD5.E5C54DAA54768B15FE9B9BA4ABB8794F] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a4e7.msi [929280] [MD5.636FEC9C7B4A4A598472C90BCDFCA9B9] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a4ee.msi [1888256] [MD5.B547287317E1354FD8EEBF71734E5AE6] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a4f5.msi [5749248] [MD5.A2897368329E1B405089A635D8F8E9B3] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a4fd.msi [1266176] [MD5.B7DFEC52FF16D40F54A7203D6FEA4674] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a504.msi [1250816] [MD5.E9B145E1F027087059F7195EEB4C8035] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a50b.msi [1234432] [MD5.0FA2FED3E03F9A8F46111247753B38E0] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a512.msi [1305600] [MD5.A029168FE6ACE3FF3E5708F55BB59233] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a519.msi [700928] [MD5.EE8173AE35900EC070FF8A5D1B0FF226] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a520.msi [1252864] [MD5.F434FC89AF8339B9E20863FBD05D2028] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a527.msi [1255936] [MD5.7AA27F7F0562712B57BFFF5517037EB4] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a52e.msi [1261056] [MD5.3204D40FD3835975A83A63F0C57D5E68] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a535.msi [1271296] [MD5.EFE6B4F819ADBA7921BD6690331E6833] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a53c.msi [1252352] [MD5.59CDD845D0A7DF59F1B74D3A96F3E144] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a543.msi [1278464] [MD5.0B8B2615031E5FB47BC0CE15E84AEDDB] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a54a.msi [1262592] [MD5.1F42BC45422F6F38A3DD6E7EDD065719] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a551.msi [1257472] [MD5.3D7E9EADEE9F7E3C02909EF0CE2558DE] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a558.msi [1244672] [MD5.4F5D5A918AA47A39C6E0AA3C2D88A0B2] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a55f.msi [1260032] [MD5.77D67322599871C2C112FEFC67F5017D] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a566.msi [1257984] [MD5.CD86C9FD33AA3B63C98D946371FD418E] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a56d.msi [1289728] [MD5.53AC5C8910A8ABFA4296C49D91234289] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a574.msi [1248256] [MD5.ADD498C60BB38D59AFFDFD69C467661E] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a57b.msi [1277952] [MD5.4FF818FEC36621999665E7C2ECB7B6DE] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a582.msi [1256448] [MD5.20E57E0A8D3385EBA016E0D93ACCAEE3] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a589.msi [943104] [MD5.E11F8F90EDD974188E13825B2A41FF92] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a590.msi [1245184] [MD5.ABD7C0FC69A1561F208D6BC398578FB1] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a597.msi [1711616] [MD5.B09EB6E971E9DCDA551ED1DD75C5A5E6] [WIS][27/07/2009] (.ATI - Catalyst Control Center Utility 64.) -- C:\Windows\Installer\1a59e.msi [274432] [MD5.3503701B4BF435C05A04FBD6AD686D23] [WIS][27/07/2009] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\1a5a6.msi [2404352] [MD5.D24949E5C6EC59F7F8664A657066994D] [WIS][08/09/2009] (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Windows\Installer\1a5d7.msi [28160] =>Toolbar.Google [MD5.C2BF718EFC4C085D1822CC646ECF3FA9] [WIS][30/07/2009] (.Broadcom Corp. - WIDCOMM Bluetooth Profile Pack.) -- C:\Windows\Installer\29a3f.msi [4832076] [MD5.BD75BF3DA346BC1ADDCE6BD3AD29BC28] [WIS][28/07/2013] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\7f8c3.msi [21807104] ~ WIS: 140 Scanned in 00mn 27s ---\\ Etat général des services not Microsoft (EGS) (SR=Running, SS=Stopped) SS - | Demand 18/03/2010 113152 | (ACDaemon) . (.ArcSoft Inc..) - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe SS - | Demand 12/10/2013 257416 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SR - | Auto 27/07/2009 203264 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe SS - | Auto 19/10/2009 40384 | (avast! Antivirus) . (.ALWIL Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe SS - | Demand 19/10/2009 40384 | (avast! Mail Scanner) . (.ALWIL Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe SS - | Demand 19/10/2009 40384 | (avast! Web Scanner) . (.ALWIL Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe SR - | Auto 01/07/2009 864032 | (btwdins) . (.Broadcom Corporation..) - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe SS - | Auto 08/09/2009 133104 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 08/09/2009 133104 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Auto 18/10/2012 194032 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe SR - | Auto 04/06/2009 354840 | (IAANTMON) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe SS - | Demand 26/06/2009 313840 | (Roxio UPnP Renderer 10) . (.Sonic Solutions.) - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe SS - | Auto 26/06/2009 362992 | (Roxio Upnp Server 10) . (.Sonic Solutions.) - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe SR - | Auto 24/07/2009 189984 | (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe SS - | Auto 21/06/2013 162408 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe SS - | Demand 27/07/2009 120104 | (SOHCImp) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe SS - | Demand 27/07/2009 70952 | (SOHDBSvr) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe SS - | Demand 27/07/2009 427304 | (SOHDms) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe SS - | Demand 27/07/2009 75048 | (SOHDs) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe SS - | Demand 27/07/2009 91432 | (SOHPlMgr) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe SR - | Auto 18/09/2008 104960 | (uCamMonitor) . (.ArcSoft, Inc..) - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe SS - | Demand 23/07/2009 69632 | (VAIO Entertainment TV Device Arbitration Service) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe SR - | Auto 07/05/2010 205168 | (VAIO Event Service) . (.Sony