~ Rapport de ZHPDiag v2014.1.25.26 - Nicolas Coolman (25/01/2014) ~ Lancé par Kévin (05/02/2014 22:36:33) ~ Adresse du Site Web http://nicolascoolman.webs.com ~ Forums gratuits d'Assistance à la désinfection : http://nicolascoolman.webs.com/apps/links/ ~ Traduit par Nicolas Coolman ~ Etat de la version : ~ Liste blanche : Désactivée par l'utilisateur ~ Elévation des Privilèges : OK ~ User Account Control (UAC): Activate by user ---\\ Navigateurs Internet MSIE: Internet Explorer v9.0.8112.16421 (Defaut) MFIE: Mozilla Firefox 26.0 ---\\ Informations sur les produits Windows ~ Langage: Français Windows Vista (TM) Home Premium, 32-bit Service Pack 2 (Build 6002) Windows Server License Manager Script : OK ~ Vista, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : MQ3CQ Windows License : OK Windows Automatic Updates : OK ---\\ Logiciels de protection du système avast! Free Antivirus v6.0.1289.0 Malwarebytes Anti-Malware version 1.75.0.1300 ---\\ Logiciels d'optimisation du système CCleaner v3.12 =>Piriform Ltd ---\\ Logiciels de partage PeerToPeer ---\\ Surveillance de Logiciels Adobe Flash Player 9 ActiveX Adobe Reader 8.3.1 - Français ---\\ Informations sur le système ~ Processor: x86 Family 6 Model 23 Stepping 6, GenuineIntel ~ Operating System: 32 Bits Boot mode: Normal (Normal boot) Total RAM: 3065 MB (37% free) System Restore: Activé (Enable) System drive C: has 6 GB (2%) free of 286 GB ---\\ Mode de connexion au système ~ Computer Name: PC-DE-KÉVIN ~ User Name: Kévin ~ All Users Names: Kévin, Administrateur, aaaa, ~ Unselected Option: None Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppZHP% : C:\Users\Kévin\AppData\Roaming\ZHP\ ~ %AppData% : C:\Users\Kévin\AppData\Roaming\ ~ %Desktop% : C:\Users\Kévin\Desktop\ ~ %Favorites% : C:\Users\Kévin\Favorites\ ~ %LocalAppData% : C:\Users\Kévin\AppData\Local\ ~ %StartMenu% : C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumération des unités disques C: Hard drive, Flash drive, Thumb drive (Free 6 Go of 286 Go) D: CD-ROM drive (Not Inserted) E: CD-ROM drive (Not Inserted) F: Floppy drive, Flash card reader, USB Key (Free 15 Go of 15 Go) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowHelp: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyComputer: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyDocs: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyGames: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyMusic: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyPics: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowPrinters: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSetProgramAccessAndDefaults: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowControlPanel: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowNetConn: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 45 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.10/04/2009 - 23:27:38.) -- C:\Windows\Explorer.exe [2926592] [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 - 03:23:42.) -- C:\Windows\System32\Wininit.exe [96768] [MD5.4CC9DF09C3D915BA0A101A11DB684F26] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.30/01/2014 - 17:16:09.) -- C:\Windows\System32\wininet.dll [1129472] [MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.10/04/2009 - 23:28:14.) -- C:\Windows\System32\Winlogon.exe [314368] [MD5.3911B972B55FEA0478476B2E777B29FA] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.21/04/2011 - 14:58:27.) -- C:\Windows\system32\Drivers\AFD.sys [273408] [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.10/04/2009 - 23:32:28.) -- C:\Windows\system32\Drivers\atapi.sys [19944] [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.21/01/2008 - 03:23:51.) -- C:\Windows\system32\Drivers\Cdfs.sys [70144] [MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.10/04/2009 - 21:39:18.) -- C:\Windows\system32\Drivers\Cdrom.sys [67072] [MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.14/04/2011 - 15:59:03.) -- C:\Windows\system32\Drivers\DfsC.sys [75264] [MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.10/04/2009 - 21:42:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [561152] [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) (.21/01/2008 - 03:23:20.) -- C:\Windows\system32\Drivers\i8042prt.sys [54784] [MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) (.21/01/2008 - 03:24:25.) -- C:\Windows\system32\Drivers\IpNat.sys [100864] [MD5.1E94971C4B446AB2290DEB71D01CF0C2] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.29/04/2011 - 14:24:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [106496] [MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) (.10/04/2009 - 21:45:38.) -- C:\Windows\system32\Drivers\netBT.sys [185856] [MD5.2C1121F2B87E9A6B12485DF53CD848C7] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.03/03/2013 - 20:07:52.) -- C:\Windows\system32\Drivers\ntfs.sys [1082232] [MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) (.02/11/2006 - 09:51:30.) -- C:\Windows\system32\Drivers\Parport.sys [79360] [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/01/2008 - 03:24:55.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [76288] [MD5.FBC0BACD9C3D7F6956853F64A66E252D] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/01/2008 - 03:23:01.) -- C:\Windows\system32\Drivers\rdpdr.sys [248832] [MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) (.10/04/2009 - 21:45:24.) -- C:\Windows\system32\Drivers\smb.sys [66560] [MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) (.10/04/2009 - 21:45:58.) -- C:\Windows\system32\Drivers\tdx.sys [72192] [MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.21/08/2012 - 12:47:42.) -- C:\Windows\system32\Drivers\volsnap.sys [224640] ~ Generic Processes: Scanned in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 0/59 ~ Mes musiques (My Musics) : 1/9750 ~ Mes Videos (My Videos) : 1/15 ~ Mes Favoris (My Favorites) : 1/33 ~ Mes Documents (My Documents) : 0/4904 ~ Mon Bureau (My Desktop) : 0/9726 ~ Menu demarrer (Programs) : 1/30 ~ Hidden Files: Scanned in 00mn 13s ---\\ Processus lancés [MD5.0D392EDE3B97E0B3131B2F63EF1DB94E] - (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe [1008184] [PID.2648] [MD5.8C6BC84B3513BE42EC204FEE5FB29446] - (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [894512] [PID.3756] [MD5.9F5F2F0FB0A7F5AA9F16B9A7B6DAD89F] - (.Google - Google Desktop.) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192] [PID.3256] [MD5.C066AF01FE783943F771D07518CF3EA8] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [6295552] [PID.2588] [MD5.E681281D9BFC9D45D3B72532717E5880] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [49152] [PID.3304] [MD5.2E5212A0BFB98FE0167C92C76C87AFE3] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [249064] [PID.2152] [MD5.90A3525C7399B7784D28F99EA1A51C4C] - (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files\Epson Software\Event Manager\EEventManager.exe [673616] [PID.2992] [MD5.E2B4488830B9F047930BB5FE0E4FD71B] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [3722416] [PID.1540] [MD5.CB2B9EB1447D8A264E46948DF46C1212] - (.Packard Bell BV - SmpSys.exe.) -- C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe [1038136] [PID.3028] [MD5.B30476357EA885420BDFB9A26EE97816] - (.Nero AG - Nero Home.) -- C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [1688872] [PID.3240] [MD5.A07E8935CC8DCE6DB787DC99129CA17C] - (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe [1305408] [PID.3204] [MD5.BF08674925F151BD4537B89A493E3E0C] - (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe [125952] [PID.4016] [MD5.DFB13D3470844B6770FFB87DFC9FD340] - (.Orange - MailNotifier.) -- C:\Program Files\Orange\MailNotifier\MailNotifier.exe [884744] [PID.3400] [MD5.89B7B1B233466CB6C19CF6EC2D49AED1] - (.MyCity - MCShield Real-Time Monitor.) -- C:\Program Files\MCShield\MCShieldRTM.exe [650816] [PID.3656] [MD5.25E53969B38A76C84D6E7C85FE57B9C8] - (.Sony Computer Entertainment Inc. - Content Manager Assistant.) -- C:\Program Files\Sony\Content Manager Assistant\CMA.exe [2520504] [PID.1892] [MD5.0F4195B9B348DE5CF9B822F81704B20E] - (.Microsoft Corporation - Media Center Media Status Aggregator Servic.) -- C:\Windows\ehome\ehmsas.exe [37376] [PID.3684] [MD5.D067C3D1F6ACEDDEC2598C52E2CFDAA7] - (.Sony Computer Entertainment Inc. - Content Manager Assistant.) -- C:\Program Files\Sony\Content Manager Assistant\CMAWatcher.exe [525768] [PID.3224] [MD5.25CA1677AAA3CDC99CD4FCF940886F3C] - (.ATI Technologies Inc. - Catalyst Control Centre: Host application.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [49152] [PID.4792] [MD5.2E0B0A051FFAA86E358465BB0880D453] - (.Microsoft Corporation - Windows Update.) -- C:\Windows\system32\wuauclt.exe [53784] [PID.4424] [MD5.1EEA6C1B35191DC177EA83672B9C3FC0] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [275568] [PID.3588] [MD5.6080A176D09435FC8E6E800996656E18] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120] [PID.5888] [MD5.B39E3C870937F161207D62004472BB16] - (.Carbonite, Inc. - Carbonite Setup Lite.) -- C:\Program Files\Packard Bell\Carbonite\CarboniteSetupLitePBPreInstaller.exe [306112] [PID.6056] [MD5.CA25CAEEBDBE25D85565877219F684F8] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8339968] [PID.652] [MD5.0DD74786D22EDFF0CE5B8E1B1E398618] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [18544] [PID.1792] [MD5.1D87BA213DB7AA939A5A78C726589911] - (.Adobe Systems, Inc. - Adobe Flash Player 11.9 r900.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe [1862536] [PID.6064] [MD5.4604DB6D5ECA6362873CC3A76D2204BA] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\Windows\system32\Ati2evxx.exe [692224] [PID.1132] [MD5.862BB4CBC05D80C5B45BE430E5EF872F] - (.Microsoft Corporation - Service de gestion des licences Microsoft.) -- C:\Windows\system32\SLsvc.exe [3408896] [PID.1388] [MD5.C76769F246250EDAD34A5581419E9D60] - (.AVAST Software - avast! Service.) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [44768] [PID.1828] [MD5.ABDD5AD016AFFD34AD40E944CE94BF59] - (.SEIKO EPSON CORPORATION - eEBAPI Core Process module.) -- C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe [94208] [PID.1348] [MD5.E8FE4FCE23D2809BD88BCC1D0F8408CE] - (...) -- C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [124832] [PID.2088] [MD5.3D0F028E87C95C9432B855B21F244994] - (.Dassault Systemes - System.) -- C:\Program Files\Dassault Systemes\B17\intel_a\code\bin\CATSysDemon.exe [49152] [PID.2156] [MD5.DB5BEA73EDAF19AC68B2C0FAD0F92B1A] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [390504] [PID.2172] [MD5.8B4B572753419FE601220526205F9455] - (.http://libusb-win32.sourceforge.net - LibUsb-Win32 - Generic USB Library.) -- C:\Windows\system32\libusbd-nt.exe [18944] [PID.2224] [MD5.C5052FB77AA42ED440F9F6B4E37145A9] - (.Nero AG - Nero BackItUp.) -- C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [869672] [PID.2372] [MD5.D955D5DE998DB2476BF0892BE3A96C26] - (.O2Micro International - O2 Flash Memory Service.) -- C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe [65536] [PID.2408] [MD5.875E4E0661F3A5994DF9E5E3A0A4F96B] - (.Prolific Technology Inc. - PLFlash DeviceIoControl Service.) -- C:\Windows\system32\IoctlSvc.exe [81920] [PID.2508] [MD5.4999D340B0D6B3E47666CF5E25C9C8F3] - (.Nero AG - Nero Home.) -- C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [447784] [PID.3444] ~ Processes Running: Scanned in 00mn 01s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\Kévin\AppData\Local\Google\Chrome\User Data\Default\Preferences ~ Google Browser: 0 Scanned in 00mn 00s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Users\Kévin\AppData\Roaming\Mozilla\Firefox\Profiles\5tjuuor1.default\prefs.js M3 - MFPP: Plugins - [Kévin] -- C:\Users\Kévin\AppData\Roaming\Mozilla\Firefox\Profiles\5tjuuor1.default\searchplugins\orange.xml M3 - MFPP: Plugins - [Kévin] -- C:\Program Files\Mozilla FireFox\searchplugins\googledesktop.xml M0 - MFSP: prefs.js [Kévin - 5tjuuor1.default] http://r.orange.fr M2 - MFEP: prefs.js [Kévin - 5tjuuor1.default\menu_contextuel_orange@orange.fr] [] Menu Contextuel Orange v1.1 (..) M2 - MFEP: prefs.js [Kévin - 5tjuuor1.default\plugin2@gameplaylabs.com] [] GamePlayLabs Plugin v2.0 (..) =>Spyware.GamePlayLabs M2 - MFEP: prefs.js [Kévin - 5tjuuor1.default\support@websteroidsapp.com] [] Websteroids v2.6.53 (..) =>PUP.TubeDimmer M2 - MFEP: prefs.js [Kévin - 5tjuuor1.default\{20a82645-c095-46ed-80e3-08825760534b}] [MicrosoftCG] Microsoft .NET Framework Assistant v1.2.1 (..) M2 - MFEP: prefs.js [Kévin - 5tjuuor1.default\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}] [] BitComet 视频下载器 v1.36 (..) =>P2P.BitComet P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - np-mswmp.) -- C:\Program Files\Mozilla Firefox\Plugins\np-mswmp.dll P2 - FPN:Firefox Plugin Navigator . (.BitComet - BitCometAgent v1.30 for Firefox.) -- C:\Program Files\Mozilla Firefox\Plugins\npBitCometAgent.dll =>P2P.BitComet P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 8.3.1.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_24 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20913.0.) -- c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll P2 - FPN: [HKCU] [@Skype Limited.com/Facebook Video Calling Plugin] - (.Skype Limited - Facebook Video Calling Plugin.) -- C:\Users\Kévin\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS - Unity Player 3.3.0f4.) -- C:\Users\Kévin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll ~ Firefox Browser: 38 Scanned in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://r.orange.fr R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.packardbell.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R3 - URLSearchHook: (no name) - {AEEC3B59-CA98-4EBA-A140-57B94E283583} . (.Unity Technologies ApS - Unity Player 3.3.0f4.) (No version) -- (.not file.) R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Unity Technologies ApS - Unity Player 3.3.0f4.) (No version) -- (.not file.) ~ IE Browser: 11 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 22 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} . (.BitComet - BitCometBHO.) -- C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll =>P2P.BitComet O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.SEIKO EPSON CORPORATION / CyCom Technology - Epson Easy Photo Print (TBL).) -- C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} . (.Packard Bell - BAE.dll.) -- C:\Program Files\Google\Google_BAE\BAE.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll ~ BHO: 14 Scanned in 00mn 00s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: Easy Photo Print - [HKLM]{9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.SEIKO EPSON CORPORATION / CyCom Technology - Epson Easy Photo Print (TBL).) -- C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll O3 - Toolbar: barre d'outils Orange - [HKLM]{D3028143-6145-4318-99D3-3EDCE54A95A9} . (.Orange - IE Toolbar Container.) -- C:\Program Files\Orange\ToolbarFR\ToolbarContainer101000315.dll O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{EE5D279F-081B-4404-994D-C6B60AAEBA6D} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{D3028143-6145-4318-99D3-3EDCE54A95A9} Clé orpheline ~ Toolbar: Scanned in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - GS\Desktop [Public]: Adobe Reader 8.lnk . (.Adobe Systems Incorporated - Adobe Reader 8.3.) -- C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe O4 - GS\Desktop [Public]: avast! Free Antivirus.lnk . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe O4 - GS\Desktop [Public]: CATIA V5R17.lnk . (.Dassault Systemes - Administration.) -- C:\Program Files\Dassault Systemes\B17\intel_a\code\bin\CATSTART.exe O4 - GS\Desktop [Public]: CATIA V5R19.lnk . (.Dassault Systemes - Administration.) -- C:\Program Files\Dassault Systemes\B19\intel_a\code\bin\CATSTART.exe O4 - GS\Desktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>Piriform Ltd O4 - GS\Desktop [Public]: GIMP 2.lnk . (...) -- C:\Program Files\GIMP-2.0\bin\gimp-2.6.exe O4 - GS\Desktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe O4 - GS\Desktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O4 - GS\Desktop [Public]: Nero 8 Essentials.lnk . (.Nero AG - Nero StartSmart 8 Application.) -- C:\Program Files\Nero\Nero8\Nero StartSmart\NeroStartSmart.exe O4 - GS\Desktop [Public]: OpenOffice.org 3.3.lnk . (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files\OpenOffice.org 3\program\soffice.exe O4 - GS\Desktop [Public]: Pinnacle Studio 17.lnk . (.Pinnacle - PinnacleStudio.) -- C:\Program Files\Pinnacle\Studio 17\programs\PinnacleStudio.exe O4 - GS\Desktop [Public]: QuickTime Player.lnk . (.Apple Inc. - QuickTime Player.) -- C:\Program Files\QuickTime\QuickTimePlayer.exe =>.Apple Inc O4 - GS\Program [Public]: Adobe Photoshop Elements 6.0.lnk . (.Adobe Systems Incorporated - Adobe Photoshop Elements 6.0.) -- C:\Program Files\Adobe\Photoshop Elements 6.0\Photoshop Elements 6.0.exe =>.Adobe Systems Incorporated O4 - GS\Program [Public]: Adobe Reader 8.lnk . (...) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-A83000000003}\SC_Reader.exe O4 - GS\Program [Public]: Apple Software Update.lnk . (...) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc O4 - GS\Program [Public]: Assistant du gestionnaire de contenu pour PlayStation(R).lnk . (.Sony Computer Entertainment Inc. - Content Manager Assistant.) -- C:\Program Files\Sony\Content Manager Assistant\CMA.exe O4 - GS\Program [Public]: Audacity 1.3 Beta (Unicode).lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) -- C:\Program Files\Audacity 1.3 Beta (Unicode)\audacity.exe =>.The Audacity Team O4 - GS\Program [Public]: Audacity.lnk . (...) -- C:\Program Files\Audacity\audacity.exe O4 - GS\Program [Public]: Installation du Contrôle Parental.lnk . (.InstallShield Software Corporation - InstallShield (R) Setup Launcher.) -- C:\Program Files\Securitoo\Controle Parental\Controle_parental.exe O4 - GS\Program [Public]: Lanceur de tâches Microsoft Works.lnk . (.Microsoft® Corporation - Microsoft® Works.) -- C:\Program Files\Microsoft Works\MSWorks.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Media Center.lnk . (.Microsoft Corporation - Media Center.) -- C:\Windows\ehome\ehshell.exe O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O4 - GS\Program [Public]: Visionneuse Microsoft Office PowerPoint 2007.lnk . (...) -- C:\Windows\Installer\{95120000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Calendar.lnk . (.Microsoft Corporation - Calendrier Windows.) -- C:\Program Files\Windows Calendar\WinCal.