~ Rapport de ZHPDiag v2014.2.23.20 - Nicolas Coolman (23/02/2014) ~ Lancé par MOI (27/02/2014 14:21:44) ~ Adresse du Site Web http://nicolascoolman.webs.com ~ Forums gratuits d'Assistance à la désinfection : http://nicolascoolman.webs.com/apps/links/ ~ Traduit par Nicolas Coolman ~ Etat de la version : ~ Liste blanche : Désactivée par l'utilisateur ~ Elévation des Privilèges : OK ~ User Account Control (UAC): Activate by user ---\\ Navigateurs Internet MSIE: Internet Explorer v11.0.9600.16518 MFIE: Mozilla Firefox 27.0.1 (Defaut) GCIE: Google Chrome v32.0.1700.107 ---\\ Informations sur les produits Windows ~ Langage: Français Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK Software Protection Service (Protection logicielle) : KO Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection du système Kaspersky Anti-Virus v14.0.0.4651 Malwarebytes Anti-Malware version 1.75.0.1300 Windows Defender W7 ---\\ Logiciels d'optimisation du système ---\\ Logiciels de partage PeerToPeer ---\\ Surveillance de Logiciels Adobe Flash Player 12 Plugin Adobe Reader XI Java 7 Update 51 ---\\ Informations sur le système ~ Processor: Intel64 Family 6 Model 37 Stepping 2, GenuineIntel ~ Operating System: 64 Bits Boot mode: Sans échec avec prise en charge du réseau (Fail-safe with network boot) Total RAM: 3948 MB (72% free) System Restore: Activé (Enable) System drive C: has 25 GB (33%) free of 75 GB ---\\ Mode de connexion au système ~ Computer Name: MOI-PC ~ User Name: MOI ~ All Users Names: MOI, HomeGroupUser$, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppZHP% : C:\Users\MOI\AppData\Roaming\ZHP\ ~ %AppData% : C:\Users\MOI\AppData\Roaming\ ~ %Desktop% : C:\Users\MOI\Desktop\ ~ %Favorites% : C:\Users\MOI\Favorites\ ~ %LocalAppData% : C:\Users\MOI\AppData\Local\ ~ %StartMenu% : C:\Users\MOI\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumération des unités disques C: Hard drive, Flash drive, Thumb drive (Free 25 Go of 75 Go) D: Hard drive, Flash drive, Thumb drive (Free 28 Go of 209 Go) E: CD-ROM drive (Not Inserted) F: Hard drive, Flash drive, Thumb drive (Free 70 Go of 149 Go) G: Hard drive, Flash drive, Thumb drive (Free 119 Go of 149 Go) H: Hard drive, Flash drive, Thumb drive (Free 4 Go of 15 Go) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 41 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024] [MD5.263B6E451526A90FF8B1CEC759F22956] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.06/02/2014 - 10:24:52.) -- C:\Windows\System32\wininet.dll [2334208] [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/11/2010 - 14:25:30.) -- C:\Windows\System32\Winlogon.exe [390656] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 14:27:26.) -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.79059559E89D06E8B80CE2944BE20228] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/09/2013 - 02:09:10.) -- C:\Windows\system32\Drivers\AFD.sys [497152] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 10:19:21.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 10:26:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 11:43:43.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224] [MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 10:23:20.) -- C:\Windows\system32\Drivers\netBT.sys [261632] [MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 15:45:08.) -- C:\Windows\system32\Drivers\ntfs.sys [1656680] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 11:52:35.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 10:21:56.) -- C:\Windows\system32\Drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 14:34:02.) -- C:\Windows\system32\Drivers\volsnap.sys [295808] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 1/4 ~ Mes musiques (My Musics) : 1/172 Mes Videos (My Videos) : 2/2 (Modified) ~ Mes Favoris (My Favorites) : 1/39 ~ Mes Documents (My Documents) : 1/720 ~ Mon Bureau (My Desktop) : 1/2613 ~ Menu demarrer (Programs) : 1/32 ~ Hidden Files: Scanned in 00mn 04s ---\\ Processus lancés [MD5.D9184C5FF3FD526761D518A95ABA74A3] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [275568] [PID.1944] [MD5.FF409C974A9AD58B82374DEEF6B44CBB] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [18544] [PID.656] [MD5.0642800E69522E29B93EF4C6BE00D13E] - (.Adobe Systems, Inc. - Adobe Flash Player 12.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe [1863560] [PID.1568] [MD5.42FEDBCB3ED926F6F529E0FDDF750BE0] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8339968] [PID.2276] ~ Processes Running: Scanned in 00mn 00s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\MOI\AppData\Local\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [User Data\Default] None G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Google Store v.0.2 (Activé) G2 - GCE: Preference [User Data\Default] [dchlnpcodkpfdpacogkljefecpegganj] URL Advisor v.14.0.0.4651 (Désactivé) G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé) G2 - GCE: Preference [User Data\Default] [gfdkimpbcpahaombhbimeihdjnejgicl] Feedback v.1.0 (Activé) G2 - GCE: Preference [User Data\Default] [hghkgaeecgjhjkannahfamoehjmkjail] Module de blocage des sites Internet dangereux v.14.0.0.4651 (Désactivé) G2 - GCE: Preference [User Data\Default] [jagncdcchgajhfhijbbhecadmaiegcmh] Clavier virtuel v.14.0.0.4873 (Désactivé) G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [nkeimhogjdpnpccoofpliimaahmaaome] Hangout Services v.1.0 (Activé) G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Wallet v.0.0.6.1 (Activé) ~ Google Browser: 12 Scanned in 00mn 00s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Users\MOI\AppData\Roaming\Mozilla\Firefox\Profiles\z9a83m8h.default\prefs.js M3 - MFPP: Plugins - [MOI] -- C:\Users\MOI\AppData\Roaming\Mozilla\Firefox\Profiles\z9a83m8h.default\searchplugins\ADelta.xml =>Toolbar.DeltaSearch M0 - MFSP: prefs.js [MOI - z9a83m8h.default] http://www.google.fr M2 - MFEP: prefs.js [MOI - z9a83m8h.default\nl-NL@dictionaries.addons.mozilla.org] [] Woordenboek Nederlands v3.1.1 (..) P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll ~ Firefox Browser: 4 Scanned in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.fr R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.16428 (winblue_gdr.131013-1700)) -- C:\Windows\SysWOW64\ieframe.dll R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ~ IE Browser: 19 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = ;*.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: ContentBlockerBrowserHelperObject [64Bits] - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} . (.Kaspersky Lab ZAO - Content Blocker Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll O2 - BHO: VirtualKeyboardBrowserHelperObject [64Bits] - {73455575-E40C-433C-9784-C78DC7761455} . (.Kaspersky Lab ZAO - Virtual Keyboard Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Safe Money Plugin [64Bits] - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} . (.Kaspersky Lab ZAO - Safe Money Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O2 - BHO: link filter bho [64Bits] - {E33CF602-D945-461A-83F0-819F76A199F8} . (.Kaspersky Lab ZAO - URL Advisor Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll ~ BHO: 10 Scanned in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - GS\Desktop [Public]: Adobe Photoshop Elements 6.0.lnk . (.Adobe Systems Incorporated - Adobe Photoshop Elements 6.0.) -- D:\Program Files\Adobe\Photoshop Elements 6.0\Photoshop Elements 6.0.exe =>.Adobe Systems Incorporated O4 - GS\Desktop [Public]: Adobe Reader XI.lnk . (.Adobe Systems Incorporated - Adobe Reader.) -- C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe O4 - GS\Desktop [Public]: ASUS Data Security Manager.Lnk . (.ASUSTek Computer Inc. - Pas de description.) -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\My_Vault.exe O4 - GS\Desktop [Public]: ASUS MultiFrame.lnk . (.ASUSTek Computer Inc. - ASUS MultiFrame.) -- C:\Program Files (x86)\ASUS\ASUS MultiFrame\MultiFrame.exe O4 - GS\Desktop [Public]: ASUS Net4Switch.lnk . (.ASUS - A tool used to switch network environment.) -- C:\Program Files (x86)\ASUS\Net4Switch\Net4Switch.exe O4 - GS\Desktop [Public]: ControlDeck.lnk . (...) -- C:\Windows\Installer\{5B65EF64-1DFA-414A-8C94-7BB726158E21}\_6C69FEE3A61070C3169D10.exe O4 - GS\Desktop [Public]: FreeMi UPnP Media Server.lnk . (...) -- C:\Program Files\FreeMi UPnP Media Server\FreeMi UPnP Media Server.exe O4 - GS\Desktop [Public]: Gestionnaire SmartLogon.lnk . (.ASUS - SmartLogon Application.) -- C:\Program Files (x86)\ASUS\SmartLogon\logonmgr.exe O4 - GS\Desktop [Public]: iTunes.lnk . (.Apple Inc. - iTunes.) -- C:\Program Files (x86)\iTunes\iTunes.exe O4 - GS\Desktop [Public]: Kaspersky Anti-Virus.lnk . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avpui.exe O4 - GS\Desktop [Public]: LifeFrame.lnk . (.ASUS - LifeFrame3.) -- C:\Program Files (x86)\ASUS\ASUS LifeFrame3\LifeFrame.exe O4 - GS\Desktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe O4 - GS\Desktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O4 - GS\Desktop [Public]: OpenOffice 4.0.1.lnk . (.Apache Software Foundation - OpenOffice 4.0.1.) -- C:\Program Files (x86)\OpenOffice 4\program\soffice.exe O4 - GS\Desktop [Public]: Skype.lnk . (...) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe O4 - GS\Desktop [Public]: Splendid Utility.Lnk . (...) -- C:\Program Files (x86)\ASUS\Splendid\Backbone.exe O4 - GS\Desktop [Public]: The Settlers Online.lnk - Clé orpheline O4 - GS\Desktop [Public]: War Thunder.lnk . (.Gaijin Entertainment - War Thunder Launcher.) -- D:\jeux\War Thunder\launcher.exe O4 - GS\Program [Public]: Adobe Photoshop Elements 6.0.lnk . (.Adobe Systems Incorporated - Adobe Photoshop Elements 6.0.) -- D:\Program Files\Adobe\Photoshop Elements 6.0\Photoshop Elements 6.0.exe =>.Adobe Systems Incorporated O4 - GS\Program [Public]: Adobe Reader XI.lnk . (...) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico O4 - GS\Program [Public]: Apple Software Update.lnk . (...) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc O4 - GS\Program [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O4 - GS\Program [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) -- C:\Windows\system32\WindowsAnytimeUpgradeUI.exe O4 - GS\Program [Public]: Windows DVD Maker.lnk . (...) -- C:\Program Files (x86)\DVD Maker\DVDMaker.exe (.not file.) O4 - GS\Program [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Program [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) -- C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) -- C:\Windows\system32\mblctr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Mise en route.) -- C:\Windows\system32\OobeFldr.dll =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) -- C:\Windows\system32\perfmon.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) -- C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\system32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\system32\taskschd.msc O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) -- C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) -- C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\QuickLaunch [MOI]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\TaskBar [MOI]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - GS\TaskBar [MOI]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\TaskBar [MOI]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O4 - GS\TaskBar [MOI]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\Program [MOI]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\Accessories [MOI]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [MOI]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [MOI]: Run.lnk - Clé orpheline O4 - GS\Accessories [MOI]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [MOI]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\SystemTools [MOI]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\SendTo [MOI]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O4 - GS\Desktop [MOI]: Auslogics DiskDefrag.lnk . (.Auslogics - Disk Defrag.) -- C:\Program Files (x86)\Auslogics\DiskDefrag\DiskDefrag.exe O4 - GS\Desktop [MOI]: Auslogics Registry Cleaner.lnk . (.Auslogics - Registry Cleaner.) -- C:\Program Files (x86)\Auslogics\Registry Cleaner\RegistryCleaner.exe O4 - GS\Desktop [MOI]: Auslogics Registry Defrag.lnk . (.Auslogics - Registry Defrag.) -- C:\Program Files (x86)\Auslogics\Registry Defrag\RegistryDefrag.exe O4 - GS\Desktop [MOI]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - GS\Desktop [MOI]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\Desktop [MOI]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman O4 - GS\Desktop [MOI]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman ~ Global Startup: 71 Scanned in 00mn 02s ---\\ Applications lancées au démarrage du sytème (O4) O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio TPE.) -- C:\Program Files\IDT\WDM\sttray64.exe O4 - HKLM\..\Run: [AmIcoSinglun64] . (.AlcorMicro Co., Ltd. - Single LUN Icon Utility for VID 058F PID 63.) -- C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe =>.Advanced Micro Devices, Inc O4 - HKLM\..\Wow6432Node\Run: [ATKOSD2] . (.ASUS - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe O4 - HKLM\..\Wow6432Node\Run: [ATKMEDIA] . (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe O4 - HKUS\.DEFAULT\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-18\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-736259188-3253839220-1395479779-1001\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation ~ Application: Scanned in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ IE Control Panel: 1 Scanned in 00mn 00s ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9) O9 - Extra button: Clavier virtuel [64Bits] - {0C4CC089-D306-440D-9772-464E226F6539} . (...) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\kbrd.ico O9 - Extra button: Analyse des liens [64Bits] - {CCF151D8-D089-449F-A5A4-D9909053F20F} . (...) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\logo.ico ~ IE Extra Buttons: Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll ~ Winsock: 7 Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{0DC67234-4F6F-4BE3-B779-DDC422E73258}: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CS1\Services\Tcpip\..\{0DC67234-4F6F-4BE3-B779-DDC422E73258}: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CS2\Services\Tcpip\..\{0DC67234-4F6F-4BE3-B779-DDC422E73258}: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 ~ Domain: Scanned in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ SSODL: 1 Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) . (...) - D:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: AFBAgent (AFBAgent) . (.ASUSTeK Computer Inc. - ASUS FastBoot.) - C:\Windows\system32\FBAgent.exe O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: ASLDR Service (ASLDRService) . (.ASUS - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.Pas de propriétaire - GFNEXSrv.) - C:\Program Files\ATKGFNEX\GFNEXSrv.exe O23 - Service: Kaspersky Anti-Virus Service (AVP) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: EBP Pervasive.SQL (EBP Pervasive.SQL) . (...) - C:\PVSW\Bin\WGE_SRV.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: Audio Service (STacSV) . (.IDT, Inc. - IDT PC Audio TPE.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_38986e29a8b510a2\STacSV64.exe O23 - Service: Util FindRight (Util FindRight) . (...) - C:\Program Files (x86)\FindRight\bin\utilFindRight.exe (.not file.) =>Hijacker.FindrToolbar ~ Services: 13 Scanned in 00mn 04s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ Enumère les données de BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Digital Sites.job [284] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1058] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1062] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Net4Switch.job [258] ~ Scheduled Task: 5 Scanned in 00mn 00s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Internet Explorer [64Bits] - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll ~ Active Setup: 10 Scanned in 00mn 00s ---\\ Pilotes lancés au démarrage du système (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (KLIF) . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_wlh_x64].) - C:\Windows\System32\DRIVERS\klif.sys O41 - Driver: (KLIM6) . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) - C:\Windows\System32\DRIVERS\klim6.sys O41 - Driver: (klpd) . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x64].) - C:\Windows\System32\DRIVERS\klpd.sys O41 - Driver: (kltdi) . (.Kaspersky Lab ZAO - Network filtering component.) - C:\Windows\System32\DRIVERS\kltdi.sys O41 - Driver: (kneps) . (.Kaspersky Lab ZAO - KNEPS Power [fre_wnet_amd64].) - C:\Windows\System32\DRIVERS\kneps.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys ~ Drivers: 75 Scanned in 00mn 26s ---\\ Logiciels installés (O42) O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {FF21C3E6-97FD-474F-9518-8DCBE94C2854} O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441} O42 - Logiciel: AMD Accelerated Video Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {852B1308-4E5A-B54D-637D-F710D92C6930} O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {ABFC0970-7FDF-9E49-C049-5D24CB1F150E} O42 - Logiciel: AMD Drag and Drop Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {F972FD73-47FC-55F7-5EF1-8CA5311FF96E} O42 - Logiciel: AMD Media Foundation Decoders - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {DE7BAEF8-C639-381A-D835-95BD517ED602} O42 - Logiciel: ASUS Data Security Manager - (.ASUS.) [HKLM][64Bits] -- {FA2092C5-7979-412D-A962-6485274AE1EE} O42 - Logiciel: ASUS FancyStart - (.ASUSTeK Computer Inc..) [HKLM][64Bits] -- {2B81872B-A054-48DA-BE3B-FA5C164C303A} O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158} O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {E657B243-9AD4-4ECC-BE81-4CCF8D667FD0} O42 - Logiciel: ASUS MultiFrame - (.ASUS.) [HKLM][64Bits] -- {9D48531D-2135-49FC-BC29-ACCDA5396A76} O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {91EFE3A1-585E-4F66-B5F6-F118F56C4C47} O42 - Logiciel: ASUS SmartLogon - (.ASUS.) [HKLM][64Bits] -- {64452561-169F-4A36-A2FF-B5E118EC65F5} O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D} O42 - Logiciel: ASUS Virtual Camera - (.asus.) [HKLM][64Bits] -- {EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1} O42 - Logiciel: ATI AVIVO64 Codecs - (.ATI Technologies Inc..) [HKLM][64Bits] -- {968720F5-3D81-7A28-C902-0876A57B1523} O42 - Logiciel: ATK Generic Function Service - (.ATK.) [HKLM][64Bits] -- {D3D54F3E-C5C3-443D-978F-87A72E5616E8} O42 - Logiciel: ATK Hotkey - (.ASUS.) [HKLM][64Bits] -- {7C05592D-424B-46CB-B505-E0013E8E75C9} O42 - Logiciel: ATK Media - (.ASUS.) [HKLM][64Bits] -- {D1E5870E-E3E5-4475-98A6-ADD614524ADF} O42 - Logiciel: ATKOSD2 - (.ASUS.) [HKLM][64Bits] -- {3B05F2FB-745B-4012-ADF2-439F36B2E70B} O42 - Logiciel: Adobe Flash Player 12 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 12 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Photoshop Elements 6.