Corporation.) - C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe SR - | Auto 16/07/2009 411496 | (VAIO Power Management) . (.Sony Corporation.) - C:\Program Files\Sony\VAIO Power Management\SPMService.exe SR - | Auto 22/07/2009 642920 | (VCFw) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe SS - | Demand 16/09/2009 480624 | (VcmIAlzMgr) . (.Sony Corporation.) - C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe SS - | Demand 01/09/2009 361840 | (VcmINSMgr) . (.Sony Corporation.) - C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe SS - | Demand 17/06/2009 110888 | (VcmXmlIfHelper) . (.Sony Corporation.) - C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe SR - | Demand 23/07/2009 313264 | (Vcsw) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe SR - | Auto 11/08/2010 845312 | (VSNService) . (.Sony Corporation.) - C:\Program Files\Sony\VAIO Smart Network\VSNService.exe SR - | Demand 26/10/2012 1286784 | (VUAgent) . (.Sony Corporation.) - C:\Program Files\Sony\VAIO Update\VUAgent.exe SR - | Auto 23/07/2009 206336 | (VzCdbSvc) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe SS - | Demand 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 29s ---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80) Run by Marie-Anne at 15/10/2013 18:26:47 ~ OS 64 not supported by MBR tool ~ MBR: 0 Scanned in 00mn 00s ---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by Marie-Anne at 15/10/2013 18:26:49 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 02s ---\\ Scan Additionnel (O88) Database Version : 12948 - (15/10/2013) Clés trouvées (Keys found) : 55 Valeurs trouvées (Values found) : 6 Dossiers trouvés (Folders found) : 3 Fichiers trouvés (Files found) : 4 [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4D91-8333-CF10577473F7}] =>Toolbar.Google^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.Ask^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}] =>Toolbar.Ask^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{18455581-E099-4BA8-BC6B-F34B2F06600C}] =>Toolbar.Google^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2318C2B1-4965-11d4-9B18-009027A5CD4F}] =>Toolbar.Google^ [HKLM\Software\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] =>Toolbar.Ask [HKLM\Software\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}] =>Toolbar.Ask [HKLM\Software\Wow6432Node\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}] =>Toolbar.Ask [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}] =>Toolbar.Ask [HKLM\Software\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}] =>Toolbar.Ask [HKLM\Software\Wow6432Node\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}] =>Toolbar.Ask [HKLM\Software\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}] =>Toolbar.Ask [HKLM\Software\Wow6432Node\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}] =>Toolbar.Ask [HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.Ask [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.Ask [HKLM\Software\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}] =>Toolbar.Ask [HKLM\Software\Wow6432Node\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}] =>Toolbar.Ask [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.Avira [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.Avira [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.Avira [HKLM\Software\Classes\AppID\GenericAskToolbar.DLL] =>Toolbar.Ask [HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd] =>Toolbar.Ask [HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd.1] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED] =>Toolbar.Ask [HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch [HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch [HKLM\Software\Wow6432Node\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch [HKLM\Software\Wow6432Node\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9] =>Adware.MyWebSearch [HKCU\Software\APN] =>Toolbar.Ask [HKLM\Software\Wow6432Node\APN] =>Toolbar.Ask [HKCU\Software\Ask.com] =>Toolbar.AskBar [HKCU\Software\AppDataLow\Software\AskToolbar] =>Toolbar.AskTBar [HKLM\Software\Wow6432Node\AskToolbar] =>Toolbar.AskTBar [HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}] =>Adware.SimilarSites [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2] =>Toolbar.Ask [HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks]:{00000000-6E41-4FD3-8538-502F5495E5FC} =>Toolbar.Ask^ [HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google^ [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:swg =>Toolbar.Google^ [HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks]:{00000000-6E41-4FD3-8538-502F5495E5FC} =>Adware.ShopperReports [HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]:{D4027C7F-154A-4066-A1AD-4243D8127440} =>Toolbar.Avira [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar]:{D4027C7F-154A-4066-A1AD-4243D8127440} =>Toolbar.Avira C:\Program Files (x86)\Ask.com =>Toolbar.AskBar C:\ProgramData\Partner =>Spyware.Partner C:\Users\Marie-Anne\AppData\LocalLow\AskToolbar =>Toolbar.AskTBar C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe =>Toolbar.Google^ C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe =>Toolbar.Google^ C:\Program Files (x86)\Ask.com\UpdateTask.exe =>Toolbar.Ask^ C:\Windows\Installer\1a5d7.msi =>Toolbar.Google^ ~ Additionnel Scan: 241932 Items scanned in 00mn 27s ---\\ Récapitulatif des détections trouvées sur votre station ~ http://nicolascoolman.webs.com/apps/blog/show/32384220-toolbar-google =>Toolbar.Google ~ http://nicolascoolman.webs.com/apps/blog/show/28927746-toolbar-ask =>Toolbar.Ask ~ http://nicolascoolman.webs.com/apps/blog/show/28419247-toolbar-avira =>Toolbar.Avira ~ http://nicolascoolman.webs.com/apps/blog/show/27146838-adware-mywebsearch =>Adware.MyWebSearch ~ http://nicolascoolman.webs.com/apps/blog/show/29344956-adware-similarsites =>Adware.SimilarSites ~ http://nicolascoolman.webs.com/apps/blog/show/28193283-spyware-partner =>Spyware.Partner ~ MSI: 6 link(s) detected in 00mn 27s End of the scan (1789 lines in 02mn 39s)(0)