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Collaboration.lnk . (.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Contacts.lnk . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Defender.lnk . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe O4 - GS\Program [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Création de DVD Windows.) -- C:\Program Files\Movie Maker\DVDMaker.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Movie Maker.lnk . (.Microsoft Corporation - Windows Movie Maker.) -- C:\Program Files\Movie Maker\MOVIEMK.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Photo Gallery.lnk . (.Microsoft Corporation - Galerie de photos Windows.) -- C:\Program Files\Windows Photo Gallery\WindowsPhotoGallery.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\System32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) -- C:\Windows\System32\mblctr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\System32\NetProj.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\System32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\System32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sidebar.lnk . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\System32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\System32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Backup.lnk . (.Microsoft Corporation - Sauvegarde Microsoft® Windows.) -- C:\Windows\System32\sdclt.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\System32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\System32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\System32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: migwiz.lnk . (.Microsoft Corporation - Transfert de fichiers et paramètres Windows.) -- C:\Windows\System32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) -- C:\Windows\System32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\System32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\System32\taskschd.msc O4 - GS\QuickLaunch [Kévin]: eBay.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe http://go.packardbell.com =>Hijacker.Browsers O4 - GS\QuickLaunch [Kévin]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\QuickLaunch [Kévin]: MiPony.lnk . (.www.mipony.net - Mipony.) -- C:\Program Files\MiPony\MiPony.exe O4 - GS\QuickLaunch [Kévin]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O4 - GS\QuickLaunch [Kévin]: Pinnacle Studio 17.lnk . (.Pinnacle - PinnacleStudio.) -- C:\Program Files\Pinnacle\Studio 17\programs\PinnacleStudio.exe O4 - GS\QuickLaunch [Kévin]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Program [Kévin]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\Program [Kévin]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation O4 - GS\Program [Kévin]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Accessories [Kévin]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Kévin]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\System32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Kévin]: Run.lnk - Clé orpheline O4 - GS\Accessories [Kévin]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Kévin]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\Desktop [Kévin]: PC Inspector File Recovery.lnk . (...) -- C:\Program Files\Convar\PC Inspector File Recovery\Filerecovery.exe O4 - GS\Desktop [Kévin]: PhotoFiltre.lnk . (.Antonio Da Cruz - PhotoFiltre.) -- C:\Program Files\PhotoFiltre\photofiltre.exe O4 - GS\Desktop [Kévin]: UsbFix.lnk . (...) -- C:\UsbFix\UsbFix.exe O4 - GS\Desktop [Kévin]: Virtual DJ Pro.lnk . (.Atomix Productions - VirtualDJ.) -- C:\Program Files\VirtualDJ\virtualdj_pro.exe O4 - GS\Desktop [Kévin]: Windows Live Messenger .lnk . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O4 - GS\Desktop [Kévin]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman O4 - GS\Desktop [Kévin]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman O4 - GS\QuickLaunch [aaaa]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\QuickLaunch [aaaa]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Program [aaaa]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - GS\Program [aaaa]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation O4 - GS\Program [aaaa]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Accessories [aaaa]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [aaaa]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\System32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [aaaa]: Run.lnk - Clé orpheline O4 - GS\Accessories [aaaa]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [aaaa]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Global Startup: 82 Scanned in 00mn 01s ---\\ Applications lancées au démarrage du sytème (O4) O4 - GS\Startup [Public]: Assistant du gestionnaire de contenu pour PlayStation(R).lnk . (.Sony Computer Entertainment Inc. - Content Manager Assistant.) -- C:\Program Files\Sony\Content Manager Assistant\CMA.exe O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe O4 - HKLM\..\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe =>.Advanced Micro Devices, Inc O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [CarboniteSetupLite] . (.Carbonite, Inc. - Carbonite Setup Lite.) -- C:\Program Files\Packard Bell\Carbonite\CarboniteSetupLitePBPreInstaller.exe O4 - HKLM\..\Run: [Google Desktop Search] . (.Google - Google Desktop.) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe =>.Realtek Semiconductor Corp O4 - HKLM\..\Run: [toolbar_eula_launcher] . (...) -- C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation O4 - HKLM\..\Run: [EEventManager] . (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files\Epson Software\Event Manager\EEventManager.exe O4 - HKLM\..\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated O4 - HKCU\..\Run: [WindowsWelcomeCenter] Clé orpheline O4 - HKCU\..\Run: [SmpcSys] . (.Packard Bell BV - SmpSys.exe.) -- C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe =>.DT Soft Ltd O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [EPSON SX510W Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFIE.exe =>.Epson Seiko Corporation O4 - HKCU\..\Run: [Epson Stylus SX510W(Réseau)] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFIE.exe =>.Epson Seiko Corporation O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\Kévin\AppData\Local\Facebook\Update\FacebookUpdate.exe O4 - HKCU\..\Run: [orangeinside] . (.Orange - Executable Orange Inside.) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe O4 - HKCU\..\Run: [Epson Stylus SX510W(Réseau) (Copie 1)] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFIE.exe =>.Epson Seiko Corporation O4 - HKCU\..\Run: [MailNotifier] . (.Orange - MailNotifier.) -- C:\Program Files\Orange\MailNotifier\MailNotifier.exe O4 - HKCU\..\Run: [MCShield Monitor] . (.MyCity - MCShield Real-Time Monitor.) -- C:\Program Files\MCShield\mcshieldrtm.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] Clé orpheline O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] Clé orpheline O4 - HKUS\S-1-5-21-4119149214-922069742-4206605935-1000\..\Run: [WindowsWelcomeCenter] Clé orpheline O4 - HKUS\S-1-5-21-4119149214-922069742-4206605935-1000\..\Run: [SmpcSys] . (.Packard Bell BV - SmpSys.exe.) -- C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe O4 - HKUS\S-1-5-21-4119149214-922069742-4206605935-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O4 - HKUS\S-1-5-21-4119149214-922069742-4206605935-1000\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe O4 - HKUS\S-1-5-21-4119149214-922069742-4206605935-1000\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe =>.DT Soft Ltd O4 - HKUS\S-1-5-21-4119149214-922069742-4206605935-1000\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe O4 - HKUS\S-1-5-21-4119149214-922069742-4206605935-1000\..\Run: [EPSON SX510W Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFIE.exe =>.Epson Seiko Corporation O4 - HKUS\S-1-5-21-4119149214-922069742-4206605935-1000\..\Run: [Epson Stylus SX510W(Réseau)] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFIE.exe =>.Epson Seiko Corporation O4 - HKUS\S-1-5-21-4119149214-922069742-4206605935-1000\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\Kévin\AppData\Local\Facebook\Update\FacebookUpdate.exe O4 - HKUS\S-1-5-21-4119149214-922069742-4206605935-1000\..\Run: [orangeinside] . (.Orange - Executable Orange Inside.) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe O4 - HKUS\S-1-5-21-4119149214-922069742-4206605935-1000\..\Run: [Epson Stylus SX510W(Réseau) (Copie 1)] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFIE.exe =>.Epson Seiko Corporation O4 - HKUS\S-1-5-21-4119149214-922069742-4206605935-1000\..\Run: [MailNotifier] . (.Orange - MailNotifier.) -- C:\Program Files\Orange\MailNotifier\MailNotifier.exe O4 - HKUS\S-1-5-21-4119149214-922069742-4206605935-1000\..\Run: [MCShield Monitor] . (.MyCity - MCShield Real-Time Monitor.) -- C:\Program Files\MCShield\mcshieldrtm.exe ~ Application: Scanned in 00mn 00s ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9) O9 - Extra button: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft Office OneNote Internet Explorer Add-in.) -- C:\Program Files\MICROS~3\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (...) -- C:\Program Files\Microsoft Office\Office12\REFBARH.ICO O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} . (.BitComet - BitCometBHO.) -- C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll =>P2P.BitComet ~ IE Extra Buttons: Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll ~ Winsock: 7 Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{E251ABB8-2ED9-42D1-8F20-A7898D7DD063}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{E251ABB8-2ED9-42D1-8F20-A7898D7DD063}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{E251ABB8-2ED9-42D1-8F20-A7898D7DD063}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 ~ Domain: Scanned in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll =>.Microsoft Corporation O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - AppInit_DLLs: . (.Google - Google Desktop.) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll ~ AppInit DLL: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll ~ SSODL: 1 Scanned in 00mn 00s ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22) O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\System32\browseui.dll ~ STS/SSO: Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) . (...) - C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\System32\Ati2evxx.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: Backbone Service (BBDemon) . (.Dassault Systemes - System.) - C:\Program Files\Dassault Systemes\B17\intel_a\code\bin\CATSysDemon.exe O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: EpsonBidirectionalService (EpsonBidirectionalService) . (.SEIKO EPSON CORPORATION - eEBAPI Core Process module.) - C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc O23 - Service: LibUsb-Win32 - Daemon, Version 0.1.10.1 (libusbd) . (.http://libusb-win32.sourceforge.net - LibUsb-Win32 - Generic USB Library.) - C:\Windows\System32\libusbd-nt.exe O23 - Service: Nero BackItUp Scheduler 3 (Nero BackItUp Scheduler 3) . (.Nero AG - Nero BackItUp.) - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: O2Micro Flash Memory Card Service (o2flash) . (.O2Micro International - O2 Flash Memory Service.) - C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe O23 - Service: Orange update Core Service (Orange update Core Service) . (.Orange SA - Orange Upd@te.) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe O23 - Service: PLFlash DeviceIoControl Service (PLFlash DeviceIoControl Service) . (.Prolific Technology Inc. - PLFlash DeviceIoControl Service.) - C:\Windows\system32\IoctlSvc.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: ValueApps (ValueApps) . (...) - C:\Users\Kévin\AppData\Local\ValueApps\ValueApps.exe (.not file.) =>Toolbar.Conduit ~ Services: 14 Scanned in 00mn 06s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ Enumère les données de BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Epson Printer Software Downloader.job [240] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Extension de garantie-Kévin.job [340] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4119149214-922069742-4206605935-1000Core.job [1074] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4119149214-922069742-4206605935-1000UA.job [1096] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1052] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1056] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Recovery DVD Creator-Kévin.job [340] [MD5.E7FAF17B920ACCE36C191B9151B10AB4] [APT] [Epson Printer Software Downloader] (.SEIKO EPSON CORPORATION.) -- C:\Program Files\EPSON\EPAPDL\E_SAPDL2.exe [395160] [MD5.8E99C96119DCF1207091C45743E03531] [APT] [Extension de garantie-K‚vin] (.Packard Bell BV.) -- C:\Program Files\Packard Bell\SetupmyPC\PBCarNot.exe [481592] [MD5.9EB925EDC8CF1C3D06E50E9348B54A0A] [APT] [FacebookUpdateTaskUserS-1-5-21-4119149214-922069742-4206605935-1000Core] (.Facebook Inc..) -- C:\Users\Kévin\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] [MD5.9EB925EDC8CF1C3D06E50E9348B54A0A] [APT] [FacebookUpdateTaskUserS-1-5-21-4119149214-922069742-4206605935-1000UA] (.Facebook Inc..) -- C:\Users\Kévin\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [135664] [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [135664] [MD5.C566265627FACF571A30A4ED6565AE92] [APT] [Recovery DVD Creator-K‚vin] (.Packard Bell BV.) -- C:\Program Files\Packard Bell\SetupMyPc\MCDCheck.exe [483128] [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984] ~ Scheduled Task: 17 Scanned in 00mn 01s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\system32\ie4uinit.exe O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\system32\iedkcs32.dll O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\regutils.dll O40 - ASIC: Microsoft Windows Media Player 11.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation O40 - ASIC: Adobe Shockwave Director 10.3 - {233C1507-6A77-46A4-9443-F871F945D258} . (.Adobe Systems, Inc. - Shockwave ActiveX Control.) -- C:\Windows\System32\Macromed\Director\SwDir.dll O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Microsoft Windows Mail 7 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll O40 - ASIC: Adobe Flash Player 9 ActiveX - {D27CDB6E-AE6D-11CF-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 10.1 r102.) -- C:\Windows\system32\Macromed\Flash\Flash10l.ocx ~ Active Setup: 14 Scanned in 00mn 00s ---\\ Pilotes lancés au démarrage du système (O41) O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: (dtsoftbus01) . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) - C:\Windows\System32\DRIVERS\dtsoftbus01.sys O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0 (ws2ifsl) . (.Microsoft Corporation - Winsock2 IFS Layer.) - C:\Windows\system32\drivers\ws2ifsl.sys O41 - Driver: (eeCtrl) . (. - .) - C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys (.not file.) O41 - Driver: (SRTSP) . (. - .) - C:\Windows\System32\Drivers\SRTSP.sys (.not file.) O41 - Driver: (SRTSPX) . (. - .) - C:\Windows\System32\Drivers\SRTSPX.sys (.not file.) O41 - Driver: (SymIM) . (. - .) - C:\Windows\System32\DRIVERS\SymIMv.sys (.not file.) O41 - Driver: (SYMTDI) . (. - .) - C:\Windows\system32\Drivers\SYMTDI.sys (.not file.) ~ Drivers: 88 Scanned in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: 7-Zip 9.20 - (...) [HKLM] -- 7-Zip O42 - Logiciel: ABBYY FineReader 6.0 Sprint - (.ABBYY Software House.) [HKLM] -- {ACF60000-22B9-4CE9-98D6-2CCF359BAC07} O42 - Logiciel: ADSL Neuf - (...) [HKLM] -- NEUF_FR O42 - Logiciel: AUDIO DRIVER V6.0.1.5559 - (...) [HKLM] -- AUDIO O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Flash Player 9 ActiveX - (.Adobe Systems.) [HKLM] -- ShockwaveFlash O42 - Logiciel: Adobe Photoshop Elements 6 - (...) [HKLM] -- AdobePE6 =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Photoshop Elements 6.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Photoshop Elements 6 =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Reader 8 - (...) [HKLM] -- AdobeReader O42 - Logiciel: Adobe Reader 8.3.1 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A83000000003} O42 - Logiciel: Adobe Shockwave Player - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {8153ED9A-C94A-426E-9880-5E6775C08B62} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc O42 - Logiciel: Archiveur WinRAR - (...) [HKLM] -- WinRAR archiver O42 - Logiciel: Assistant du gestionnaire de contenu pour PlayStation(R) - (.Sony Computer Entertainment Inc..) [HKLM] -- {BE841724-78F0-44D6-B6C4-C3D53708293B} O42 - Logiciel: Audacity 1.2.6 - (...) [HKLM] -- Audacity_is1 O42 - Logiciel: Audacity 1.3.12 (Unicode) - (.Audacity Team.) [HKLM] -- Audacity 1.3 Beta (Unicode)_is1 O42 - Logiciel: BitComet 1.36 - (.CometNetwork.) [HKLM] -- BitComet =>P2P.BitComet O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B} O42 - Logiciel: Browser Address Error Redirector - (...) [HKLM] -- {3EE33958-7381-4E7B-A4F3-6E43098E9E9C} O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>Piriform Ltd O42 - Logiciel: Carbonite - (...) [HKLM] -- Carbonite O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM] -- DAEMON Tools Lite =>.DT Soft Ltd O42 - Logiciel: Dassault Systemes Software B17 - (...) [HKLM] -- Dassault Systemes B17_0 O42 - Logiciel: Dassault Systemes Software B19 - (...) [HKLM] -- Dassault Systemes B19_0 O42 - Logiciel: Dazzle Video Capture DVC100 X86 Driver 1.06 - (.Pinnacle.) [HKLM] -- {D4ACFA69-25BA-4B10-8A5E-CA222939FCF9} O42 - Logiciel: EPSON Logiciel imprimante - (...) [HKLM] -- EPSON Printer and Utilities O42 - Logiciel: EPSON PRINT Image Framer Tool2.1 - (...) [HKLM] -- {23B59ED4-C360-11D7-875B-0090CC005647} O42 - Logiciel: EPSON SX510W Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON SX510W Series O42 - Logiciel: EPSON Scan - (...) [HKLM] -- EPSON Scanner O42 - Logiciel: Epson Easy Photo Print 2 - (.SEIKO EPSON CORPORATION.) [HKLM] -- {87C2248A-C7DD-49ED-9BCD-B312A9D0819E} O42 - Logiciel: Epson Event Manager - (.SEIKO EPSON Corporation.) [HKLM] -- {48F22622-1CC2-4A83-9C1E-644DD96F832D} O42 - Logiciel: Epson Printer Software Downloader - (...) [HKLM] -- Epson Printer Software Downloader O42 - Logiciel: Epson Printer Software Downloader - (.SEIKO EPSON CORPORATION.) [HKLM] -- {B6A98E5F-D6A7-46FB-9E9D-1F7BF4434001} O42 - Logiciel: Epson Stylus SX510W_TX550W Manuel - (...) [HKLM] -- Epson Stylus SX510W_TX550W Guide d'utilisation O42 - Logiciel: EpsonNet Print - (.SEIKO EPSON CORPORATION.) [HKLM] -- {3E31400D-274E-4647-916C-2CACC3741799} O42 - Logiciel: EpsonNet Setup - (.SEIKO EPSON CORPORATION.) [HKLM] -- {FFFAE01B-466F-4C07-9821-A94FD753BDDA} O42 - Logiciel: Facebook Video Calling 2.0.0.447 - (.Skype Limited.) [HKLM] -- {8DF41A9F-FE13-43E8-A003-5F9B55A011EE} O42 - Logiciel: GIMP 2.6.11 - (.The GIMP Team.) [HKLM] -- WinGimp-2.0_is1 O42 - Logiciel: Google BAE - (...) [HKLM] -- GoogleBAE O42 - Logiciel: Google Desktop - (.Google.) [HKLM] -- Google Desktop O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: GoogleDesktop - (...) [HKLM] -- GoogleDesktop_XX O42 - Logiciel: HDReg France - (.Acxiom.) [HKLM] -- {0ED40D2A-7131-4FE7-941E-5C329336F712} O42 - Logiciel: Hogs Of War - (.Infogrames.) [HKLM] -- Hogs Of War O42 - Logiciel: Hooligans - Storm over Europe - (...) [HKLM] -- {B89933C8-E38D-44BE-B3DB-96657D11338F} O42 - Logiciel: Infocentre Rev. 2.0.0.1 - (...) [HKLM] -- Infocentre O42 - Logiciel: Intel Chipset software V8.7.0.1007 - (...) [HKLM] -- Chipset O42 - Logiciel: Java(TM) 6 Update 22 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216022F0} O42 - Logiciel: Java(TM) 6 Update 24 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216024FF} O42 - Logiciel: LAME v3.98.3 for Audacity - (...) [HKLM] -- LAME for Audacity_is1 O42 - Logiciel: LibUSB-Win32-0.1.10.1 - (.LibUSB-Win32.) [HKLM] -- LibUSB-Win32_is1 O42 - Logiciel: MCShield ::Anti-Malware Tool:: - (.MyCity.) [HKLM] -- MCShield O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Media Player Codec Pack 3.9.6 - (.Media Player Codec Pack.) [HKLM] -- Media Player - Codec Pack O42 - Logiciel: Medieval CUE Splitter - (.Medieval Software.) [HKLM] -- {B96D2269-568B-4CBF-9332-12FAE8B158F7} O42 - Logiciel: Messenger Plus! 5 - (.Yuna Software.) [HKLM] -- Messenger Plus! O42 - Logiciel: Metaboli - (...) [HKLM] -- METABOLI O42 - Logiciel: MiPony 1.5.0 - (...) [HKLM] -- MiPony O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {0214A441-A4AB-43A8-8DEF-2F73C5364673} O42 - Logiciel: Microsoft Works 9 SE - (...) [HKLM] -- works9se O42 - Logiciel: Microsoft® Office Trial 2007 - (...) [HKLM] -- OFF2k7_FR O42 - Logiciel: Mozilla Firefox 26.