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Photoshop Elements 6 =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Reader XI (11.0.06) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} O42 - Logiciel: Akamai NetSession Interface - (.Akamai Technologies, Inc.) [HKCU][64Bits] -- Akamai O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- InstallShield_{F4BF5F6B-F695-4762-AEB2-D095A4C34D89} O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {46F044A5-CE8B-4196-984E-5BD6525E361D} O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc O42 - Logiciel: Auslogics DiskDefrag - (.Auslogics Labs Pty Ltd.) [HKLM][64Bits] -- {DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1 O42 - Logiciel: Auslogics Registry Cleaner - (.Auslogics Labs Pty Ltd.) [HKLM][64Bits] -- {8D8024F1-2945-49A5-9B78-5AB7B11D7942}_is1 O42 - Logiciel: Auslogics Registry Defrag - (.Auslogics Labs Pty Ltd.) [HKLM][64Bits] -- {D627784F-B3EE-44E8-96B1-9509B991EA34}_is1 O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {E72F1051-B87E-4EF4-AE9F-8FDD229CC438} O42 - Logiciel: ControlDeck - (.ASUS.) [HKLM][64Bits] -- {5B65EF64-1DFA-414A-8C94-7BB726158E21} O42 - Logiciel: EBP Btrieve 8.6 - (.EBP.) [HKLM][64Bits] -- EBP Btrieve 8.6 O42 - Logiciel: EBP Btrieve 8.6 - (.EBP.) [HKLM][64Bits] -- {747D0A04-5BDA-478D-A010-68CCCBE4D15A} O42 - Logiciel: EBP Business Plan 2010 Edition PME 7.0 - (.EBP.) [HKLM][64Bits] -- EBP Business Plan 2010 Edition PME 7.0 O42 - Logiciel: EBP Business Plan 2010 Edition PME 7.0 - (.EBP.) [HKLM][64Bits] -- {5C2FC623-CCB7-4533-ADB7-D560DB27CA32} O42 - Logiciel: EBP Compta 14.0 - (.EBP.) [HKLM][64Bits] -- EBP Compta 14.0 O42 - Logiciel: EBP Compta 14.0 - (.EBP.) [HKLM][64Bits] -- {BC37CD90-D15B-4D20-AC29-871CA7A71934} O42 - Logiciel: EBP Utilitaire d'échanges 1.1 - (.EBP.) [HKLM][64Bits] -- EBP Utilitaire d'échanges 1.1 O42 - Logiciel: Fast Boot - (.ASUS.) [HKLM][64Bits] -- {13F4A7F3-EABC-4261-AF6B-1317777F0755} O42 - Logiciel: Free M4a to MP3 Converter 8.0 - (.ManiacTools.com.) [HKLM][64Bits] -- Free M4a to MP3 Converter_is1 O42 - Logiciel: FreeMi UPnP Media Server - (.Stéphane Mitermite.) [HKLM][64Bits] -- FreeMi UPnP Media Server O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM][64Bits] -- {4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E} =>.Google Inc O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} O42 - Logiciel: Java 7 Update 51 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217040FF} O42 - Logiciel: Kaspersky Anti-Virus - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090} O42 - Logiciel: Kaspersky Anti-Virus - (.Kaspersky Lab.) [HKLM][64Bits] -- {6F6873E3-5C92-4049-B511-231A138DD090} O42 - Logiciel: Logiciel d'archivage WinRAR - (...) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Mozilla Firefox 27.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 27.0.1 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService O42 - Logiciel: NB Probe - (...) [HKLM][64Bits] -- {6324A1EF-CEF4-43E3-8BCD-9EF3F67317FD} O42 - Logiciel: Net4Switch - (.ASUS.) [HKLM][64Bits] -- {9D6D7811-43B3-463C-BC79-5D1755269989} O42 - Logiciel: OpenOffice 4.0.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {8D5D54B8-3D29-4AB4-8DA8-1868DAF941D8} O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM][64Bits] -- {B67BAFBA-4C9F-48FA-9496-933E3B255044} O42 - Logiciel: Skype™ 6.11 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D} O42 - Logiciel: The Settlers Online - (.Ubisoft.) [HKLM][64Bits] -- {951E81D0-78C6-405F-9D3E-D226FFED1199} O42 - Logiciel: War Thunder Launcher 1.0.1.252 - (.2013 Gaijin Entertainment Corporation.) [HKLM][64Bits] -- {ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1 O42 - Logiciel: Wireless Console 3 - (.ASUS.) [HKLM][64Bits] -- {20FDF948-C8ED-4543-A539-F7F4AEF5AFA2} O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0} ~ Logic: 39 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\AMD] [HKCU\Software\ASUS] [HKCU\Software\ATI] [HKCU\Software\ATK0100] [HKCU\Software\Adobe] [HKCU\Software\AppDataLow\Software\JavaSoft] [HKCU\Software\AppDataLow] [HKCU\Software\Apple Computer, Inc.] [HKCU\Software\Apple Inc.] [HKCU\Software\Battle.net] [HKCU\Software\Bitdefender] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Developer Express] [HKCU\Software\EBP] [HKCU\Software\Gaijin] [HKCU\Software\Google] [HKCU\Software\HP] [HKCU\Software\Hewlett-Packard] [HKCU\Software\IDT] [HKCU\Software\IM Providers] [HKCU\Software\JavaSoft] [HKCU\Software\KasperskyLab] [HKCU\Software\Macromedia] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\ManiacTools] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mozilla] [HKCU\Software\MultimediaTools] [HKCU\Software\Netscape] [HKCU\Software\OpenOffice] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\Safer Networking Limited] [HKCU\Software\SimpleFiles] =>Adware.SimpleFiles [HKCU\Software\Skype] [HKCU\Software\TeleCharger] [HKCU\Software\Trolltech] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\Wow6432Node] [HKCU\Software\ZebHelpProcess Helper] [HKCU\Software\应用程序向导生成的本地应用程序] [HKLM\Software\AMD] [HKLM\Software\ASUS] [HKLM\Software\ATI Technologies] [HKLM\Software\ATK0100] [HKLM\Software\Apple Computer, Inc.] [HKLM\Software\Apple Inc.] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\EBP] [HKLM\Software\GEAR Software] [HKLM\Software\Hewlett-Packard] [HKLM\Software\IDT] [HKLM\Software\IM Providers] [HKLM\Software\Intel] [HKLM\Software\Khronos] [HKLM\Software\Macromedia] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\ODBC] [HKLM\Software\Policies] [HKLM\Software\RDBoot] [HKLM\Software\RegisteredApplications] [HKLM\Software\Sonic] [HKLM\Software\Wow6432Node\AGFNExEmu] [HKLM\Software\Wow6432Node\AMD] [HKLM\Software\Wow6432Node\ASUS] [HKLM\Software\Wow6432Node\ATI Technologies] [HKLM\Software\Wow6432Node\ATI] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\AdwCleaner] [HKLM\Software\Wow6432Node\Apple Computer, Inc.] [HKLM\Software\Wow6432Node\Apple Inc.] [HKLM\Software\Wow6432Node\AsLdr] [HKLM\Software\Wow6432Node\Auslogics] [HKLM\Software\Wow6432Node\Battle.net] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\EBP] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\Hewlett-Packard] [HKLM\Software\Wow6432Node\IDT] [HKLM\Software\Wow6432Node\IM Providers] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\JavaSoft] [HKLM\Software\Wow6432Node\JreMetrics] [HKLM\Software\Wow6432Node\KasperskyLab] [HKLM\Software\Wow6432Node\Khronos] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\Macrovision] [HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware] [HKLM\Software\Wow6432Node\MimarSinan] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\OldTimer Tools] [HKLM\Software\Wow6432Node\OpenOffice] [HKLM\Software\Wow6432Node\Pervasive Software] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\Safer Networking Limited] [HKLM\Software\Wow6432Node\SimpleFiles] =>Adware.SimpleFiles [HKLM\Software\Wow6432Node\Skype] [HKLM\Software\Wow6432Node\Sonic] [HKLM\Software\Wow6432Node\Ubisoft] [HKLM\Software\Wow6432Node\WinRAR] [HKLM\Software\Wow6432Node\mamverifier] [HKLM\Software\Wow6432Node\mozilla.org] [HKLM\Software\Wow6432Node] ~ Key Software: 220 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 30/12/2012 - 16:54:24 - [120,944] ----D C:\Program Files (x86)\Adobe O43 - CFD: 22/12/2012 - 18:15:42 - [2,145] ----D C:\Program Files (x86)\AMD APP O43 - CFD: 22/12/2012 - 18:15:44 - [0,389] ----D C:\Program Files (x86)\AMD AVT O43 - CFD: 22/12/2012 - 18:58:09 - [2,896] ----D C:\Program Files (x86)\AmIcoSingLun O43 - CFD: 23/02/2013 - 10:12:04 - [2,316] ----D C:\Program Files (x86)\Apple Software Update =>.Apple Inc O43 - CFD: 25/07/2013 - 08:05:14 - [114,257] ----D C:\Program Files (x86)\ASUS O43 - CFD: 22/12/2012 - 18:14:15 - [58,027] ----D C:\Program Files (x86)\ATI Technologies O43 - CFD: 16/02/2014 - 19:41:40 - [60,029] ----D C:\Program Files (x86)\Auslogics O43 - CFD: 21/04/2013 - 07:38:21 - [0,602] ----D C:\Program Files (x86)\Bonjour O43 - CFD: 12/02/2014 - 10:34:21 - [221,157] ----D C:\Program Files (x86)\Common Files O43 - CFD: 15/07/2013 - 18:58:01 - [0] ----D C:\Program Files (x86)\Downloaded Installations O43 - CFD: 06/07/2013 - 15:52:55 - [136,264] ----D C:\Program Files (x86)\EBP O43 - CFD: 21/04/2013 - 08:17:25 - [5,081] ----D C:\Program Files (x86)\Free M4a to MP3 Converter O43 - CFD: 26/02/2014 - 14:52:59 - [224,620] ----D C:\Program Files (x86)\GameforgeLive O43 - CFD: 11/12/2013 - 19:17:46 - [594,102] ----D C:\Program Files (x86)\Google O43 - CFD: 23/03/2013 - 20:45:18 - [0] ----D C:\Program Files (x86)\GUM634A.tmp O43 - CFD: 12/02/2014 - 10:30:42 - [0,695] ----D C:\Program Files (x86)\HP O43 - CFD: 04/10/2013 - 19:07:05 - [18,185] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 22/12/2012 - 18:20:51 - [0,133] ----D C:\Program Files (x86)\Intel O43 - CFD: 14/02/2014 - 09:09:34 - [10,975] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 17/11/2013 - 21:58:16 - [184,756] ----D C:\Program Files (x86)\iTunes O43 - CFD: 14/01/2014 - 23:01:39 - [122,210] ----D C:\Program Files (x86)\Java O43 - CFD: 19/02/2014 - 09:58:08 - [173,167] ----D C:\Program Files (x86)\Kaspersky Lab O43 - CFD: 03/12/2013 - 23:30:22 - [13,265] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware O43 - CFD: 23/02/2013 - 09:33:03 - [0] ----D C:\Program Files (x86)\McAfee Security Scan O43 - CFD: 22/12/2012 - 18:54:59 - [0,023] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 15/02/2014 - 11:02:30 - [52,020] ----D C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 16/02/2014 - 19:10:27 - [0,216] ----D C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 14/07/2009 - 06:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 13/11/2013 - 05:10:38 - [0] ----D C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 11/11/2013 - 16:32:53 - [316,939] ----D C:\Program Files (x86)\OpenOffice 4 O43 - CFD: 30/06/2013 - 17:14:59 - [73,545] ----D C:\Program Files (x86)\QuickTime O43 - CFD: 14/07/2009 - 06:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 15/07/2013 - 18:55:32 - [5,440] ----D C:\Program Files (x86)\SimpleFiles =>Adware.SimpleFiles O43 - CFD: 13/12/2013 - 12:49:35 - [19,916] R---D C:\Program Files (x86)\Skype O43 - CFD: 19/02/2014 - 09:26:02 - [1,100] ----D C:\Program Files (x86)\Spybot - Search & Destroy O43 - CFD: 26/02/2014 - 14:42:37 - [127,467] ----D C:\Program Files (x86)\Spybot - Search & Destroy 2 O43 - CFD: 04/10/2013 - 19:07:06 - [0,044] ----D C:\Program Files (x86)\Ubisoft O43 - CFD: 14/07/2009 - 05:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information O43 - CFD: 18/02/2014 - 17:26:40 - [0] ----D C:\Program Files (x86)\VS Revo Group O43 - CFD: 11/07/2013 - 11:22:40 - [0,500] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 19/02/2013 - 09:14:42 - [5,895] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 13/12/2013 - 10:53:51 - [4,791] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 14/07/2009 - 06:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 19/02/2013 - 09:14:42 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 19/02/2013 - 09:14:42 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 19/02/2013 - 09:14:42 - [6,286] ----D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 28/11/2013 - 20:36:08 - [3,707] ----D C:\Program Files (x86)\WinRAR O43 - CFD: 27/02/2014 - 14:21:40 - [23,814] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman O43 - CFD: 30/12/2012 - 16:54:28 - [50,045] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 17/11/2013 - 21:57:17 - [96,859] ----D C:\Program Files (x86)\Common Files\Apple O43 - CFD: 22/12/2012 - 18:15:38 - [2,737] ----D C:\Program Files (x86)\Common Files\ATI Technologies O43 - CFD: 22/12/2012 - 18:43:18 - [0,051] ----D C:\Program Files (x86)\Common Files\ControlDeck O43 - CFD: 06/07/2013 - 15:47:10 - [1,393] ----D C:\Program Files (x86)\Common Files\EBP O43 - CFD: 11/11/2013 - 20:29:39 - [0,164] ----D C:\Program Files (x86)\Common Files\Hewlett-Packard O43 - CFD: 22/12/2012 - 19:05:23 - [1,102] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 16/09/2013 - 20:09:04 - [1,191] ----D C:\Program Files (x86)\Common Files\Java O43 - CFD: 24/12/2012 - 11:05:58 - [0,625] ----D C:\Program Files (x86)\Common Files\Macrovision Shared O43 - CFD: 11/11/2013 - 16:28:05 - [16,118] ----D C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 14/07/2009 - 04:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 22/06/2013 - 00:21:06 - [1,904] ----D C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/07/2009 - 04:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 19/02/2013 - 09:14:41 - [9,767] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 17/11/2013 - 21:58:16 - [2,775] ----D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 19/04/2013 - 06:03:03 - [509,889] ----D C:\ProgramData\Adobe O43 - CFD: 22/12/2012 - 18:15:45 - [0] ----D C:\ProgramData\AMD O43 - CFD: 22/12/2012 - 18:58:08 - [0] ----D C:\ProgramData\AmUStor O43 - CFD: 21/04/2013 - 07:39:04 - [119,861] ----D C:\ProgramData\Apple O43 - CFD: 17/11/2013 - 21:57:17 - [94,159] ----D C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Application Data O43 - CFD: 23/11/2013 - 17:04:10 - [0,096] ----D C:\ProgramData\ASUS O43 - CFD: 22/12/2012 - 20:04:17 - [0] ----D C:\ProgramData\ATI O43 - CFD: 16/02/2014 - 19:46:49 - [0,070] ----D C:\ProgramData\Auslogics O43 - CFD: 22/12/2012 - 17:55:37 - [0] -SH-D C:\ProgramData\Bureau O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Documents O43 - CFD: 06/07/2013 - 15:48:00 - [0] ----D C:\ProgramData\EBP O43 - CFD: 22/12/2012 - 17:55:37 - [0] -SH-D C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Favorites O43 - CFD: 26/02/2014 - 14:52:59 - [0,001] ----D C:\ProgramData\FLEXnet O43 - CFD: 13/02/2013 - 17:51:29 - [0,170] ----D C:\ProgramData\Hewlett-Packard O43 - CFD: 12/02/2014 - 10:14:13 - [14,823] ----D C:\ProgramData\HP O43 - CFD: 27/02/2014 - 10:54:56 - [804,058] ----D C:\ProgramData\Kaspersky Lab O43 - CFD: 03/12/2013 - 23:30:20 - [7,021] ----D C:\ProgramData\Malwarebytes O43 - CFD: 21/02/2013 - 20:02:07 - [0,017] ----D C:\ProgramData\McAfee O43 - CFD: 22/12/2012 - 17:55:37 - [0] -SH-D C:\ProgramData\Menu Démarrer O43 - CFD: 26/02/2014 - 14:52:18 - [517,610] -S--D C:\ProgramData\Microsoft O43 - CFD: 22/12/2012 - 17:55:37 - [0] -SH-D C:\ProgramData\Modèles O43 - CFD: 22/12/2012 - 19:34:44 - [0,036] ----D C:\ProgramData\Mozilla O43 - CFD: 14/01/2014 - 23:02:07 - [0] ----D C:\ProgramData\Oracle O43 - CFD: 26/02/2014 - 14:52:59 - [0,002] ----D C:\ProgramData\P4G O43 - CFD: 13/12/2013 - 12:49:49 - [28,381] ----D C:\ProgramData\Skype O43 - CFD: 26/02/2014 - 13:39:12 - [4,487] ----D C:\ProgramData\Spybot - Search & Destroy O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Start Menu O43 - CFD: 28/12/2012 - 13:10:05 - [0] ----D C:\ProgramData\Sun O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Templates O43 - CFD: 13/07/2013 - 16:47:36 - [0] ----D C:\ProgramData\WarThunder O43 - CFD: 11/11/2013 - 20:53:47 - [0] ----D C:\ProgramData\WEBREG O43 - CFD: 06/07/2013 - 15:48:34 - [20,297] --H-D C:\ProgramData\{B33CBE2B-A739-401D-A5E0-041195C4A17B} O43 - CFD: 06/07/2013 - 15:52:58 - [55,501] --H-D C:\ProgramData\{D2DA46B8-FA76-434D-B213-8BC52FF5EC4F} O43 - CFD: 06/07/2013 - 15:47:44 - [140,597] --H-D C:\ProgramData\{DF22105C-6801-4541-A3AA-F3BD5A824303} O43 - CFD: 06/07/2013 - 15:46:00 - [7,887] --H-D C:\ProgramData\{FA3120FF-3F4E-457F-AC1B-2C85F34E7043} O43 - CFD: 01/08/2013 - 12:24:34 - [6,812] ----D C:\Users\MOI\AppData\Roaming\Adobe O43 - CFD: 21/04/2013 - 07:47:51 - [0,212] ----D C:\Users\MOI\AppData\Roaming\Apple Computer O43 - CFD: 22/12/2012 - 20:04:17 - [0] ----D C:\Users\MOI\AppData\Roaming\ATI O43 - CFD: 06/07/2013 - 15:48:00 - [0] ----D C:\Users\MOI\AppData\Roaming\EBP O43 - CFD: 11/11/2013 - 20:58:24 - [0,127] ----D C:\Users\MOI\AppData\Roaming\HP O43 - CFD: 22/12/2012 - 17:56:12 - [0] ----D C:\Users\MOI\AppData\Roaming\Identities O43 - CFD: 22/12/2012 - 19:08:14 - [0] ----D C:\Users\MOI\AppData\Roaming\InstallShield O43 - CFD: 22/12/2012 - 18:35:08 - [0,002] ----D C:\Users\MOI\AppData\Roaming\Macromedia O43 - CFD: 03/12/2013 - 23:30:29 - [79,221] ----D C:\Users\MOI\AppData\Roaming\Malwarebytes O43 - CFD: 14/07/2009 - 16:35:05 - [0] ----D C:\Users\MOI\AppData\Roaming\Media Center Programs O43 - CFD: 12/12/2013 - 22:57:35 - [6,415] -S--D C:\Users\MOI\AppData\Roaming\Microsoft O43 - CFD: 22/12/2012 - 19:45:24 - [72,514] ----D C:\Users\MOI\AppData\Roaming\Mozilla O43 - CFD: 11/11/2013 - 16:38:17 - [1,842] ----D C:\Users\MOI\AppData\Roaming\OpenOffice O43 - CFD: 27/12/2012 - 11:03:26 - [13,001] ----D C:\Users\MOI\AppData\Roaming\OpenOffice.org O43 - CFD: 17/02/2014 - 13:12:11 - [0,028] ----D C:\Users\MOI\AppData\Roaming\QuickScan O43 - CFD: 15/07/2013 - 18:52:11 - [0] ----D C:\Users\MOI\AppData\Roaming\SimpleFiles =>Adware.SimpleFiles O43 - CFD: 26/02/2014 - 14:52:23 - [22,096] ----D C:\Users\MOI\AppData\Roaming\Skype O43 - CFD: 28/11/2013 - 20:36:14 - [0] ----D C:\Users\MOI\AppData\Roaming\WinRAR O43 - CFD: 27/02/2014 - 14:22:00 - [0,214] ----D C:\Users\MOI\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 25/11/2013 - 08:00:24 - [18,329] ----D C:\Users\MOI\AppData\Local\Adobe O43 - CFD: 28/06/2013 - 19:22:51 - [32,450] ----D C:\Users\MOI\AppData\Local\Akamai O43 - CFD: 09/02/2013 - 16:24:11 - [0] ----D C:\Users\MOI\AppData\Local\Apple O43 - CFD: 21/04/2013 - 07:42:07 - [16,945] ----D C:\Users\MOI\AppData\Local\Apple Computer O43 - CFD: 22/12/2012 - 17:55:53 - [0] -SH-D C:\Users\MOI\AppData\Local\Application Data O43 - CFD: 22/12/2012 - 18:18:06 - [1,552] ----D C:\Users\MOI\AppData\Local\Apps O43 - CFD: 23/11/2013 - 17:04:04 - [1,310] ----D C:\Users\MOI\AppData\Local\ASUS O43 - CFD: 22/12/2012 - 20:04:17 - [0,056] ----D C:\Users\MOI\AppData\Local\ATI O43 - CFD: 22/12/2012 - 18:18:20 - [0] ----D C:\Users\MOI\AppData\Local\Deployment O43 - CFD: 17/02/2014 - 12:24:55 - [0,444] ----D C:\Users\MOI\AppData\Local\Diagnostics O43 - CFD: 06/07/2013 - 18:56:39 - [0,004] ----D C:\Users\MOI\AppData\Local\EBP O43 - CFD: 27/02/2014 - 13:06:26 - [0,261] ----D C:\Users\MOI\AppData\Local\ElevatedDiagnostics O43 - CFD: 02/01/2013 - 20:33:16 - [0,003] ----D C:\Users\MOI\AppData\Local\FreeMi O43 - CFD: 21/02/2014 - 14:58:45 - [0,007] ----D C:\Users\MOI\AppData\Local\Gameforge4d O43 - CFD: 22/12/2012 - 18:20:27 - [54,831] ----D C:\Users\MOI\AppData\Local\Google O43 - CFD: 22/12/2012 - 17:55:53 - [0] -SH-D C:\Users\MOI\AppData\Local\Historique O43 - CFD: 11/11/2013 - 20:44:42 - [0,131] ----D C:\Users\MOI\AppData\Local\HP O43 - CFD: 26/12/2012 - 21:29:50 - [0] ----D C:\Users\MOI\AppData\Local\Macromedia O43 - CFD: 04/12/2013 - 12:22:34 - [270,073] ----D C:\Users\MOI\AppData\Local\Microsoft O43 - CFD: 09/12/2013 - 20:11:18 - [1,082] ----D C:\Users\MOI\AppData\Local\Microsoft Games O43 - CFD: 19/09/2013 - 06:50:48 - [66,104] ----D C:\Users\MOI\AppData\Local\Mozilla O43 - CFD: 21/04/2013 - 08:16:53 - [0] ----D C:\Users\MOI\AppData\Local\Programs O43 - CFD: 27/02/2014 - 13:27:23 - [20,822] ----D C:\Users\MOI\AppData\Local\Temp O43 - CFD: 22/12/2012 - 17:55:53 - [0] -SH-D C:\Users\MOI\AppData\Local\Temporary Internet Files O43 - CFD: 17/02/2014 - 07:30:33 - [0,282] ----D C:\Users\MOI\AppData\Local\VirtualStore O43 - CFD: 13/07/2013 - 09:23:20 - [0] ----D C:\Users\MOI\AppData\Local\WarThunder O43 - CFD: 14/07/2009 - 05:54:32 - [0,014] R---D C:\Users\MOI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 14/09/2013 - 06:44:23 - [0] R---D C:\Users\MOI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 22/12/2012 - 18:48:09 - [0,003] ----D C:\Users\MOI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS Utility O43 - CFD: 10/04/2013 - 13:08:46 - [0] ----D C:\Users\MOI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 14/07/2009 - 05:49:38 - [0,001] R---D C:\Users\MOI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 20/09/2013 - 21:05:08 - [0] R---D C:\Users\MOI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 13/07/2013 - 09:23:05 - [0,003] ----D C:\Users\MOI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\War Thunder O43 - CFD: 28/11/2013 - 20:36:10 - [0,003] ----D C:\Users\MOI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ~ Program Folder: 155 Scanned in 00mn 30s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.C676E5EA388AF7C4C031F56F9B42E362] - 13/02/2014 - 22:14:48 ---A- . (.Microsoft Corporation - Bibliothèque Microsoft D2D.) -- C:\Windows\System32\d2d1.dll [3928064] O44 - LFC:[MD5.E8710B5DDA963E6BA198DF5FB209E72A] - 13/02/2014 - 22:14:48 ---A- . (.Microsoft Corporation - Direct3D 10 Rasterizer.) -- C:\Windows\System32\d3d10warp.dll [2565120] O44 - LFC:[MD5.DC6DD779F35BB42E2E76FDFEC565C251] - 13/02/2014 - 22:14:53 ---A- . (.Microsoft Corporation - Windows Rights Management Services Server S.) -- C:\Windows\System32\secproc_ssp_isv.dll [123392] O44 - LFC:[MD5.C6AC2C91541D24F9E236A670C0CA793D] - 13/02/2014 - 22:14:54 ---A- . (.Microsoft Corporation - Client Gestion des droits Windows.) -- C:\Windows\System32\msdrm.dll [528384] O44 - LFC:[MD5.399FC1B75790EE606A6FD9F2FB4C891C] - 13/02/2014 - 22:14:54 ---A- . (.Microsoft Corporation - Windows Rights Management Desktop Security.) -- C:\Windows\System32\secproc.dll [488448] O44 - LFC:[MD5.5693212AB2EBCACBBE05EC3A642113E2] - 13/02/2014 - 22:14:54 ---A- . (.Microsoft