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 26.0 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService O42 - Logiciel: Nero 8 Essentials - (...) [HKLM] -- Nero8 O42 - Logiciel: Nero 8 Essentials - (.Nero AG.) [HKLM] -- {980B9958-1239-4FC5-8C88-AC5650321036} O42 - Logiciel: Notification Mail - (.Orange.) [HKLM] -- MailNotifier O42 - Logiciel: O2Micro Flash Memory Card Reader Driver (x86) - (.O2Micro.) [HKLM] -- {E9FCE60C-8926-46B6-BB1E-40BA2B99EC8E} O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM] -- {7E0610A2-E336-40B3-B685-C4905E97EC9A} O42 - Logiciel: Orange Inside - (.Orange.) [HKCU] -- Orange Inside O42 - Logiciel: Orange Installeur version 1.2.5.0 - (.Orange.) [HKLM] -- {D13FE823-C575-4451-AC37-E645A67AA581}_1.2.5.0 O42 - Logiciel: Orange update - (.Orange.) [HKLM] -- OrangeUpdateManager O42 - Logiciel: PDFCreator - (.Frank Heindörfer, Philip Chinery.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} O42 - Logiciel: PIF DESIGNER2.1 - (...) [HKLM] -- {7BD0A2D8-4EA0-43C6-BDF8-DDA87B8031C6} O42 - Logiciel: Packard Bell ImageWriter - (...) [HKLM] -- ImageWriter O42 - Logiciel: Packard Bell LCD Test - (...) [HKLM] -- LCDTest O42 - Logiciel: Packard Bell Updator - (...) [HKLM] -- Updator O42 - Logiciel: Pharaon - (...) [HKLM] -- Pharaon O42 - Logiciel: PhotoFiltre - (...) [HKCU] -- PhotoFiltre O42 - Logiciel: PhotoFiltre Studio X - (...) [HKCU] -- PhotoFiltre Studio X O42 - Logiciel: Pinnacle Studio 17 - (.Corel Corporation.) [HKLM] -- {3DA8F808-72E2-4361-82EC-433081D23005} O42 - Logiciel: Pinnale Systems Software Keys - (.VPP TEAM.) [HKLM] -- {616CD10B-1EC7-41D2-8C14-3ECE93E7AEE9}_is1 O42 - Logiciel: Protégez vos données - (.Carbonite Inc..) [HKLM] -- Carbonite Setup Lite O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {7BE15435-2D3E-4B58-867F-9C75BED0208C} O42 - Logiciel: Realtek 8169 8168 8101E 8102E Ethernet Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Realtek RTL8102 Driver V6.200.1130.2007 - (...) [HKLM] -- LAN O42 - Logiciel: ScanToWeb - (...) [HKLM] -- {EBAE381B-60A6-4863-AA9F-FCAB755BC9E5} O42 - Logiciel: SeaTools for Windows - (.Seagate Technology.) [HKLM] -- {98613C99-1399-416C-A07C-1EE1C585D872} O42 - Logiciel: SetUp My PC - (...) [HKLM] -- SETUPMYPC_FR O42 - Logiciel: Skype 3.6.2.248 - (...) [HKLM] -- SKYPE O42 - Logiciel: Skype™ 5.10 - (.Skype Technologies S.A..) [HKLM] -- {EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8} O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics.) [HKLM] -- SynTPDeinstKey O42 - Logiciel: TOUCHPAD DRIVER V10.0.1.0 - (...) [HKLM] -- TOUCHPAD O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU] -- UnityWebPlayer O42 - Logiciel: Updater - (.Creative Island Media, LLC.) [HKLM] -- {D54E3D9F-FEB8-4D2D-A138-B69A5C80080B} O42 - Logiciel: VCRedistSetup - (.Nero AG.) [HKLM] -- {3921A67A-5AB1-4E48-9444-C71814CF3027} O42 - Logiciel: VGA DRIVERS V8.476.0.0 - (...) [HKLM] -- VGA O42 - Logiciel: VLC media player 1.1.5 - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN O42 - Logiciel: Virtual DJ Pro Full - Atomix Productions - (...) [HKLM] -- Virtual DJ Pro Full - Atomix Productions O42 - Logiciel: Vista Codec Package - (.Shark007.) [HKLM] -- {F9FD80CE-0448-4D4F-8BCD-77FC514C3F99} O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} =>.Microsoft Corporation O42 - Logiciel: avast! Free Antivirus v6.0.1289.0 - (.AVAST Software.) [HKLM] -- avast O42 - Logiciel: barre d'outils Orange - (.France Telecom SA.) [HKLM] -- OrangeToolbarFR O42 - Logiciel: cardreader Driver V1.0.2.906 for MMC/SD v1.1.1.301 for MS/XD - (...) [HKLM] -- CARDREADER O42 - Logiciel: msvcrt_installer - (.SAH.) [HKLM] -- {6068A42A-C1CF-45F2-9859-5DB16287FE5D} O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} ~ Logic: 92 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\7-Zip] [HKCU\Software\8.1] [HKCU\Software\ABBYY] [HKCU\Software\AC3filter] [HKCU\Software\ALWIL Software] [HKCU\Software\ATI Technologies Inc.] [HKCU\Software\ATI] [HKCU\Software\AVAST Software] [HKCU\Software\Adobe] [HKCU\Software\Ahead] [HKCU\Software\Antanda] [HKCU\Software\AppDataLow\Software\Google] [HKCU\Software\AppDataLow\Software\Macromedia] [HKCU\Software\AppDataLow\Software\Orange] [HKCU\Software\AppDataLow\Software\Unity] [HKCU\Software\AppDataLow] [HKCU\Software\Apple Computer, Inc.] [HKCU\Software\Apple Inc.] [HKCU\Software\Audacity] [HKCU\Software\Avid] [HKCU\Software\BitComet] =>P2P.BitComet [HKCU\Software\Carbonite] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Convar] [HKCU\Software\CoreAAC] [HKCU\Software\CoreVorbis] [HKCU\Software\DSP-worx] [HKCU\Software\DT Soft] [HKCU\Software\DivXNetworks] [HKCU\Software\EPSON] [HKCU\Software\Facebook] [HKCU\Software\GNU] [HKCU\Software\GSpot Appliance Corp] [HKCU\Software\Gabest] [HKCU\Software\Google] [HKCU\Software\Haali] [HKCU\Software\IGA] [HKCU\Software\IM Providers] [HKCU\Software\Intel] [HKCU\Software\InterVideo] [HKCU\Software\JavaSoft] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\MCShield] [HKCU\Software\Macromedia] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\Martin Prikryl] [HKCU\Software\Media Player - Codec Pack] [HKCU\Software\Medieval] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mozilla] [HKCU\Software\Nero] [HKCU\Software\Netscape] [HKCU\Software\ODBC] [HKCU\Software\OpenOffice.org] [HKCU\Software\OrangeInside] [HKCU\Software\Orange] [HKCU\Software\PDFCreator] [HKCU\Software\Packard Bell] [HKCU\Software\Pinnacle Systems] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\Realtek] [HKCU\Software\SEIKO EPSON] [HKCU\Software\SWISSKNIFE] [HKCU\Software\SecuROM] [HKCU\Software\SkypeRS] [HKCU\Software\Sony Corporation] [HKCU\Software\Synaptics] [HKCU\Software\Trolltech] [HKCU\Software\Unity] [HKCU\Software\Usbfix] [HKCU\Software\VOB] [HKCU\Software\VirtualDJ] [HKCU\Software\WinISD] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\Yuna Software] [HKCU\Software\ZebHelpProcess Helper] [HKCU\Software\ej-technologies] [HKCU\Software\kde.org] [HKCU\Software\madFlac] [HKCU\Software\redsn0w] [HKLM\Software\ABBYY] [HKLM\Software\ALWIL Software] [HKLM\Software\ATI Technologies] [HKLM\Software\ATI] [HKLM\Software\AVAST Software] [HKLM\Software\Adobe] [HKLM\Software\AdwCleaner] [HKLM\Software\Ahead] [HKLM\Software\Apple Computer, Inc.] [HKLM\Software\Apple Inc.] [HKLM\Software\Audible] [HKLM\Software\Avid] [HKLM\Software\BrowserChoice] [HKLM\Software\C07ft5Y] [HKLM\Software\Caphyon] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\Corel Corporation] [HKLM\Software\DT Soft] [HKLM\Software\DarXabre games] [HKLM\Software\Dassault Systemes] [HKLM\Software\Digital River] [HKLM\Software\EPSON] [HKLM\Software\EasyBits] [HKLM\Software\EpsonNet] [HKLM\Software\FRANCE TELECOM] [HKLM\Software\GEAR Software] [HKLM\Software\GNU] [HKLM\Software\Google] [HKLM\Software\Gradient] [HKLM\Software\HaaliMkx] [HKLM\Software\IBM] [HKLM\Software\Infogrames] [HKLM\Software\InstallShield] [HKLM\Software\InstalledOptions] [HKLM\Software\Intel] [HKLM\Software\JavaSoft] [HKLM\Software\JreMetrics] [HKLM\Software\Lame for Audacity] [HKLM\Software\Licenses] [HKLM\Software\Macromedia] [HKLM\Software\Malwarebytes' Anti-Malware] [HKLM\Software\Martin Prikryl] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\NEC Computers International] [HKLM\Software\NEUF PB] [HKLM\Software\NeroDigital] [HKLM\Software\Nero] [HKLM\Software\ODBC] [HKLM\Software\OemSetup] [HKLM\Software\On2 Technologies] [HKLM\Software\OpenOffice.org] [HKLM\Software\Orange] [HKLM\Software\PACKARD BELL] [HKLM\Software\PB_EBAY] =>Toolbar.eBay [HKLM\Software\PB_METABOLI] [HKLM\Software\PDFCreator] [HKLM\Software\Pegasus Imaging] [HKLM\Software\Pinnacle Systems] [HKLM\Software\Pinnacle] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\RTLSetup] [HKLM\Software\Realtek Semiconductor Corp.] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SEIKO EPSON CORPORATION] [HKLM\Software\SRS Labs] [HKLM\Software\Sierra On-Line] [HKLM\Software\Sierra OnLine] [HKLM\Software\Skype] [HKLM\Software\Sonic] [HKLM\Software\Sony Corporation] [HKLM\Software\Symantec] [HKLM\Software\Synaptics] [HKLM\Software\ValueApps] =>Toolbar.Conduit [HKLM\Software\VideoLAN] [HKLM\Software\VirtualDJ] [HKLM\Software\Volatile] [HKLM\Software\WOW6432Node] [HKLM\Software\Waves Audio] [HKLM\Software\WinRAR] [HKLM\Software\mozilla.org] [HKLM\Software\webtogo] ~ Key Software: 379 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 25/11/2011 - 17:53:48 - [3,348] ----D C:\Program Files\7-Zip O43 - CFD: 15/10/2011 - 19:07:59 - [118,664] ----D C:\Program Files\ABBYY FineReader 6.0 Sprint O43 - CFD: 02/02/2014 - 23:15:23 - [493,544] ----D C:\Program Files\Adobe O43 - CFD: 18/12/2010 - 22:20:02 - [378,897] ----D C:\Program Files\Alwil Software O43 - CFD: 03/08/2011 - 18:00:49 - [2,316] ----D C:\Program Files\Apple Software Update =>.Apple Inc O43 - CFD: 22/05/2008 - 04:46:46 - [13,606] ----D C:\Program Files\ATI O43 - CFD: 22/05/2008 - 04:49:15 - [105,560] ----D C:\Program Files\ATI Technologies O43 - CFD: 05/07/2011 - 00:14:48 - [8,288] ----D C:\Program Files\Audacity O43 - CFD: 14/01/2011 - 19:37:59 - [32,784] ----D C:\Program Files\Audacity 1.3 Beta (Unicode) O43 - CFD: 27/12/2013 - 17:04:42 - [25,816] ----D C:\Program Files\BitComet =>P2P.BitComet O43 - CFD: 16/10/2011 - 09:57:53 - [0,602] ----D C:\Program Files\Bonjour O43 - CFD: 30/01/2011 - 22:43:06 - [1225,034] ----D C:\Program Files\catia O43 - CFD: 19/12/2010 - 15:44:25 - [979,404] ----D C:\Program Files\catia v5r17 O43 - CFD: 23/12/2011 - 21:20:04 - [4,037] ----D C:\Program Files\CCleaner =>Piriform Ltd O43 - CFD: 15/07/2011 - 23:43:56 - [389,161] ----D C:\Program Files\cochons O43 - CFD: 04/02/2014 - 20:53:32 - [750,253] ----D C:\Program Files\Common Files O43 - CFD: 21/03/2012 - 00:14:51 - [6,869] ----D C:\Program Files\Convar O43 - CFD: 16/07/2011 - 00:08:56 - [16,469] ----D C:\Program Files\DAEMON Tools Lite =>.DT Soft Ltd O43 - CFD: 30/01/2011 - 23:38:44 - [1759,455] ----D C:\Program Files\Dassault Systemes O43 - CFD: 27/12/2010 - 16:09:14 - [0] ----D C:\Program Files\directx O43 - CFD: 26/11/2011 - 21:51:40 - [28,751] ----D C:\Program Files\epson O43 - CFD: 15/10/2011 - 19:17:21 - [114,305] ----D C:\Program Files\Epson Software O43 - CFD: 15/10/2011 - 19:04:55 - [18,975] ----D C:\Program Files\EpsonNet O43 - CFD: 18/12/2010 - 21:59:31 - [0] -SH-D C:\Program Files\Fichiers communs O43 - CFD: 22/10/2011 - 19:28:40 - [107,888] ----D C:\Program Files\GIMP-2.0 O43 - CFD: 04/02/2014 - 21:23:09 - [90,681] ----D C:\Program Files\Google O43 - CFD: 22/05/2008 - 04:59:47 - [4,501] ----D C:\Program Files\HDReg O43 - CFD: 27/12/2010 - 16:35:56 - [582,072] ----D C:\Program Files\Hooligans O43 - CFD: 15/07/2011 - 23:50:26 - [375,134] ----D C:\Program Files\Infogrames O43 - CFD: 15/10/2011 - 19:17:20 - [29,534] --H-D C:\Program Files\InstallShield Installation Information O43 - CFD: 22/05/2008 - 04:50:29 - [0,062] ----D C:\Program Files\Intel O43 - CFD: 30/01/2014 - 19:19:18 - [6,411] ----D C:\Program Files\Internet Explorer O43 - CFD: 11/03/2011 - 21:09:31 - [171,225] ----D C:\Program Files\Java O43 - CFD: 23/07/2011 - 23:23:54 - [1,180] ----D C:\Program Files\Lame For Audacity O43 - CFD: 19/09/2011 - 23:47:59 - [610,449] ----D C:\Program Files\Les Guignols O43 - CFD: 16/08/2011 - 15:20:30 - [1,161] ----D C:\Program Files\LibUSB-Win32-0.1.10.1 O43 - CFD: 04/02/2014 - 23:44:35 - [13,251] ----D C:\Program Files\Malwarebytes' Anti-Malware O43 - CFD: 02/02/2014 - 22:47:14 - [4,280] ----D C:\Program Files\MCShield O43 - CFD: 18/12/2010 - 22:13:48 - [1,510] ----D C:\Program Files\Medieval Software O43 - CFD: 16/01/2011 - 15:40:42 - [12,169] ----D C:\Program Files\Messenger Plus! Live O43 - CFD: 15/02/2011 - 21:17:20 - [0,216] ----D C:\Program Files\Microsoft O43 - CFD: 02/11/2006 - 13:37:34 - [89,117] ----D C:\Program Files\Microsoft Games O43 - CFD: 11/03/2011 - 20:15:52 - [622,556] ----D C:\Program Files\Microsoft Office O43 - CFD: 22/05/2008 - 05:24:28 - [7,431] ----D C:\Program Files\Microsoft Office Suite Activation Assistant O43 - CFD: 11/12/2013 - 17:59:46 - [40,851] ----D C:\Program Files\Microsoft Silverlight O43 - CFD: 11/03/2011 - 20:16:46 - [0,014] ----D C:\Program Files\Microsoft Visual Studio O43 - CFD: 11/03/2011 - 20:11:35 - [1,323] ----D C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 21/11/2012 - 23:19:44 - [139,669] ----D C:\Program Files\Microsoft Works O43 - CFD: 26/12/2010 - 03:02:07 - [7,789] ----D C:\Program Files\Microsoft.NET O43 - CFD: 19/09/2011 - 00:45:04 - [7,616] ----D C:\Program Files\MiPony O43 - CFD: 21/01/2014 - 21:16:17 - [94,740] ----D C:\Program Files\Movie Maker O43 - CFD: 01/02/2014 - 15:02:39 - [54,023] ----D C:\Program Files\Mozilla Firefox O43 - CFD: 01/02/2014 - 15:02:49 - [0,216] ----D C:\Program Files\Mozilla Maintenance Service O43 - CFD: 11/03/2011 - 20:17:22 - [0,025] ----D C:\Program Files\MSBuild O43 - CFD: 21/03/2012 - 00:51:34 - [38,094] ----D C:\Program Files\MSECache O43 - CFD: 21/12/2010 - 12:49:23 - [0] ----D C:\Program Files\MSXML 4.0 O43 - CFD: 22/05/2008 - 05:08:47 - [330,381] ----D C:\Program Files\Nero O43 - CFD: 22/05/2008 - 05:10:11 - [0] ----D C:\Program Files\NeroInstall.bak O43 - CFD: 22/05/2008 - 04:54:22 - [2,621] ----D C:\Program Files\O2Micro Flash Memory Card Driver O43 - CFD: 21/03/2012 - 01:06:54 - [336,321] ----D C:\Program Files\OpenOffice.org 3 O43 - CFD: 23/11/2011 - 16:54:17 - [52,332] ----D C:\Program Files\Orange O43 - CFD: 22/05/2008 - 05:25:09 - [1227,769] ----D C:\Program Files\Packard Bell O43 - CFD: 13/09/2011 - 13:53:41 - [29,253] ----D C:\Program Files\PDFCreator O43 - CFD: 10/04/2011 - 16:45:13 - [693,509] ----D C:\Program Files\Pharaon O43 - CFD: 23/10/2011 - 10:57:53 - [3,528] ----D C:\Program Files\PhotoFiltre O43 - CFD: 25/04/2011 - 19:57:06 - [13,998] ----D C:\Program Files\PhotoFiltre Studio X O43 - CFD: 21/01/2014 - 22:25:34 - [1052,176] ----D C:\Program Files\Pinnacle O43 - CFD: 29/02/2012 - 17:44:36 - [72,431] ----D C:\Program Files\QuickTime O43 - CFD: 22/05/2008 - 04:54:24 - [27,718] ----D C:\Program Files\Realtek O43 - CFD: 02/11/2006 - 13:37:34 - [36,910] ----D C:\Program Files\Reference Assemblies O43 - CFD: 22/05/2008 - 05:01:13 - [10,122] ----D C:\Program Files\Seagate O43 - CFD: 18/12/2010 - 22:38:05 - [29,577] ----D C:\Program Files\Securitoo O43 - CFD: 10/04/2011 - 16:33:40 - [0] ----D C:\Program Files\Sierra On-Line O43 - CFD: 06/09/2012 - 02:01:50 - [16,919] R---D C:\Program Files\Skype O43 - CFD: 15/10/2011 - 17:26:55 - [0] ----D C:\Program Files\Smart Panel O43 - CFD: 26/02/2012 - 15:26:01 - [3,745] ----D C:\Program Files\Sony O43 - CFD: 22/05/2008 - 04:53:00 - [13,194] ----D C:\Program Files\Synaptics O43 - CFD: 02/11/2006 - 14:01:55 - [0] --H-D C:\Program Files\Uninstall Information O43 - CFD: 23/12/2010 - 09:48:24 - [76,799] ----D C:\Program Files\VideoLAN O43 - CFD: 24/02/2012 - 21:38:08 - [28,145] ----D C:\Program Files\VirtualDJ O43 - CFD: 12/02/2012 - 12:45:25 - [0,005] ----D C:\Program Files\VirtualDJ(8) O43 - CFD: 18/12/2010 - 22:23:35 - [38,050] ----D C:\Program Files\VistaCodecPack O43 - CFD: 21/01/2014 - 21:16:18 - [0,970] ----D C:\Program Files\Windows Calendar O43 - CFD: 21/01/2014 - 21:16:14 - [2,610] ----D C:\Program Files\Windows Collaboration O43 - CFD: 21/01/2014 - 21:16:07 - [4,283] ----D C:\Program Files\Windows Defender O43 - CFD: 26/01/2014 - 20:38:47 - [6,757] ----D C:\Program Files\Windows Journal O43 - CFD: 15/02/2011 - 21:17:14 - [43,730] ----D C:\Program Files\Windows Live O43 - CFD: 19/12/2010 - 21:42:56 - [0,234] ----D C:\Program Files\Windows Live SkyDrive O43 - CFD: 30/01/2014 - 19:18:50 - [8,694] ----D C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 21/01/2014 - 21:16:14 - [4,290] ----D C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 18/12/2010 - 21:59:31 - [7,589] ----D C:\Program Files\Windows NT O43 - CFD: 21/01/2014 - 21:16:13 - [12,902] ----D C:\Program Files\Windows Photo Gallery O43 - CFD: 30/01/2014 - 19:19:17 - [0,128] ----D C:\Program Files\Windows Portable Devices O43 - CFD: 21/01/2014 - 21:16:15 - [7,399] ----D C:\Program Files\Windows Sidebar O43 - CFD: 18/12/2010 - 22:28:25 - [3,362] ----D C:\Program Files\WinRAR O43 - CFD: 20/03/2011 - 17:03:19 - [10,757] ----D C:\Program Files\Yuna Software O43 - CFD: 05/02/2014 - 22:36:25 - [17,260] ----D C:\Program Files\ZHPDiag =>.Nicolas Coolman O43 - CFD: 02/02/2014 - 23:16:14 - [52,600] ----D C:\Program Files\Common Files\Adobe O43 - CFD: 03/02/2014 - 21:40:59 - [23,686] ----D C:\Program Files\Common Files\Apple O43 - CFD: 22/05/2008 - 05:19:54 - [0,089] ----D C:\Program Files\Common Files\DESIGNER O43 - CFD: 15/10/2011 - 19:28:47 - [4,006] ----D C:\Program Files\Common Files\EPSON O43 - CFD: 15/10/2011 - 19:14:25 - [9,638] ----D C:\Program Files\Common Files\InstallShield O43 - CFD: 04/03/2011 - 21:28:30 - [1,189] ----D C:\Program Files\Common Files\Java O43 - CFD: 22/05/2008 - 04:46:28 - [0,618] ----D C:\Program Files\Common Files\Macrovision Shared O43 - CFD: 22/03/2012 - 19:10:34 - [438,619] ----D C:\Program Files\Common Files\microsoft shared O43 - CFD: 22/05/2008 - 05:09:33 - [136,874] ----D C:\Program Files\Common Files\Nero O43 - CFD: 21/01/2014 - 22:17:30 - [0,383] ----D C:\Program Files\Common Files\Pegasus Imaging O43 - CFD: 02/11/2006 - 12:18:33 - [0,003] ----D C:\Program Files\Common Files\Services O43 - CFD: 06/09/2012 - 02:01:50 - [2,056] ----D C:\Program Files\Common Files\Skype O43 - CFD: 02/11/2006 - 12:18:33 - [39,198] ----D C:\Program Files\Common Files\SpeechEngines O43 - CFD: 04/02/2014 - 20:58:04 - [0,476] ----D C:\Program Files\Common Files\Symantec Shared O43 - CFD: 30/01/2014 - 19:18:46 - [40,820] ----D C:\Program Files\Common Files\System O43 - CFD: 19/12/2010 - 21:37:23 - [0] ----D C:\Program Files\Common Files\Windows Live O43 - CFD: 22/05/2008 - 05:24:57 - [0] ----D C:\ProgramData\Acer O43 - CFD: 02/02/2014 - 23:15:55 - [380,081] ----D C:\ProgramData\Adobe O43 - CFD: 18/12/2010 - 22:20:02 - [20,471] ----D C:\ProgramData\Alwil Software O43 - CFD: 19/12/2010 - 00:32:37 - [145,034] ----D C:\ProgramData\Apple O43 - CFD: 19/12/2010 - 00:23:03 - [25,967] ----D C:\ProgramData\Apple Computer O43 - CFD: 02/11/2006 - 14:02:03 - [0] -SH-D C:\ProgramData\Application Data O43 - CFD: 22/05/2008 - 04:56:23 - [0] ----D C:\ProgramData\ATI O43 - CFD: 18/12/2010 - 21:59:31 - [0] -SH-D C:\ProgramData\Bureau O43 - CFD: 27/12/2010 - 14:58:25 - [0,001] ----D C:\ProgramData\DAEMON Tools Lite =>.DT Soft Ltd O43 - CFD: 19/12/2010 - 15:37:28 - [0,005] ----D C:\ProgramData\DassaultSystemes O43 - CFD: 02/11/2006 - 14:02:03 - [0] -SH-D C:\ProgramData\Desktop O43 - CFD: 02/11/2006 - 14:02:03 - [0] -SH-D C:\ProgramData\Documents O43 - CFD: 27/11/2011 - 11:33:08 - [0] ----D C:\ProgramData\eMule O43 - CFD: 15/10/2011 - 19:26:18 - [8,380] ----D C:\ProgramData\EPSON O43 - CFD: 18/12/2010 - 21:59:31 - [0] -SH-D C:\ProgramData\Favoris O43 - CFD: 02/11/2006 - 14:02:03 - [0] -SH-D C:\ProgramData\Favorites O43 - CFD: 04/02/2014 - 21:10:26 - [0,506] ----D C:\ProgramData\Google O43 - CFD: 04/02/2014 - 23:44:31 - [7,864] ----D C:\ProgramData\Malwarebytes O43 - CFD: 05/02/2014 - 22:35:29 - [135,560] ----D C:\ProgramData\MCShield O43 - CFD: 18/12/2010 - 21:59:31 - [0] -SH-D C:\ProgramData\Menu Démarrer O43 - CFD: 16/01/2011 - 15:40:59 - [0,026] ----D C:\ProgramData\Messenger Plus! O43 - CFD: 29/07/2011 - 21:25:46 - [570,189] -S--D C:\ProgramData\Microsoft O43 - CFD: 25/01/2014 - 15:53:01 - [0,062] ----D C:\ProgramData\Microsoft Help O43 - CFD: 18/12/2010 - 21:59:31 - [0] -SH-D C:\ProgramData\Modèles O43 - CFD: 01/02/2014 - 15:02:47 - [0] ----D C:\ProgramData\Mozilla O43 - CFD: 22/05/2008 - 05:08:47 - [5,142] ----D C:\ProgramData\Nero O43 - CFD: 26/08/2012 - 13:59:22 - [14,593] ----D C:\ProgramData\Orange O43 - CFD: 21/01/2014 - 22:04:43 - [2,019] ----D C:\ProgramData\Pinnacle O43 - CFD: 06/09/2012 - 18:42:55 - [36,291] ----D C:\ProgramData\Skype O43 - CFD: 02/11/2006 - 14:02:03 - [0] -SH-D C:\ProgramData\Start Menu O43 - CFD: 04/03/2011 - 21:28:32 - [0] ----D C:\ProgramData\Sun O43 - CFD: 04/02/2014 - 20:55:23 - [0,002] ----D C:\ProgramData\Symantec O43 - CFD: 01/02/2014 - 09:54:10 - [0] ---AD C:\ProgramData\TEMP O43 - CFD: 02/11/2006 - 14:02:04 - [0] -SH-D C:\ProgramData\Templates O43 - CFD: 16/08/2011 - 17:38:14 - [0,013] ----D C:\ProgramData\Test Drive Unlimited O43 - CFD: 15/10/2011 - 19:22:56 - [3,668] ----D C:\ProgramData\UDL O43 - CFD: 04/01/2014 - 17:07:54 - [1,689] ----D C:\ProgramData\Updater =>PUP.CrossRider O43 - CFD: 18/12/2010 - 22:23:28 - [22,316] ----D C:\ProgramData\VistaCodecs O43 - CFD: 25/05/2011 - 16:33:26 - [0] ----D C:\ProgramData\WindowsSearch O43 - CFD: 18/12/2010 - 22:18:22 - [0,002] ----D C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521} O43 - CFD: 18/03/2012 - 11:54:24 - [16,310] ----D C:\Users\Kévin\AppData\Roaming\Adobe O43 - CFD: 29/02/2012 - 18:12:21 - [1599,955] ----D C:\Users\Kévin\AppData\Roaming\Apple Computer O43 - CFD: 18/12/2010 - 22:07:25 - [0] ----D C:\Users\Kévin\AppData\Roaming\ATI O43 - CFD: 30/07/2011 - 16:51:06 - [0,002] ----D C:\Users\Kévin\AppData\Roaming\Audacity O43 - CFD: 02/02/2014 - 21:57:58 - [0,573] ----D C:\Users\Kévin\AppData\Roaming\BitComet =>P2P.BitComet O43 - CFD: 05/07/2011 - 00:08:27 - [0,006] ----D C:\Users\Kévin\AppData\Roaming\Cool Record Edit Pro O43 - CFD: 30/10/2011 - 22:17:46 - [0] ----D C:\Users\Kévin\AppData\Roaming\DAEMON Tools Lite =>.DT Soft Ltd O43 - CFD: 19/12/2010 - 15:32:02 - [0,302] ----D C:\Users\Kévin\AppData\Roaming\DassaultSystemes O43 - CFD: 27/12/2010 - 14:53:32 - [0] ----D C:\Users\Kévin\AppData\Roaming\DivX O43 - CFD: 01/07/2011 - 14:06:58 - [0] ----D C:\Users\Kévin\AppData\Roaming\dvdcss O43 - CFD: 16/10/2011 - 12:04:58 - [0,002] ----D C:\Users\Kévin\AppData\Roaming\Epson O43 - CFD: 05/07/2011 - 00:08:52 - [0,001] ----D C:\Users\Kévin\AppData\Roaming\Free Sound Recorder O43 - CFD: 20/12/2010 - 12:15:51 - [0] ----D C:\Users\Kévin\AppData\Roaming\Google O43 - CFD: 13/05/2012 - 00:45:48 - [0] ----D C:\Users\Kévin\AppData\Roaming\gtk-2.0 O43 - CFD: 25/04/2011 - 19:57:09 - [0] ----D C:\Users\Kévin\AppData\Roaming\Identities O43 - CFD: 15/10/2011 - 18:59:37 - [0] ----D C:\Users\Kévin\AppData\Roaming\InstallShield O43 - CFD: 19/12/2010 - 00:00:33 - [19,716] ----D C:\Users\Kévin\AppData\Roaming\Macromedia O43 - CFD: 04/02/2014 - 23:45:07 - [13,010] ----D C:\Users\Kévin\AppData\Roaming\Malwarebytes O43 - CFD: 02/11/2006 - 13:37:34 - [0] ----D C:\Users\Kévin\AppData\Roaming\Media Center Programs O43 - CFD: 12/12/2013 - 20:42:42 - [18,931] -S--D C:\Users\Kévin\AppData\Roaming\Microsoft O43 - CFD: 02/10/2011 - 12:59:36 - [0,315] ----D C:\Users\Kévin\AppData\Roaming\Mipony O43 - CFD: 19/12/2010 - 00:00:20 - [92,850] ----D C:\Users\Kévin\AppData\Roaming\Mozilla O43 - CFD: 19/12/2010 - 18:45:04 - [0,161] ----D C:\Users\Kévin\AppData\Roaming\Nero O43 - CFD: 11/03/2011 - 21:15:38 - [1,430] ----D C:\Users\Kévin\AppData\Roaming\OpenOffice.org O43 - CFD: 08/05/2012 - 09:34:43 - [20,946] ----D C:\Users\Kévin\AppData\Roaming\Orange O43 - CFD: 22/10/2011 - 09:30:11 - [0] ----D C:\Users\Kévin\AppData\Roaming\Packard Bell O43 - CFD: 23/10/2011 - 11:01:53 - [0] ----D C:\Users\Kévin\AppData\Roaming\PhotoFiltre O43 - CFD: 25/04/2011 - 19:59:50 - [0] ----D C:\Users\Kévin\AppData\Roaming\PhotoFiltre Studio X O43 - CFD: 29/02/2012 - 19:51:44 - [26,298] ----D C:\Users\Kévin\AppData\Roaming\redsn0w O43 - CFD: 16/08/2011 - 17:01:12 - [0,006] R-H-D C:\Users\Kévin\AppData\Roaming\SecuROM O43 - CFD: 23/02/2012 - 21:46:45 - [20,389] ----D C:\Users\Kévin\AppData\Roaming\Sony Corporation O43 - CFD: 18/12/2010 - 22:07:21 - [0] ----D C:\Users\Kévin\AppData\Roaming\Symantec O43 - CFD: 21/03/2012 - 00:57:56 - [0,013] ----D C:\Users\Kévin\AppData\Roaming\Template O43 - CFD: 18/12/2010 - 22:23:29 - [0,001] ----D C:\Users\Kévin\AppData\Roaming\VistaCodecs O43 - CFD: 09/12/2013 - 17:40:20 - [1,463] ----D C:\Users\Kévin\AppData\Roaming\vlc O43 - CFD: 19/12/2010 - 00:11:38 - [0] ----D C:\Users\Kévin\AppData\Roaming\WinRAR O43 - CFD: 05/02/2014 - 22:37:16 - [0,402] ----D C:\Users\Kévin\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 18/03/2012 - 11:54:19 - [0,804] ----D C:\Users\Kévin\AppData\Local\Adobe O43 - CFD: 29/03/2011 - 15:08:33 - [10,449] ----D C:\Users\Kévin\AppData\Local\Ahead O43 - CFD: 18/12/2010 - 22:16:54 - [0] ----D C:\Users\Kévin\AppData\Local\Apple O43 - CFD: 23/03/2011 - 16:25:19 - [75,258] ----D C:\Users\Kévin\AppData\Local\Apple Computer O43 - CFD: 18/12/2010 - 22:03:07 - [0] -SH-D C:\Users\Kévin\AppData\Local\Application Data O43 - CFD: 18/12/2010 - 22:07:25 - [0,038] ----D C:\Users\Kévin\AppData\Local\ATI O43 - CFD: 19/12/2010 - 15:58:39 - [0,589] ----D C:\Users\Kévin\AppData\Local\DassaultSystemes O43 - CFD: 12/11/2011 - 18:47:17 - [14,638] ----D C:\Users\Kévin\AppData\Local\Facebook O43 - CFD: 04/02/2014 - 21:10:26 - [1014,142] ----D C:\Users\Kévin\AppData\Local\Google O43 - CFD: 18/12/2010 - 22:03:07 - [0] -SH-D C:\Users\Kévin\AppData\Local\Historique O43 - CFD: 12/12/2013 - 20:42:42 - [0] ----D C:\Users\Kévin\AppData\Local\Macromedia O43 - CFD: 12/12/2013 - 20:42:42 - [393,821] ----D C:\Users\Kévin\AppData\Local\Microsoft O43 - CFD: 16/08/2011 - 15:56:14 - [0,223] ----D C:\Users\Kévin\AppData\Local\Microsoft Games O43 - CFD: 18/11/2011 - 20:54:55 - [0,388] ----D C:\Users\Kévin\AppData\Local\Microsoft Help O43 - CFD: 19/12/2010 - 00:00:16 - [136,880] ----D C:\Users\Kévin\AppData\Local\Mozilla O43 - CFD: 26/11/2011 - 11:08:37 - [0] ----D C:\Users\Kévin\AppData\Local\Orange O43 - CFD: 02/10/2011 - 17:32:47 - [56,481] ----D C:\Users\Kévin\AppData\Local\Packard Bell O43 - CFD: 26/01/2014 - 17:49:42 - [83,676] ----D C:\Users\Kévin\AppData\Local\Pinnacle O43 - CFD: 05/02/2014 - 22:36:42 - [0,016] ----D C:\Users\Kévin\AppData\Local\Temp O43 - CFD: 18/12/2010 - 22:03:07 - [0] -SH-D C:\Users\Kévin\AppData\Local\Temporary Internet Files O43 - CFD: 10/04/2011 - 15:47:54 - [0,200] ----D C:\Users\Kévin\AppData\Local\Unity O43 - CFD: 19/12/2010 - 15:57:31 - [7,087] ----D C:\Users\Kévin\AppData\Local\VirtualStore O43 - CFD: 21/01/2008 - 03:42:46 - [0,015] R---D C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 18/12/2010 - 22:07:00 - [0] R---D C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 21/03/2012 - 00:14:52 - [0,003] ----D C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Convar O43 - CFD: 21/01/2008 - 03:42:46 - [0,001] R---D C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 19/09/2011 - 00:45:03 - [0] ----D C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MiPony O43 - CFD: 23/11/2011 - 16:54:20 - [0] ----D C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My Application O43 - CFD: 23/10/2011 - 10:57:53 - [0] ----D C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre O43 - CFD: 25/04/2011 - 19:57:06 - [0] ----D C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X O43 - CFD: 03/02/2014 - 23:15:06 - [0] R---D C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 04/01/2014 - 17:08:48 - [0] ----D C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Value Apps =>Toolbar.Conduit O43 - CFD: 12/02/2012 - 12:42:39 - [0] ----D C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Virtual DJ O43 - CFD: 18/12/2010 - 22:28:25 - [0,002] ----D C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ~ Program Folder: 224 Scanned in 00mn 36s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.AEE25DFBB9A526D2C7432CC09AC14185] - 02/02/2014 - 21:54:32 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1503662] O44 - LFC:[MD5.F2DD97E049F8401B66BA98B863E46893] - 02/02/2014 - 21:54:33 ---A- . (...) -- C:\Windows\System32\perfc009.dat [104914] O44 - LFC:[MD5.F69413C2E59C6477974536C51F34B7BE] - 02/02/2014 - 21:54:33 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [127504] O44 - LFC:[MD5.35C32EC168D51F46E2B3A5A6ABAD6155] - 02/02/2014 - 21:54:33 ---A- . (...) -- C:\Windows\System32\perfh009.dat [598900] O44 - LFC:[MD5.03003AF2AFF0D59C2DC9232BFCB15913] - 02/02/2014 - 21:54:33 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [681798] O44 - LFC:[MD5.F31569EA60FA5EEDC52A27E59ABC0042] - 03/02/2014 - 22:17:41 ----- . (...) -- C:\UsbFix [Scan 1] PC-DE-KÉVIN.txt [14497] O44 - LFC:[MD5.16C9638B5A8019058F80B136FDAEF4CF] - 03/02/2014 - 22:48:24 ----- . (...) -- C:\UsbFix [Scan 2] PC-DE-KÉVIN.txt [14305] O44 - LFC:[MD5.657ACE645BA2BB86C5BCA639E6A292A4] - 03/02/2014 - 23:15:25 ---A- . (...) -- C:\UsbFix [Clean 2] PC-DE-KÉVIN.txt [13365] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 03/02/2014 - 23:16:51 ---A- . (...) -- C:\Windows\setupact.log [0] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 03/02/2014 - 23:16:51 ---A- . (...) -- C:\Windows\setuperr.log [0] O44 - LFC:[MD5.4470E3C1E0C3378E4CAB137893C12C3A] - 04/02/2014 - 23:44:30 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [22856] O44 - LFC:[MD5.367BA37948213E00E0E5E52325E83486] - 05/02/2014 - 20:40:08 ---A- . (...) -- C:\Windows\PFRO.log [79408] O44 - LFC:[MD5.5E4BC396186477862A994B5E06AA8C2A] - 05/02/2014 - 20:40:15 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.26C78B72628E710A4CEB848D914EC935] - 05/02/2014 - 21:12:14 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512] O44 - LFC:[MD5.247C05C8387EEE19D0F9E28091DDA606] - 05/02/2014 - 22:15:43 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1252292] O44 - LFC:[MD5.069385484EA57B663D688894C88975C5] - 25/01/2014 - 15:46:05 ---A- . (.Microsoft Corporation - Windows Update Application Launcher.) -- C:\Windows\System32\wuapp.exe [33792] O44 - LFC:[MD5.98F94089E9C549E223AB05BE54BAB2ED] - 25/01/2014 - 15:46:05 ---A- . (.Microsoft Corporation - Windows Update Vista Web Control.) -- C:\Windows\System32\wuwebv.dll [171904] O44 - LFC:[MD5.1A617835452EEE5060976C9B9F5FE635] - 25/01/2014 - 15:46:41 ---A- . (.Microsoft Corporation - API du client Windows Update.) -- C:\Windows\System32\wuapi.dll [577048] O44 - LFC:[MD5.C480F0E968ECA0D80D0299D7F204E33B] - 25/01/2014 - 15:46:42 ---A- . (.Microsoft Corporation - Windows Update WUDriver Stub.) -- C:\Windows\System32\wudriver.dll [88576] O44 - LFC:[MD5.3458EDA96E30FBD0477A2800D3FB1909] - 25/01/2014 - 15:46:42 ---A- . (.Microsoft Corporation - Windows Update client proxy stub.) -- C:\Windows\System32\wups.dll [35864] O44 - LFC:[MD5.FC3EC24FCE372C89423E015A2AC1A31E] - 25/01/2014 - 15:47:30 ---A- . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] O44 - LFC:[MD5.285C594C4913FA9DC7BB6BA3AD6F101A] - 25/01/2014 - 15:47:30 ---A- . (.Microsoft Corporation - Expérience utilisateur du client Windows Up.) -- C:\Windows\System32\wucltux.dll [2422272] O44 - LFC:[MD5.BDC0C99E472176C8C2C853A68ADC5073] - 25/01/2014 - 15:47:31 ---A- . (.Microsoft Corporation - Windows Update client proxy stub 2.) -- C:\Windows\System32\wups2.dll [45080] O44 - LFC:[MD5.2E0B0A051FFAA86E358465BB0880D453] - 25/01/2014 - 15:47:31 ---A- . (.Microsoft Corporation - Windows Update.) -- C:\Windows\System32\wuauclt.exe [53784] O44 - LFC:[MD5.DE98C769DA2B5F121846C9F3B9493C5A] - 25/01/2014 - 16:33:06 ---A- . (.Microsoft Corporation - RDPSRAPI COM Objects.) -- C:\Windows\System32\rdpencom.dll [613376] O44 - LFC:[MD5.71B479749F0F52C4FEC726C6FFA2CE1C] - 25/01/2014 - 16:50:20 ---A- . (.Microsoft Corporation - Crypto Network Related API.) -- C:\Windows\System32\cryptnet.dll [98304] O44 - LFC:[MD5.D16A740186870C32941C0E61DF4F1298] - 25/01/2014 - 16:50:21 ---A- . (.Microsoft Corporation - Microsoft Trust Verification APIs.) -- C:\Windows\System32\wintrust.dll [172544] O44 - LFC:[MD5.684C130BBC6DB681BAD4920A4C944AA5] - 25/01/2014 - 16:50:21 ---A- . (.Microsoft Corporation - Services de chiffrement.) -- C:\Windows\System32\cryptsvc.dll [133120] O44 - LFC:[MD5.8D31A140B55021BBD3A608F5A7AA2E18] - 25/01/2014 - 17:22:53 ---A- . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\Drivers\usb8023.sys [15872] O44 - LFC:[MD5.FF41E1AC301F51E16F61AD7C0F45467C] - 25/01/2014 - 17:22:56 ---A- . (.Microsoft Corporation - Structured Query.) -- C:\Windows\System32\msshsq.dll [231424] O44 - LFC:[MD5.A3E186B4B935905B829219502557314E] - 25/01/2014 - 17:23:01 ---A- . (.Microsoft Corporation - Processus de l’autorité de sécurité locale.) -- C:\Windows\System32\lsass.exe [9728] O44 - LFC:[MD5.D602FEDBD9155FC2DED6863FB60C950F] - 25/01/2014 - 17:23:01 ---A- . (.Microsoft Corporation - Security Support Provider Interface.) -- C:\Windows\System32\secur32.dll [72704] O44 - LFC:[MD5.178FAC2B7C66E9A4400CE7AC37623E3F] - 25/01/2014 - 17:23:04 ---A- . (.Microsoft Corporation - DLL serveur LSA.) -- C:\Windows\System32\lsasrv.dll [1259008] O44 - LFC:[MD5.50E3E76B0901BB4FC029BB88BFA5CE79] - 25/01/2014 - 17:23:04 ---A- . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll [278528] O44 - LFC:[MD5.4A1445EFA932A3BAF5BDB02D7131EE20] - 25/01/2014 - 17:23:05 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecdd.sys [440704] O44 - LFC:[MD5.BE4AD4045D7A6C6AF4ECCBD5F6B7F8D8] - 25/01/2014 - 17:24:52 ---A- . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\Drivers\hidparse.sys [25472] O44 - LFC:[MD5.1D714B8497CD68307806D5D3F60A5169] - 25/01/2014 - 17:24:52 ---A- . (.Microsoft Corporation - USB Scanner Driver.) -- C:\Windows\System32\Drivers\usbscan.sys [35328] O44 - LFC:[MD5.4E07C27B4207ABB35F694E10ED609D2C] - 25/01/2014 - 17:25:24 ---A- . (.Microsoft Corporation - Dialogues communs de certificats Microsoft.) -- C:\Windows\System32\cryptdlg.dll [24576] O44 - LFC:[MD5.A508314231C49AEE86987CEA3EAECAD1] - 25/01/2014 - 17:25:32 ---A- . (.Microsoft Corporation - DLL serveur de Windows multi-utilisateurs.) -- C:\Windows\System32\winsrv.dll [376320] O44 - LFC:[MD5.C127EBD5AFAB31524662C48DFCEB773A] - 25/01/2014 - 17:25:35 ---A- . (.Microsoft Corporation - RDP Terminal Stack Driver.) -- C:\Windows\System32\Drivers\rdpwd.sys [180736] O44 - LFC:[MD5.58035212AB7869A5FC3AF186ACBA8F09] - 25/01/2014 - 17:25:40 ---A- . (.Microsoft Corporation - Bibliothèque de contrôles de l’expérience u.) -- C:\Windows\System32\comctl32.dll [532480] O44 - LFC:[MD5.1908CC7673F72601AFFDCA022689CEDF] - 25/01/2014 - 17:25:49 ---A- . (.Microsoft Corporation - Microsoft XmlLite Library.) -- C:\Windows\System32\xmllite.dll [182784] O44 - LFC:[MD5.6A166182E32844369FD072057782A22B] - 25/01/2014 - 17:25:59 ---A- . (.Microsoft Corporation - Client ActiveX des services Terminal Server.) -- C:\Windows\System32\mstscax.dll [2067968] O44 - LFC:[MD5.6ABD253226770EAE1292B4C945ED4B4B] - 25/01/2014 - 17:26:39 ---A- . (.Microsoft Corporation - MSXML 3.0 SP10.) -- C:\Windows\System32\msxml3.dll [1248768] O44 - LFC:[MD5.33F84B64D4765BCDFA0AB8464122DA14] - 25/01/2014 - 17:26:44 ---A- . (.Microsoft Corporation - Client Server Runtime Process.) -- C:\Windows\System32\csrsrv.dll [49152] O44 - LFC:[MD5.BE7480C91E89EB82FC080F772C220AE4] - 25/01/2014 - 17:26:44 ---A- . (.Microsoft Corporation - Windows Session Manager.) -- C:\Windows\System32\smss.exe [64000] O44 - LFC:[MD5.B9FDFF876B0E7B4FECBAA5708C6ED616] - 25/01/2014 - 17:26:45 ---A- . (.Microsoft Corporation - DLL Couche NT.) -- C:\Windows\System32\ntdll.dll [1205168] O44 - LFC:[MD5.61E5B6E75A5E53D1052A6D18BF67B59A] - 25/01/2014 - 17:26:46 ---A- . (.Microsoft Corporation - NT Kernel & System.) -- C:\Windows\System32\ntkrnlpa.exe [3603904] O44 - LFC:[MD5.CB284FC56D12BF5D2503CB75B03FD40A] - 25/01/2014 - 17:26:46 ---A- . (.Microsoft Corporation - NT Kernel & System.) -- C:\Windows\System32\ntoskrnl.exe [3551680] O44 - LFC:[MD5.B218342214D9BBA0F54EA12BA2E9278C] - 25/01/2014 - 17:27:23 ---A- . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\oleaut32.dll [563712] O44 - LFC:[MD5.DC15AB7168C0309D8F04FD95B6240422] - 25/01/2014 - 17:27:24 ---A- . (.Microsoft Corporation - Active Accessibility Core Component.) -- C:\Windows\System32\oleacc.dll [238080] O44 - LFC:[MD5.7E38DA8C11833B99766A97CEE3F80F07] - 25/01/2014 - 17:27:24 ---A- . (.Microsoft Corporation - Active Accessibility Resource DLL.) -- C:\Windows\System32\oleaccrc.dll [4096] O44 - LFC:[MD5.CCE5E7C0F8AA13207E777C43F4DA80A3] - 25/01/2014 - 17:27:24 ---A- . (.Microsoft Corporation - Programme principal d’automation de l’inter.) -- C:\Windows\System32\UIAutomationCore.dll [555520] O44 - LFC:[MD5.26B7512FAF33ECD0356874BBB20A9E20] - 25/01/2014 - 17:27:36 ---A- . (.Microsoft Corporation - Édition DirectShow..) -- C:\Windows\System32\qedit.dll [505344] O44 - LFC:[MD5.D1F8FE7C788C437DDE311E9F0C09005E] - 25/01/2014 - 17:27:44 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\System32\atmlib.dll [34304] O44 - LFC:[MD5.A136094368CA45BA50BF4E2703E93B82] - 25/01/2014 - 17:27:44 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\System32\atmfd.dll [293376] O44 - LFC:[MD5.DBD02E3E6F061EBBBF9B99A9D7CBA30B] - 25/01/2014 - 17:27:48 ---A- . (.Microsoft Corporation - Services HTTP Windows.) -- C:\Windows\System32\winhttp.dll [377344] O44 - LFC:[MD5.DBD9448D06E67FE6F29261FFAD205B68] - 25/01/2014 - 17:27:53 ---A- . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll [615936] O44 - LFC:[MD5.E1E52D56D266C2741058BA6611970D0C] - 25/01/2014 - 17:27:56 ---A- . (.Microsoft Corporation - DirectShow DVD PlayBack Runtime..) -- C:\Windows\System32\qdvd.dll [497152] O44 - LFC:[MD5.87CDFFCBD09C1CA03A068343D5D93250] - 25/01/2014 - 17:28:03 ---A- . (.Microsoft Corporation - WMI DC and DP functionality.) -- C:\Windows\System32\wmi.dll [5120] O44 - LFC:[MD5.B972A66758577E0BFD1DE0F91AAA27B5] - 25/01/2014 - 17:28:04 ---A- . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\Drivers\fs_rec.sys [12800] O44 - LFC:[MD5.09EA40F4DAD2EDB3587E5E0BAA9C3E15] - 25/01/2014 - 17:28:04 ---A- . (.Microsoft Corporation - Windows NT Image Helper.) -- C:\Windows\System32\imagehlp.dll [158208] O44 - LFC:[MD5.14D9A057A082E00116A7A4415051D07C] - 25/01/2014 - 17:28:08 ---A- . (...) -- C:\Windows\System32\WFP.TMF [218228] O44 - LFC:[MD5.EE16F3E01C4A6C77383F1BBBD10AD6C2] - 25/01/2014 - 17:28:08 ---A- . (.Microsoft Corporation - API en mode utilisateur FWP/IPsec.) -- C:\Windows\System32\FWPUCLNT.DLL [596480] O44 - LFC:[MD5.4687EE0C0DD2CE5F7AAA9C2E33C1DC78] - 25/01/2014 - 17:28:09 ---A- . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [444928] O44 - LFC:[MD5.25944D2CC49E0A6C581D02A74B7D6645] - 25/01/2014 - 17:28:14 ---A- . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\Windows\System32\Drivers\Wdf01000.sys [527064] O44 - LFC:[MD5.0296DAEB5555A248E8ABF7E5012A37A6] - 25/01/2014 - 17:28:35 ---A- . (.Microsoft Corporation - MSXML 6.0 SP2.) -- C:\Windows\System32\msxml6.dll [1400832] O44 - LFC:[MD5.0317420D419E1885894B3ED9D375D245] - 25/01/2014 - 17:29:05 ---A- . (.Microsoft Corporation - Crypto API32.) -- C:\Windows\System32\crypt32.dll [993792] O44 - LFC:[MD5.5827CF5BBA5AEBDB416556E076A19EAF] - 25/01/2014 - 17:29:39 ---A- . (.Microsoft Corporation - Active Directory Certificate Services Encod.) -- C:\Windows\System32\certenc.dll [41984] O44 - LFC:[MD5.84BDC77A844493FCD76858B52690F31B] - 25/01/2014 - 17:29:41 ---A- . (.Microsoft Corporation - CertUtil.exe.) -- C:\Windows\System32\certutil.exe [812544] O44 - LFC:[MD5.872363237F24BCB03D73E2A3B4FBF38D] - 25/01/2014 - 17:29:50 ---A- . (.Microsoft Corporation - GDI Client DLL.) -- C:\Windows\System32\gdi32.dll [297984] O44 - LFC:[MD5.DDEA43CDF00D6987F633F80AE4B7F2CE] - 25/01/2014 - 17:29:52 ---A- . (.Microsoft Corporation - Microsoft (R) Script Runtime.) -- C:\Windows\System32\scrrun.dll [172032] O44 - LFC:[MD5.F9D5C623E913CDAA198ECF0E6D2AA54A] - 25/01/2014 - 17:29:52 ---A- . (.Microsoft Corporation - Microsoft (R) Windows Script Controller.) -- C:\Windows\System32\wshcon.dll [36864] O44 - LFC:[MD5.B44B59C85DC2C2D39542F97BF545A308] - 25/01/2014 - 17:29:53 ---A- . (.Microsoft Corporation - Microsoft (R) Console Based Script Host.) -- C:\Windows\System32\cscript.exe [135168] O44 - LFC:[MD5.1D0A82B11235D68CF55A54B2ADECB9F1] - 25/01/2014 - 17:29:54 ---A- . (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe [155648] O44 - LFC:[MD5.2497FD012104DFF64BF01DA98ECF6F75] - 25/01/2014 - 17:29:54 ---A- . (.Microsoft Corporation - Windows Script Host Runtime Library.) -- C:\Windows\System32\wshom.ocx [131072] O44 - LFC:[MD5.C43A71C2845C88D7E5A8A26D3850BDFB] - 25/01/2014 - 17:29:57 ---A- . (.Microsoft Corporation - Windows Media Video Decoder.) -- C:\Windows\System32\WMVDECOD.DLL [1548288] O44 - LFC:[MD5.2D3D47B93E0BE86EEBB261734AB5B6A1] - 25/01/2014 - 17:30:02 ---A- . (.Microsoft Corporation - Print System COM component host.) -- C:\Windows\System32\printcom.dll [37376] O44 - LFC:[MD5.A4E7946B71BBDF8708C7AC97FD9E9008] - 25/01/2014 - 17:30:03 ---A- . (.Microsoft Corporation - Fournisseur d’impression de rendu côté clie.) -- C:\Windows\System32\win32spl.dll [443904] O44 - LFC:[MD5.C43DECDAC58C0A43E0376A216590F40A] - 25/01/2014 - 17:30:26 ---A- . (.Microsoft Corporation - Module d'exécution DirectShow..) -- C:\Windows\System32\quartz.dll [1314816] O44 - LFC:[MD5.420B075CD71AB9E58D15DD258958FBA3] - 25/01/2014 - 17:30:34 ---A- . (.Microsoft Corporation - Bibliothèque d'utilitaires légers du Shell.) -- C:\Windows\System32\shlwapi.dll [353280] O44 - LFC:[MD5.DC3105CC925A0D47F61B54E66AB730FC] - 25/01/2014 - 17:31:04 ---A- . (.Microsoft Corporation - DLL du client API BASE Windows NT.) -- C:\Windows\System32\kernel32.dll [892928] O44 - LFC:[MD5.1114579556DB85E9FAF9590DBC64CD62] - 25/01/2014 - 17:31:08 ---A- . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\Windows\System32\Drivers\USBAUDIO.sys [73344] O44 - LFC:[MD5.73FF24E21B690625A58109637DDA0DF7] - 25/01/2014 - 17:31:08 ---A- . (.Microsoft Corporation - USB Video Class Driver.) -- C:\Windows\System32\Drivers\usbvideo.sys [134272] O44 - LFC:[MD5.153E8515CB86F8BB5D1A8B478EBF4BB2] - 25/01/2014 - 17:31:12 ---A- . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\Drivers\usbehci.sys [39936] O44 - LFC:[MD5.44056325428A8E4C755830426E29878F] - 25/01/2014 - 17:31:12 ---A- . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbuhci.sys [23552] O44 - LFC:[MD5.B09C74A41F26B08149707EA5E7F956C2] - 25/01/2014 - 17:31:13 ---A- . (.Microsoft Corporation - USB 1.1 & 2.0 Port Driver.) -- C:\Windows\System32\Drivers\usbport.sys [226304] O44 - LFC:[MD5.AAB0B5F72D2D726FBFDC895A2902DE1D] - 25/01/2014 - 17:31:13 ---A- . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\Drivers\usbccgp.sys [73216] O44 - LFC:[MD5.FE619ED13CE12F5B43C04E3EA061BBD6] - 25/01/2014 - 17:31:13 ---A- . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\Drivers\usbd.sys [6016] O44 - LFC:[MD5.2AE6BCEBD85D31317E433733DAF25888] - 25/01/2014 - 17:31:14 ---A- . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\Drivers\usbhub.sys [197632] O44 - LFC:[MD5.17AF64D727545F2804F6E6D998327E3F] - 25/01/2014 - 17:31:18 ---A- . (.Microsoft Corporation - Windows NT CRT DLL.) -- C:\Windows\System32\msvcrt.dll [680448] O44 - LFC:[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - 25/01/2014 - 17:31:20 ---A- . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\Drivers\ntfs.sys [1082232] O44 - LFC:[MD5.13CC59C1B04E9F20A87987C68CD4BE3F] - 25/01/2014 - 17:31:23 ---A- . (.Microsoft Corporation - Windows cryptographic library.) -- C:\Windows\System32\ncrypt.dll [204288] O44 - LFC:[MD5.A520C77CFFABC96E32818451B60905C7] - 25/01/2014 - 17:33:37 ---A- . (.Microsoft Corporation - Gestionnaire de liaisons d’objets2.) -- C:\Windows\System32\packager.dll [66560] O44 - LFC:[MD5.98B656EAF128CD06F625B09C84D959E1] - 25/01/2014 - 17:33:40 ---A- . (.Microsoft Corporation - Net Win32 API DLL.) -- C:\Windows\System32\netapi32.dll [467968] O44 - LFC:[MD5.1217AEB3DBED42C54ADD826EDDC21660] - 25/01/2014 - 17:34:04 ---A- . (.Microsoft Corporation - XPS to GDI Converter.) -- C:\Windows\System32\XpsGdiConverter.dll [288768] O44 - LFC:[MD5.786DB5771F05EF300390399F626BF30A] - 25/01/2014 - 17:34:19 ---A- . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\Drivers\volsnap.sys [224640] O44 - LFC:[MD5.E389C328AC7FE5673593ECAD269E7A54] - 25/01/2014 - 17:34:22 ---A- . (.Microsoft Corporation - Runtime d’appel de procédure distante.) -- C:\Windows\System32\rpcrt4.dll [783360] O44 - LFC:[MD5.57390AF2F8939AB038FC4A5D10B50D52] - 25/01/2014 - 17:34:25 ---A- . (.Microsoft Corporation - Extension du Panneau de configuration du sy.) -- C:\Windows\System32\SysFxUI.dll [335360] O44 - LFC:[MD5.2A63675F6FA8EF0FF9F5C72695584CAA] - 25/01/2014 - 17:34:25 ---A- . (.Microsoft Corporation - Microsoft Kernel DRM Descrambler Filter.) -- C:\Windows\System32\Drivers\drmk.sys [130048] O44 - LFC:[MD5.6DBA75306DD9B242B6F1C343179AD201] - 25/01/2014 - 17:34:25 ---A- . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\Windows\System32\Drivers\portcls.sys [167936] O44 - LFC:[MD5.B9C2B89F08670E159F7181891E449CD9] - 25/01/2014 - 17:34:28 ---A- . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\Drivers\partmgr.sys [53120] O44 - LFC:[MD5.9258E6D71D65B90A9308978085B934AA] - 25/01/2014 - 17:34:31 ---A- . (.Microsoft Corporation - Microsoft DirectPlay.) -- C:\Windows\System32\dpnet.dll [376320] O44 - LFC:[MD5.F189F4921D3C24AC96861AA27D329B9B] - 25/01/2014 - 17:34:31 ---A- . (.Microsoft Corporation - Serveur Microsoft DirectPlay 8.) -- C:\Windows\System32\dpnsvr.exe [23040] O44 - LFC:[MD5.F1DBB1AC69239D292A9035032C5B4F00] - 25/01/2014 - 17:35:38 ---A- . (.Microsoft Corporation - Fichier DLL de ressources des fuseaux horai.) -- C:\Windows\System32\tzres.dll [2048] O44 - LFC:[MD5.D0F138624B9B49F349C5D3D2341199A1] - 25/01/2014 - 17:35:47 ---A- . (.Microsoft Corporation - Filtre XDS Codec & filtres de balises de c.) -- C:\Windows\System32\EncDec.dll [429056] O44 - LFC:[MD5.D18D53974FD715D50FC76F9FFE1C830D] - 25/01/2014 - 17:36:35 ---A- . (.Microsoft Corporation - TCP/IP Driver.) -- C:\Windows\System32\Drivers\tcpip.sys [905664] O44 - LFC:[MD5.AAF101900A23D75AE1AE00840FA6F3B8] - 25/01/2014 - 17:36:59 ---A- . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [11586048] O44 - LFC:[MD5.950343D413EEDC3A24472BB2046CFB59] - 25/01/2014 - 17:37:03 ---A- . (.Microsoft Corporation - Windows Briefcase Engine.) -- C:\Windows\System32\synceng.dll [75776] O44 - LFC:[MD5.E87F6492F5406287EDF05DF40BB86780] - 25/01/2014 - 17:45:53 ---A- . (.Microsoft Corporation - WinFX OpenType/CFF Rasterizer.) -- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll [102608] O44 - LFC:[MD5.63396CBB1365769D520E0FD89C2419F2] - 25/01/2014 - 17:46:51 ---A- . (.Microsoft Corporation - DLL de spouleur local.) -- C:\Windows\System32\localspl.dll [623616] O44 - LFC:[MD5.14FF750EFE13B0C21E5A06507C3A97B1] - 25/01/2014 - 17:47:00 ---A- . (.Microsoft Corporation - DLL API MCI.) -- C:\Windows\System32\winmm.dll [189952] O44 - LFC:[MD5.FF8FCDF1913016813AFB966A0F41B299] - 25/01/2014 - 17:47:00 ---A- . (.Microsoft Corporation - Pilote MCI pour séquenceur MIDI.) -- C:\Windows\System32\mciseq.dll [23552] O44 - LFC:[MD5.351FA1DF82CFFDEDA801604246E63E95] - 25/01/2014 - 17:47:02 ---A- . (.Microsoft Corporation - DLL Interface to TermDD Device Driver.) -- C:\Windows\System32\icaapi.dll [15872] O44 - LFC:[MD5.F4EAA7ECBCB25DE901C9B7F2CDCDA0B3] - 25/01/2014 - 17:47:03 ---A- . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\Drivers\tssecsrv.sys [24064] O44 - LFC:[MD5.A6E18756EA7B6E971184B57B86251FC5] - 25/01/2014 - 17:47:07 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [2050560] O44 - LFC:[MD5.D1AE4D2D559C23CE9DE4B3B10A90B901] - 25/01/2014 - 17:47:10 ---A- . (.Microsoft Corporation - Microsoft Network Provider for MPEG2 based.) -- C:\Windows\System32\MSDvbNP.ax [57856] O44 - LFC:[MD5.1B45ED071775A5E8BF51682EC5B61231] - 25/01/2014 - 17:47:11 ---A- . (.Microsoft Corporation - Microsoft MPEG-2 Section and Table Acquisit.) -- C:\Windows\System32\Mpeg2Data.ax [69632] O44 - LFC:[MD5.959A4BC486951267EE6343A431A92B12] - 25/01/2014 - 17:47:11 ---A- . (.Microsoft Corporation - Microsoft SI/PSI parser for MPEG2 based net.) -- C:\Windows\System32\psisdecd.dll [293376] O44 - LFC:[MD5.3A78D48221D32BC99C4B11B112D6EADA] - 25/01/2014 - 17:47:11 ---A- . (.Microsoft Corporation - Microsoft Transport Information Filter for.) -- C:\Windows\System32\psisrndr.ax [217088] O44 - LFC:[MD5.988670D8343EF9835FB3659DB71B2EFA] - 25/01/2014 - 17:47:13 ---A- . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys [638400] O44 - LFC:[MD5.D6F0260D9051C0B60998F4CDBE9B2CC6] - 25/01/2014 - 17:47:14 ---A- . (.Microsoft Corporation - Canonical Display Driver.) -- C:\Windows\System32\cdd.dll [37376] O44 - LFC:[MD5.A36F7A256E65D858A7039DB00ADEEBDD] - 30/01/2014 - 16:36:54 ---A- . (.Microsoft Corporation - WDF:UMDF Framework Library.) -- C:\Windows\System32\WUDFx.dll [613888] O44 - LFC:[MD5.980B6A5F92B8DB235C4A26728C2BE732] - 30/01/2014 - 16:36:55 ---A- . (.Microsoft Corporation - Windows Driver Foundation - Processus hôte.) -- C:\Windows\System32\WUDFHost.exe [196608] O44 - LFC:[MD5.D689B2C2E69156D954C24810F4081C1E] - 30/01/2014 - 16:36:55 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Platf.) -- C:\Windows\System32\WUDFCoinstaller.dll [38912] O44 - LFC:[MD5.48704647CD2E9DAA2EB81BDE6D029EDB] - 30/01/2014 - 16:36:58 ---A- . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\Drivers\WdfLdr.sys [47720] O44 - LFC:[MD5.D5CF1536137026ACDED95BF6CBF849F6] - 30/01/2014 - 16:36:58 ---A- . (.Microsoft Corporation - Windows Driver Foundation - Bibliothèque de.) -- C:\Windows\System32\WUDFPlatform.dll [172032] O44 - LFC:[MD5.FE47B7BC8EA320C2D9B5E5BF6E303765] - 30/01/2014 - 16:36:59 ---A- . (.Microsoft Corporation - Windows Driver Foundation - Service d’infra.) -- C:\Windows\System32\WUDFSvc.dll [73216] O44 - LFC:[MD5.06E6F32C8D0A3F66D956F57B43A2E070] - 30/01/2014 - 16:37:00 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\Drivers\WUDFPf.sys [66560] O44 - LFC:[MD5.76FD230DEAB73D2826458617DBB56A63] - 30/01/2014 - 16:37:00 ---A- . (.Microsoft Corporation - Windows USB Driver User Library.) -- C:\Windows\System32\winusb.dll [16896] O44 - LFC:[MD5.867C301E8B790040AE9CF6486E8041DF] - 30/01/2014 - 16:37:08 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\Drivers\WUDFRd.sys [155136] O44 - LFC:[MD5.2F0BC1FC6142DCB31C7D9804962A7011] - 30/01/2014 - 16:37:14 ---A- . (.Microsoft Corporation - Kernel Mode Driver Framework Resource.) -- C:\Windows\System32\Wdfres.dll [9728] O44 - LFC:[MD5.933222B19FF3E7EA5F65517EA1F7D57E] - 30/01/2014 - 16:37:31 ---A- . (...) -- C:\Windows\System32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf [3] O44 - LFC:[MD5.012A965F34414458075EF4F0EDC11536] - 30/01/2014 - 17:13:22 ---A- . (.Microsoft Corporation - Microsoft Windows Codecs Extended Library.) -- C:\Windows\System32\WindowsCodecsExt.dll [189440] O44 - LFC:[MD5.6836D001FC733F205ACB80A7986CB6C9] - 30/01/2014 - 17:13:22 ---A- . (.Microsoft Corporation - Microsoft Windows Codecs Library.) -- C:\Windows\System32\WindowsCodecs.dll [974848] O44 - LFC:[MD5.247609D2CD28A57BC1FE37FDA48AC0DB] - 30/01/2014 - 17:13:22 ---A- . (.Microsoft Corporation - Photo Metadata Handler.) -- C:\Windows\System32\PhotoMetadataHandler.dll [321024] O44 - LFC:[MD5.8375E2BD58BFB375695135A511EBEE00] - 30/01/2014 - 17:13:23 ---A- . (.Microsoft Corporation - Codec pour photographie Windows Media Photo.) -- C:\Windows\System32\WMPhoto.dll [369664] O44 - LFC:[MD5.6E895BDCB3158E3860A49662332736BA] - 30/01/2014 - 17:13:23 ---A- . (.Microsoft Corporation - Direct3D 11 Runtime.) -- C:\Windows\System32\d3d11.dll [519680] O44 - LFC:[MD5.60BBAF3F5A38D0274B0C46710A218051] - 30/01/2014 - 17:13:23 ---A- . (.Microsoft Corporation - Outil de diagnostic Microsoft DirectX.) -- C:\Windows\System32\dxdiag.exe [252928] O44 - LFC:[MD5.D1C47F951EA35073C97EF2E928CF9D6F] - 30/01/2014 - 17:13:23 ---A- . (.Microsoft Corporation - Outil de diagnostic Microsoft DirectX.) -- C:\Windows\System32\dxdiagn.dll [195584] O44 - LFC:[MD5.DFD714F1A410B32DA258423CF592A96E] - 30/01/2014 - 17:14:25 ---A- . (.Microsoft Corporation - Hôte du pipeline des filtres d’impression.) -- C:\Windows\System32\printfilterpipelinesvc.exe [667648] O44 - LFC:[MD5.A15ED03919107C2A6A3395EE02C7DD47] - 30/01/2014 - 17:14:25 ---A- . (.Microsoft Corporation - Native Code OPC Services Library.) -- C:\Windows\System32\OpcServices.dll [847360] O44 - LFC:[MD5.E607F9C6A2386647B572580CB147C7B3] - 30/01/2014 - 17:14:25 ---A- . (.Microsoft Corporation - Xps Object Model in memory creation and des.) -- C:\Windows\System32\xpsservices.dll [1554432] O44 - LFC:[MD5.AAAE543C535ED596ECAD2AB8761C2C6F] - 30/01/2014 - 17:14:26 ---A- . (.Microsoft Corporation - DirectX Graphics Infrastructure.) -- C:\Windows\System32\dxgi.dll [478720] O44 - LFC:[MD5.5EC8FB83F31AA2D6F421F02C3F4F4475] - 30/01/2014 - 17:14:26 ---A- . (.Microsoft Corporation - Pilote de spouleur Windows.) -- C:\Windows\System32\winspool.drv [258048] O44 - LFC:[MD5.E821547F853BF67CABE187B6FAA5D212] - 30/01/2014 - 17:14:26 ---A- . (.Microsoft Corporation - Print Filter Pipeline Proxy.) -- C:\Windows\System32\printfilterpipelineprxy.dll [26112] O44 - LFC:[MD5.3439DFAD865BF24C3E3DE3BCB2F9C39F] - 30/01/2014 - 17:14:28 ---A- . (.Microsoft Corporation - XPS Rasterization Service Component.) -- C:\Windows\System32\XpsRasterService.dll [135680] O44 - LFC:[MD5.167AC31450C0C53A01FA1491E94D7678] - 30/01/2014 - 17:14:32 ---A- . (.Microsoft Corporation - Bibliothèque d'objets et de contrôles de do.) -- C:\Windows\System32\shdocvw.dll [1075712] O44 - LFC:[MD5.67D16247C56C26A4F0D79D1A7F272B8F] - 30/01/2014 - 17:14:32 ---A- . (.Microsoft Corporation - Media Foundation DLL.) -- C:\Windows\System32\mf.dll [2873344] O44 - LFC:[MD5.743B1957729DE905DC44782A957FD284] - 30/01/2014 - 17:14:32 ---A- . (.Microsoft Corporation - Media Foundation MP4 Source DLL.) -- C:\Windows\System32\mfmp4src.dll [302592] O44 - LFC:[MD5.BF142D4F8C61ED3629A9CDD7BA867900] - 30/01/2014 - 17:14:32 ---A- . (.Microsoft Corporation - Media Foundation Platform DLL.) -- C:\Windows\System32\mfplat.dll [209920] O44 - LFC:[MD5.B9103A56ACABDED3E87C2A8777B6456C] - 