Corporation - Windows Rights Management Desktop Security.) -- C:\Windows\System32\secproc_isv.dll [485888] O44 - LFC:[MD5.03F8F411F118CFDA508E77C747BB05EA] - 13/02/2014 - 22:14:54 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate_ssp.exe [553984] O44 - LFC:[MD5.B41B1FEDEBBD955B4E25676B42087885] - 13/02/2014 - 22:14:54 ---A- . (.Microsoft Corporation - Windows Rights Management Services Server S.) -- C:\Windows\System32\secproc_ssp.dll [123392] O44 - LFC:[MD5.1B3741488AA7E237961A29D1E7A44C0A] - 13/02/2014 - 22:14:55 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate.exe [626176] O44 - LFC:[MD5.17CF3B3F68272BD40C878D4DBAB0EBC9] - 13/02/2014 - 22:14:55 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate_isv.exe [658432] O44 - LFC:[MD5.297926B15AE5390409F1007EB28A8EFB] - 13/02/2014 - 22:14:55 ---A- . (.Microsoft Corporation - Windows Rights Management Services Activati.) -- C:\Windows\System32\RMActivate_ssp_isv.exe [552960] O44 - LFC:[MD5.CD2C20CC3B385A32701F78C0ACBBE9F3] - 13/02/2014 - 22:15:14 ---A- . (.Microsoft Corporation - XML Resources.) -- C:\Windows\System32\msxml3r.dll [2048] O44 - LFC:[MD5.0D298133C359AB8CB9EB4FA178BF3947] - 13/02/2014 - 22:15:15 ---A- . (.Microsoft Corporation - MSXML 3.0 SP11.) -- C:\Windows\System32\msxml3.dll [1882112] O44 - LFC:[MD5.EA093130471090037BB70A4AF86FAD1B] - 13/02/2014 - 22:15:17 ---A- . (...) -- C:\Windows\System32\locale.nls [420008] O44 - LFC:[MD5.5922EEA922D3AD686342F866CAEE851F] - 14/02/2014 - 08:15:02 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript9.dll [5768704] O44 - LFC:[MD5.DB02F4D37E5F7F07A0D0F9FAA68249EE] - 14/02/2014 - 08:15:06 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\System32\ieframe.dll [13051392] O44 - LFC:[MD5.83296DE8CFFEADA636DCC1AB2E3BF643] - 14/02/2014 - 08:15:07 ---A- . (.Microsoft Corporation - Panneau de configuration Internet.) -- C:\Windows\System32\inetcpl.cpl [2041856] O44 - LFC:[MD5.22874047B810B5B174C68ACD7C0B6510] - 14/02/2014 - 08:15:24 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [1393664] O44 - LFC:[MD5.263B6E451526A90FF8B1CEC759F22956] - 14/02/2014 - 08:15:25 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2334208] O44 - LFC:[MD5.6300AD525D639CECBB3D144B6D7B30F9] - 14/02/2014 - 08:15:26 ---A- . (.Microsoft Corporation - Run time utility for Internet Explorer.) -- C:\Windows\System32\iertutil.dll [2765824] O44 - LFC:[MD5.F348B2D0983C91392632B4291C517AA4] - 14/02/2014 - 08:15:27 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter.) -- C:\Windows\System32\ieapfltr.dll [817664] O44 - LFC:[MD5.3906C9640406FC0FC00A324947C74893] - 14/02/2014 - 08:15:28 ---A- . (.Microsoft Corporation - Microsoft ® JScript Diagnostics.) -- C:\Windows\System32\jscript9diag.dll [708608] O44 - LFC:[MD5.D016F5092E4FFC41147E8555A71D2DDE] - 14/02/2014 - 08:15:28 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [23170048] O44 - LFC:[MD5.FCFAEDF0AA1A78A1875FDB798598408B] - 14/02/2014 - 08:15:29 ---A- . (.Microsoft Corporation - IE ETW Collector Proxy Stub Resources.) -- C:\Windows\System32\ieetwproxystub.dll [48640] O44 - LFC:[MD5.E129D34089E70215B65EA611F802FA9A] - 14/02/2014 - 08:15:29 ---A- . (.Microsoft Corporation - IE ETW Collector Service.) -- C:\Windows\System32\ieetwcollector.exe [111616] O44 - LFC:[MD5.C1E2C16D58D76323800C3EE5E2C5095A] - 14/02/2014 - 08:15:29 ---A- . (.Microsoft Corporation - IOD Version Map.) -- C:\Windows\System32\iesetup.dll [66048] O44 - LFC:[MD5.CDE728C8FB1D6E132CED44835FA44C87] - 14/02/2014 - 08:15:30 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\System32\msfeeds.dll [627200] O44 - LFC:[MD5.338415F2E9A188875B6E43B5269620B0] - 14/02/2014 - 08:15:30 ---A- . (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) -- C:\Windows\System32\ieUnatt.exe [139264] O44 - LFC:[MD5.99ED8FBAFD325550D07A32664D9E3CC8] - 14/02/2014 - 08:15:31 ---A- . (.Microsoft Corporation - JScript Proxy Auto-Configuration.) -- C:\Windows\System32\jsproxy.dll [53760] O44 - LFC:[MD5.E77092C38028EB0A5C461B3436E0A6D5] - 14/02/2014 - 08:15:32 ---A- . (.Microsoft Corporation - IE ETW Collector Service Resources.) -- C:\Windows\System32\ieetwcollectorres.dll [4096] O44 - LFC:[MD5.FD08F8BA2437A85F500EFFE3FD3158A6] - 14/02/2014 - 08:15:32 ---A- . (.Microsoft Corporation - Traitement de RunOnce complet avec interfac.) -- C:\Windows\System32\iernonce.dll [33792] O44 - LFC:[MD5.27516B54E116D5EF8B0129B5C829A87C] - 14/02/2014 - 08:15:32 ---A- . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [218624] O44 - LFC:[MD5.63B5E990896BA81D604032A48CC80A5C] - 14/02/2014 - 08:15:33 ---A- . (.Microsoft Corporation - Moteur de l’interface utilisateur d’Interne.) -- C:\Windows\System32\ieui.dll [574976] O44 - LFC:[MD5.1D1D7F52EC84294859642A4309FE648E] - 14/02/2014 - 08:15:34 ---A- . (.Microsoft Corporation - DLL de gestion d'utilisateur local et de co.) -- C:\Windows\System32\msrating.dll [195584] O44 - LFC:[MD5.94C59DD02BC7EA0E421055B9946CA861] - 14/02/2014 - 08:15:34 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2724864] O44 - LFC:[MD5.F67C7D80745379DC4C5332EFFE5AC696] - 14/02/2014 - 08:17:07 ---A- . (.Microsoft Corporation - Microsoft ® VBScript.) -- C:\Windows\System32\vbscript.dll [548864] O44 - LFC:[MD5.44FE8331D96E0C975B5AD76E19F4A3CC] - 16/02/2014 - 18:28:27 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\Windows\System32\MRT.exe [88567024] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 17/02/2014 - 07:26:45 ---A- . (...) -- C:\Windows\setuperr.log [0] O44 - LFC:[MD5.E34DE4CAEA93E0E84348E03F26BC9695] - 18/02/2014 - 11:54:27 ---A- . (...) -- C:\Windows\System32\ServiceFilter.ini [1361] O44 - LFC:[MD5.072AD3A32658B00C9B631D693AA49C88] - 18/02/2014 - 17:54:51 ---A- . (...) -- C:\Windows\wininit.ini [122] O44 - LFC:[MD5.E77377021C8F870A5AF0B23738D9645F] - 19/02/2014 - 09:57:48 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1669656] O44 - LFC:[MD5.500D59BB0E969BF070D91520CB9CD7EA] - 19/02/2014 - 09:57:48 ---A- . (...) -- C:\Windows\System32\perfc009.dat [122352] O44 - LFC:[MD5.D3A73798EAFA5FA2528071309CDB5F02] - 19/02/2014 - 09:57:48 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [150402] O44 - LFC:[MD5.CE08CD8C68104E5B0AD3B746C7865373] - 19/02/2014 - 09:57:48 ---A- . (...) -- C:\Windows\System32\perfh009.dat [654480] O44 - LFC:[MD5.EBEBCBBAA445627493B5A64F77554B1D] - 19/02/2014 - 09:57:48 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [747910] O44 - LFC:[MD5.48BA9C6110A5EBA910E7FB2E7D23CFC1] - 19/02/2014 - 09:58:49 ---A- . (.Kaspersky Lab ZAO - Filtering Platform Helper Class.) -- C:\Windows\System32\klfphc.dll [110176] O44 - LFC:[MD5.9C22C652968AD82559388BF36DA87118] - 19/02/2014 - 10:10:03 ---A- . (.Kaspersky Lab ZAO - Filter Core [fre_wlh_x64].) -- C:\Windows\System32\Drivers\klflt.sys [115296] O44 - LFC:[MD5.31B69BFF28348503E4BD10C2A4F66D05] - 19/02/2014 - 10:10:03 ---A- . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) -- C:\Windows\System32\Drivers\klim6.sys [29792] O44 - LFC:[MD5.795EC29BA21F1D948FD6FD740C00B599] - 19/02/2014 - 10:10:03 ---A- . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\Drivers\kl1.sys [458336] O44 - LFC:[MD5.10F2D5BE292355024A1F13D9EF8AA6CE] - 19/02/2014 - 10:10:03 ---A- . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_wlh_x64].) -- C:\Windows\System32\Drivers\klif.sys [624224] O44 - LFC:[MD5.8DA5BC75C3E8A995335642F26CAEA54B] - 19/02/2014 - 10:10:04 ---A- . (.Kaspersky Lab ZAO - KLKBDFLT Keyboard Device Filter [fre_wlh_x6.) -- C:\Windows\System32\Drivers\klkbdflt.sys [29280] O44 - LFC:[MD5.72CF64FBF38CD681FA7F37176047E967] - 19/02/2014 - 10:10:04 ---A- . (.Kaspersky Lab ZAO - KLMOUFLT Mouse Device Filter [fre_wlh_x64].) -- C:\Windows\System32\Drivers\klmouflt.sys [29280] O44 - LFC:[MD5.91BC1C5B00275A4D7FD669EFF0DDEB2A] - 19/02/2014 - 10:10:04 ---A- . (.Kaspersky Lab ZAO - KNEPS Power [fre_wnet_amd64].) -- C:\Windows\System32\Drivers\kneps.sys [178272] O44 - LFC:[MD5.6BCAF46E2B7FA9ACE92B4D39F3037C5C] - 19/02/2014 - 19:05:28 ---A- . (...) -- C:\Windows\System32\acovcnt.exe [45056] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 23/02/2014 - 21:15:03 ---A- . (...) -- C:\dfu.log [0] O44 - LFC:[MD5.1B1021A049DDA65B00B47B6F7C975270] - 26/02/2014 - 18:46:43 ---A- . (...) -- C:\Windows\PFRO.log [61462] O44 - LFC:[MD5.750E288D100F2DA2497D3EE8C9413A2A] - 27/02/2014 - 08:18:59 ---A- . (...) -- C:\Windows\setupact.log [1900] O44 - LFC:[MD5.1BFB212EA681B7DB7D93B20627B72A30] - 27/02/2014 - 08:20:31 ---A- . (...) -- C:\Windows\pvsw.log [3055] O44 - LFC:[MD5.A6FB8B0099250EAA8B757ADA3C49D006] - 27/02/2014 - 08:43:29 --HA- . (...) -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [22784] O44 - LFC:[MD5.A6FB8B0099250EAA8B757ADA3C49D006] - 27/02/2014 - 08:43:45 --HA- . (...) -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [22784] O44 - LFC:[MD5.9F2B1C5D1CD8DF7EB48C399FC27B9363] - 27/02/2014 - 08:50:16 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1915254] O44 - LFC:[MD5.EDC0820ECC0946426C34C7FE8BBC6C31] - 27/02/2014 - 12:18:16 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.96C6A35F602998FCD0DAF492377519F6] - 27/02/2014 - 12:18:23 ---A- . (...) -- C:\Windows\ntbtlog.txt [476330] ~ Files: 63 Scanned in 00mn 09s ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 18/07/2144 - 19:37:45 ----D - C:\Windows\Prefetch\ReadyBoot O45 - LFCP:[MD5.D5205F859A3654A0E2311301DDAA554B] - 19/02/2014 - 09:24:40 ---A- - C:\Windows\Prefetch\AgCx_SC4.db O45 - LFCP:[MD5.CF7F4DB8D934329AF99EB70631FA8B94] - 21/02/2014 - 13:47:59 ---A- - C:\Windows\Prefetch\MMLOADDRV.EXE-4072A3B8.pf O45 - LFCP:[MD5.CD0FCAD91F748A9ED125E7E50B3C2469] - 23/02/2014 - 16:31:02 ---A- - C:\Windows\Prefetch\DEFRAG.EXE-588F90AD.pf O45 - LFCP:[MD5.AEE227F11053812742E00D5DB0B92A72] - 23/02/2014 - 16:31:02 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7AC6742A.pf O45 - LFCP:[MD5.F789B913980CE90D210ADD668E4AEE35] - 23/02/2014 - 16:33:24 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-411A328D.pf O45 - LFCP:[MD5.A0E0523A80B44CD60380DD06026CFC77] - 23/02/2014 - 16:40:24 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-230FC512.pf O45 - LFCP:[MD5.BD3E97E177DAE99192E1888D31A3B104] - 23/02/2014 - 16:40:27 ---A- - C:\Windows\Prefetch\SDIAGNHOST.EXE-8D72177C.pf O45 - LFCP:[MD5.633A8004F7B886CBD77FF9FB48FB9FBC] - 23/02/2014 - 16:40:44 ---A- - C:\Windows\Prefetch\W32TM.EXE-1101AF41.pf O45 - LFCP:[MD5.5523BB2FFF3A1E90A7FDC14679DF2D7D] - 23/02/2014 - 16:40:53 ---A- - C:\Windows\Prefetch\PING.EXE-7E94E73E.pf O45 - LFCP:[MD5.3210C00B28A85AC5774F87748C720A08] - 23/02/2014 - 19:53:48 ---A- - C:\Windows\Prefetch\SWRITER.EXE-39D0A637.pf O45 - LFCP:[MD5.E90BF90A3E581AD6F23903D2067071A4] - 23/02/2014 - 20:43:52 ---A- - C:\Windows\Prefetch\ACRORD32.EXE-D066635E.pf O45 - LFCP:[MD5.0DD1D5CD206EBC601967827C86151FC7] - 23/02/2014 - 21:07:29 ---A- - C:\Windows\Prefetch\GAMEFORGELIVE.EXE-C5BB4DCB.pf O45 - LFCP:[MD5.7461C5123ED558EBC8BE739951A225A7] - 23/02/2014 - 21:07:39 ---A- - C:\Windows\Prefetch\GFL_CLIENT.EXE-77979CD5.pf O45 - LFCP:[MD5.FCF6716170F59B7A4AE323255D28AA93] - 23/02/2014 - 21:15:04 ---A- - C:\Windows\Prefetch\DFUBG.EXE-ACAA57D7.pf O45 - LFCP:[MD5.EEB441EE27952685770284327BEAAEF8] - 23/02/2014 - 21:15:11 ---A- - C:\Windows\Prefetch\DFUFG.EXE-42741CCB.pf O45 - LFCP:[MD5.8E35DFCFB4B2F4572EA383B898D6D2E5] - 23/02/2014 - 21:15:12 ---A- - C:\Windows\Prefetch\AUTOREPORTER.EXE-64F73868.pf O45 - LFCP:[MD5.0731A6C56549FA9565399F6A8CFDE16B] - 23/02/2014 - 21:15:15 ---A- - C:\Windows\Prefetch\CSC.EXE-BE9AC2DF.pf O45 - LFCP:[MD5.DFC398B1A37B1EE663C31F560DA7A412] - 23/02/2014 - 21:15:15 ---A- - C:\Windows\Prefetch\CVTRES.EXE-2B9D810D.pf O45 - LFCP:[MD5.E3DB45EF6D7BA3956932369B69C82C65] - 23/02/2014 - 21:15:26 ---A- - C:\Windows\Prefetch\SF2.EXE-4EE76ADE.pf O45 - LFCP:[MD5.C570809344A043A27181BA8C158ECBCB] - 23/02/2014 - 21:15:38 ---A- - C:\Windows\Prefetch\XXD.XEM-EAAF6004.pf O45 - LFCP:[MD5.3D8CB531CF3661F67D67FD20A74A35C1] - 23/02/2014 - 21:15:42 ---A- - C:\Windows\Prefetch\MPCMDRUN.EXE-F401FBB4.pf O45 - LFCP:[MD5.63B899052AE883FCBDBE1106A07EC2B6] - 23/02/2014 - 23:15:15 ---A- - C:\Windows\Prefetch\WUDFHOST.EXE-AFFEF87C.pf O45 - LFCP:[MD5.6A754DB21D8B6BCABE2572024BCD9F5E] - 23/02/2014 - 23:15:18 ---A- - C:\Windows\Prefetch\DEVICEDISPLAYOBJECTPROVIDER.E-17410B90.pf O45 - LFCP:[MD5.D443C73DCED3CB7002CE9CE98A87EFFF] - 23/02/2014 - 23:15:25 ---A- - C:\Windows\Prefetch\DXPSERVER.EXE-02DD8117.pf O45 - LFCP:[MD5.8A0766C3CB7E66BF44380E3DED16CF2A] - 23/02/2014 - 23:15:58 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-7E037F71.pf O45 - LFCP:[MD5.14C22F83126A61F5274F00EB0A2DE7FB] - 23/02/2014 - 23:19:52 ---A- - C:\Windows\Prefetch\PHOTOSHOPELEMENTSEDITOR.EXE-D6D5D007.pf O45 - LFCP:[MD5.400B439249A9CDEF5BF7567FD8EBF7C9] - 23/02/2014 - 23:20:00 ---A- - C:\Windows\Prefetch\FNPLICENSINGSERVICE.EXE-72A4F77B.pf O45 - LFCP:[MD5.E55676C23D09613738C17595443C87B1] - 23/02/2014 - 23:20:04 ---A- - C:\Windows\Prefetch\ADOBEUPDATER.EXE-A1D680E6.pf O45 - LFCP:[MD5.1A994F8EF80896D49DB3387A4890F2CD] - 23/02/2014 - 23:20:15 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-61AE5AB6.pf O45 - LFCP:[MD5.4489258EC3BFC705BB7DB6D49C6DB6F6] - 23/02/2014 - 23:20:31 ---A- - C:\Windows\Prefetch\SPLWOW64.EXE-297C4568.pf O45 - LFCP:[MD5.155F47F01122FCCDEBE6548A78041B26] - 23/02/2014 - 23:20:48 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-3644570E.pf O45 - LFCP:[MD5.EFB164524AA547E15A59587B89A9498A] - 23/02/2014 - 23:31:21 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-4F28A26F.pf O45 - LFCP:[MD5.89A418AA2CF2393D002F673AC7EC3DB8] - 24/02/2014 - 07:44:34 ---A- - C:\Windows\Prefetch\EHPRIVJOB.EXE-CE89B169.pf O45 - LFCP:[MD5.B02E14F49840A7CEBE33D37915863DC3] - 24/02/2014 - 18:44:27 ---A- - C:\Windows\Prefetch\FLASHPLAYERPLUGIN_12_0_0_44.E-DA0E1FAF.pf O45 - LFCP:[MD5.1D3AE741A5F39D21BC0E3BD7ACF8B061] - 24/02/2014 - 19:16:13 ---A- - C:\Windows\Prefetch\Layout.ini O45 - LFCP:[MD5.4255DE1A4D85963F8158FA6637CD3115] - 24/02/2014 - 20:14:41 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx O45 - LFCP:[MD5.E0F5812ED3D2E3D754C5443601E57A8C] - 24/02/2014 - 20:15:41 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-BDFD3029.pf O45 - LFCP:[MD5.C0D98E32A301E9E88C61A144B5E8277A] - 24/02/2014 - 20:15:42 ---A- - C:\Windows\Prefetch\AgCx_SC1.db O45 - LFCP:[MD5.614B1B865FACFD043F86CACF2EA12C93] - 25/02/2014 - 12:23:51 ---A- - C:\Windows\Prefetch\EHSCHED.EXE-7A86D5F8.pf O45 - LFCP:[MD5.725427CAB7F7D6450B2F5DEC6AB4A008] - 25/02/2014 - 12:23:53 ---A- - C:\Windows\Prefetch\EHTRAY.EXE-FEBFC005.pf O45 - LFCP:[MD5.7E6EE635D0C65FE44EDCA88A7B67D756] - 25/02/2014 - 12:24:01 ---A- - C:\Windows\Prefetch\EHREC.EXE-BFABB40F.pf O45 - LFCP:[MD5.95D6E3D46D1885163ED28724EC34E413] - 25/02/2014 - 12:24:12 ---A- - C:\Windows\Prefetch\EHRECVR.EXE-96B31E37.pf O45 - LFCP:[MD5.634FDC15C8C625A56E732EAF0617C0CC] - 25/02/2014 - 12:24:13 ---A- - C:\Windows\Prefetch\MCGLIDHOST.EXE-E3F0E99A.pf O45 - LFCP:[MD5.FC16AC5063694822F014F506E758BA22] - 25/02/2014 - 12:33:38 ---A- - C:\Windows\Prefetch\MPAS-D_BD_1.167.317.0.EXE-DE5BBDA2.pf O45 - LFCP:[MD5.210A605383EA255CB30B2ABF7541B306] - 25/02/2014 - 12:33:57 ---A- - C:\Windows\Prefetch\MPMINISIGSTUB.EXE-FACDB83A.pf O45 - LFCP:[MD5.E9BAC7D293B52EF1272FF371CFC30668] - 25/02/2014 - 12:33:57 ---A- - C:\Windows\Prefetch\MPSIGSTUB.EXE-6CB27A06.pf O45 - LFCP:[MD5.7FAA20C000C21F184623422CA9F77B31] - 25/02/2014 - 18:26:07 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-67751737.pf O45 - LFCP:[MD5.0731CF7C1058024766EB0AAD173BDE18] - 25/02/2014 - 23:33:43 ---A- - C:\Windows\Prefetch\JP2LAUNCHER.EXE-6240744E.pf O45 - LFCP:[MD5.E10C1AE5CA8F0DB03766F63E0E993C5D] - 26/02/2014 - 07:36:41 ---A- - C:\Windows\Prefetch\SMARTLOGON.EXE-8F794AF5.pf O45 - LFCP:[MD5.CACB6817D7D5489661F0987CC4505FE8] - 26/02/2014 - 07:38:07 ---A- - C:\Windows\Prefetch\AgCx_SC2.db O45 - LFCP:[MD5.1F981FDF27901F572B74809EB9205778] - 26/02/2014 - 07:39:12 ---A- - C:\Windows\Prefetch\WSQMCONS.EXE-118B52B7.pf O45 - LFCP:[MD5.2B06D54CAE63405E96B8AB12789D3CE0] - 26/02/2014 - 07:39:15 ---A- - C:\Windows\Prefetch\NDP451-KB2858725-X86-X64-FRA.-E9523E2F.pf O45 - LFCP:[MD5.236CCDF6EAEFF435EA6BE84709DAC2E9] - 26/02/2014 - 07:39:32 ---A- - C:\Windows\Prefetch\SETUP.EXE-A8543DB2.pf O45 - LFCP:[MD5.2DCF6E385EBC8C30B84BF07D2607BE97] - 26/02/2014 - 07:39:42 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-5CA45734.pf O45 - LFCP:[MD5.A91D40D5503255EB230588DD3B905D43] - 26/02/2014 - 07:40:39 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-736259188-3253839220-1395479779-1001.db O45 - LFCP:[MD5.4790AB6B726C86160F345A29476F2B03] - 26/02/2014 - 07:40:39 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-736259188-3253839220-1395479779-1001.db O45 - LFCP:[MD5.4D27CCFFD9E6FBE07E41A18D2163740E] - 26/02/2014 - 07:41:08 ---A- - C:\Windows\Prefetch\JAVA.EXE-07FE5A9A.pf O45 - LFCP:[MD5.0999D7E19ECE96D3EA4C4C37E2FEDE4D] - 26/02/2014 - 07:41:18 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-A2D55CB6.pf O45 - LFCP:[MD5.74A71C5F3210CB7DEA00F6959E005A9A] - 26/02/2014 - 07:43:49 ---A- - C:\Windows\Prefetch\ASPNET_REGIIS.EXE-75651A3C.pf O45 - LFCP:[MD5.FFA30859C7E0B179998B26F803059F50] - 26/02/2014 - 07:44:28 ---A- - C:\Windows\Prefetch\MOFCOMP.EXE-8FE3D558.pf O45 - LFCP:[MD5.FF487FF4D86FF0B005E050D5D2AB5211] - 26/02/2014 - 07:44:55 ---A- - C:\Windows\Prefetch\MOFCOMP.EXE-FDE76EFC.pf O45 - LFCP:[MD5.EC29B8182E7D942A0A535710899EDB30] - 26/02/2014 - 07:44:56 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-E09A077A.pf O45 - LFCP:[MD5.B1260E8091F3B2E7EA6C584054459B56] - 26/02/2014 - 07:44:59 ---A- - C:\Windows\Prefetch\ASPNET_REGIIS.EXE-86915B5A.pf O45 - LFCP:[MD5.33F325736614029D59C91902E9671BE0] - 26/02/2014 - 08:19:56 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf O45 - LFCP:[MD5.B576C5287B3558CA0BF5CEC5D061A286] - 26/02/2014 - 08:20:05 ---A- - C:\Windows\Prefetch\CLI.EXE-BB402402.pf O45 - LFCP:[MD5.46024AA8368CA6B4D8C270F6784F7EBB] - 26/02/2014 - 08:21:09 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin O45 - LFCP:[MD5.848A0E3B4A7CB5A3F17966C9DDDA6DC9] - 26/02/2014 - 08:26:17 ---A- - C:\Windows\Prefetch\SC.EXE-945D79AE.pf O45 - LFCP:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 26/02/2014 - 08:30:44 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf O45 - LFCP:[MD5.4899F6274090F822837998F794AAB725] - 26/02/2014 - 08:30:49 ---A- - C:\Windows\Prefetch\ADSMTRAY.EXE-9081D617.pf O45 - LFCP:[MD5.DC0E38CC51F23AA65A927A566667FBE7] - 26/02/2014 - 08:30:49 ---A- - C:\Windows\Prefetch\ATBROKER.EXE-2E15A492.pf O45 - LFCP:[MD5.86F8BF4714FE5158D02469EA4DF0D7C8] - 26/02/2014 - 08:30:52 ---A- - C:\Windows\Prefetch\HCONTROL.EXE-FCB63502.pf O45 - LFCP:[MD5.F35585FB937FBA822742355B1EF384FE] - 26/02/2014 - 08:31:13 ---A- - C:\Windows\Prefetch\USERINIT.EXE-2257A3E7.pf O45 - LFCP:[MD5.2501E7AB332F0F540954724B4542C907] - 26/02/2014 - 12:25:57 ---A- - C:\Windows\Prefetch\PLUGIN-CONTAINER.EXE-F1B02F03.pf O45 - LFCP:[MD5.E3BD06BC817380EDEDC6920C9C8C6562] - 26/02/2014 - 12:26:24 ---A- - C:\Windows\Prefetch\FLASHPLAYERPLUGIN_12_0_0_70.E-BD0E8952.pf O45 - LFCP:[MD5.AFD0E6FD5C227F0836FDD0B0B132CF37] - 26/02/2014 - 12:26:46 ---A- - C:\Windows\Prefetch\UPDATER.EXE-EA1310CB.pf O45 - LFCP:[MD5.6F1347148AEA33685EBC168C2A578B23] - 26/02/2014 - 12:28:14 ---A- - C:\Windows\Prefetch\SOFFICE.EXE-BB81BCCA.pf O45 - LFCP:[MD5.F5050FD91AA7A98704193EB942078AED] - 26/02/2014 - 12:28:17 ---A- - C:\Windows\Prefetch\SOFFICE.BIN-AF0FD5A5.pf O45 - LFCP:[MD5.A50E3C955547F12E64E0C33F90EF8CF6] - 26/02/2014 - 12:30:45 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-37549B7E.pf O45 - LFCP:[MD5.7F32AE50A98048D6C9452691C8DE54C0] - 26/02/2014 - 12:31:45 ---A- - C:\Windows\Prefetch\SNDVOL.EXE-5D4CC7D6.pf O45 - LFCP:[MD5.2257F11B2B08F7B074CCDBA3B51F9233] - 26/02/2014 - 12:34:27 ---A- - C:\Windows\Prefetch\SKYPE.EXE-E71BF59F.pf O45 - LFCP:[MD5.BF7F73754842359E81885518D5C45029] - 26/02/2014 - 12:34:31 ---A- - C:\Windows\Prefetch\EXPLORER.EXE-A80E4F97.pf O45 - LFCP:[MD5.98DBBFBB4D02006B928B95EDFD15C4C3] - 26/02/2014 - 12:41:41 ---A- - C:\Windows\Prefetch\TASKMGR.EXE-5F5F473D.pf O45 - LFCP:[MD5.E2A81046D4353A514376B18E73721BE7] - 26/02/2014 - 12:47:42 ---A- - C:\Windows\Prefetch\DWM.EXE-6FFD3DA8.pf O45 - LFCP:[MD5.8B7B45A907940B08B483959B4B0233C3] - 26/02/2014 - 12:48:04 ---A- - C:\Windows\Prefetch\AgCx_S1_S-1-5-21-736259188-3253839220-1395479779-1001.snp.db O45 - LFCP:[MD5.58CB4EE3E4EB9F21569432E9405A5171] - 26/02/2014 - 14:11:48 ---A- - C:\Windows\Prefetch\RAREXTLOADER.EXE-8405D981.pf O45 - LFCP:[MD5.EA5C38B7396EEA9C97B2C2DE5C7D0FE9] - 26/02/2014 - 14:12:50 ---A- - C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf O45 - LFCP:[MD5.3E1564E463A9039BBEA420C0B27BCA49] - 26/02/2014 - 14:14:14 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-ECB71776.pf O45 - LFCP:[MD5.E7798C7A6A9AC035AC28C4B17261F9AE] - 26/02/2014 - 14:16:44 ---A- - C:\Windows\Prefetch\AgRobust.db O45 - LFCP:[MD5.B88C7E52732CA4FE3066D065BDDA737D] - 26/02/2014 - 14:16:52 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db O45 - LFCP:[MD5.CF9A7ABCA25E93E68717CE97A1F977D6] - 26/02/2014 - 14:16:57 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db O45 - LFCP:[MD5.ED4CA175FCE0ED508A0A743404ABD887] - 26/02/2014 - 14:17:00 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db O45 - LFCP:[MD5.E882332A72AFAE4AB7B79E381BFB11F1] - 26/02/2014 - 14:32:27 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-09140401.pf O45 - LFCP:[MD5.18D826A16A115F1502C6F6286A7E1AAF] - 26/02/2014 - 14:56:11 ---A- - C:\Windows\Prefetch\VSSVC.EXE-B8AFC319.pf O45 - LFCP:[MD5.8FC1D87F37D97BC29D4488B7473CFDE7] - 26/02/2014 - 14:56:12 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7CFEDEA3.pf O45 - LFCP:[MD5.C4EE565B3F340E4F15245B3AC2CA0925] - 26/02/2014 - 18:48:39 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf O45 - LFCP:[MD5.043B39943ACA58D81C3F80A64CEA14E7] - 26/02/2014 - 18:49:12 ---A- - C:\Windows\Prefetch\RUNONCE.EXE-0E293DD6.pf O45 - LFCP:[MD5.1E9A576629142559BF772A79EA182C9F] - 26/02/2014 - 18:49:17 ---A- - C:\Windows\Prefetch\CLISTART.EXE-0F58A398.pf O45 - LFCP:[MD5.FE5FFC06B6E5058AD218C1882B408AFE] - 26/02/2014 - 18:49:24 ---A- - C:\Windows\Prefetch\ATKOSD2.EXE-A5472679.pf O45 - LFCP:[MD5.8A8CB0669366C50CF9DF6DE4C73D7363] - 26/02/2014 - 18:49:25 ---A- - C:\Windows\Prefetch\DMEDIA.EXE-FDD636B5.pf O45 - LFCP:[MD5.46FC219E8161FF037F3765277E6FA3B6] - 26/02/2014 - 18:49:29 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf O45 - LFCP:[MD5.D11C8B2F8798F28EFE65BF461378285E] - 26/02/2014 - 19:02:52 ---A- - C:\Windows\Prefetch\FIREFOX.EXE-18ACFCFF.pf O45 - LFCP:[MD5.5B4B72BE7352567C0CCA5FCA5B065BB1] - 26/02/2014 - 19:03:13 ---A- - C:\Windows\Prefetch\ADSMSRV.EXE-1A14F59E.pf O45 - LFCP:[MD5.11B93AA8EEDDBBE7C1774077D0F2C821] - 26/02/2014 - 19:03:17 ---A- - C:\Windows\Prefetch\SEARCHINDEXER.EXE-4A6353B9.pf O45 - LFCP:[MD5.356A6F9D843A5476083C68CD70854DE7] - 26/02/2014 - 19:03:26 ---A- - C:\Windows\Prefetch\SPMGR.EXE-FD90695A.pf O45 - LFCP:[MD5.3CF1F8553E49109CF6B20480CC2CD176] - 26/02/2014 - 19:03:40 ---A- - C:\Windows\Prefetch\KBFILTR.EXE-C8D6FDCB.pf O45 - LFCP:[MD5.FF49C99474C9950B7675B0CE007C2415] - 26/02/2014 - 19:03:49 ---A- - C:\Windows\Prefetch\ATKOSD.EXE-4A21CFCB.pf O45 - LFCP:[MD5.36704249BDA14AB1FE96DB65FB3E00C7] - 26/02/2014 - 19:03:51 ---A- - C:\Windows\Prefetch\WDC.EXE-D160FD43.pf O45 - LFCP:[MD5.E6C5BF6DF9E45930DE672F263166616E] - 26/02/2014 - 19:06:49 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-76936ED5.pf O45 - LFCP:[MD5.7883EE8985811BEF936958BFC6299ABB] - 26/02/2014 - 19:13:04 ---A- - C:\Windows\Prefetch\LIVEUPDT.EXE-DAF7AD9D.pf O45 - LFCP:[MD5.B947C527CC0928D32C9535399D757973] - 27/02/2014 - 08:21:01 ---A- - C:\Windows\Prefetch\AMICOSINGLUN64.EXE-2E50420D.pf O45 - LFCP:[MD5.93398B0F4BC8A1B87118D3ECCD44FF32] - 27/02/2014 - 08:21:01 ---A- - C:\Windows\Prefetch\SIDEBAR.EXE-FA75EA61.pf O45 - LFCP:[MD5.C008B613F824F9A5ED126932D64256C8] - 27/02/2014 - 08:21:01 ---A- - C:\Windows\Prefetch\STTRAY64.EXE-332B9C2C.pf O45 - LFCP:[MD5.BE7B26CE6306EE1AA1F09C7A18257E5F] - 27/02/2014 - 08:21:01 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-DD9DE812.pf O45 - LFCP:[MD5.48068BF378D6514DB2C45E07670E90A5] - 27/02/2014 - 08:21:15 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf O45 - LFCP:[MD5.0E26BAD40D59A91A015B82B015C43AF3] - 27/02/2014 - 08:21:22 ---A- - C:\Windows\Prefetch\COFIRE.EXE-DD97A028.pf O45 - LFCP:[MD5.6D20BF86C29F370C4A06B1E7465B61A4] - 27/02/2014 - 08:21:45 ---A- - C:\Windows\Prefetch\ACENGSVR.EXE-591E7F61.pf O45 - LFCP:[MD5.DB8598913827C00B677F03C17A371FA3] - 27/02/2014 - 08:23:24 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-40DD444D.pf O45 - LFCP:[MD5.9CF8737D7E384CD0649097112B102AF8] - 27/02/2014 - 08:24:28 ---A- - C:\Windows\Prefetch\PRINTISOLATIONHOST.EXE-E0CD10A9.pf O45 - LFCP:[MD5.6AB6877600CFD50FCE8919548F8E1EE6] - 27/02/2014 - 08:24:57 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-57D17DAF.pf O45 - LFCP:[MD5.54EE74662464CCCEB0338E35C2784624] - 27/02/2014 - 08:25:13 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-B0F8131B.pf O45 - LFCP:[MD5.FC63F264FD6CDF2A58E587BB57B22DFD] - 27/02/2014 - 08:25:34 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf O45 - LFCP:[MD5.CEC3C1F5175F25CA94F63F3958194C8B] - 27/02/2014 - 08:26:23 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-05F624AB.pf O45 - LFCP:[MD5.972192637256E699630A5173B3ECEA98] - 27/02/2014 - 08:38:24 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf O45 - LFCP:[MD5.085A7C5698B7A2753DCBA08B64EA779E] - 27/02/2014 - 08:38:50 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-A8DE6D5B.pf O45 - LFCP:[MD5.BE344E024F45C97C106ECB5DD9368A21] - 27/02/2014 - 08:38:50 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-A1476A17.pf O45 - LFCP:[MD5.7C4F4EF9DF1D0598E32C7C761AC9D564] - 27/02/2014 - 08:38:59 ---A- - C:\Windows\Prefetch\AVPUI.EXE-948C63A2.pf O45 - LFCP:[MD5.E83B65B8E7F5F8A6B559BB5785F8236E] - 27/02/2014 - 08:39:01 ---A- - C:\Windows\Prefetch\WMPNETWK.EXE-D9F2A96F.pf O45 - LFCP:[MD5.919EDCF9C4B3D3C6BBB347FCB8CCCF32] - 27/02/2014 - 08:43:19 ---A- - C:\Windows\Prefetch\WMPNSCFG.EXE-FC0D39BF.pf O45 - LFCP:[MD5.6367AEE7E12F88FDF739487B6B445CD3] - 27/02/2014 - 08:43:31 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf O45 - LFCP:[MD5.B70A498F0BE18A5D0327DFD63E3C2981] - 27/02/2014 - 08:51:30 ---A- - C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf O45 - LFCP:[MD5.0E60627A41D784805E26B1CC856A7943] - 27/02/2014 - 08:52:55 ---A- - C:\Windows\Prefetch\FLASHPLAYERUPDATESERVICE.EXE-216D9C35.pf O45 - LFCP:[MD5.BF26A86F3960001C3A44CF40A7A25FAD] - 27/02/2014 - 08:53:16 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-80F4A784.pf O45 - LFCP:[MD5.E21166F42F8D81D241EA83A95FBD0985] - 27/02/2014 - 08:53:19 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-E69F695A.pf O45 - LFCP:[MD5.979DFAEEA75C3DCE33B255694A562FB3] - 27/02/2014 - 08:54:19 ---A- - C:\Windows\Prefetch\CMD.EXE-AC113AA8.pf O45 - LFCP:[MD5.BADBCD5D3315750D11FEBDA343B4D9D1] - 27/02/2014 - 08:54:33 ---A- - C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf O45 - LFCP:[MD5.DE5854F40D421FAE5229889261916483] - 27/02/2014 - 08:58:40 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-B95715F5.pf O45 - LFCP:[MD5.CD21ECB1D1925B01E258B11635E831B3] - 27/02/2014 - 10:55:06 ---A- - C:\Windows\Prefetch\AVP.EXE-A7C786B4.pf O45 - LFCP:[MD5.60C30A7986B34B32F1F0EA34F5618B57] - 27/02/2014 - 11:58:46 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf O45 - LFCP:[MD5.0C46E2145CCCC46CFAA22F6B6CA5F769] - 27/02/2014 - 11:58:46 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf O45 - LFCP:[MD5.FD47F2E7F0EC59D98AC70324162DF1B5] - 27/02/2014 - 12:09:34 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-7238F31D.pf O45 - LFCP:[MD5.647C254AF9FDBF82405E6358FF729C56] - 27/02/2014 - 12:15:35 ---A- - C:\Windows\Prefetch\CONHOST.EXE-1F3E9D7E.pf O45 - LFCP:[MD5.817466E447632EBBCB14A754F0B08BBB] - 27/02/2014 - 12:15:35 ---A- - C:\Windows\Prefetch\FFCERT.EXE-727AD983.pf ~ Prefetcher: 143 Scanned in 00mn 03s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll ~ LSA: 8 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ CSB: 13 Scanned in 00mn 00s ---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ TDSD: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre StartupReg (SMSR) (O53) O53 - SMSR:HKLM\...\startupreg\Adobe Photo Downloader [Key] . (.Adobe Systems Incorporated - Adobe Photo Downloader 4.0 component.) -- D:\Program Files\Adobe\Photoshop Elements 6.0\apdproxy.exe O53 - SMSR:HKLM\...\startupreg\ADSMTray [Key] . (.ASUSTek Computer Inc. - ADSMTray.) -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe ~ SMSR Keys: 3 Scanned in 00mn 00s ---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ MSCP: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ MWPS: 16 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveTypeAutoRun"=28 ~ MWPE Keys: 4 Scanned in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:[MD5.64EDD3F59DB321947969FDF1DD747323] - 14/07/2009 - 01:06:38 ---A- . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\Drivers\1394bus.sys [68096] O58 - SDL:[MD5.A87D604AEA360176311474C87A63BB88] - 20/11/2010 - 11:44:56 ---A- . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\Windows\System32\Drivers\1394ohci.sys [229888] O58 - SDL:[MD5.D81D9E70B8A6DD14D42D7B4EFA65D5F2] - 20/11/2010 - 14:32:46 ---A- . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\Drivers\acpi.sys [334208] O58 - SDL:[MD5.99F8E788246D495CE3794D7E7821D2CA] - 20/11/2010 - 10:30:42 ---A- . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\Drivers\acpipmi.sys [12800] O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088] O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [339536] O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\Drivers\adpu320.sys [182864] O58 - SDL:[MD5.79059559E89D06E8B80CE2944BE20228] - 28/09/2013 - 02:09:10 ---A- . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\Drivers\afd.sys [497152] O58 - SDL:[MD5.7ECFF9B22276B73F43A99A15A6094E90] - 14/07/2009 - 01:10:24 ---A- . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\Drivers\agilevpn.sys [60416] O58 - SDL:[MD5.608C14DBA7299D8CB6ED035A68A15799] - 14/07/2009 - 02:52:21 ---A- . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\Drivers\AGP440.sys [61008] O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\Drivers\aliide.sys [15440] O58 - SDL:[MD5.1FF8B4431C353CE385C875F194924C0C] - 14/07/2009 - 02:52:21 ---A- . (.Microsoft Corporation - Pilote IDE AMD.) -- C:\Windows\System32\Drivers\amdide.sys [15440] O58 - SDL:[MD5.7024F087CFF1833A806193EF9D22CDA9] - 14/07/2009 - 00:19:25 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdk8.sys [64512] O58 - SDL:[MD5.1E56388B3FE0D031C44144EB8C4D6217] - 14/07/2009 - 00:19:25 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdppm.sys [60928] O58 - SDL:[MD5.D4121AE6D0C0E7E13AA221AA57EF2D49] - 11/03/2011 - 07:41:12 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [107904] O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\System32\Drivers\amdsbs.sys [194128] O58 - SDL:[MD5.540DAF1CEA6094886D72126FD7C33048] - 11/03/2011 - 07:41:12 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [27008] O58 - SDL:[MD5.9C7F164B49CADC658D1B3C575782F346] - 21/08/2009 - 14:48:18 ---A- . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\Windows\System32\Drivers\AmUStor.sys [44032] O58 - SDL:[MD5.89A69C3F2F319B43379399547526D952] - 20/11/2010 - 11:14:37 ---A- . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\Drivers\appid.sys [61440] O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [87632] O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [97856] O58 - SDL:[MD5.88FBC8BEBFD38566235EAA5E4DBC4E05] - 22/12/2012 - 18:51:36 ---A- . (.ASUSTek Computer Inc - Data Security Manager Driver.) -- C:\Windows\System32\Drivers\AsDsm.sys [35384] O58 - SDL:[MD5.769765CE2CC62867468CEA93969B2242] - 14/07/2009 - 01:10:13 ---A- . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\Drivers\asyncmac.sys [23040] O58 - SDL:[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - 02:52:21 ---A- . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\Drivers\atapi.sys [24128] O58 - SDL:[MD5.059F00DEF82BF41E433B7ED465847726] - 05/08/2013 - 03:25:45 ---A- . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\Drivers\ataport.sys [155584] O58 - SDL:[MD5.A5E770426D18F8EF332A593F3289DA91] - 27/06/2011 - 01:37:00 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\System32\Drivers\athrx.sys [2753536] O58 - SDL:[MD5.B0790FF0E25B7A2674296052F2162C1A] - 14/05/2012 - 07:12:30 ---A- . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\AtihdW76.sys [96896] O58 - SDL:[MD5.A3C0A15B39F979E8F3EABA901D72ECD7] - 28/09/2012 - 03:21:20 ---A- . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\Drivers\atikmdag.sys [10697216] O58 - SDL:[MD5.20F3CD38B107C1BD747C0EA37D450165] - 28/09/2012 - 02:12:52 ---A- . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\Drivers\atikmpag.sys [460288] O58 - SDL:[MD5.032D35C996F21D19A205A7C8F0B76F3C] - 13/05/2009 - 09:07:20 ---A- . (.ASUS - ATK0100 ACPI Utility.) -- C:\Windows\System32\Drivers\ATK64AMD.sys [15928] O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\System32\Drivers\b57nd60a.sys [270848] O58 - SDL:[MD5.F4DE2AE7A9E1BADAC70BC71EA2C17612] - 14/07/2009 - 02:52:21 ---A- . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\Drivers\battc.sys [28240] O58 - SDL:[MD5.16A47CE2DECC9B099349A5F840654746] - 14/07/2009 - 01:00:13 ---A- . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\Drivers\beep.sys [6656] O58 - SDL:[MD5.61583EE3C3A17003C4ACD0475646B4D3] - 14/07/2009 - 00:35:59 ---A- . (.Microsoft Corporation - BLB Drive Driver.) -- C:\Windows\System32\Drivers\blbdrive.sys [45056] O58 - SDL:[MD5.6C02A83164F5CC0A262F4199F0871CF5] - 23/02/2011 - 05:55:04 ---A- . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\Drivers\bowser.sys [90624] O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltLo.sys [18432] O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [8704] O58 - SDL:[MD5.5C2F352A4E961D72518261257AAE204B] - 14/07/2009 - 02:01:48 ---A- . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\Drivers\bridge.sys [95232] O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\BrSerId.sys [286720] O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\Drivers\BrSerWdm.sys [47104] O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\Drivers\BrUsbMdm.sys [14976] O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\Drivers\BrUsbSer.sys [14720] O58 - SDL:[MD5.9DA669F11D1F894AB4EB69BF546A42E8] - 14/07/2009 - 01:06:52 ---A- . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\Drivers\bthmodem.sys [72192] O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbda.sys [468480] O58 - SDL:[MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - 00:19:47 ---A- . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\Drivers\cdfs.sys [92160] O58 - SDL:[MD5.F036CE71586E93D94DAB220D7BDF4416] - 20/11/2010 - 10:19:21 ---A- . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\Drivers\cdrom.sys [147456] O58 - SDL:[MD5.D7CD5C4E1B71FA62050515314CFB52CF] - 14/07/2009 - 01:06:34 ---A- . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\Drivers\circlass.sys [45568] O58 - SDL:[MD5.ACFAD0B512226C7A83C7CB09FD55A9AD] - 20/11/2010 - 14:32:57 ---A- . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\Drivers\Classpnp.sys [179072] O58 - SDL:[MD5.0840155D0BDDF1190F84A663C284BD33] - 14/07/2009 - 00:31:03 ---A- . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\Drivers\CmBatt.sys [17664] O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\cmdide.sys [17488] O58 - SDL:[MD5.EBF28856F69CF094A902F884CF989706] - 04/07/2013 - 13:18:29 ---A- . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\Drivers\cng.sys [458712] O58 - SDL:[MD5.102DE219C3F61415F964C88E9085AD14] - 14/07/2009 - 02:52:31 ---A- . (.Microsoft Corporation - Composite Battery Driver.) -- C:\Windows\System32\Drivers\compbatt.sys [21584] O58 - SDL:[MD5.03EDB043586CCEBA243D689BDDA370A8] - 20/11/2010 - 11:33:17 ---A- . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\Drivers\CompositeBus.sys [38912] O58 - SDL:[MD5.3E588B60EC061686BA05D33574A344C6] - 14/07/2009 - 02:47:48 ---A- . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\Drivers\crashdmp.sys [39504] O58 - SDL:[MD5.1C827878A998C18847245FE1F34EE597] - 14/07/2009 - 02:47:48 ---A- . (.Microsoft Corporation - Disk Block Verification Filter Driver.) -- C:\Windows\System32\Drivers\crcdisk.sys [24144] O58 - SDL:[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 20/11/2010 - 10:26:32 ---A- . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\Drivers\dfsc.sys [102400] O58 - SDL:[MD5.13096B05847EC78F0977F2C0F79E9AB3] - 14/07/2009 - 00:37:18 ---A- . (.Microsoft Corporation - System Indexer/Cache Driver.) -- C:\Windows\System32\Drivers\discache.sys [40448] O58 - SDL:[MD5.9819EEE8B5EA3784EC4AF3B137A5244C] - 14/07/2009 - 02:47:48 ---A- . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\Drivers\disk.sys [73280] O58 - SDL:[MD5.9BBD8B5855BC6578957F82341F9CDE5A] - 22/04/2011 - 23:15:29 ---A- . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\Drivers\Diskdump.sys [27520] O58 - SDL:[MD5.B42ED0320C6E41102FDE0005154849BB] - 14/07/2009 - 01:00:16 ---A- . (.Microsoft Corporation - IEEE-1284.4-1999 Driver.) -- C:\Windows\System32\Drivers\Dot4.sys [145920] O58 - SDL:[MD5.E9F5969233C5D89F3C35E3A66A52A361] - 20/11/2010 - 11:32:44 ---A- . (.Microsoft Corporation - IEEE-1284.4 Print Class Driver.) -- C:\Windows\System32\Drivers\Dot4Prt.sys [19968] O58 - SDL:[MD5.FD05A02B0370BC3000F402E543CA5814] - 14/07/2009 - 01:00:20 ---A- . (.Microsoft Corporation - Pilote de filtre DOT4USB.) -- C:\Windows\System32\Drivers\Dot4usb.sys [43008] O58 - SDL:[MD5.E0D3CD5841E5C7BE7B94BA946AF1E498] - 04/10/2013 - 03:16:30 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmk.sys [116736] O58 - SDL:[MD5.9B19F34400D24DF84C858A421C205754] - 14/07/2009 - 01:06:16 ---A- . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\Drivers\drmkaud.sys [5632] O58 - SDL:[MD5.839B5FE3D48E9F35B22C21A3D5103F6C] - 14/07/2009 - 02:47:48 ---A- . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\Drivers\Dumpata.sys [28736] O58 - SDL:[MD5.814DB88F2641691575A455CF25354098] - 14/07/2009 - 02:43:14 ---A- . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\Drivers\dumpfve.sys [55128] O58 - SDL:[MD5.BF24D6F2ED97FE830BFD52B246F98E67] - 14/07/2009 - 00:38:28 ---A- . (.Microsoft Corporation - DirectX API Driver.) -- C:\Windows\System32\Drivers\dxapi.sys [16896] O58 - SDL:[MD5.FEDE0629ECB23650D48989517D4914DA] - 14/07/2009 - 00:38:28 ---A- . (.Microsoft Corporation - DirectX Graphics Driver.) -- C:\Windows\System32\Drivers\dxg.sys [98816] O58 - SDL:[MD5.88612F1CE3BF42256913BF6E61C70D52] - 01/08/2013 - 13:09:36 ---A- . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys [983488] O58 - SDL:[MD5.1F04CFB79DD5FB7694468CE3FB3DCC31] - 10/04/2013 - 07:01:54 ---A- . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\Drivers\dxgmms1.sys [265064] O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496] O58 - SDL:[MD5.34A3C54752046E79A126E15C51DB409B] - 14/07/2009 - 00:31:04 ---A- . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\Drivers\errdev.sys [9728] O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbda.sys [3286016] O58 - SDL:[MD5.A510C654EC00C1E9BDD91EEB3A59823B] - 14/07/2009 - 00:23:29 ---A- . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\Drivers\exfat.sys [195072] O58 - SDL:[MD5.0ADC83218B66A6DB380C330836F3E36D] - 14/07/2009 - 00:23:29 ---A- . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\Drivers\fastfat.sys [204800] O58 - SDL:[MD5.D765D19CD8EF61F650C384F62FAC00AB] - 14/07/2009 - 01:00:54 ---A- . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\Drivers\fdc.sys [29696] O58 - SDL:[MD5.655661BE46B5F5F3FD454E2C3095B930] - 14/07/2009 - 02:47:48 ---A- . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\Drivers\fileinfo.sys [70224] O58 - SDL:[MD5.5F671AB5BC87EEA04EC38A6CD5962A47] - 14/07/2009 - 00:25:40 ---A- . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\Drivers\filetrace.sys [34304] O58 - SDL:[MD5.C172A0F53008EAEB8EA33FE10E177AF5] - 14/07/2009 - 01:00:54 ---A- . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\Drivers\flpydisk.sys [24576] O58 - SDL:[MD5.DA6B67270FD9DB3697B20FCE94950741] - 20/11/2010 - 14:33:34 ---A- . (.Microsoft Corporation - Gestionnaire de filtres de système de fichiers Microsoft.) -- C:\Windows\System32\Drivers\fltMgr.sys [289664] O58 - SDL:[MD5.D43703496149971890703B4B1B723EAC] - 14/07/2009 - 02:47:49 ---A- . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\fsdepends.sys [55376] O58 - SDL:[MD5.6BD9295CC032DD3077C671FCCF579A7B] - 01/03/2012 - 07:46:16 ---A- . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\Drivers\fs_rec.sys [23408] O58 - SDL:[MD5.8F6322049018354F45F05A2FD2D4E5E0] - 24/01/2013 - 07:01:01 ---A- . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\Drivers\fvevol.sys [223752] O58 - SDL:[MD5.41C67E4205C606A103DEC8651D0B6FE6] - 03/01/2013 - 07:00:42 ---A- . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\Drivers\FWPKCLNT.SYS [288088] O58 - SDL:[MD5.8C778D335C9D272CFD3298AB02ABE3B6] - 14/07/2009 - 02:47:48 ---A- . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour plateformes de processe.) -- C:\Windows\System32\Drivers\GAGP30KX.SYS [65088] O58 - SDL:[MD5.8E98D21EE06192492A5671A6144D092F] - 21/08/2012 - 12:01:20 ---A- . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\Drivers\GEARAspiWDM.sys [33240] O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232] O58 - SDL:[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 20/11/2010 - 11:43:43 ---A- . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\Drivers\hdaudbus.sys [122368] O58 - SDL:[MD5.975761C778E33CD22498059B91E7373A] - 20/11/2010 - 11:44:23 ---A- . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\HdAudio.sys [350208] O58 - SDL:[MD5.B6AC71AAA2B10848F57FC49D55A651AF] - 17/09/2009 - 19:54:54 ---A- . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\Drivers\HECIx64.sys [56344] O58 - SDL:[MD5.78E86380454A7B10A5EB255DC44A355F] - 14/07/2009 - 00:31:06 ---A- . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\Drivers\hidbatt.sys [26624] O58 - SDL:[MD5.7FD2A313F7AFE5C4DAB14798C48DD104] - 14/07/2009 - 01:06:52 ---A- . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périphériques HID.) -- C:\Windows\System32\Drivers\hidbth.sys [100864] O58 - SDL:[MD5.597C3699384E53CC59587ED50CCE5CA2] - 03/07/2013 - 05:05:05 ---A- . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\Drivers\hidclass.sys [76800] O58 - SDL:[MD5.0A77D29F311B88CFAE3B13F9C1A73825] - 14/07/2009 - 01:06:23 ---A- . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidir.sys [46592] O58 - SDL:[MD5.856E76B3641746ABBC2946BED1372098] - 03/07/2013 - 05:05:04 ---A- . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\Drivers\hidparse.sys [32896] O58 - SDL:[MD5.9592090A7E2B61CD582B612B6DF70536] - 20/11/2010 - 11:43:49 ---A- . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidusb.sys [30208] O58 - SDL:[MD5.39D2ABCD392F3D8A6DCE7B60AE7B8EFC] - 20/11/2010 - 14:33:35 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [78720] O58 - SDL:[MD5.0EA7DE1ACB728DD5A369FD742D6EEE28] - 20/11/2010 - 10:25:14 ---A- . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\Drivers\http.sys [753664] O58 - SDL:[MD5.A5462BD6884960C9DC85ED49D34FF392] - 20/11/2010 - 14:33:36 ---A- . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\Drivers\hwpolicy.sys [14720] O58 - SDL:[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - 00:19:57 ---A- . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\Drivers\i8042prt.sys [105472] O58 - SDL:[MD5.AAAF44DB3BD0B9D1FB6969B23ECC8366] - 11/03/2011 - 07:41:26 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\Drivers\iaStorV.sys [410496] O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [44112] O58 - SDL:[MD5.F00F20E70C6EC3AA366910083A0518AA] - 14/07/2009 - 02:48:04 ---A- . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\Drivers\intelide.sys [16960] O58 - SDL:[MD5.ADA036632C664CAA754079041CF1F8C1] - 14/07/2009 - 00:19:25 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\intelppm.sys [62464] O58 - SDL:[MD5.C9F0E1BD74365A8771590E9008D22AB6] - 20/11/2010 - 11:52:19 ---A- . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\Drivers\ipfltdrv.sys [82944] O58 - SDL:[MD5.0FC1AEA580957AA8817B8F305D18CA3A] - 20/11/2010 - 11:04:53 ---A- . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\Drivers\IPMIDrv.sys [78848] O58 - SDL:[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - 01:10:03 ---A- . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys [116224] O58 - SDL:[MD5.05360B1EA5A2ABF620D1D96EBD8BD8F1] - 14/07/2009 - 01:09:02 ---A- . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\Drivers\irda.sys [120320] O58 - SDL:[MD5.3ABF5E7213EB28966D55D58B515D5CE9] - 14/07/2009 - 01:08:59 ---A- . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\Drivers\irenum.sys [17920] O58 - SDL:[MD5.2F7B28DC3E1183E5EB418DF55C204F38] - 14/07/2009 - 02:48:04 ---A- . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\Drivers\isapnp.sys [20544] O58 - SDL:[MD5.BC02336F1CBA7DCC7D1213BB588A68A5] - 14/07/2009 - 02:48:04 ---A- . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\Drivers\kbdclass.sys [50768] O58 - SDL:[MD5.0705EFF5B42A9DB58548EEC3B26BB484] - 20/11/2010 - 11:33:25 ---A- . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\Drivers\kbdhid.sys [33280] O58 - SDL:[MD5.795EC29BA21F1D948FD6FD740C00B599] - 19/02/2014 - 10:10:03 ---A- . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\Drivers\kl1.sys [458336] O58 - SDL:[MD5.9C22C652968AD82559388BF36DA87118] - 19/02/2014 - 10:10:03 ---A- . (.Kaspersky Lab ZAO - Filter Core [fre_wlh_x64].) -- C:\Windows\System32\Drivers\klflt.sys [115296] O58 - SDL:[MD5.10F2D5BE292355024A1F13D9EF8AA6CE] - 19/02/2014 - 10:10:03 ---A- . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_wlh_x64].) -- C:\Windows\System32\Drivers\klif.sys [624224] O58 - SDL:[MD5.31B69BFF28348503E4BD10C2A4F66D05] - 19/02/2014 - 10:10:03 ---A- . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) -- C:\Windows\System32\Drivers\klim6.sys [29792] O58 - SDL:[MD5.8DA5BC75C3E8A995335642F26CAEA54B] - 19/02/2014 - 10:10:04 ---A- . (.Kaspersky Lab ZAO - KLKBDFLT Keyboard Device Filter [fre_wlh_x64].) -- C:\Windows\System32\Drivers\klkbdflt.sys [29280] O58 - SDL:[MD5.72CF64FBF38CD681FA7F37176047E967] - 19/02/2014 - 10:10:04 ---A- . (.Kaspersky Lab ZAO - KLMOUFLT Mouse Device Filter [fre_wlh_x64].) -- C:\Windows\System32\Drivers\klmouflt.sys [29280] O58 - SDL:[MD5.8C0EC95AD65A0DE3D6C040591D02BF02] - 12/04/2013 - 15:34:48 ---A- . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x64].) -- C:\Windows\System32\Drivers\klpd.sys [15456] O58 - SDL:[MD5.4828B3D2BC89B05E07101C6E60CE0A6A] - 14/05/2013 - 17:34:44 ---A- . (.Kaspersky Lab ZAO - Network filtering component.) -- C:\Windows\System32\Drivers\kltdi.sys [55904] O58 - SDL:[MD5.91BC1C5B00275A4D7FD669EFF0DDEB2A] - 19/02/2014 - 10:10:04 ---A- . (.Kaspersky Lab ZAO - KNEPS Power [fre_wnet_amd64].) -- C:\Windows\System32\Drivers\kneps.sys [178272] O58 - SDL:[MD5.24FBF5CC5C04150073C315A7C83521EE] - 20/11/2010 - 11:33:25 ---A- . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\Drivers\ks.sys [243712] O58 - SDL:[MD5.8F489706472F7E9A06BAAA198703FA64] - 25/09/2013 - 03:26:40 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecdd.sys [95680] O58 - SDL:[MD5.868A2CAAB12EFC7A021682BCA0EEC54C] - 25/09/2013 - 03:26:40 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface Packages.) -- C:\Windows\System32\Drivers\ksecpkg.sys [154560] O58 - SDL:[MD5.6869281E78CB31A43E969F06B57347C4] - 14/07/2009 - 01:00:19 ---A- . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\Windows\System32\Drivers\ksthunk.sys [20992] O58 - SDL:[MD5.9C46A5421DE9D116C47155317CABB522] - 13/11/2009 - 17:47:36 ---A- . (.Atheros Communications, Inc. - Atheros L1c PCI-E Gigabit Ethernet Controller.) -- C:\Windows\System32\Drivers\L1C62x64.sys [67072] O58 - SDL:[MD5.1538831CF8AD2979A04C423779465827] - 14/07/2009 - 01:08:51 ---A- . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\Drivers\lltdio.sys [60928] O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_fc.sys [114752] O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [106560] O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [65600] O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [115776] O58 - SDL:[MD5.43D0F98E1D56CCDDB0D5254CFF7B356E] - 14/07/2009 - 00:26:13 ---A- . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichier LUA.) -- C:\Windows\System32\Drivers\luafv.sys [113152] O58 - SDL:[MD5.0BB97D43299910CBFBA59C461B99B910] - 04/04/2013 - 14:50:32 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25928] O58 - SDL:[MD5.3C9F072F9DCA856B9FB7A20CBD4281AC] - 14/07/2009 - 01:01:06 ---A- . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\Drivers\mcd.sys [22016] O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\System32\Drivers\megasas.sys [35392] O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [284736] O58 - SDL:[MD5.800BA92F7010378B09F9ED9270F07137] - 14/07/2009 - 01:10:48 ---A- . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\Drivers\modem.sys [40448] O58 - SDL:[MD5.B03D591DC7DA45ECE20B3B467E6AADAA] - 14/07/2009 - 00:38:52 ---A- . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\Drivers\monitor.sys [30208] O58 - SDL:[MD5.7D27EA49F3C1F687D357E77A470AEA99] - 14/07/2009 - 02:48:27 ---A- . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\Drivers\mouclass.sys [49216] O58 - SDL:[MD5.D3BF052C40B0C4166D9FD86A4288C1E6] - 14/07/2009 - 01:00:20 ---A- . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\Drivers\mouhid.sys [31232] O58 - SDL:[MD5.32E7A3D591D671A6DF2DB515A5CBE0FA] - 20/11/2010 - 14:33:43 ---A- . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\Drivers\mountmgr.sys [94592] O58 - SDL:[MD5.A44B420D30BD56E145D6A2BC8768EC58] - 20/11/2010 - 14:33:44 ---A- . (.Microsoft Corporation - Pilote du bus de prise en charge des chemins d’accès multiples.) -- C:\Windows\System32\Drivers\mpio.sys [155008] O58 - SDL:[MD5.6C38C9E45AE0EA2FA5E551F2ED5E978F] - 14/07/2009 - 01:08:25 ---A- . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\Drivers\mpsdrv.sys [77312] O58 - SDL:[MD5.1A4F75E63C9FB84B85DFFC6B63FD5404] - 04/07/2013 - 11:11:35 ---A- . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\Drivers\mrxdav.sys [140800] O58 - SDL:[MD5.A5D9106A73DC88564C825D317CAC68AC] - 27/04/2011 - 03:40:40 ---A- . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\Drivers\mrxsmb.sys [158208] O58 - SDL:[MD5.D711B3C1D5F42C0C2415687BE09FC163] - 09/07/2011 - 03:46:28 ---A- . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\Drivers\mrxsmb10.sys [288768] O58 - SDL:[MD5.9423E9D355C8D303E76B8CFBD8A5C30C] - 27/04/2011 - 03:39:37 ---A- . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\Drivers\mrxsmb20.sys [128000] O58 - SDL:[MD5.C25F0BAFA182CBCA2DD3C851C2E75796] - 20/11/2010 - 14:33:44 ---A- . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) -- C:\Windows\System32\Drivers\msahci.sys [31104] O58 - SDL:[MD5.DB801A638D011B9633829EB6F663C900] - 20/11/2010 - 14:33:44 ---A- . (.Microsoft Corporation - Module spécifique de périphériques Microsoft.) -- C:\Windows\System32\Drivers\msdsm.sys [140672] O58 - SDL:[MD5.AA3FB40E17CE1388FA1BEDAB50EA8F96] - 14/07/2009 - 00:19:47 ---A- . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\Drivers\msfs.sys [26112] O58 - SDL:[MD5.F9D215A46A8B9753F61767FA72A20326] - 14/07/2009 - 01:06:24 ---A- . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\Drivers\mshidkmdf.sys [8192] O58 - SDL:[MD5.D916874BBD4F8B07BFB7FA9B3CCAE29D] - 14/07/2009 - 02:48:27 ---A- . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\Drivers\msisadrv.sys [15424] O58 - SDL:[MD5.D931D7309DEB2317035B07C9F9E6B0BD] - 20/11/2010 - 14:33:45 ---A- . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\Drivers\msiscsi.sys [273792] O58 - SDL:[MD5.49CCF2C4FEA34FFAD8B1B59D49439366] - 14/07/2009 - 01:00:18 ---A- . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\Drivers\mskssrv.sys [11136] O58 - SDL:[MD5.BDD71ACE35A232104DDD349EE70E1AB3] - 14/07/2009 - 01:00:17 ---A- . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\Drivers\mspclock.sys [7168] O58 - SDL:[MD5.4ED981241DB27C3383D72092B618A1D0] - 14/07/2009 - 01:00:17 ---A- . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\Drivers\mspqm.sys [6784] O58 - SDL:[MD5.759A9EEB0FA9ED79DA1FB7D4EF78866D] - 20/11/2010 - 14:33:45 ---A- . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\Drivers\msrpc.sys [366976] O58 - SDL:[MD5.0EED230E37515A0EAEE3C2E1BC97B288] - 14/07/2009 - 02:48:27 ---A- . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\Drivers\mssmbios.sys [32320] O58 - SDL:[MD5.2E66F9ECB30B4221A318C92AC2250779] - 14/07/2009 - 01:00:17 ---A- . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\Drivers\mstee.sys [8064] O58 - SDL:[MD5.7EA404308934E675BFFDE8EDF0757BCD] - 14/07/2009 - 01:02:08 ---A- . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\Windows\System32\Drivers\MTConfig.sys [15360] O58 - SDL:[MD5.F9A18612FD3526FE473C1BDA678D61C8] - 14/07/2009 - 02:48:27 ---A- . (.Microsoft Corporation - Multiple UNC Provider Driver.) -- C:\Windows\System32\Drivers\mup.sys [60496] O58 - SDL:[MD5.760E38053BF56E501D562B70AD796B88] - 22/08/2012 - 19:12:40 ---A- . (.Microsoft Corporation - Pilote NDIS 6.20.) -- C:\Windows\System32\Drivers\ndis.sys [950128] O58 - SDL:[MD5.9F9A1F53AAD7DA4D6FEF5BB73AB811AC] - 14/07/2009 - 01:08:13 ---A- . (.Microsoft Corporation - NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\Drivers\ndiscap.sys [35328] O58 - SDL:[MD5.30639C932D9FEF22B31268FE25A1B6E5] - 14/07/2009 - 01:10:00 ---A- . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\Drivers\ndistapi.sys [24064] O58 - SDL:[MD5.136185F9FB2CC61E573E676AA5402356] - 20/11/2010 - 11:50:08 ---A- . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\Windows\System32\Drivers\ndisuio.sys [56832] O58 - SDL:[MD5.53F7305169863F0A2BDDC49E116C2E11] - 20/11/2010 - 11:52:34 ---A- . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\Drivers\ndiswan.sys [164352] O58 - SDL:[MD5.015C0D8E0E0421B4CFD48CFFE2825879] - 20/11/2010 - 11:52:20 ---A- . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\Drivers\ndproxy.sys [57856] O58 - SDL:[MD5.86743D9F5D2B1048062B14B1D84501C4] - 14/07/2009 - 01:09:26 ---A- . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\Drivers\netbios.sys [44544] O58 - SDL:[MD5.09594D1089C523423B32A4229263F068] - 20/11/2010 - 10:23:20 ---A- . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\Drivers\netbt.sys [261632] O58 - SDL:[MD5.3555BA97171CD153118F73FDCCC8BFDE] - 26/11/2013 - 12:40:00 ---A- . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\Drivers\netio.sys [376768] O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [51264] O58 - SDL:[MD5.1E4C4AB5C9B8DD13179BBDC75A2A01F7] - 14/07/2009 - 00:19:48 ---A- . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\Drivers\npfs.sys [44032] O58 - SDL:[MD5.E7F5AE18AF4168178A642A9247C63001] - 14/07/2009 - 00:21:02 ---A- . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys [24576] O58 - SDL:[MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - 12/04/2013 - 15:45:08 ---A- . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\Drivers\ntfs.sys [1656680] O58 - SDL:[MD5.9899284589F75FA8724FF3D16AED75C1] - 14/07/2009 - 00:19:38 ---A- . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\Drivers\null.sys [6144] O58 - SDL:[MD5.0A92CB65770442ED0DC44834632F66AD] - 11/03/2011 - 07:41:34 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [148352] O58 - SDL:[MD5.DAB0E87525C10052BF65F06152F37E4A] - 11/03/2011 - 07:41:34 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [166272] O58 - SDL:[MD5.270D7CD42D6E3979F6DD0146650F0E05] - 14/07/2009 - 02:48:26 ---A- . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\Windows\System32\Drivers\NV_AGP.SYS [122960] O58 - SDL:[MD5.1EA3749C4114DB3E3161156FFFFA6B33] - 14/07/2009 - 01:07:23 ---A- . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\Windows\System32\Drivers\nwifi.sys [318976] O58 - SDL:[MD5.3589478E4B22CE21B41FA1BFC0B8B8A0] - 14/07/2009 - 01:06:45 ---A- . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\Drivers\ohci1394.sys [72832] O58 - SDL:[MD5.0557CF5A2556BD58E26384169D72438D] - 20/11/2010 - 11:52:20 ---A- . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\Windows\System32\Drivers\pacer.sys [131584] O58 - SDL:[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - 01:00:41 ---A- . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\Drivers\parport.sys [97280] O58 - SDL:[MD5.E9766131EEADE40A27DC27D2D68FBA9C] - 17/03/2012 - 08:58:57 ---A- . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\Drivers\partmgr.sys [75120] O58 - SDL:[MD5.94575C0571D1462A0F70BDE6BD6EE6B3] - 20/11/2010 - 14:33:48 ---A- . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\Drivers\pci.sys [184704] O58 - SDL:[MD5.B5B8B5EF2E5CB34DF8DCF8831E3534FA] - 14/07/2009 - 02:45:45 ---A- . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\pciide.sys [12352] O58 - SDL:[MD5.144497DAA145BA0F7BE896064146C058] - 14/07/2009 - 02:45:46 ---A- . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\Drivers\pciidex.sys [48720] O58 - SDL:[MD5.B2E81D4E87CE48589F98CB8C05B01F2F] - 14/07/2009 - 02:45:45 ---A- . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\Windows\System32\Drivers\pcmcia.sys [220752] O58 - SDL:[MD5.D6B9C2E1A11A3A4B26A182FFEF18F603] - 14/07/2009 - 02:45:45 ---A- . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\Drivers\pcw.sys [50768] O58 - SDL:[MD5.68769C3356B3BE5D1C732C97B9A80D6E] - 14/07/2009 - 02:01:19 ---A- . (.Microsoft Corporation - Protected Environment Authentication and Authorization Export D.) -- C:\Windows\System32\Drivers\PEAuth.sys [651264] O58 - SDL:[MD5.1E0B4CBBA91C6B041A14ECC2186F7E24] - 04/10/2013 - 02:36:04 ---A- . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport Devices).) -- C:\Windows\System32\Drivers\portcls.sys [230400] O58 - SDL:[MD5.0D922E23C041EFB1C3FAC2A6F943C9BF] - 14/07/2009 - 00:19:25 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\processr.sys [60416] O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\Drivers\ql2300.sys [1524816] O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\ql40xx.sys [128592] O58 - SDL:[MD5.76707BB36430888D9CE9D705398ADB6C] - 14/07/2009 - 01:09:48 ---A- . (.Microsoft Corporation - Pilote du support de Microsoft Quality Windows Audio Video Expe.) -- C:\Windows\System32\Drivers\qwavedrv.sys [46592] O58 - SDL:[MD5.5A0DA8AD5762FA2D91678A8A01311704] - 14/07/2009 - 01:10:09 ---A- . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\Drivers\rasacd.sys [14848] O58 - SDL:[MD5.471815800AE33E6F1C32FB1B97C490CA] - 20/11/2010 - 11:52:35 ---A- . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\Drivers\rasl2tp.sys [129536] O58 - SDL:[MD5.855C9B1CD4756C5E9A2AA58A15F58C25] - 14/07/2009 - 01:10:17 ---A- . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\Drivers\raspppoe.sys [92672] O58 - SDL:[MD5.F92A2C41117A11A00BE01CA01A7FCDE9] - 20/11/2010 - 11:52:32 ---A- . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\Drivers\raspptp.sys [111104] O58 - SDL:[MD5.E8B1E447B008D07FF47D016C2B0EEECB] - 14/07/2009 - 01:10:25 ---A- . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\Drivers\rassstp.sys [83968] O58 - SDL:[MD5.77F665941019A1594D887A74F301FA2F] - 20/11/2010 - 10:27:54 ---A- . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire tampon de lecteur red.) -- C:\Windows\System32\Drivers\rdbss.sys [309248] O58 - SDL:[MD5.302DA2A0539F2CF54D7C6CC30C1F2D8D] - 14/07/2009 - 01:17:46 ---A- . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\Drivers\rdpbus.sys [24064] O58 - SDL:[MD5.CEA6CC257FC9B7715F1C2B4849286D24] - 14/07/2009 - 01:16:34 ---A- . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\RDPCDD.sys [7680] O58 - SDL:[MD5.BB5971A4F00659529A5C44831AF22365] - 14/07/2009 - 01:16:34 ---A- . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\RDPENCDD.sys [7680] O58 - SDL:[MD5.216F3FA57533D98E1F74DED70113177A] - 14/07/2009 - 01:16:35 ---A- . (.Microsoft Corporation - RDP Reflector Driver Miniport.) -- C:\Windows\System32\Drivers\RDPREFMP.sys [8192] O58 - SDL:[MD5.313F68E1A3E6345A4F47A36B07062F34] - 23/08/2012 - 15:10:20 ---A- . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\Windows\System32\Drivers\rdpvideominiport.sys [19456] O58 - SDL:[MD5.E61608AA35E98999AF9AAEEEA6114B0A] - 28/04/2012 - 04:55:21 ---A- . (.Microsoft Corporation - Pilote de pile RDP Terminal.) -- C:\Windows\System32\Drivers\rdpwd.sys [210944] O58 - SDL:[MD5.34ED295FA0121C241BFEF24764FC4520] - 20/11/2010 - 14:33:53 ---A- . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\Drivers\rdyboost.sys [213888] O58 - SDL:[MD5.CAF88D6573D21CD2AA27001DDBFDC74D] - 20/11/2010 - 11:49:51 ---A- . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\Drivers\rmcast.sys [146432] O58 - SDL:[MD5.0E01641D96889BDEB22DE12D30575B08] - 04/07/2012 - 21:26:03 ---A- . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\Drivers\RNDISMP.sys [41472] O58 - SDL:[MD5.388D3DD1A6457280F3BADBA9F3ACD6B1] - 14/07/2009 - 01:10:47 ---A- . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\Drivers\rootmdm.sys [11264] O58 - SDL:[MD5.DDC86E4F8E7456261E637E3552E804FF] - 14/07/2009 - 01:08:51 ---A- . (.Microsoft Corporation - Link-Layer Topology Responder Driver for NDIS 6.) -- C:\Windows\System32\Drivers\rspndr.sys [76800] O58 - SDL:[MD5.AC03AF3329579FFFB455AA2DAABBE22B] - 20/11/2010 - 14:33:54 ---A- . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\Drivers\sbp2port.sys [103808] O58 - SDL:[MD5.253F38D0D7074C02FF8DEB9836C97D2B] - 20/11/2010 - 11:09:59 ---A- . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce Microsoft.) -- C:\Windows\System32\Drivers\scfilter.sys [29696] O58 - SDL:[MD5.1B1E264203D4EF9D3DA1987AD70355AB] - 20/11/2010 - 14:33:54 ---A- . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\Drivers\scsiport.sys [171392] O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 10/06/2009 - 21:37:19 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [23040] O58 - SDL:[MD5.CB624C0035412AF0DEBEC78C41F5CA1B] - 14/07/2009 - 01:00:33 ---A- . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\Drivers\serenum.sys [23552] O58 - SDL:[MD5.C1D8E28B2C2ADFAEC4BA89E9FDA69BD6] - 14/07/2009 - 01:00:40 ---A- . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\Windows\System32\Drivers\serial.sys [94208] O58 - SDL:[MD5.1C545A7D0691CC4A027396535691C3E3] - 14/07/2009 - 01:00:20 ---A- . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys [26624] O58 - SDL:[MD5.A554811BCD09279536440C964AE35BBF] - 14/07/2009 - 01:01:01 ---A- . (.Microsoft Corporation - Small Form Factor Disk Driver.) -- C:\Windows\System32\Drivers\sffdisk.sys [14336] O58 - SDL:[MD5.FF414F0BAEFEBA59BC6C04B3DB0B87BF] - 14/07/2009 - 01:01:03 ---A- . (.Microsoft Corporation - Small Form Factor MMC Protocol Driver.) -- C:\Windows\System32\Drivers\sffp_mmc.sys [13824] O58 - SDL:[MD5.DD85B78243A19B59F0637DCF284DA63C] - 20/11/2010 - 11:34:00 ---A- . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) -- C:\Windows\System32\Drivers\sffp_sd.sys [14336] O58 - SDL:[MD5.A9D601643A1647211A1EE2EC4E433FF4] - 14/07/2009 - 01:01:02 ---A- . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\Drivers\sfloppy.sys [16896] O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 14/07/2009 - 02:45:45 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [43584] O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 14/07/2009 - 02:45:46 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [80464] O58 - SDL:[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - 01:09:09 ---A- . (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\Drivers\smb.sys [93184] O58 - SDL:[MD5.A80348BA03E96C70852959655CA3E084] - 14/07/2009 - 01:00:35 ---A- . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\Drivers\smclib.sys [20992] O58 - SDL:[MD5.B9E31E5CACDFE584F34F730A677803F9] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - loader for security processor.) -- C:\Windows\System32\Drivers\spldr.sys [19008] O58 - SDL:[MD5.FFF95479C7AB1550F0750A5D01744211] - 10/06/2009 - 21:48:43 ---A- . (.Microsoft Corporation - security processor.) -- C:\Windows\System32\Drivers\spsys.sys [426496] O58 - SDL:[MD5.441FBA48BFF01FDB9D5969EBC1838F0B] - 29/04/2011 - 04:06:10 ---A- . (.Microsoft Corporation - Server driver.) -- C:\Windows\System32\Drivers\srv.sys [467456] O58 - SDL:[MD5.B4ADEBBF5E3677CCE9651E0F01F7CC28] - 29/04/2011 - 04:05:49 ---A- . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\Drivers\srv2.sys [410112] O58 - SDL:[MD5.27E461F0BE5BFF5FC737328F749538C3] - 29/04/2011 - 04:05:37 ---A- . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\Drivers\srvnet.sys [168448] O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 14/07/2009 - 02:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656] O58 - SDL:[MD5.19CB37AC38B802BE9C441D094521A29A] - 11/03/2011 - 07:41:37 ---A- . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\Drivers\storport.sys [189824] O58 - SDL:[MD5.001CC10FA5E71AE1119115E126C8750D] - 14/07/2009 - 01:06:18 ---A- . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\Drivers\stream.sys [68864] O58 - SDL:[MD5.DDB811B13D827081E7C1DDFF302AB334] - 27/11/2009 - 11:39:46 ---A- . (.IDT, Inc. - IDT PC Audio TPE.) -- C:\Windows\System32\Drivers\stwrt64.sys [505344] O58 - SDL:[MD5.D01EC09B6711A5F8E7E6564A4D0FBC90] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\Drivers\swenum.sys [12496] O58 - SDL:[MD5.6E316C01CBA8B785FE495F5CC4F48C6F] - 14/07/2009 - 01:01:04 ---A- . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\Drivers\tape.sys [29184] O58 - SDL:[MD5.40AF23633D197905F03AB5628C558C51] - 08/09/2013 - 03:30:37 ---A- . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\Drivers\tcpip.sys [1903552] O58 - SDL:[MD5.1B16D0BD9841794A6E0CDE0CEF744ABC] - 03/10/2012 - 17:07:26 ---A- . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\Drivers\tcpipreg.sys [45568] O58 - SDL:[MD5.6F020A220388ECA0AB6062DC27BD16B6] - 20/11/2010 - 10:22:07 ---A- . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\Drivers\tdi.sys [26624] O58 - SDL:[MD5.3371D21011695B16333A3934340C4E7C] - 14/07/2009 - 01:16:32 ---A- . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\Windows\System32\Drivers\tdpipe.sys [15872] O58 - SDL:[MD5.51C5ECEB1CDEE2468A1748BE550CFBC8] - 17/02/2012 - 05:57:32 ---A- . (.Microsoft Corporation - TCP Transport Driver.) -- C:\Windows\System32\Drivers\tdtcp.sys [23552] O58 - SDL:[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - 20/11/2010 - 10:21:56 ---A- . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\Drivers\tdx.sys [119296] O58 - SDL:[MD5.561E7E1F06895D78DE991E01DD0FB6E5] - 20/11/2010 - 14:33:57 ---A- . (.Microsoft Corporation - Remote Desktop Server Driver.) -- C:\Windows\System32\Drivers\termdd.sys [63360] O58 - SDL:[MD5.4CE278FC9671BA81A138D70823FCAA09] - 15/06/2013 - 05:32:16 ---A- . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\Drivers\tssecsrv.sys [39936] O58 - SDL:[MD5.17C6B51CBCCDED95B3CC14E22791F85E] - 23/08/2012 - 15:07:35 ---A- . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du Bureau à distance.) -- C:\Windows\System32\Drivers\TsUsbFlt.sys [57856] O58 - SDL:[MD5.3566A8DAAFA27AF944F5D705EAA64894] - 20/11/2010 - 11:51:50 ---A- . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\Windows\System32\Drivers\tunnel.sys [125440] O58 - SDL:[MD5.B4DD609BD7E282BFC683CEC7EAAAAD67] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\Windows\System32\Drivers\UAGP35.SYS [64080] O58 - SDL:[MD5.FF4232A1A64012BAA1FD97C7B67DF593] - 20/11/2010 - 10:26:11 ---A- . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\Drivers\udfs.sys [328192] O58 - SDL:[MD5.4BFE1BC28391222894CBF1E7D0E42320] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à processeur K8/9.) -- C:\Windows\System32\Drivers\ULIAGPKX.SYS [64592] O58 - SDL:[MD5.DC54A574663A895C8763AF0FA1FF7561] - 20/11/2010 - 11:44:37 ---A- . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\Drivers\umbus.sys [48640] O58 - SDL:[MD5.B2E8E8CB557B156DA5493BBDDCC1474D] - 14/07/2009 - 01:06:52 ---A- . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\Drivers\umpass.sys [9728] O58 - SDL:[MD5.92B3172E8C14C1444682F510843A9988] - 12/02/2013 - 05:12:05 ---A- . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\Drivers\usb8023.sys [19968] O58 - SDL:[MD5.292A8E03B3FCE04E39B5BE9B14132030] - 20/11/2010 - 11:44:05 ---A- . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\Drivers\USBCAMD2.sys [32896] O58 - SDL:[MD5.DCA68B0943D6FA415F0C56C92158A83A] - 27/11/2013 - 02:41:15 ---A- . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\Drivers\usbccgp.sys [99840] O58 - SDL:[MD5.80B0F7D5CCF86CEB5D402EAAF61FEC31] - 12/07/2013 - 11:41:12 ---A- . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\usbcir.sys [100864] O58 - SDL:[MD5.FFA06EF43987ED0DD42AD59B260C0C78] - 27/11/2013 - 02:41:03 ---A- . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\Drivers\usbd.sys [7808] O58 - SDL:[MD5.18A85013A3E0F7E1755365D287443965] - 27/11/2013 - 02:41:11 ---A- . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\Drivers\usbehci.sys [53248] O58 - SDL:[MD5.8D1196CFBB223621F2C67D45710F25BA] - 27/11/2013 - 02:41:37 ---A- . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\Drivers\usbhub.sys [343040] O58 - SDL:[MD5.765A92D428A8DB88B960DA5A8D6089DC] - 27/11/2013 - 02:41:09 ---A- . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbohci.sys [25600] O58 - SDL:[MD5.12FEB33791920678F8433701C822BCFD] - 27/11/2013 - 02:41:11 ---A- . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\Drivers\usbport.sys [325120] O58 - SDL:[MD5.73188F58FB384E75C4063D29413CEE3D] - 14/07/2009 - 01:38:18 ---A- . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\Drivers\usbprint.sys [25088] O58 - SDL:[MD5.C3EC945DEC43C00E2AD4C98DDDD064C7] - 20/11/2010 - 12:37:20 ---A- . (.Microsoft Corporation - Gestionnaire de stratégie de redirection USB Windows.) -- C:\Windows\System32\Drivers\usbrpm.sys [31744] O58 - SDL:[MD5.9661DA76B4531B2DA272ECCE25A8AF24] - 03/07/2013 - 05:40:12 ---A- . (.Microsoft Corporation - USB Scanner Driver.) -- C:\Windows\System32\Drivers\usbscan.sys [42496] O58 - SDL:[MD5.FED648B01349A3C8395A5169DB5FB7D6] - 11/03/2011 - 05:37:16 ---A- . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\Drivers\USBSTOR.SYS [91648] O58 - SDL:[MD5.DD253AFC3BC6CBA412342DE60C3647F3] - 27/11/2013 - 02:41:06 ---A- . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbuhci.sys [30720] O58 - SDL:[MD5.1F775DA4CF1A3A1834207E975A72E9D7] - 12/07/2013 - 11:41:35 ---A- . (.Microsoft Corporation - USB Video Class Driver.) -- C:\Windows\System32\Drivers\usbvideo.sys [185344] O58 - SDL:[MD5.C5C876CCFC083FF3B128F933823E87BD] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - Énumérateur racine de lecteur virtuel.) -- C:\Windows\System32\Drivers\vdrvroot.sys [36432] O58 - SDL:[MD5.53E92A310193CB3C03BEA963DE7D9CFC] - 14/07/2009 - 00:38:47 ---A- . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys [29184] O58 - SDL:[MD5.DA4DA3F5E02943C2DC8C6ED875DE68DD] - 14/07/2009 - 00:38:47 ---A- . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vgapnp.sys [29184] O58 - SDL:[MD5.2CE2DF28C83AEAF30084E1B1EB253CBB] - 20/11/2010 - 14:34:00 ---A- . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\Drivers\vhdmp.sys [215936] O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [17488] O58 - SDL:[MD5.E7353D59C9842BC7299FAEB7E7E09340] - 14/07/2009 - 00:38:51 ---A- . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\Drivers\videoprt.sys [129024] O58 - SDL:[MD5.D2AAFD421940F640B407AEFAAEBD91B0] - 20/11/2010 - 14:34:01 ---A- . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys [71552] O58 - SDL:[MD5.A255814907C89BE58B79EF2F189B843B] - 20/11/2010 - 14:34:01 ---A- . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys [363392] O58 - SDL:[MD5.0D08D2F3B3FF84E433346669B5E0F639] - 20/11/2010 - 14:34:02 ---A- . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\Drivers\volsnap.sys [295808] O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [161872] O58 - SDL:[MD5.36D4720B72B5C5D9CB2B9C29E9DF67A1] - 14/07/2009 - 01:07:21 ---A- . (.Microsoft Corporation - Pilote de bus WiFi virtuel.) -- C:\Windows\System32\Drivers\vwifibus.sys [24576] O58 - SDL:[MD5.6A3D66263414FF0D6FA754C646612F3F] - 14/07/2009 - 01:07:22 ---A- . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\Drivers\vwififlt.sys [59904] O58 - SDL:[MD5.6A638FC4BFDDC4D9B186C28C91BD1A01] - 14/07/2009 - 01:07:28 ---A- . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\Drivers\vwifimp.sys [17920] O58 - SDL:[MD5.4E9440F4F152A7B944CB1663D3935A3E] - 14/07/2009 - 01:02:07 ---A- . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\Drivers\wacompen.sys [27776] O58 - SDL:[MD5.356AFD78A6ED4457169241AC3965230C] - 20/11/2010 - 11:52:37 ---A- . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\Drivers\wanarp.sys [88576] O58 - SDL:[MD5.FC438D1430B28618E2D0C7C332A710AD] - 14/07/2009 - 00:37:35 ---A- . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\Drivers\watchdog.sys [42496] O58 - SDL:[MD5.72889E16FF12BA0F235467D6091B17DC] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - Microsoft Watchdog Timer Driver.) -- C:\Windows\System32\Drivers\wd.sys [21056] O58 - SDL:[MD5.E2C933EDBC389386EBE6D2BA953F43D8] - 25/06/2013 - 23:55:52 ---A- . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en mode noyau.) -- C:\Windows\System32\Drivers\Wdf01000.sys [785624] O58 - SDL:[MD5.AEA0A67275CFBA0E463E00C6E9A1DDAE] - 26/07/2012 - 05:55:47 ---A- . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\Drivers\WdfLdr.sys [54376] O58 - SDL:[MD5.611B23304BF067451A9FDEE01FBDD725] - 14/07/2009 - 01:09:26 ---A- . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) -- C:\Windows\System32\Drivers\wfplwf.sys [12800] O58 - SDL:[MD5.05ECAEC3E4529A7153B3136CEB49F0EC] - 14/07/2009 - 02:45:56 ---A- . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\Drivers\wimmount.sys [22096] O58 - SDL:[MD5.FE88B288356E7B47B74B13372ADD906D] - 20/11/2010 - 11:43:56 ---A- . (.Microsoft Corporation - Windows USB Class Driver BETA.) -- C:\Windows\System32\Drivers\winusb.sys [41984] O58 - SDL:[MD5.F6FF8944478594D0E414D3F048F0D778] - 14/07/2009 - 00:31:02 ---A- . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\Drivers\wmiacpi.sys [14336] O58 - SDL:[MD5.FC146F46872D4C5B529B89A5131FD1E6] - 14/07/2009 - 02:45:55 ---A- . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\Drivers\wmilib.sys [16464] O58 - SDL:[MD5.6BCC1D7D2FD2453957C5479A32364E52] - 14/07/2009 - 01:10:33 ---A- . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\Windows\System32\Drivers\ws2ifsl.sys [21504] O58 - SDL:[MD5.AB886378EEB55C6C75B4F2D14B6C869F] - 26/07/2012 - 03:26:45 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Platform.) -- C:\Windows\System32\Drivers\WUDFPf.sys [87040] O58 - SDL:[MD5.DDA4CAF29D8C0A297F886BFE561E6659] - 26/07/2012 - 03:26:06 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Reflecto.) -- C:\Windows\System32\Drivers\WUDFRd.sys [198656] O58 - SDL:[MD5.FE1EC06F2253F691FE36217C592A0206] - 14/07/2009 - 02:52:31 ---A- . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\clfs.sys [367696] O58 - SDL:[MD5.F2BF71FCEAB8FB8A691408C478E2FF4C] - 26/11/2013 - 11:32:56 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [3156480] O58 - SDL:[MD5.5CF95B35E59E2A38023836FFF31BE64C] - 14/07/2009 - 02:19:10 ---A- . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\SysWOW64\drivers\wimmount.sys [19008] ~ Drivers: 16 Scanned in 00mn 08s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 24/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\chatsync\ce\ce58403e9e42b001.dat [24517] O61 - LFC: 24/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\chatsync\ef\efdb507b6c43cc32.dat [7022] O61 - LFC: 25/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\chatsync\57\575a6cc6ae6a46a9.dat [3545] O61 - LFC: 25/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\eas.db [393216] O61 - LFC: 25/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\keyval.db [65536] O61 - LFC: 25/02/2014 - 14:23:29 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\shared_dynco\dc.lock [0] O61 - LFC: 25/02/2014 - 14:23:29 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\shared_httpfe\queue.lock [0] O61 - LFC: 26/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ATI\ACE\Profiles.xml [10503] O61 - LFC: 26/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\Google\Chrome\User Data\Default\preferences [26510] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\s1914\1971776304SupProvince__V1.2.18861.jar [3667534] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\s1914\1971776304SupResources__V1.2.21696.jar [2715990] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\s1914\1971776304SupSynth__V1.2.21140.jar [867736] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\s1914\1971776304Supremacy1914__V1.2.23974.jar [2866787] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\s1914\1971776304gettext-commons__V0.9.5B.jar [21876] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\s1914\1971776304messages_fr__V201311131636.jar [101871] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\s1914\1971776304netty__V3.2.2B.jar [832373] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\0.sup [951] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\10.sup [2565] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\100.sup [2420] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\102.sup [3889] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\104.sup [1882] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\107.sup [1001] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\109.sup [87] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\110.sup [1035] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\111.sup [2008] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\13.sup [36814] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\14.sup [905] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\16.sup [472] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\18.sup [150] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\2.sup [1150] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\22.sup [945] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\24.sup [1872] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\26.sup [797] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\28.sup [1559] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\30.sup [1468] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\34.sup [205] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\36.sup [802] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\38.sup [205] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\4.sup [2053] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\40.sup [562] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\42.sup [193] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\44.sup [184] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\46.sup [2361] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\48.sup [747] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\50.sup [1061] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\52.sup [1429] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\56.sup [1019] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\58.sup [1415] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\6.sup [1152] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\60.sup [2123] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\62.sup [176] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\64.sup [675] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\66.sup [971] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\68.sup [187] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\70.sup [503] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\72.sup [1831] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\74.sup [2416] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\76.sup [1139] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\78.sup [220] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\8.sup [913] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\80.sup [3808] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\82.sup [538] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\84.sup [1371] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\86.sup [520] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\88.sup [2081] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\90.sup [4001] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\92.sup [916] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\94.sup [2364] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\96.sup [577] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\98.sup [4944] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\0.sup [1056] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\10.sup [1327] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\12.sup [3612] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\14.sup [1712] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\16.sup [1504] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\18.sup [2565] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\2.sup [1030] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\20.sup [2419] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\22.sup [761] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\24.sup [1757] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\26.sup [224] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\28.sup [1401] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\30.sup [2488] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\32.sup [3528] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\34.sup [882] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\36.sup [274] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\38.sup [756] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\4.sup [367] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\40.sup [2168] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\42.sup [1957] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\44.sup [420] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\45.sup [28467] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\46.sup [705] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\48.sup [2702] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\50.sup [350] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\52.sup [593] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\6.sup [1861] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\8.sup [649] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\-1.sup [3460] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\0.sup [902] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\10.sup [2686] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\1155.sup [280] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\12.sup [249] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\14.sup [1482] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\1778.sup [361] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\18.sup [1286] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\2.sup [1320] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\20.sup [1004] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\22.sup [1406] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\24.sup [1245] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\26.sup [1175] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\272.sup [1734] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\28.sup [1840] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\30.sup [1271] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\34.sup [163] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\36.sup [2941] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\4.sup [2772] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\40.sup [110] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\42.sup [123] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\44.sup [152] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\449.sup [101] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\46.sup [1973] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\48.sup [1852] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\50.sup [1056] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\52.sup [1004] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\54.sup [153] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\56.sup [1359] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\58.sup [1563] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\6.sup [109] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\60.sup [353] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\62.sup [721] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\64.sup [130] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\68.sup [118] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\70.sup [2819] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\72.sup [138] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\74.sup [1323] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\76.sup [1057] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\78.sup [1805] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\8.sup [1397] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\80.sup [250] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\82.sup [1197] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\84.sup [2670] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\85.sup [36957] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\86.sup [110] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\0.sup [902] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\10.sup [2686] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\1116.sup [88] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\12.sup [249] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\14.sup [1482] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\16.sup [1676] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\18.sup [1286] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\2.sup [1320] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\20.sup [1004] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\22.sup [1406] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\24.sup [1245] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\26.sup [1175] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\266.sup [216] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\28.sup [1840] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\30.sup [1271] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\32.sup [143] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\34.sup [163] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\36.sup [2941] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\38.sup [122] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\4.sup [2772] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\40.sup [110] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\42.sup [123] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\44.sup [152] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\46.sup [1973] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\48.sup [1852] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\50.sup [1056] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\52.sup [1004] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\54.sup [153] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\56.sup [1359] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\58.sup [1563] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\6.sup [109] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\60.sup [353] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\62.sup [721] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\64.sup [130] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\66.sup [1218] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\68.sup [118] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\72.sup [138] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\74.sup [1323] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\78.sup [1805] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\80.sup [250] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\82.sup [1197] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\83.sup [25474] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\84.sup [2670] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\86.sup [110] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\88.sup [1397] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\0.sup [902] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\10.sup [1359] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\12.sup [1563] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\14.sup [1286] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\155.sup [89] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\16.sup [721] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\18.sup [1218] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\2.sup [1973] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\20.sup [118] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\22.sup [2819] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\26.sup [163] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\28.sup [2941] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\30.sup [110] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\34.sup [2670] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\35.sup [36957] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\36.sup [110] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\39.sup [701] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\4.sup [2772] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\6.sup [153] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\8.sup [1482] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\0.sup [1056] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\10.sup [1327] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\12.sup [3612] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\14.sup [1712] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\16.sup [1504] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\2.sup [1030] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\20.sup [2419] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\22.sup [761] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\24.sup [1757] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\26.sup [224] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\28.sup [1401] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\30.sup [2488] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\32.sup [3528] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\34.sup [882] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\36.sup [274] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\38.sup [756] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\4.sup [367] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\40.sup [2168] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\42.sup [1957] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\46.sup [705] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\48.sup [2702] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\50.sup [350] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\52.sup [593] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\54.sup [1892] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\56.sup [814] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\6.sup [1861] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\8.sup [649] O61 - LFC: 26/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\9.sup [31678] O61 - LFC: 26/02/2014 - 14:23:26 --HA- . (...) -- C:\Users\MOI\AppData\Local\Temp\etilqs_6HDo8ut6we399yJ [512] O61 - LFC: 26/02/2014 - 14:23:26 --HA- . (...) -- C:\Users\MOI\AppData\Local\Temp\etilqs_FyTmg5KYUCLonIb [0] O61 - LFC: 26/02/2014 - 14:23:26 --HA- . (...) -- C:\Users\MOI\AppData\Local\Temp\etilqs_t7uW3QfkKJyq9Rr [512] O61 - LFC: 26/02/2014 - 14:23:26 --HA- . (...) -- C:\Users\MOI\AppData\Local\Temp\etilqs_uqTXm2zmwgwfq5f [0] O61 - LFC: 26/02/2014 - 14:23:27 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-02-26 (12-50-52).txt [8854] O61 - LFC: 26/02/2014 - 14:23:27 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-02-26 (15-54-12).txt [6774] O61 - LFC: 26/02/2014 - 14:23:27 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-02-26 (17-42-58).txt [2224] O61 - LFC: 26/02/2014 - 14:23:27 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\OpenOffice\4\user\registrymodifications.xcu [179426] O61 - LFC: 26/02/2014 - 14:23:27 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\OpenOffice\4\user\uno_packages\cache\log.txt [5795] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\bistats.db [172032] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\bistats.db-journal [37448] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\bistats.lock [0] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\chatsync\04\04661badf9ab622c.dat [453957] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\chatsync\50\50f5ef4178281010.dat [272010] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\chatsync\65\65e372edeb88d66c.dat [49259] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\chatsync\ce\ce2239690db59ad8.dat [5549] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\chatsync\df\df3cca3507c782d4.dat [22320] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\config.xml [12434] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\dc.db [86016] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\httpfe\cookies.dat [2] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\keyval.lock [0] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\main.db [17674240] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\main.db-journal [168776] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\main.lock [0] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\mmanager\mediacache.ldb [40] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\msn.db [270336] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\msn.db-journal [45656] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\msn.lock [0] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\qikdb\qik_main.db [32768] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\simcache\streamlist [44] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\statistics.db [126976] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\statistics.db-journal [8720] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\statistics.lock [0] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\live#3abaron_letto_von_richtoffen\thmanager\thumbcache.ldb [40] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\shared.xml [91389] O61 - LFC: 26/02/2014 - 14:23:28 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\shared_dynco\dc.db [2277376] O61 - LFC: 26/02/2014 - 14:23:29 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\Skype\shared_dynco\dc.db-journal [8720] O61 - LFC: 26/02/2014 - 14:23:29 ---A- . (...) -- C:\Users\MOI\Downloads\Extras.Txt [88096] O61 - LFC: 26/02/2014 - 14:23:29 ---A- . (...) -- C:\Users\MOI\Downloads\OTL.Txt [125486] O61 - LFC: 26/02/2014 - 14:23:29 ---A- . (...) -- C:\Users\MOI\Downloads\adwcleaner(1).exe [1241834] O61 - LFC: 26/02/2014 - 14:23:29 ---A- . (.OldTimer Tools.) -- C:\Users\MOI\Downloads\OTL.exe [602112] O61 - LFC: 26/02/2014 - 14:23:30 ---A- . (.Nicolas Coolman.) -- C:\Users\MOI\Downloads\zhpdiag20.exe [6865894] =>.Nicolas Coolman O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ATI\ACE\Manifest.Bin [27918] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ATI\ACE\Manifest.xml [20182] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\2550435360\2014022712.000\AudioDiagnostic.0.debugreport.xml [11912] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\2550435360\2014022712.000\AudioDiagnostic.1.debugreport.xml [8833] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\2550435360\2014022712.000\DeviceDiagnostic.0.debugreport.xml [1353] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\2550435360\2014022712.000\DeviceDiagnostic.1.debugreport.xml [1353] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\2550435360\2014022712.000\Registry log.reg [105352] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\2550435360\2014022712.000\ResultReport.xml [11040] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\2550435360\2014022712.000\results.xml [321] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\2550435360\2014022712.000\results.xsl [49097] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\2550435360\latest.cab [20013] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\733862231\2014022706.000\PCW.0.debugreport.xml [3900] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\733862231\2014022706.000\ResultReport.xml [1961] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\733862231\2014022706.000\results.xml [624] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\733862231\2014022706.000\results.xsl [49097] O61 - LFC: 27/02/2014 - 14:23:25 ---A- . (...) -- C:\Users\MOI\AppData\Local\ElevatedDiagnostics\733862231\latest.cab [8728] O61 - LFC: 27/02/2014 - 14:23:25 --HA- . (...) -- C:\Users\MOI\AppData\Local\IconCache.db [1137564] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\1.sup [39403] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\112.sup [29289] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\3.sup [48332] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\33.sup [34321] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\39.sup [40596] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\41.sup [29511] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_709552\gs_7.sup [725663] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_711208\gs_22.sup [650023] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\27.sup [40350] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\37.sup [32995] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\47.sup [41070] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\63.sup [33978] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_714527\gs_5.sup [842576] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_734242\gs_10.sup [721747] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\1.sup [28425] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\11.sup [33884] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\13.sup [36787] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\15.sup [45773] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\154.sup [55476] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\17.sup [33978] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\19.sup [37839] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\21.sup [39341] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\23.sup [30822] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\27.sup [37762] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\29.sup [32995] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\3.sup [41070] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\31.sup [24036] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\38.sup [59876] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\5.sup [30345] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\65641.sup [23089] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\65642.sup [25103] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\65644.sup [30308] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\65645.sup [28562] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\65649.sup [24941] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\65654.sup [25474] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\65656.sup [22137] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\65686.sup [30821] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\65724.sup [32210] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\65725.sup [26090] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\65731.sup [27585] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\7.sup [35315] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\9.sup [34682] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_736834\gs_5.sup [632471] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\1.sup [36749] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\31.sup [32335] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\39.sup [20563] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\43.sup [27867] O61 - LFC: 27/02/2014 - 14:23:26 ---A- . (...) -- C:\Users\MOI\AppData\Local\Temp\supgame_740685\gs_5.sup [677027] O61 - LFC: 27/02/2014 - 14:23:29 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\ZHP\Log.txt [179098] =>.Nicolas Coolman O61 - LFC: 27/02/2014 - 14:23:29 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\ZHP\TestsZHPDiag.txt [2800] =>.Nicolas Coolman O61 - LFC: 27/02/2014 - 14:23:29 ---A- . (...) -- C:\Users\MOI\AppData\Roaming\ZHP\ZHPADSReport.txt [351] =>.Nicolas Coolman O61 - LFC: 27/02/2014 - 14:23:30 ---A- . (.Nicolas Coolman.) -- C:\Users\MOI\Downloads\zhpdiag20(1).exe [6865894] =>.Nicolas Coolman ~ 280 Fichiers temporaires (Temporary files) ~ Files: 348 Scanned in 00mn 06s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman ~ ADS: Scanned in 00mn 00s ---\\ Liste les services legacy du registre (LALS) (O64) O64 - Services: CurCS - 28/09/2013 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\Beep.sys (Beep) .