30/01/2014 - 17:14:32 ---A- . (.Microsoft Corporation - Media Foundation Proxy DLL.) -- C:\Windows\System32\mfps.dll [98816] O44 - LFC:[MD5.7BE8835CA7E2975F2E865CEEE8821EB6] - 30/01/2014 - 17:14:32 ---A- . (.Microsoft Corporation - Media Foundation ReadWrite DLL.) -- C:\Windows\System32\mfreadwrite.dll [261632] O44 - LFC:[MD5.44CEE5264282105A89B650FDB07E40FF] - 30/01/2014 - 17:14:32 ---A- . (.Microsoft Corporation - Microsoft AAC Audio Decoder MFT.) -- C:\Windows\System32\MFHEAACdec.dll [357376] O44 - LFC:[MD5.B5950DF243837D8217F4E597919B224A] - 30/01/2014 - 17:14:32 ---A- . (.Microsoft Corporation - Objet du service d'environnement Systray.) -- C:\Windows\System32\stobject.dll [586240] O44 - LFC:[MD5.BC5E45CB2304AFB4D2EF2FD9C41299AF] - 30/01/2014 - 17:14:33 ---A- . (.Microsoft Corporation - Microsoft DTV-DVD Video Decoder.) -- C:\Windows\System32\MFH264Dec.dll [979456] O44 - LFC:[MD5.ED6F6FBBCDEC95483B7351E23F4FCDF6] - 30/01/2014 - 17:16:05 ---A- . (.Microsoft Corporation - ADVPACK.) -- C:\Windows\System32\IEAdvpack.dll [110592] O44 - LFC:[MD5.031DA76A5A7DC13F015DD3491394865E] - 30/01/2014 - 17:16:05 ---A- . (.Microsoft Corporation - ADVPACK.) -- C:\Windows\System32\advpack.dll [114176] O44 - LFC:[MD5.1E7094AFAD0C369DD6D400C7047E4AB2] - 30/01/2014 - 17:16:05 ---A- . (.Microsoft Corporation - Bibliothèque de moteurs de IEAK.) -- C:\Windows\System32\ieakeng.dll [130560] O44 - LFC:[MD5.1D3EE28BA231CBB9600F5D102EAF4EA7] - 30/01/2014 - 17:16:05 ---A- . (.Microsoft Corporation - Microsoft Feeds Synchronization.) -- C:\Windows\System32\msfeedssync.exe [10752] O44 - LFC:[MD5.90A57CA422923286838AAC7DE2D41B92] - 30/01/2014 - 17:16:05 ---A- . (.Microsoft Corporation - Objets homologues Internet Explorer.) -- C:\Windows\System32\iepeers.dll [118784] O44 - LFC:[MD5.4B80D1F847C0658977E1E8051A4DE002] - 30/01/2014 - 17:16:05 ---A- . (.Microsoft Corporation - Synchronisation en arrière-plan des flux Mi.) -- C:\Windows\System32\msfeedsbs.dll [41472] O44 - LFC:[MD5.3F7A8BCF37433A69CEEDE1E6AEE79784] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - Analyseur de modèles de stratégies globales.) -- C:\Windows\System32\admparse.dll [101888] O44 - LFC:[MD5.67BC2BA6F94D2D0C51213691FBFEEBB1] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - Auto-extracteur de fichier CAB Win32.) -- C:\Windows\System32\wextract.exe [152064] O44 - LFC:[MD5.DB754FF5F6ADBA2A25EC1B6672D1C91E] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - DLL d'interface utilisateur partagée Micros.) -- C:\Windows\System32\ieakui.dll [163840] O44 - LFC:[MD5.49729570B7FD369BBDEC16D7683324A0] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - Extension de composant logiciel enfichable.) -- C:\Windows\System32\ieaksie.dll [227840] O44 - LFC:[MD5.061CBB1058A10C0875D18CAFF835AE97] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) -- C:\Windows\System32\mshta.exe [11776] O44 - LFC:[MD5.04A8B2F67825380BC0C7C46D56776133] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - IE PNG plugin image decoder.) -- C:\Windows\System32\pngfilt.dll [54272] O44 - LFC:[MD5.68563AC389F92EE79F1C714288BA1DCE] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - IE plugin image decoder support DLL.) -- C:\Windows\System32\imgutil.dll [35840] O44 - LFC:[MD5.C05A60DB2ED385E9BB5CF7AE773A3D9B] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript.dll [717824] O44 - LFC:[MD5.795202EFA9ED73F99C96235C1DC6A1AC] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - Microsoft (R) JScript.) -- C:\Windows\System32\jscript9.dll [1806848] O44 - LFC:[MD5.36E4D129029784EE37A2C14393B6A4E8] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - Microsoft Feeds Manager.) -- C:\Windows\System32\msfeeds.dll [607744] O44 - LFC:[MD5.ADB9477A9C95C79FDF5DC214225603B0] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - Microsoft ® VBScript.) -- C:\Windows\System32\vbscript.dll [420864] O44 - LFC:[MD5.C2E35F6FCBD5B4DB2B52B32D1153EC04] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2382848] O44 - LFC:[MD5.5B37190F79F5D63C1033ED88C006080C] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - Object Control Viewer.) -- C:\Windows\System32\occache.dll [123392] O44 - LFC:[MD5.A0C6AFE2C9C74573F5C0776CDE1128B1] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) -- C:\Windows\System32\ieUnatt.exe [142848] O44 - LFC:[MD5.C89906FA43A58FD4CFC7EA06D885A597] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [12344320] O44 - LFC:[MD5.51AF0A12CD86E22E1A027C38CC021AC6] - 30/01/2014 - 17:16:06 ---A- . (.Microsoft Corporation - Wizard.) -- C:\Windows\System32\iexpress.exe [150528] O44 - LFC:[MD5.4B333D3CC96AE66BD754329FD2989EE2] - 30/01/2014 - 17:16:07 ---A- . (...) -- C:\Windows\System32\ieuinit.inf [72822] O44 - LFC:[MD5.7AC9B18F1BE210702DA5E586224B1571] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - Assistance IE pour la carte d’informations.) -- C:\Windows\System32\icardie.dll [66048] O44 - LFC:[MD5.5193DE33F3284C447E0D31DAFBF92570] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll [203776] O44 - LFC:[MD5.09C9E7F477FB225FDB3B6DE8FED0AA9B] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - Convertisseur Microsoft HTML.) -- C:\Windows\System32\html.iec [367104] O44 - LFC:[MD5.6B4701D3D9724812E8C3801E7BF87157] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - DLL du Gestionnaire de licences Microsoft®.) -- C:\Windows\System32\licmgr10.dll [23552] O44 - LFC:[MD5.802B0229D904E28C1EA9A5274AB457FC] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - IOD Version Map.) -- C:\Windows\System32\iesetup.dll [74752] O44 - LFC:[MD5.BDA52464C16707EAA513C8A2920ACE1F] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - Internet Shortcut Shell Extension DLL.) -- C:\Windows\System32\url.dll [231936] O44 - LFC:[MD5.83F5D4B41BB12CE146786E97F6AAD75E] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter Data File.) -- C:\Windows\System32\ieapfltr.dat [3695416] O44 - LFC:[MD5.EE9D715AF1B928982F417238B9914484] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - Microsoft SmartScreen Filter.) -- C:\Windows\System32\ieapfltr.dll [434176] O44 - LFC:[MD5.2429485305BCCFB1014B19BFB512E8F9] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - Microsoft® HTML Editing Component.) -- C:\Windows\System32\mshtmled.dll [73216] O44 - LFC:[MD5.60B4F624BB87A3B21D3EC68F38DA6B61] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - Moteur d'installation.) -- C:\Windows\System32\inseng.dll [78848] O44 - LFC:[MD5.06FDA396980A0157469A334E1BFEAF17] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - Panneau de configuration Internet.) -- C:\Windows\System32\inetcpl.cpl [1427968] O44 - LFC:[MD5.F0FEFB0B5D25A75D478A4317139D937E] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\System32\iedkcs32.dll [353584] O44 - LFC:[MD5.76EB0222590D5DCD050CF862237F414A] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - TDC ActiveX Control.) -- C:\Windows\System32\tdc.ocx [63488] O44 - LFC:[MD5.F83865A3007357A5E498EB9E3BED273D] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - Traitement de RunOnce complet avec interfac.) -- C:\Windows\System32\iernonce.dll [31744] O44 - LFC:[MD5.C0B8B96D018849FD8CCF15FED84E8782] - 30/01/2014 - 17:16:07 ---A- . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [74240] O44 - LFC:[MD5.0B8FE658BD033EC8B1F6FBC305CC65E7] - 30/01/2014 - 17:16:08 ---A- . (.Microsoft Corporation - DLL de gestion d'utilisateur local et de co.) -- C:\Windows\System32\msrating.dll [162304] O44 - LFC:[MD5.76E987D8CF0683337CF165363B6FDFD9] - 30/01/2014 - 17:16:08 ---A- . (.Microsoft Corporation - DLL de ressource du composant d'édition HTM.) -- C:\Windows\System32\mshtmler.dll [48640] O44 - LFC:[MD5.5AAFA41F2A09D68F43741EF13937650A] - 30/01/2014 - 17:16:08 ---A- . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [1105408] O44 - LFC:[MD5.EE0AFCEE88098F754212F9069E80A766] - 30/01/2014 - 17:16:08 ---A- . (.Microsoft Corporation - IE Sysprep Provider.) -- C:\Windows\System32\iesysprep.dll [86528] O44 - LFC:[MD5.E8F37AF4D09972684D9EE1786901F540] - 30/01/2014 - 17:16:08 ---A- . (.Microsoft Corporation - Moteur de l’interface utilisateur d’Interne.) -- C:\Windows\System32\ieui.dll [176640] O44 - LFC:[MD5.B231416DD7569B5C16F2DD2D2D64BB5A] - 30/01/2014 - 17:16:08 ---A- . (.Microsoft Corporation - Navigateur Internet.) -- C:\Windows\System32\ieframe.dll [9739264] O44 - LFC:[MD5.6B036492120E65C0C367DC31D01088A1] - 30/01/2014 - 17:16:08 ---A- . (.Microsoft Corporation - Registers custom PKEYs for IE.) -- C:\Windows\System32\RegisterIEPKEYs.exe [74752] O44 - LFC:[MD5.B787EE3F327ABAC1EC47313B3A673598] - 30/01/2014 - 17:16:08 ---A- . (.Microsoft Corporation - Run time utility for Internet Explorer.) -- C:\Windows\System32\iertutil.dll [1796096] O44 - LFC:[MD5.736D1B28224F9DF8008BE8B0DEDFC9EF] - 30/01/2014 - 17:16:08 ---A- . (.Microsoft Corporation - Sets the date that IE was installed.) -- C:\Windows\System32\SetIEInstalledDate.exe [76800] O44 - LFC:[MD5.4CC9DF09C3D915BA0A101A11DB684F26] - 30/01/2014 - 17:16:09 ---A- . (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1129472] O44 - LFC:[MD5.822E4743E61687933629AE3A8DECABC2] - 30/01/2014 - 17:16:09 ---A- . (.Microsoft Corporation - JScript Proxy Auto-Configuration.) -- C:\Windows\System32\jsproxy.dll [65024] O44 - LFC:[MD5.35AAE2E841AA1A949775168E119482C9] - 30/01/2014 - 17:16:09 ---A- . (.Microsoft Corporation - Microsoft Line Services library file.) -- C:\Windows\System32\msls31.dll [161792] O44 - LFC:[MD5.ECD81B99477AB4A93D7838EB40B870D0] - 30/01/2014 - 17:16:20 ---A- . (...) -- C:\Windows\System32\icrav03.rat [8798] O44 - LFC:[MD5.6D21D0A95286DCD09E354B612F592EB7] - 30/01/2014 - 17:16:20 ---A- . (...) -- C:\Windows\System32\ticrf.rat [1988] O44 - LFC:[MD5.2205A220A264E8C8B86492BF3D112907] - 30/01/2014 - 18:04:58 ---A- . (.Microsoft Corporation - Composants API de l’appareil mobile Windows.) -- C:\Windows\System32\PortableDeviceApi.dll [334848] O44 - LFC:[MD5.49456BFE373D90B895795C5A1A13A7C8] - 30/01/2014 - 18:04:58 ---A- . (.Microsoft Corporation - WMDM Service Provider for Windows Portable.) -- C:\Windows\System32\WPDSp.dll [350208] O44 - LFC:[MD5.B2B117BD8D1EA80536CDD91797EF4A0A] - 30/01/2014 - 18:04:58 ---A- . (.Microsoft Corporation - Windows Portable Device Class Extension Com.) -- C:\Windows\System32\PortableDeviceClassExtension.dll [100864] O44 - LFC:[MD5.C220FC95DA7AD00AB03C184AFDDC5314] - 30/01/2014 - 18:04:58 ---A- . (.Microsoft Corporation - Windows Portable Device WMDRM Component.) -- C:\Windows\System32\PortableDeviceWMDRM.dll [196608] O44 - LFC:[MD5.E92143D1B2E32FAF6CC56FD97B908F6A] - 30/01/2014 - 18:04:59 ---A- . (.Microsoft Corporation - Extension de l’environnement des appareils.) -- C:\Windows\System32\wpdshext.dll [2537472] O44 - LFC:[MD5.A8FB1B20C5ABD1817B7F96251293BFF9] - 30/01/2014 - 18:04:59 ---A- . (.Microsoft Corporation - MTP core protocol component.) -- C:\Windows\System32\WpdMtp.dll [226816] O44 - LFC:[MD5.81072240917688254A55C1C568B2377B] - 30/01/2014 - 18:04:59 ---A- . (.Microsoft Corporation - Programme d’installation de la classe de co.) -- C:\Windows\System32\wpd_ci.dll [546816] O44 - LFC:[MD5.883D02AB5D350BC45E0F60E8CFA97FDC] - 30/01/2014 - 18:04:59 ---A- . (.Microsoft Corporation - Windows Portable Device (Parameter) Types C.) -- C:\Windows\System32\PortableDeviceTypes.dll [160256] O44 - LFC:[MD5.6B5C53E0932C510606D700B7A896EF73] - 30/01/2014 - 18:04:59 ---A- . (.Microsoft Corporation - Windows Portable Device Shell Service Objec.) -- C:\Windows\System32\WPDShServiceObj.dll [87552] O44 - LFC:[MD5.3501443C148C780E8CE6B5108CE6D95E] - 30/01/2014 - 18:05:00 ---A- . (.Microsoft Corporation - Usbscan transport layer for MTP driver.) -- C:\Windows\System32\WpdMtpUS.dll [61952] O44 - LFC:[MD5.58E42DDB9F734E8DBDA17E806EF3F64A] - 30/01/2014 - 18:05:00 ---A- . (.Microsoft Corporation - WPD Connection Objects.) -- C:\Windows\System32\WpdConns.dll [33280] O44 - LFC:[MD5.DE9D36F91A4DF3D911626643DEBF11EA] - 30/01/2014 - 18:05:00 ---A- . (.Microsoft Corporation - WPD USB Driver.) -- C:\Windows\System32\Drivers\WpdUsb.sys [40448] O44 - LFC:[MD5.B53BD9E63867CD9FD853F666CA172713] - 30/01/2014 - 18:05:03 ---A- . (.Microsoft Corporation - Portable Device Connection API Components.) -- C:\Windows\System32\PortableDeviceConnectApi.dll [60928] O44 - LFC:[MD5.9B9108D3019C18BD6D38B860813E6E52] - 30/01/2014 - 18:05:11 ---A- . (.Microsoft Corporation - Gestionnaire de menus contextuels MTP Bluet.) -- C:\Windows\System32\BthMtpContextHandler.dll [31232] O44 - LFC:[MD5.801FBDB89D472B3C467EB112A0FC9246] - 30/01/2014 - 18:05:11 ---A- . (.Microsoft Corporation - Énumérateur d’appareil mobile.) -- C:\Windows\System32\wpdbusenum.dll [81920] O44 - LFC:[MD5.1D7D7E32A80109D5C3167309265EAC83] - 30/01/2014 - 18:05:12 ---A- . (.Microsoft Corporation - Gestionnaire d'exécution automatique d'exte.) -- C:\Windows\System32\WPDShextAutoplay.exe [30208] O44 - LFC:[MD5.8C459CFAC2FB3DFB693BCFEC32F25407] - 30/01/2014 - 18:07:19 ---A- . (.Microsoft Corporation - Infrastructure de ruban Windows.) -- C:\Windows\System32\UIRibbon.dll [3023360] O44 - LFC:[MD5.22C2646DD3ED24004F994D0DA9755955] - 30/01/2014 - 18:07:20 ---A- . (.Microsoft Corporation - Windows Ribbon Framework Resources.) -- C:\Windows\System32\UIRibbonRes.dll [1164800] O44 - LFC:[MD5.D6BACADF83661F08F9E1515AAE74B03E] - 30/01/2014 - 18:07:21 ---A- . (.Microsoft Corporation - Windows Animation Manager.) -- C:\Windows\System32\UIAnimation.dll [92672] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 30/01/2014 - 19:16:02 --HA- . (...) -- C:\Windows\System32\Drivers\Msft_User_WpdFs_01_07_00.Wdf [0] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 30/01/2014 - 19:17:51 --HA- . (...) -- C:\Windows\System32\Drivers\Msft_User_WpdMtpDr_01_07_00.Wdf [0] O44 - LFC:[MD5.127F8270223CCE8449C9887B73BAD0E5] - 30/01/2014 - 19:24:17 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [493944] O44 - LFC:[MD5.9F3A1B7FB81A41C7C7AC82B3D07A1091] - 30/01/2014 - 22:45:33 ---A- . (.Microsoft Corporation - XPS Printing DLL.) -- C:\Windows\System32\XpsPrint.dll [876032] O44 - LFC:[MD5.2AFA3A46986AE935DAECEBC7E66314CF] - 30/01/2014 - 22:45:39 ---A- . (.Microsoft Corporation - Service de cache de police Windows.) -- C:\Windows\System32\FntCache.dll [798208] O44 - LFC:[MD5.9BD443B52350D2784544B637F103EBCF] - 30/01/2014 - 22:45:39 ---A- . (.Microsoft Corporation - Services de typographie Microsoft DirectX.) -- C:\Windows\System32\DWrite.dll [1069056] O44 - LFC:[MD5.E828C391BB999BD85C15DA20B51CDF9C] - 30/01/2014 - 22:45:40 ---A- . (.Microsoft Corporation - Microsoft D2D Library.) -- C:\Windows\System32\d2d1.dll [683008] O44 - LFC:[MD5.E0F15C8A63D2FCC40D0A6F9354DF0118] - 30/01/2014 - 22:45:41 ---A- . (.Microsoft Corporation - Direct3D 10 Runtime.) -- C:\Windows\System32\d3d10.dll [1029120] O44 - LFC:[MD5.2067598D57CCD988A88BBBDDD6EAE13D] - 30/01/2014 - 22:45:41 ---A- . (.Microsoft Corporation - Direct3D 10 Runtime.) -- C:\Windows\System32\d3d10core.dll [189952] O44 - LFC:[MD5.1D1C3BBA2191F0F5B14555757DDB729A] - 30/01/2014 - 22:45:41 ---A- . (.Microsoft Corporation - Direct3D 10.1 Runtime.) -- C:\Windows\System32\d3d10_1.dll [160768] O44 - LFC:[MD5.2434237DFBC70483B63A667B9573891E] - 30/01/2014 - 22:45:41 ---A- . (.Microsoft Corporation - Direct3D 10.1 Runtime.) -- C:\Windows\System32\d3d10_1core.dll [219648] O44 - LFC:[MD5.52673DCDFA7687EABC0C779894D0F4FF] - 30/01/2014 - 22:45:42 ---A- . (.Microsoft Corporation - Direct3D 10 Rasterizer.) -- C:\Windows\System32\d3d10warp.dll [1172480] O44 - LFC:[MD5.F64812456BD11244322F0B0F1B236841] - 30/01/2014 - 22:45:42 ---A- . (.Microsoft Corporation - Direct3D 10 to Direct3D9 Translation Runtim.) -- C:\Windows\System32\d3d10level9.dll [486400] ~ Files: 242 Scanned in 00mn 23s ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.9670EF526B85F1665B5606414376CFFE] - 05/02/2014 - 22:36:05 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-D8414F97.pf O45 - LFCP:[MD5.E8216630B954117BB420A09E5F2518C1] - 05/02/2014 - 22:36:24 ---A- - C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf O45 - LFCP:[MD5.E7FC81F2EBC4B4608CADFC23707FDD10] - 05/02/2014 - 22:36:24 ---A- - C:\Windows\Prefetch\ZHPHEP.EXE-56A9B19C.pf O45 - LFCP:[MD5.90321057C5D2266A9C970458966E8893] - 05/02/2014 - 22:36:29 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf O45 - LFCP:[MD5.97E0A250E666B972C756B23CC2FE9FF9] - 05/02/2014 - 22:36:34 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-5F50D22C.pf O45 - LFCP:[MD5.C863365DE61FCB6AE846A51984C4082D] - 05/02/2014 - 22:36:43 ---A- - C:\Windows\Prefetch\CSCRIPT.EXE-D1EF4768.pf O45 - LFCP:[MD5.2BD063F765ACD8BBA50DDFED019A8908] - 05/02/2014 - 22:36:43 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf O45 - LFCP:[MD5.6723583996A36776FED3D3FB52B6B341] - 05/02/2014 - 22:36:52 ---A- - C:\Windows\Prefetch\FLASHPLAYERPLUGIN_11_9_900_17-D7FEB8B0.pf O45 - LFCP:[MD5.09DEBDF5210FBF24B89D0B40196CA5B0] - 05/02/2014 - 22:36:52 ---A- - C:\Windows\Prefetch\PLUGIN-CONTAINER.EXE-7226D1F8.pf O45 - LFCP:[MD5.CF1D689BAFC67FF1C3B63FED75423981] - 05/02/2014 - 22:36:53 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf O45 - LFCP:[MD5.92D94B1BA4A16608BE1D46B1F97AC52D] - 05/02/2014 - 22:37:03 ---A- - C:\Windows\Prefetch\PV.EXE-7B89A1E7.pf O45 - LFCP:[MD5.533B8FAB28E52FEF7062E17FBD67D642] - 05/02/2014 - 22:37:09 ---A- - C:\Windows\Prefetch\CMD.EXE-4A81B364.pf O45 - LFCP:[MD5.CCB001525A73945D715D90FFF01A1BD2] - 05/02/2014 - 22:37:09 ---A- - C:\Windows\Prefetch\SUBINACL.EXE-7FBD134E.pf O45 - LFCP:[MD5.2F6C90AC159F0C3C417FBF0362AE6939] - 05/02/2014 - 22:37:16 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-5CA45734.pf ~ Prefetcher: 14 Scanned in 00mn 00s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll ~ LSA: 7 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ CSB: 13 Scanned in 00mn 00s ---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll O52 - TDSD: \Drivers32\"VIDC.FFDS"="ff_vfw.dll" . (...) -- C:\Windows\System32\ff_vfw.dll O52 - TDSD: \Drivers32\"vidc.XVID"="xvidvfw.dll" . (...) -- C:\Windows\System32\xvidvfw.dll O52 - TDSD: \Drivers32\"msacm.ac3filter"="ac3filter.acm" . (...) -- C:\Windows\System32\ac3filter.acm O52 - TDSD: \Drivers32\"msacm.avis"="ff_acm.acm" . (.Pas de propriétaire - ffdshow Audio Decoder.) -- C:\Windows\System32\ff_acm.acm O52 - TDSD: \Drivers32\"vidc.divx"="divx.dll" . (.DivX, Inc. - DivX.) -- C:\Windows\System32\divx.dll O52 - TDSD: \Drivers32\"vidc.yv12"="divx.dll" . (.DivX, Inc. - DivX.) -- C:\Windows\System32\divx.dll O52 - TDSD: \Drivers32\"vidc.vp60"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\Windows\System32\vp6vfw.dll O52 - TDSD: \Drivers32\"vidc.vp61"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\Windows\System32\vp6vfw.dll O52 - TDSD: \Drivers32\"vidc.vp62"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\Windows\System32\vp6vfw.dll O52 - TDSD: \Drivers32\"msacm.divxa32"="DivXa32.acm" . (.Packed With Joy ! - DivX;-) Audio Codec.) -- C:\Windows\System32\DivXa32.acm O52 - TDSD: \Drivers32\"msacm.lameacm"="LameACM.acm" . (.http://www.mp3dev.org/ - Lame MP3 codec engine.) -- C:\Windows\System32\LameACM.