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP O64 - Services: CurCS - 04/07/2012 - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS O64 - Services: CurCS - 04/07/2013 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\fastfat.sys (fastfat) .(.Microsoft Corporation - Fast FAT File System Driver.) - LEGACY_FASTFAT O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR O64 - Services: CurCS - 24/01/2013 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY O64 - Services: CurCS - 19/02/2014 - C:\Windows\System32\DRIVERS\kl1.sys (kl1) .(.Kaspersky Lab ZAO - Kaspersky Unified Driver.) - LEGACY_KL1 O64 - Services: CurCS - 19/02/2014 - C:\Windows\System32\DRIVERS\klim6.sys (KLIM6) .(.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) - LEGACY_KLIM6 O64 - Services: CurCS - 14/05/2013 - C:\Windows\System32\DRIVERS\kltdi.sys (kltdi) .(.Kaspersky Lab ZAO - Network filtering component.) - LEGACY_KLTDI O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecpkg.sys (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10 O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\msisadrv.sys (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\nwifi.sys (NativeWifiP) .(.Microsoft Corporation - Pilote de miniport WiFi natif.) - LEGACY_NATIVEWIFIP O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\DRIVERS\ndisuio.sys (Ndisuio) .(.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) - LEGACY_NDISUIO O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pcw.sys (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\vwififlt.sys (vwififlt) .(.Microsoft Corporation - Virtual WiFi Filter Driver.) - LEGACY_VWIFIFLT O64 - Services: CurCS - 25/06/2013 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\wfplwf.sys (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF ~ Legacy: 73 Scanned in 00mn 00s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ~ FASS Keys: 11 Scanned in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) O69 - SBI: SearchScopes [HKCU] {E01967DA-FC28-4374-B13C-A92071B09DF1} [DefaultScope] - (Google) - http://www.google.com ~ Keys: Scanned in 00mn 00s ---\\ Enumère les service demarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ~ Services: 32 Scanned in 00mn 00s ---\\ Recherche particulière à la racine du système (SPRF) (O84) [MD5.A59FF8B9495B6B7E9988C33DADE1E85E] [SPRF][18/02/2014] (...) -- C:\ProgramData\ntuser.dat [262144] [MD5.3E1F92867C4926CF04B9628DA8ECE5B6] [SPRF][19/05/2010] (.ArcSoft - Pas de description.) -- C:\Users\MOI\Desktop\photostudio6_softonic_tbyb_all.exe [37918848] =>Toolbar.Conduit [MD5.9149E19DB451DF6C7735942DC71451C8] [SPRF][21/12/2009] (.Pas de propriétaire - asusTek_sys_ctrl Module.) -- C:\Windows\Downloaded Program Files\asusTek_sys_ctrl.dll [139776] ~ Files: 3 Scanned in 00mn 00s ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "WMP-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-P2PHost-In-TCP" | In - None - P6 - TRUE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{111C50BE-C6E8-4D14-8C85-36C9A710B227}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{E03DA609-06D5-4C84-BBE2-49FDCE41F3C5}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{6773C6FA-775B-4B9E-8DDE-9DEE161AF6B2}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{DD4E06CC-CE19-421C-94F5-84BF5C0DFFB8}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{565F20D4-247B-4BE2-9559-62524019873C}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{4267FA02-C4CE-4CDB-97FE-7D92EE37E1B8}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{8242D5DE-BE11-4D83-A589-3A1588B588B5}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{99800136-B0A4-42A8-9092-77BC49D7ADAD}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{E248E162-DC5E-47FB-930D-D496848208C5}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{DE9D0D39-420D-49B0-A8D0-62F8C9A27B20}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{82166697-BED0-46CA-AE20-31BA033E3A44}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{76DA9605-BDF8-42CD-A4D5-8E9E9E57AF94}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{C8C6D313-8353-4313-9C71-BE2DEE0F7D25}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{A9976EC0-4CC0-43A5-B635-C1A05FB5EE84}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{CFE988F5-99C0-4239-AF9A-DC9B4B5EB9DF}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{78D98764-5316-44DB-9CEE-3AA2BBD73EC8}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{7D152390-5918-4E15-A907-26D4402E86E6}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{E8BAE8E2-6A43-400A-BC7C-CFBE0D654833}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{D52F32DD-85C4-46EB-9DEA-D334B7E524B8}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{7153C51C-9A48-4F61-9B9E-AAC1B59C4510}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "TCP Query User{CA9E156D-A077-473C-8757-120F1E60C038}C:\users\moi\appdata\local\akamai\netsession_win.exe" | In - Private - P6 - TRUE | .(.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\users\moi\appdata\local\akamai\netsession_win.exe O87 - FAEL: "UDP Query User{636B79BF-FAEE-459A-82EF-47D168B655E5}C:\users\moi\appdata\local\akamai\netsession_win.exe" | In - Private - P17 - TRUE | .(.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\users\moi\appdata\local\akamai\netsession_win.exe O87 - FAEL: "TCP Query User{AAA03FE9-56D9-4AAB-A7C4-21DDF0625E1F}C:\users\moi\appdata\local\akamai\netsession_win.exe" | In - Public - P6 - TRUE | .(.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\users\moi\appdata\local\akamai\netsession_win.exe O87 - FAEL: "UDP Query User{263A035F-D298-486D-B2D7-C5E610692D4C}C:\users\moi\appdata\local\akamai\netsession_win.exe" | In - Public - P17 - TRUE | .(.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\users\moi\appdata\local\akamai\netsession_win.exe O87 - FAEL: "{D89EF147-8686-456B-985B-0510691FD381}" | In - Public - P6 - FALSE | .(...) -- D:\Program Files\Adobe\Photoshop Elements 6.0\AdobePhotoshopElementsMediaServer.exe O87 - FAEL: "{4FBB15F9-F491-4BB9-AF8E-E35604B78542}" | In - Public - P17 - FALSE | .(...) -- D:\Program Files\Adobe\Photoshop Elements 6.0\AdobePhotoshopElementsMediaServer.exe O87 - FAEL: "TCP Query User{9493DB50-2F3F-4664-8D53-9849AA7B2FEB}C:\program files\freemi upnp media server\freemi upnp media server.exe" | In - Private - P6 - TRUE | .(.Pas de propriétaire - FreeMi UPnP Media Server.) -- C:\program files\freemi upnp media server\freemi upnp media server.exe O87 - FAEL: "UDP Query User{39F8E79D-09DF-4CDD-BF69-4C0951582F03}C:\program files\freemi upnp media server\freemi upnp media server.exe" | In - Private - P17 - TRUE | .(.Pas de propriétaire - FreeMi UPnP Media Server.) -- C:\program files\freemi upnp media server\freemi upnp media server.exe O87 - FAEL: "{5A8E7466-6EA4-46A7-A5A1-D5317B68236C}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{1BD28755-B7E9-4CC7-A430-193DF64EDF2E}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{DE61E328-3EF5-46F4-A75B-9ADF0715E435}" | In - None - P17 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe O87 - FAEL: "{D7B375B6-51F0-4D80-9C17-7C6BF06F40CF}" | In - Private - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{84281C9A-241A-431A-A9D7-D532A6635ED0}" | In - Private - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{4792CD91-F3CF-4211-89A2-BF90622348E4}" | In - Private - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe O87 - FAEL: "{CE439C93-C8E8-435B-8C7A-51A464F1984F}" | In - Private - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe O87 - FAEL: "{411751B3-2116-4865-94DF-781227BCFA21}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O87 - FAEL: "{C18CA7F7-27AA-4EAF-8BAD-DE7BC94B444A}" | In - Domain - P6 - TRUE | .(...) -- C:\PVSW\Bin\w3dbsmgr.exe O87 - FAEL: "{70879C98-3EF7-4E54-95D6-F236F50BF7BB}" | In - Domain - P17 - TRUE | .(...) -- C:\PVSW\Bin\w3dbsmgr.exe O87 - FAEL: "{1A2921C8-4D34-49CD-A86F-1AAB86A74D9D}" | In - Private - P6 - TRUE | .(...) -- C:\PVSW\Bin\w3dbsmgr.exe O87 - FAEL: "{64A68942-D3B3-404C-8070-B9C170BB3745}" | In - Private - P17 - TRUE | .(...) -- C:\PVSW\Bin\w3dbsmgr.exe O87 - FAEL: "{BCD9ED88-D289-4561-9583-AB94C94DD2E5}" | In - Private - P6 - TRUE | .(.Gaijin Entertainment - War Thunder Launcher.) -- D:\jeux\War Thunder\launcher.exe O87 - FAEL: "{7DF69D31-BA78-40CB-913B-D068F34C1F2E}" | In - Private - P17 - TRUE | .(.Gaijin Entertainment - War Thunder Launcher.) -- D:\jeux\War Thunder\launcher.exe O87 - FAEL: "TCP Query User{58C36A37-ED1D-4338-ABE9-47D5ED0F1C14}D:\jeux\war thunder\aces.exe" | In - Private - P6 - TRUE | .(...) -- D:\jeux\war thunder\aces.exe O87 - FAEL: "UDP Query User{A58DCC41-2829-411B-BB92-6182AB240851}D:\jeux\war thunder\aces.exe" | In - Private - P17 - TRUE | .(...) -- D:\jeux\war thunder\aces.exe O87 - FAEL: "RemoteDesktop-UserMode-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{68A14894-466F-4090-B020-AA9DCA6F5BA1}" | In - None - P17 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files (x86)\iTunes\iTunes.exe O87 - FAEL: "{433FCFF0-2600-4A8E-82C3-B5413C684C41}" | In - None - P6 - FALSE | .(.Microsoft Corporation - SMSvcHost.exe.) -- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe ~ Firewall: 208 Scanned in 00mn 01s ---\\ Enumère les codes produits des logiciels (PUC) (O90) O90 - PUC: "0790CFBAFDF794E90C94D542BCF151E0" . (.AMD Catalyst Install Manager.) -- C:\Windows\Installer\{ABFC0970-7FDF-9E49-C049-5D24CB1F150E}\ARPPRODUCTICON.exe O90 - PUC: "11F45BA4C8F23E110BF98BCAF6798BE8" . (.Google Earth Plug-in.) -- C:\Windows\Installer\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}\ARPPRODUCTICON.exe =>.Google Inc O90 - PUC: "1501F27EE78B4FE4EAF9F8DD22C94C83" . (.Catalyst Control Center - Branding.) -- C:\Windows\Installer\{E72F1051-B87E-4EF4-AE9F-8FDD229CC438}\ARPPRODUCTICON.exe O90 - PUC: "16525446F96163A42AFF5B1E81CE565F" . (.ASUS SmartLogon.) -- C:\Windows\Installer\{64452561-169F-4A36-A2FF-B5E118EC65F5}\_2cd672ae.exe O90 - PUC: "1A3EFE19E58566F45B6F1F815FC6C474" . (.ASUS Power4Gear Hybrid.) -- C:\Windows\Installer\{91EFE3A1-585E-4F66-B5F6-F118F56C4C47}\_6FEFF9B68218417F98F549.exe O90 - PUC: "1CCD4DCEF30C2CC834B213E7BCD9A690" . (.Catalyst Control Center Localization All.) -- C:\Windows\Installer\{ECD4DCC1-C03F-8CC2-432B-317ECB9D6A09}\ARPPRODUCTICON.exe O90 - PUC: "21F1DBD139DE0C947ACC65BCED841885" . (.ASUS LifeFrame3.) -- C:\Windows\Installer\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}\_6FEFF9B68218417F98F549.exe O90 - PUC: "2B0163E6D0340BE4183EB2758E9BEDD8" . (.Bonjour.) -- C:\Windows\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico O90 - PUC: "37DF279FCF747F55E51FC85A13F19FE6" . (.AMD Drag and Drop Transcoding.) -- C:\Windows\Installer\{F972FD73-47FC-55F7-5EF1-8CA5311FF96E}\ARPPRODUCTICON.exe O90 - PUC: "3E3786F629C594045B1132A131D80D09" . (.Kaspersky Anti-Virus.) -- C:\Windows\Installer\{6F6873E3-5C92-4049-B511-231A138DD090}\setup2.ico O90 - PUC: "3F7A4F31CBAE1624FAB6317177F77055" . (.Fast Boot.) -- C:\Windows\Installer\{13F4A7F3-EABC-4261-AF6B-1317777F0755}\_6FEFF9B68218417F98F549.exe O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico =>.Apple Inc O90 - PUC: "46FE56B5AFD1A414C849B77B6251E812" . (.ControlDeck.) -- C:\Windows\Installer\{5B65EF64-1DFA-414A-8C94-7BB726158E21}\_6FEFF9B68218417F98F549.exe O90 - PUC: "5A440F64B8EC691489E4B56D25E563D1" . (.Apple Application Support.) -- C:\Windows\Installer\{46F044A5-CE8B-4196-984E-5BD6525E361D}\WinInstall.ico O90 - PUC: "5C2902AF9797D2149A26465872A41EEE" . (.ASUS Data Security Manager.) -- C:\Windows\Installer\{FA2092C5-7979-412D-A962-6485274AE1EE}\MyIcon O90 - PUC: "5F02786918D382A79C2080675AB75132" . (.ATI AVIVO64 Codecs.) -- C:\Windows\Installer\{968720F5-3D81-7A28-C902-0876A57B1523}\ARPPRODUCTICON.exe O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.06) - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico O90 - PUC: "6D832541DDA1DD514499472451CDDC81" . (.Catalyst Control Center InstallProxy.) -- C:\Windows\Installer\{145238D6-1ADD-15DD-4499-744215DCCD18}\ARPPRODUCTICON.exe O90 - PUC: "8031B258A5E4D45B36D77F019DC29603" . (.AMD Accelerated Video Transcoding.) -- C:\Windows\Installer\{852B1308-4E5A-B54D-637D-F710D92C6930}\ARPPRODUCTICON.exe O90 - PUC: "849FDF02DE8C34545A937F4FEA5FFA2A" . (.Wireless Console 3.) -- C:\Windows\Installer\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}\_294823.exe O90 - PUC: "8B45D5D892D34BA4D88A8186AD9F148D" . (.OpenOffice 4.0.1.) -- C:\Windows\Installer\{8D5D54B8-3D29-4AB4-8DA8-1868DAF941D8}\soffice.ico O90 - PUC: "8FEAB7ED936CA1838D5359DB15E76D20" . (.AMD Media Foundation Decoders.) -- C:\Windows\Installer\{DE7BAEF8-C639-381A-D835-95BD517ED602}\ARPPRODUCTICON.exe O90 - PUC: "A14972473A15BE2ECB2D1A89D1CB4ADA" . (.Catalyst Control Center Graphics Previews Common.) -- C:\Windows\Installer\{7427941A-51A3-E2EB-BCD2-A1981DBCA4AD}\ARPPRODUCTICON.exe O90 - PUC: "ABFAB76BF9C4AF84496939E3B3520544" . (.QuickTime.) -- C:\Windows\Installer\{B67BAFBA-4C9F-48FA-9496-933E3B255044}\Installer.ico O90 - PUC: "B6F5FB4F596F2674EA2B0D594A3CD498" . (.Alcor Micro USB Card Reader.) -- C:\Windows\Installer\{F4BF5F6B-F695-4762-AEB2-D095A4C34D89}\ARPPRODUCTICON.exe O90 - PUC: "B81DA88E764DF11F4C1399ED63CFCA7C" . (.ccc-utility64.) -- C:\Windows\Installer\{E88AD18B-D467-F11F-C431-99DE36FCACC7}\ARPPRODUCTICON.exe O90 - PUC: "BF2F50B3B5472104DA2F34F9632B7EB0" . (.ATKOSD2.) -- C:\Windows\Installer\{3B05F2FB-745B-4012-ADF2-439F36B2E70B}\_294823.exe O90 - PUC: "D276F30548C6A844F8F8B43CA58C4314" . (.AMD APP SDK Runtime.) -- C:\Windows\Installer\{503F672D-6C84-448A-8F8F-4BC35AC83441}\ARPPRODUCTICON.exe O90 - PUC: "D29550C7B424BC645B500E10E3E8579C" . (.ATK Hotkey.) -- C:\Windows\Installer\{7C05592D-424B-46CB-B505-E0013E8E75C9}\_18be6784.exe O90 - PUC: "D73F668A64E02181E3C379874D4A852B" . (.Catalyst Control Center.) -- C:\Windows\Installer\{A866F37D-0E46-1812-3E3C-9778D4A458B2}\ARPPRODUCTICON.exe O90 - PUC: "DAEC106DF4E2BBB458CC2CA9C46E3A0C" . (.iTunes.) -- C:\Windows\Installer\{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}\Installer.ico O90 - PUC: "E0785E1D5E3E5744896ADA6D4125A4FD" . (.ATK Media.) -- C:\Windows\Installer\{D1E5870E-E3E5-4475-98A6-ADD614524ADF}\_294823.exe O90 - PUC: "E78D5FE2DB7BF85448824E0D8B4B6EC5" . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}\Installer.ico O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype™ 6.11.) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe ~ Update Products: 75 Scanned in 00mn 00s ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) [MD5.A3AEEC9A9B6984F2E22B90FDC9A23AB8] [WIS][13/12/2013] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\167dc1.msi [24993792] [MD5.82B91E7CCDFDFBEAF58F381D1FA3EFDF] [WIS][08/09/2009] (.Alcor Micro Corp. - AmIcoSinglun.) -- C:\Windows\Installer\1f6c7c.msi [1452032] [MD5.2FB20DD9068FC4E4B1FFF21273E33AB1] [WIS][06/07/2013] (.EBP NP AH - EBP Utilitaire d'échanges.) -- C:\Windows\Installer\251fff6f.msi [264192] [MD5.C13EF9601C50D452A5D918E07F41583C] [WIS][06/07/2013] (.EBP AH - Comptabilité 2009.) -- C:\Windows\Installer\251fff78.msi [398848] [MD5.2ECC8BD6022D5725AABC93AA2ECCB8D6] [WIS][06/07/2013] (.EBP-AH - Installation légère de Pervasive.) -- C:\Windows\Installer\251fff81.msi [300544] [MD5.86EE8789C8CF2BA3E86BEB9668F77E15] [WIS][06/07/2013] (.EBP NP - EBP Business Plan 2010 Edition PME.) -- C:\Windows\Installer\251fff8a.msi [281600] ~ WIS: 76 Scanned in 00mn 09s ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SS - | Auto 11/09/2007 124832 | (AdobeActiveFileMonitor6.0) . (...) - D:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe SS - | Auto 21/12/2013 65432 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SS - | Demand 20/02/2014 257928 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SS - | Demand 31/03/2008 225280 | (ADSMService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe SS - | Auto 07/12/2009 379520 | (AFBAgent) . (.ASUSTeK Computer Inc..) - C:\Windows\system32\FBAgent.exe SS - | Auto 28/09/2012 239616 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe SS - | Auto 07/09/2013 55624 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe SS - | Auto 15/06/2009 84536 | (ASLDRService) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe SS - | Auto 08/08/2007 94208 | (ATKGFNEXSrv) . (...) - C:\Program Files\ATKGFNEX\GFNEXSrv.exe SS - | Auto 19/02/2014 214512 | (AVP) . (.Kaspersky Lab ZAO.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe SS - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe SS - | Auto 07/12/2006 32768 | (EBP Pervasive.SQL) . (...) - C:\PVSW\Bin\WGE_SRV.exe SS - | Demand 24/12/2012 654848 | (FLEXnet Licensing Service) . (.Macrovision Europe Ltd..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe SS - | Auto 22/12/2012 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 22/12/2012 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 02/11/2013 641352 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe SS - | Demand 15/02/2014 118896 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe SS - | Auto 14/07/2009 27136 | C:\Windows\system32\HPZinw12.dll (Net Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe SS - | Auto 14/07/2009 27136 | C:\Windows\system32\HPZipm12.dll (Pml Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe SS - | Demand 03/08/2007 125496 | (spmgr) . (...) - C:\Program Files (x86)\ASUS\NB Probe\SPM\spmgr.exe SS - | Auto 27/11/2009 243712 | (STacSV) . (.IDT, Inc..) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_38986e29a8b510a2\STacSV64.exe SS - | Auto 10/07/1658 0 | (Util FindRight) . (...) - C:\Program Files (x86)\FindRight\bin\utilFindRight.exe =>Hijacker.FindrToolbar SS - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation SS - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 10s ---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80) Run by MOI at 27/02/2014 14:24:32 ~ OS 64 not supported by MBR tool ~ MBR: 0 Scanned in 00mn 00s ---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by MOI at 27/02/2014 14:24:34 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 02s ---\\ Scan Additionnel (O88) Database Version : 13031 - (23/02/2014) Clés trouvées (Keys found) : 3 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 2 Fichiers trouvés (Files found) : 3 [HKLM\SYSTEM\CurrentControlSet\Services\Util FindRight] =>Hijacker.FindrToolbar^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>PUP.Tarma [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>PUP.Tarma C:\Program Files (x86)\SimpleFiles =>Adware.SimpleFiles^ C:\Users\MOI\AppData\Roaming\SimpleFiles =>Adware.SimpleFiles^ [HKCU\Software\SimpleFiles] =>Adware.SimpleFiles^ [HKLM\Software\Wow6432Node\SimpleFiles] =>Adware.SimpleFiles^ C:\Users\MOI\Desktop\photostudio6_softonic_tbyb_all.exe =>Toolbar.Conduit^ ~ Additionnel Scan: 259488 Items scanned in 00mn 15s ---\\ Récapitulatif des détections trouvées sur votre station ~ http://nicolascoolman.webs.com/apps/blog/show/27875657-toolbar-deltasearch =>Toolbar.DeltaSearch ~ http://nicolascoolman.webs.com/apps/blog/show/33083759-hijacker-findrtoolbar =>Hijacker.FindrToolbar ~ http://nicolascoolman.webs.com/apps/blog/show/33161900-adware-simplefiles =>Adware.SimpleFiles ~ http://nicolascoolman.webs.com/apps/blog/show/29507721-toolbar-conduit =>Toolbar.Conduit ~ http://nicolascoolman.webs.com/apps/blog/show/29637859-toolbar-tarma =>PUP.Tarma ~ MSI: 5 link(s) detected in 00mn 16s End of the scan (2228 lines in 03mn 10s)(0)