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"ff_vfw.dll"="ffdshow Video Codec" . (...) -- C:\Windows\System32\ff_vfw.dll O52 - TDSD: \drivers.desc\"ac3filter.acm"="AC3Filter ACM codec" . (...) -- C:\Windows\System32\ac3filter.acm O52 - TDSD: \drivers.desc\"ff_acm.acm"="ffdshow ACM codec" . (.Pas de propriétaire - ffdshow Audio Decoder.) -- C:\Windows\System32\ff_acm.acm O52 - TDSD: \drivers.desc\"DivXa32.acm"="DivX Audio Codec" . (.Packed With Joy ! - DivX;-) Audio Codec.) -- C:\Windows\System32\DivXa32.acm O52 - TDSD: \drivers.desc\"LameACM.acm"="Lame ACM MP3 Codec" . (.http://www.mp3dev.org/ - Lame MP3 codec engine.) -- C:\Windows\System32\LameACM.acm ~ TDSD: 19 Scanned in 00mn 00s ---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\System32\credssp.dll ~ MSCP: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKCU\...\Policies\System] - "DisableRegistryTools"=0 O55 - MWPS:[HKCU\...\Policies\System] - "DisableTaskMgr"=0 ~ MWPS: 18 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "BindDirectlyToPropertySetStorage"=0 ~ MWPE Keys: 1 Scanned in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:[MD5.0349BE02F329F4F48F1D48097FD65974] - 21/01/2008 - 03:23:21 ---A- . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\Drivers\1394bus.sys [53376] O58 - SDL:[MD5.82B296AE1892FE3DBEE00C9CF92F8AC7] - 10/04/2009 - 23:32:48 ---A- . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\Drivers\acpi.sys [265688] O58 - SDL:[MD5.04F0FCAC69C7C71A3AC4EB97FAFC8303] - 21/01/2008 - 03:23:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [422968] O58 - SDL:[MD5.60505E0041F7751BDBB80F88BF45C2CE] - 21/01/2008 - 03:23:25 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [300600] O58 - SDL:[MD5.8A42779B02AEC986EAB64ECFC98F8BD7] - 21/01/2008 - 03:23:26 ---A- . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\Drivers\adpu160m.sys [101432] O58 - SDL:[MD5.241C9E37F8CE45EF51C3DE27515CA4E5] - 21/01/2008 - 03:23:27 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\Drivers\adpu320.sys [149560] O58 - SDL:[MD5.3911B972B55FEA0478476B2E777B29FA] - 21/04/2011 - 14:58:27 ---A- . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\Drivers\afd.sys [273408] O58 - SDL:[MD5.13F9E33747E6B41A3FF305C37DB0D360] - 21/01/2008 - 03:23:01 ---A- . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\Drivers\AGP440.sys [56376] O58 - SDL:[MD5.9EAEF5FC9B8E351AFA7E78A6FAE91F91] - 21/01/2008 - 03:23:00 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\Drivers\aliide.sys [17464] O58 - SDL:[MD5.C47344BC706E5F0B9DCE369516661578] - 21/01/2008 - 03:23:01 ---A- . (.Microsoft Corporation - Filtre AGP AMD NT.) -- C:\Windows\System32\Drivers\AMDAGP.SYS [57400] O58 - SDL:[MD5.9B78A39A4C173FDBC1321E0DD659B34C] - 21/01/2008 - 03:23:00 ---A- . (.Microsoft Corporation - Pilote IDE AMD.) -- C:\Windows\System32\Drivers\amdide.sys [17976] O58 - SDL:[MD5.18F29B49AD23ECEE3D2A826C725C8D48] - 21/01/2008 - 03:23:00 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdk7.sys [41472] O58 - SDL:[MD5.93AE7F7DD54AB986A6F1A1B37BE7442D] - 21/01/2008 - 03:23:00 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\amdk8.sys [44032] O58 - SDL:[MD5.5D2888182FB46632511ACEE92FDAD522] - 21/01/2008 - 03:23:23 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [79416] O58 - SDL:[MD5.5E2A321BD7C8B3624E41FDEC3E244945] - 21/01/2008 - 03:23:24 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [79928] O58 - SDL:[MD5.C47623FFD181A1E7D63574DDE2A0A711] - 06/09/2011 - 21:36:12 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\System32\Drivers\aswFsBlk.sys [20568] O58 - SDL:[MD5.4804753A4EC7D67CC22D226BFFD1C1E3] - 06/09/2011 - 21:36:26 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\System32\Drivers\aswMonFlt.sys [54616] O58 - SDL:[MD5.36239E24470A3DD81FAE37510953CC6C] - 06/09/2011 - 21:36:38 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\System32\Drivers\aswRdr.sys [34392] O58 - SDL:[MD5.CAA846E9C83836BDC3D2D700C678DB65] - 06/09/2011 - 21:38:05 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\Drivers\aswSnx.sys [442200] O58 - SDL:[MD5.748AE7F2D7DA33ADB063FE05704A9969] - 06/09/2011 - 21:37:53 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\Drivers\aswSP.sys [320856] O58 - SDL:[MD5.CA9925CE1DBD07FFE1EB357752CF5577] - 06/09/2011 - 21:36:36 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\System32\Drivers\aswTdi.sys [52568] O58 - SDL:[MD5.53B202ABEE6455406254444303E87BE1] - 21/01/2008 - 03:24:04 ---A- . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\Drivers\asyncmac.sys [17408] O58 - SDL:[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - 10/04/2009 - 23:32:28 ---A- . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\Drivers\atapi.sys [19944] O58 - SDL:[MD5.64B0052340B8EC28FA8A56B708AE71CC] - 10/04/2009 - 23:32:44 ---A- . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\Drivers\ataport.sys [109032] O58 - SDL:[MD5.47DCF5D78C395159D72C65C25129FC44] - 04/07/2008 - 07:35:40 ---A- . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\Drivers\atikmdag.sys [3847168] O58 - SDL:[MD5.2B8A5A8879238C3BA9A89A8E3AC4E45D] - 21/01/2008 - 03:23:00 ---A- . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\Drivers\battc.sys [28216] O58 - SDL:[MD5.9F5F8F2318DFA3974A6F6A5602733929] - 21/01/2008 - 03:23:31 ---A- . (.Microsoft Corporation - Microsoft BDA Driver Support Library.) -- C:\Windows\System32\Drivers\bdasup.sys [12288] O58 - SDL:[MD5.67E506B75BD5326A3EC7B70BD014DFB6] - 21/01/2008 - 03:23:44 ---A- . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\Drivers\beep.sys [6144] O58 - SDL:[MD5.D4DF28447741FD3D953526E33A617397] - 21/01/2008 - 03:23:01 ---A- . (.Microsoft Corporation - BLB Drive Driver.) -- C:\Windows\System32\Drivers\blbdrive.sys [45568] O58 - SDL:[MD5.35F376253F687BDE63976CCB3F2108CA] - 22/02/2011 - 14:23:55 ---A- . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\Drivers\bowser.sys [69632] O58 - SDL:[MD5.9F9ACC7F7CCDE8A15C282D3F88B43309] - 02/11/2006 - 09:24:45 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltLo.sys [13568] O58 - SDL:[MD5.56801AD62213A41F6497F96DEE83755A] - 02/11/2006 - 09:24:46 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [5248] O58 - SDL:[MD5.B1564976D98E91FC764D5DC28A0297DA] - 10/04/2009 - 22:42:56 ---A- . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\Drivers\bridge.sys [93696] O58 - SDL:[MD5.B304E75CFF293029EDDF094246747113] - 02/11/2006 - 09:25:24 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\BrSerId.sys [71808] O58 - SDL:[MD5.203F0B1E73ADADBBB7B7B1FABD901F6B] - 02/11/2006 - 09:24:44 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\Drivers\BrSerWdm.sys [62336] O58 - SDL:[MD5.BD456606156BA17E60A04E18016AE54B] - 02/11/2006 - 09:24:44 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\Drivers\BrUsbMdm.sys [12160] O58 - SDL:[MD5.AF72ED54503F717A43268B3CC5FAEC2E] - 02/11/2006 - 09:24:47 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\Drivers\BrUsbSer.sys [11904] O58 - SDL:[MD5.AD07C1EC6665B8B35741AB91200C6B68] - 02/11/2006 - 09:55:23 ---A- . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\Drivers\bthmodem.sys [39936] O58 - SDL:[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 21/01/2008 - 03:23:51 ---A- . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\Drivers\cdfs.sys [70144] O58 - SDL:[MD5.6B4BFFB9BECD728097024276430DB314] - 10/04/2009 - 21:39:18 ---A- . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\Drivers\cdrom.sys [67072] O58 - SDL:[MD5.E5D4133F37219DBCFE102BC61072589D] - 21/01/2008 - 03:23:26 ---A- . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\Drivers\circlass.sys [35328] O58 - SDL:[MD5.0767B09C74D935A590B4879D14463B64] - 10/04/2009 - 23:32:44 ---A- . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\Drivers\Classpnp.sys [125928] O58 - SDL:[MD5.99AFC3795B58CC478FBBBCDC658FCB56] - 21/01/2008 - 03:23:26 ---A- . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\Drivers\CmBatt.sys [14208] O58 - SDL:[MD5.0CA25E686A4928484E9FDABD168AB629] - 21/01/2008 - 03:23:00 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\cmdide.sys [19000] O58 - SDL:[MD5.6AFEF0B60FA25DE07C0968983EE4F60A] - 21/01/2008 - 03:23:00 ---A- . (.Microsoft Corporation - Composite Battery Driver.) -- C:\Windows\System32\Drivers\compbatt.sys [20792] O58 - SDL:[MD5.36975327EF03949CC378AB01E316B574] - 10/04/2009 - 23:32:32 ---A- . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\Drivers\crashdmp.sys [35304] O58 - SDL:[MD5.741E9DFF4F42D2D8477D0FC1DC0DF871] - 21/01/2008 - 03:23:22 ---A- . (.Microsoft Corporation - Disk Block Verification Filter Driver.) -- C:\Windows\System32\Drivers\crcdisk.sys [24632] O58 - SDL:[MD5.1F07BECDCA750766A96CDA811BA86410] - 21/01/2008 - 03:23:00 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\crusoe.sys [40960] O58 - SDL:[MD5.622C41A07CA7E6DD91770F50D532CB6C] - 14/04/2011 - 15:59:03 ---A- . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\Drivers\dfsc.sys [75264] O58 - SDL:[MD5.5D4AEFC3386920236A548271F8F1AF6A] - 10/04/2009 - 23:32:32 ---A- . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\Drivers\disk.sys [53736] O58 - SDL:[MD5.494075282E23D838F43A4C9FB7143959] - 10/04/2009 - 21:39:12 ---A- . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\Drivers\Diskdump.sys [19456] O58 - SDL:[MD5.AE1FDF7BF7BB6C6A70F67699D880592A] - 02/11/2006 - 10:50:11 ---A- . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\Drivers\djsvs.sys [71272] O58 - SDL:[MD5.2A63675F6FA8EF0FF9F5C72695584CAA] - 30/10/2013 - 02:43:04 ---A- . (.Microsoft Corporation - Microsoft Kernel DRM Descrambler Filter.) -- C:\Windows\System32\Drivers\drmk.sys [130048] O58 - SDL:[MD5.97FEF831AB90BEE128C9AF390E243F80] - 21/01/2008 - 03:23:21 ---A- . (.Microsoft Corporation - Microsoft Kernel DRM Audio Descrambler Filter.) -- C:\Windows\System32\Drivers\drmkaud.sys [5632] O58 - SDL:[MD5.555E54AC2F601A8821CEF58961653991] - 16/07/2011 - 00:08:56 ---A- . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\Drivers\dtsoftbus01.sys [218688] O58 - SDL:[MD5.C67EBF9C05531C406E1E079FF669A2E6] - 10/04/2009 - 23:32:30 ---A- . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\Drivers\Dumpata.sys [27624] O58 - SDL:[MD5.EAAAFEF04FBB45665C9576E525D45A12] - 21/01/2008 - 03:24:21 ---A- . (.Microsoft Corporation - DirectX API Driver.) -- C:\Windows\System32\Drivers\dxapi.sys [13312] O58 - SDL:[MD5.C8D5369BFE193B5FB53337DCE77CE314] - 10/04/2009 - 21:23:24 ---A- . (.Microsoft Corporation - DirectX Graphics Driver.) -- C:\Windows\System32\Drivers\dxg.sys [76288] O58 - SDL:[MD5.988670D8343EF9835FB3659DB71B2EFA] - 01/08/2013 - 04:16:32 ---A- . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys [638400] O58 - SDL:[MD5.5425F74AC0C1DBD96A1E04F17D63F94C] - 21/01/2008 - 03:23:24 ---A- . (.Intel Corporation - Pilote désérialisé NDIS 6 de la carte Intel(R) PRO/1000.) -- C:\Windows\System32\Drivers\E1G60I32.sys [118784] O58 - SDL:[MD5.7F64EA048DCFAC7ACF8B4D7B4E6FE371] - 10/04/2009 - 23:32:44 ---A- . (.Microsoft Corporation - Special Memory Device Cache.) -- C:\Windows\System32\Drivers\ecache.sys [141288] O58 - SDL:[MD5.23B62471681A124889978F6295B3F4C6] - 21/01/2008 - 03:23:22 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [342584] O58 - SDL:[MD5.3DB974F3935483555D7148663F726C61] - 21/01/2008 - 03:23:00 ---A- . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\Drivers\errdev.sys [6656] O58 - SDL:[MD5.22B408651F9123527BCEE54B4F6C5CAE] - 10/04/2009 - 21:13:54 ---A- . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\Drivers\exfat.sys [136704] O58 - SDL:[MD5.1E9B9A70D332103C52995E957DC09EF8] - 10/04/2009 - 21:13:54 ---A- . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\Drivers\fastfat.sys [142848] O58 - SDL:[MD5.AFE1E8B9782A0DD7FB46BBD88E43F89A] - 21/01/2008 - 03:23:20 ---A- . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\Drivers\fdc.sys [25088] O58 - SDL:[MD5.A8C0139A884861E3AAE9CFE73B208A9F] - 21/01/2008 - 03:24:04 ---A- . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\Drivers\fileinfo.sys [58936] O58 - SDL:[MD5.0AE429A696AECBC5970E3CF2C62635AE] - 21/01/2008 - 03:24:21 ---A- . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\Drivers\filetrace.sys [27648] O58 - SDL:[MD5.85B7CF99D532820495D68D747FDA9EBD] - 21/01/2008 - 03:23:20 ---A- . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\Drivers\flpydisk.sys [20480] O58 - SDL:[MD5.01334F9EA68E6877C4EF05D3EA8ABB05] - 10/04/2009 - 23:32:48 ---A- . (.Microsoft Corporation - Gestionnaire de filtres de système de fichiers Microsoft.) -- C:\Windows\System32\Drivers\fltMgr.sys [190424] O58 - SDL:[MD5.B972A66758577E0BFD1DE0F91AAA27B5] - 29/02/2012 - 14:32:37 ---A- . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\Drivers\fs_rec.sys [12800] O58 - SDL:[MD5.73594DBC99E22958150192EE99BC48CE] - 10/04/2009 - 23:32:44 ---A- . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\Drivers\FWPKCLNT.SYS [99816] O58 - SDL:[MD5.34582A6E6573D54A07ECE5FE24A126B5] - 21/01/2008 - 03:23:22 ---A- . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour plateformes de processe.) -- C:\Windows\System32\Drivers\GAGP30KX.SYS [61496] O58 - SDL:[MD5.8182FF89C65E4D38B2DE4BB0FB18564E] - 18/05/2009 - 13:17:00 ---A- . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\Drivers\GEARAspiWDM.sys [26600] O58 - SDL:[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - 10/04/2009 - 21:42:44 ---A- . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\Drivers\hdaudbus.sys [561152] O58 - SDL:[MD5.CB04C744BE0A61B1D648FAED182C3B59] - 02/11/2006 - 08:36:49 ---A- . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\HdAudio.sys [235520] O58 - SDL:[MD5.1338520E78D90154ED6BE8F84DE5FCEB] - 02/11/2006 - 09:55:22 ---A- . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périphériques HID.) -- C:\Windows\System32\Drivers\hidbth.sys [29184] O58 - SDL:[MD5.5961CADB7CAD938368D2028725EF771D] - 10/04/2009 - 21:42:50 ---A- . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\Drivers\hidclass.sys [39424] O58 - SDL:[MD5.FF3160C3A2445128C5A6D9B076DA519E] - 02/11/2006 - 09:55:01 ---A- . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidir.sys [21504] O58 - SDL:[MD5.BE4AD4045D7A6C6AF4ECCBD5F6B7F8D8] - 03/07/2013 - 03:10:50 ---A- . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\Drivers\hidparse.sys [25472] O58 - SDL:[MD5.CCA4B519B17E23A00B826C55716809CC] - 10/04/2009 - 21:42:50 ---A- . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidusb.sys [12800] O58 - SDL:[MD5.16EE7B23A009E00D835CDB79574A91A6] - 21/01/2008 - 03:23:26 ---A- . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\Drivers\HpCISSs.sys [40504] O58 - SDL:[MD5.F870AA3E254628EBEAFE754108D664DE] - 20/02/2010 - 21:53:34 ---A- . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\Drivers\http.sys [411648] O58 - SDL:[MD5.95BD3EA81EBE6B8CACAFDB6CDAB3586C] - 21/01/2008 - 03:23:02 ---A- . (.Microsoft Corporation - I2O Utility Filter.) -- C:\Windows\System32\Drivers\i2omgmt.sys [19000] O58 - SDL:[MD5.C6B032D69650985468160FC9937CF5B4] - 21/01/2008 - 03:23:02 ---A- . (.Microsoft Corporation - I2O Miniport Driver.) -- C:\Windows\System32\Drivers\i2omp.sys [30264] O58 - SDL:[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 21/01/2008 - 03:23:20 ---A- . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\Drivers\i8042prt.sys [54784] O58 - SDL:[MD5.54155EA1B0DF185878E0FC9EC3AC3A14] - 21/01/2008 - 03:23:23 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\Drivers\iaStorV.sys [235064] O58 - SDL:[MD5.2D077BF86E843F901D8DB709C95B49A5] - 02/11/2006 - 10:50:17 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [41576] O58 - SDL:[MD5.83AA759F3189E6370C30DE5DC5590718] - 21/01/2008 - 03:23:00 ---A- . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\Drivers\intelide.sys [17976] O58 - SDL:[MD5.224191001E78C89DFA78924C3EA595FF] - 21/01/2008 - 03:23:00 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\intelppm.sys [41472] O58 - SDL:[MD5.62C265C38769B864CB25B4BCF62DF6C3] - 21/01/2008 - 03:24:45 ---A- . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\Drivers\ipfltdrv.sys [47616] O58 - SDL:[MD5.B25AAF203552B7B3491139D582B39AD1] - 21/01/2008 - 03:23:22 ---A- . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\Drivers\IPMIDrv.sys [64512] O58 - SDL:[MD5.8793643A67B42CEC66490B2A0CF92D68] - 21/01/2008 - 03:24:25 ---A- . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys [100864] O58 - SDL:[MD5.E50A95179211B12946F7E035D60AF560] - 21/01/2008 - 03:24:31 ---A- . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\Drivers\irda.sys [95744] O58 - SDL:[MD5.109C0DFB82C3632FBD11949B73AEEAC9] - 21/01/2008 - 03:23:54 ---A- . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\Drivers\irenum.sys [13312] O58 - SDL:[MD5.6C70698A3E5C4376C6AB5C7C17FB0614] - 21/01/2008 - 03:23:01 ---A- . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\Drivers\isapnp.sys [49720] O58 - SDL:[MD5.BCED60D16156E428F8DF8CF27B0DF150] - 02/11/2006 - 10:50:07 ---A- . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\Drivers\iteatapi.sys [35944] O58 - SDL:[MD5.06FA654504A498C30ADCA8BEC4E87E7E] - 02/11/2006 - 10:50:09 ---A- . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\Drivers\iteraid.sys [35944] O58 - SDL:[MD5.37605E0A8CF00CBBA538E753E4344C6E] - 21/01/2008 - 03:23:23 ---A- . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\Drivers\kbdclass.sys [35384] O58 - SDL:[MD5.18247836959BA67E3511B62846B9C2E0] - 21/01/2008 - 03:23:23 ---A- . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\Drivers\kbdhid.sys [15872] O58 - SDL:[MD5.EF73C1E29FBE7B0FD0274BF4394E346A] - 10/04/2009 - 21:38:50 ---A- . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\Drivers\ks.sys [149504] O58 - SDL:[MD5.4A1445EFA932A3BAF5BDB02D7131EE20] - 04/06/2012 - 16:26:04 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecdd.sys [440704] O58 - SDL:[MD5.E2F1DCF4A68CC6CF694FBFBA1842F4CD] - 09/03/2005 - 19:50:16 ---A- . (...) -- C:\Windows\System32\Drivers\libusb0.sys [33792] O58 - SDL:[MD5.D1C5883087A0C3F1344D9D55A44901F6] - 21/01/2008 - 03:24:37 ---A- . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\Drivers\lltdio.sys [47104] O58 - SDL:[MD5.C7E15E82879BF3235B559563D4185365] - 21/01/2008 - 03:23:23 ---A- . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_fc.sys [96312] O58 - SDL:[MD5.EE01EBAE8C9BF0FA072E0FF68718920A] - 21/01/2008 - 03:23:25 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [89656] O58 - SDL:[MD5.912A04696E9CA30146A62AFA1463DD5C] - 21/01/2008 - 03:23:23 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [96312] O58 - SDL:[MD5.8F5C7426567798E62A3B3614965D62CC] - 21/01/2008 - 03:24:37 ---A- . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichier LUA.) -- C:\Windows\System32\Drivers\luafv.sys [84480] O58 - SDL:[MD5.CA020DB361524D1182138EFEAA8CF8F3] - 24/04/2007 - 17:52:10 ---A- . (.IBM - LUM Runtime.) -- C:\Windows\System32\Drivers\LUMDriver.sys [16688] O58 - SDL:[MD5.4470E3C1E0C3378E4CAB137893C12C3A] - 04/04/2013 - 14:50:32 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [22856] O58 - SDL:[MD5.B271EC02E71271A2DA28B3B7BC4E4F15] - 21/01/2008 - 03:24:47 ---A- . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\Drivers\mcd.sys [18944] O58 - SDL:[MD5.0001CE609D66632FA17B84705F658879] - 21/01/2008 - 03:23:27 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows Vista/Longhorn for x.) -- C:\Windows\System32\Drivers\megasas.sys [31288] O58 - SDL:[MD5.C252F32CD9A49DBFC25ECF26EBD51A99] - 21/01/2008 - 03:23:27 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [386616] O58 - SDL:[MD5.E13B5EA0F51BA5B1512EC671393D09BA] - 21/01/2008 - 03:24:57 ---A- . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\Drivers\modem.sys [31744] O58 - SDL:[MD5.0A9BB33B56E294F686ABB7C1E4E2D8A8] - 21/01/2008 - 03:23:22 ---A- . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\Drivers\monitor.sys [41984] O58 - SDL:[MD5.5BF6A1326A335C5298477754A506D263] - 21/01/2008 - 03:23:20 ---A- . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\Drivers\mouclass.sys [34360] O58 - SDL:[MD5.93B8D4869E12CFBE663915502900876F] - 21/01/2008 - 03:23:20 ---A- . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\Drivers\mouhid.sys [15872] O58 - SDL:[MD5.BDAFC88AA6B92F7842416EA6A48E1600] - 21/01/2008 - 03:23:43 ---A- . (.Microsoft Corporation - Mount Point Manager.) -- C:\Windows\System32\Drivers\mountmgr.sys [57400] O58 - SDL:[MD5.511D011289755DD9F9A7579FB0B064E6] - 21/01/2008 - 03:23:20 ---A- . (.Microsoft Corporation - Pilote du bus de prise en charge des chemins d’accès multiples.) -- C:\Windows\System32\Drivers\mpio.sys [105016] O58 - SDL:[MD5.22241FEBA9B2DEFA669C8CB0A8DD7D2E] - 21/01/2008 - 03:24:47 ---A- . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\Drivers\mpsdrv.sys [64000] O58 - SDL:[MD5.4FBBB70D30FD20EC51F80061703B001E] - 02/11/2006 - 10:49:59 ---A- . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows Vista/Longhorn for.) -- C:\Windows\System32\Drivers\Mraid35x.sys [33384] O58 - SDL:[MD5.82CEA0395524AACFEB58BA1448E8325C] - 10/04/2009 - 21:14:42 ---A- . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\Drivers\mrxdav.sys [114688] O58 - SDL:[MD5.1E94971C4B446AB2290DEB71D01CF0C2] - 29/04/2011 - 14:24:40 ---A- . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\Drivers\mrxsmb.sys [106496] O58 - SDL:[MD5.4FCCB34D793B116423209C0F8B7A3B03] - 06/07/2011 - 16:31:47 ---A- . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\Drivers\mrxsmb10.sys [214016] O58 - SDL:[MD5.C3CB1B40AD4A0124D617A1199B0B9D7C] - 29/04/2011 - 14:24:42 ---A- . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\Drivers\mrxsmb20.sys [79872] O58 - SDL:[MD5.5457DCFA7C0DA43522F4D9D4049C1472] - 10/04/2009 - 23:32:30 ---A- . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) -- C:\Windows\System32\Drivers\msahci.sys [27112] O58 - SDL:[MD5.4468B0F385A86ECDDAF8D3CA662EC0E7] - 21/01/2008 - 03:23:21 ---A- . (.Microsoft Corporation - Microsoft Device Specific Module.) -- C:\Windows\System32\Drivers\msdsm.sys [94776] O58 - SDL:[MD5.A9927F4A46B816C92F461ACB90CF8515] - 21/01/2008 - 03:23:51 ---A- . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\Drivers\msfs.sys [22528] O58 - SDL:[MD5.0F400E306F385C56317357D6DEA56F62] - 21/01/2008 - 03:23:01 ---A- . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\Drivers\msisadrv.sys [16440] O58 - SDL:[MD5.232FA340531D940AAC623B121A595034] - 10/04/2009 - 23:32:48 ---A- . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\Drivers\msiscsi.sys [180712] O58 - SDL:[MD5.D8C63D34D9C9E56C059E24EC7185CC07] - 21/01/2008 - 03:24:50 ---A- . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\Drivers\mskssrv.sys [8192] O58 - SDL:[MD5.1D373C90D62DDB641D50E55B9E78D65E] - 21/01/2008 - 03:24:51 ---A- . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\Drivers\mspclock.sys [5888] O58 - SDL:[MD5.B572DA05BF4E098D4BBA3A4734FB505B] - 21/01/2008 - 03:24:51 ---A- . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\Drivers\mspqm.sys [5504] O58 - SDL:[MD5.B49456D70555DE905C311BCDA6EC6ADB] - 10/04/2009 - 23:32:48 ---A- . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\Drivers\msrpc.sys [161752] O58 - SDL:[MD5.E384487CB84BE41D09711C30CA79646C] - 21/01/2008 - 03:23:01 ---A- . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\Drivers\mssmbios.sys [31288] O58 - SDL:[MD5.7199C1EEC1E4993CAF96B8C0A26BD58A] - 21/01/2008 - 03:24:51 ---A- . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\Drivers\mstee.sys [6016] O58 - SDL:[MD5.6A57B5733D4CB702C8EA4542E836B96C] - 10/04/2009 - 23:32:32 ---A- . (.Microsoft Corporation - Multiple UNC Provider driver.) -- C:\Windows\System32\Drivers\mup.sys [48104] O58 - SDL:[MD5.1357274D1883F68300AEADD15D7BBB42] - 10/04/2009 - 23:32:50 ---A- . (.Microsoft Corporation - NDIS 6.0 wrapper driver.) -- C:\Windows\System32\Drivers\ndis.sys [527848] O58 - SDL:[MD5.0E186E90404980569FB449BA7519AE61] - 21/01/2008 - 03:24:25 ---A- . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\Drivers\ndistapi.sys [20992] O58 - SDL:[MD5.D6973AA34C4D5D76C0430B181C3CD389] - 21/01/2008 - 03:24:55 ---A- . (.Microsoft Corporation - NDIS User mode I/O driver.) -- C:\Windows\System32\Drivers\ndisuio.sys [16896] O58 - SDL:[MD5.818F648618AE34F729FDB47EC68345C3] - 10/04/2009 - 21:46:34 ---A- . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\Drivers\ndiswan.sys [121344] O58 - SDL:[MD5.71DAB552B41936358F3B541AE5997FB3] - 21/01/2008 - 03:24:25 ---A- . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\Drivers\ndproxy.sys [49664] O58 - SDL:[MD5.BCD093A5A6777CF626434568DC7DBA78] - 21/01/2008 - 03:24:20 ---A- . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\Drivers\netbios.sys [35840] O58 - SDL:[MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - 10/04/2009 - 21:45:38 ---A- . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\Drivers\netbt.sys [185856] O58 - SDL:[MD5.063EE4D3CB88A14EAB9901875CEE98B1] - 10/04/2009 - 23:32:48 ---A- . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\Drivers\netio.sys [223208] O58 - SDL:[MD5.E559EA9138C77B5D1FDA8C558764A25F] - 27/04/2008 - 23:29:26 ---A- . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\Drivers\NETw5v32.sys [3658752] O58 - SDL:[MD5.2E7FB731D4790A1BC6270ACCEFACB36E] - 02/11/2006 - 10:50:19 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [45160] O58 - SDL:[MD5.D36F239D7CCE1931598E8FB90A0DBC26] - 10/04/2009 - 21:14:02 ---A- . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\Drivers\npfs.sys [35328] O58 - SDL:[MD5.609773E344A97410CE4EBF74A8914FCF] - 21/01/2008 - 03:24:47 ---A- . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys [16384] O58 - SDL:[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - 03/03/2013 - 20:07:52 ---A- . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\Drivers\ntfs.sys [1082232] O58 - SDL:[MD5.E875C093AEC0C978A90F30C9E0DFBB72] - 02/11/2006 - 08:36:50 ---A- . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablette N-trig.) -- C:\Windows\System32\Drivers\ntrigdigi.sys [20608] O58 - SDL:[MD5.C5DBBCDA07D780BDA9B685DF333BB41E] - 21/01/2008 - 03:23:50 ---A- . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\Drivers\null.sys [4608] O58 - SDL:[MD5.2EDF9E7751554B42CBB60116DE727101] - 21/01/2008 - 03:23:21 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [102968] O58 - SDL:[MD5.ABED0C09758D1D97DB0042DBB2688177] - 21/01/2008 - 03:23:21 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [45112] O58 - SDL:[MD5.18BBDF913916B71BD54575BDB6EEAC0B] - 21/01/2008 - 03:23:01 ---A- . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\Windows\System32\Drivers\NV_AGP.SYS [109112] O58 - SDL:[MD5.85C44FDFF9CF7E72A40DCB7EC06A4416] - 10/04/2009 - 21:43:30 ---A- . (.Microsoft Corporation - NativeWiFi Miniport Driver.) -- C:\Windows\System32\Drivers\nwifi.sys [148480] O58 - SDL:[MD5.16DFA5EFF3F104C1D66BCB60C06A101F] - 13/05/2008 - 05:48:04 ---A- . (.O2Micro - o2media.) -- C:\Windows\System32\Drivers\o2media.sys [51288] O58 - SDL:[MD5.AFCF62FDBB0002EC16374D21C65A9063] - 13/05/2008 - 02:48:14 ---A- . (.O2Micro - O2Micro SD Reader Driver.) -- C:\Windows\System32\Drivers\o2sd.sys [43736] O58 - SDL:[MD5.6F310E890D46E246E0E261A63D9B36B4] - 10/04/2009 - 21:43:06 ---A- . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\Drivers\ohci1394.sys [62208] O58 - SDL:[MD5.99514FAA8DF93D34B5589187DB3AA0BA] - 10/04/2009 - 21:45:52 ---A- . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\Windows\System32\Drivers\pacer.sys [72192] O58 - SDL:[MD5.0FA9B5055484649D63C303FE404E5F4D] - 02/11/2006 - 09:51:30 ---A- . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\Drivers\parport.sys [79360] O58 - SDL:[MD5.B9C2B89F08670E159F7181891E449CD9] - 21/03/2012 - 00:28:50 ---A- . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\Drivers\partmgr.sys [53120] O58 - SDL:[MD5.4F9A6A8A31413180D0FCB279AD5D8112] - 02/11/2006 - 09:51:23 ---A- . (.Microsoft Corporation - Pilote parallèle VDM.) -- C:\Windows\System32\Drivers\parvdm.sys [8704] O58 - SDL:[MD5.1BF91F352D746AD7469FA71783B5FAE8] - 28/11/2006 - 20:46:22 ----- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 MPR Protocol Driver.) -- C:\Windows\System32\Drivers\PCAMp50.sys [28224] O58 - SDL:[MD5.1961590AA191B6B7DCF18A6A693AF7B8] - 28/11/2006 - 20:46:20 ----- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver.) -- C:\Windows\System32\Drivers\PCASp50.sys [27072] O58 - SDL:[MD5.941DC1D19E7E8620F40BBC206981EFDB] - 10/04/2009 - 23:32:56 ---A- . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\Drivers\pci.sys [149480] O58 - SDL:[MD5.FC175F5DDAB666D7F4D17449A547626F] - 21/01/2008 - 03:23:00 ---A- . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\pciide.sys [16440] O58 - SDL:[MD5.6429D10C5D149AC9EB2D95052A390CFF] - 10/04/2009 - 23:32:54 ---A- . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\Drivers\pciidex.sys [43496] O58 - SDL:[MD5.E6F3FB1B86AA519E7698AD05E58B04E5] - 02/11/2006 - 10:51:12 ---A- . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\Windows\System32\Drivers\pcmcia.sys [167528] O58 - SDL:[MD5.6349F6ED9C623B44B52EA3C63C831A92] - 02/11/2006 - 10:04:35 ---A- . (.Microsoft Corporation - Protected Environment Authentication and Authorization Export D.) -- C:\Windows\System32\Drivers\PEAuth.sys [878080] O58 - SDL:[MD5.6DBA75306DD9B242B6F1C343179AD201] - 30/10/2013 - 01:43:06 ---A- . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport Devices).) -- C:\Windows\System32\Drivers\portcls.sys [167936] O58 - SDL:[MD5.2027293619DD0F047C584CF2E7DF4FFD] - 21/01/2008 - 03:23:00 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\processr.sys [40960] O58 - SDL:[MD5.D86B4A68565E444D76457F14172C875A] - 22/05/2008 - 05:03:03 ---A- . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- C:\Windows\System32\Drivers\PxHelp20.sys [43528] O58 - SDL:[MD5.0A6DB55AFB7820C99AA1F3A1D270F4F6] - 21/01/2008 - 03:23:24 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\Drivers\ql2300.sys [1122360] O58 - SDL:[MD5.81A7E5C076E59995D54BC1ED3A16E60B] - 02/11/2006 - 10:50:35 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\ql40xx.sys [106088] O58 - SDL:[MD5.9F5E0E1926014D17486901C88ECA2DB7] - 21/01/2008 - 03:23:31 ---A- . (.Microsoft Corporation - Pilote du support de Microsoft Quality Windows Audio Video Expe.) -- C:\Windows\System32\Drivers\qwavedrv.sys [31232] O58 - SDL:[MD5.147D7F9C556D259924351FEB0DE606C3] - 21/01/2008 - 03:24:19 ---A- . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\Drivers\rasacd.sys [11776] O58 - SDL:[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 21/01/2008 - 03:24:55 ---A- . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\Drivers\rasl2tp.sys [76288] O58 - SDL:[MD5.509A98DD18AF4375E1FC40BC175F1DEF] - 10/04/2009 - 21:46:32 ---A- . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\Drivers\raspppoe.sys [41472] O58 - SDL:[MD5.ECFFFAEC0C1ECD8DBC77F39070EA1DB1] - 21/01/2008 - 03:24:55 ---A- . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\Drivers\raspptp.sys [62976] O58 - SDL:[MD5.2005F4A1E05FA09389AC85840F0A9E4D] - 10/04/2009 - 21:46:42 ---A- . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\Drivers\rassstp.sys [69120] O58 - SDL:[MD5.B14C9D5B9ADD2F84F70570BBBFAA7935] - 10/04/2009 - 21:14:30 ---A- . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) -- C:\Windows\System32\Drivers\rdbss.sys [225280] O58 - SDL:[MD5.89E59BE9A564262A3FB6C4F4F1CD9899] - 21/01/2008 - 03:24:06 ---A- . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\RDPCDD.sys [6144] O58 - SDL:[MD5.FBC0BACD9C3D7F6956853F64A66E252D] - 21/01/2008 - 03:23:01 ---A- . (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\Drivers\rdpdr.sys [248832] O58 - SDL:[MD5.9D91FE5286F748862ECFFA05F8A0710C] - 21/01/2008 - 03:24:50 ---A- . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\RDPENCDD.sys [6144] O58 - SDL:[MD5.C127EBD5AFAB31524662C48DFCEB773A] - 01/05/2012 - 15:03:49 ---A- . (.Microsoft Corporation - RDP Terminal Stack Driver.) -- C:\Windows\System32\Drivers\rdpwd.sys [180736] O58 - SDL:[MD5.EEC7EE5675294B03E88AA868540007C1] - 10/04/2009 - 21:45:26 ---A- . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\Drivers\rmcast.sys [113664] O58 - SDL:[MD5.D9225D107E40D0FA5C5069446759C8E9] - 10/04/2009 - 21:46:08 ---A- . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\Drivers\RNDISMP.sys [33280] O58 - SDL:[MD5.75E8A6BFA7374ABA833AE92BF41AE4E6] - 21/01/2008 - 03:24:49 ---A- . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\Drivers\rootmdm.sys [8192] O58 - SDL:[MD5.9C508F4074A39E8B4B31D27198146FAD] - 21/01/2008 - 03:24:37 ---A- . (.Microsoft Corporation - Link-Layer Topology Responder Driver for NDIS 6.) -- C:\Windows\System32\Drivers\rspndr.sys [60416] O58 - SDL:[MD5.1AA29238D4B14F4A20B2C4AAEA6E0F6E] - 18/06/2008 - 04:19:54 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\RtHDMIV.sys [147168] O58 - SDL:[MD5.4A0F260DF9A5333C07F4AB40CA9D4F4B] - 27/06/2008 - 04:23:26 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\RTKVHDA.sys [2149912] O58 - SDL:[MD5.2FC33077F85D7DC0D03678C06D43898C] - 02/05/2008 - 06:59:40 ---A- . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS6 32-bit Driver.) -- C:\Windows\System32\Drivers\Rtlh86.sys [122368] O58 - SDL:[MD5.729248B54AFF21E740054ACEBFDBCB1C] - 13/07/2001 - 12:56:14 ---A- . (...) -- C:\Windows\System32\Drivers\SBKUPNT.SYS [14976] O58 - SDL:[MD5.3CE8F073A557E172B330109436984E30] - 02/11/2006 - 10:50:16 ---A- . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\Drivers\sbp2port.sys [76392] O58 - SDL:[MD5.6F5CA34AE885645ACF8A20D564DB976C] - 21/01/2008 - 03:23:54 ---A- . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\Drivers\scsiport.sys [142904] O58 - SDL:[MD5.126EA89BCC413EE45E3004FB0764888F] - 21/01/2008 - 03:23:21 ---A- . (.Microsoft Corporation - SecureDigital Bus Driver.) -- C:\Windows\System32\Drivers\sdbus.sys [88576] O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 02/11/2006 - 07:37:21 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [20480] O58 - SDL:[MD5.68E44E331D46F0FB38F0863A84CD1A31] - 02/11/2006 - 09:51:25 ---A- . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\Drivers\serenum.sys [17920] O58 - SDL:[MD5.C70D69A918B178D3C3B06339B40C2E1B] - 02/11/2006 - 09:51:30 ---A- . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\Windows\System32\Drivers\serial.sys [83456] O58 - SDL:[MD5.8AF3D28A879BF75DB53A0EE7A4289624] - 21/01/2008 - 03:23:20 ---A- . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys [19968] O58 - SDL:[MD5.3EFA810BDCA87F6ECC24F9832243FE86] - 21/01/2008 - 03:23:23 ---A- . (.Microsoft Corporation - Small Form Factor Disk Driver.) -- C:\Windows\System32\Drivers\sffdisk.sys [13312] O58 - SDL:[MD5.E95D451F7EA3E583AEC75F3B3EE42DC5] - 21/01/2008 - 03:23:23 ---A- . (.Microsoft Corporation - Small Form Factor MMC Protocol Driver.) -- C:\Windows\System32\Drivers\sffp_mmc.sys [12288] O58 - SDL:[MD5.3D0EA348784B7AC9EA9BD9F317980979] - 21/01/2008 - 03:23:23 ---A- . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) -- C:\Windows\System32\Drivers\sffp_sd.sys [11776] O58 - SDL:[MD5.46ED8E91793B2E6F848015445A0AC188] - 02/11/2006 - 09:51:40 ---A- . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\Drivers\sfloppy.sys [13312] O58 - SDL:[MD5.1D76624A09A054F682D746B924E2DBC3] - 21/01/2008 - 03:23:01 ---A- . (.Microsoft Corporation - Filtre SIS NT AGP.) -- C:\Windows\System32\Drivers\SISAGP.SYS [55864] O58 - SDL:[MD5.43CB7AA756C7DB280D01DA9B676CFDE2] - 21/01/2008 - 03:23:26 ---A- . (.Microsoft Corporation - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [41016] O58 - SDL:[MD5.A99C6C8B0BAA970D8AA59DDC50B57F94] - 21/01/2008 - 03:23:26 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [74808] O58 - SDL:[MD5.7B75299A4D201D6A6533603D6914AB04] - 10/04/2009 - 21:45:24 ---A- . (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\Drivers\smb.sys [66560] O58 - SDL:[MD5.A7D7EA1771D2ED6F39A8063E79B6C3E8] - 21/01/2008 - 03:24:55 ---A- . (.Microsoft Corporation - Smard Card Driver Library.) -- C:\Windows\System32\Drivers\smclib.sys [17408] O58 - SDL:[MD5.7AEBDEEF071FE28B0EEF2CDD69102BFF] - 21/01/2008 - 03:24:11 ---A- . (.Microsoft Corporation - loader for security processor.) -- C:\Windows\System32\Drivers\spldr.sys [21048] O58 - SDL:[MD5.A7F8BAD9590ADDC425B4003E94780DFA] - 10/04/2009 - 19:52:42 ---A- . (.Microsoft Corporation - security processor.) -- C:\Windows\System32\Drivers\spsys.sys [684032] O58 - SDL:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 02/01/1601 - 23:00:00 ---A- . (...) -- C:\Windows\System32\Drivers\sptd.sys [691696] O58 - SDL:[MD5.41987F9FC0E61ADF54F581E15029AD91] - 18/02/2011 - 15:03:32 ---A- . (.Microsoft Corporation - Server driver.) -- C:\Windows\System32\Drivers\srv.sys [305152] O58 - SDL:[MD5.FF33AFF99564B1AA534F58868CBE41EF] - 29/04/2011 - 14:25:10 ---A- . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\Drivers\srv2.sys [146432] O58 - SDL:[MD5.7605C0E1D01A08F3ECD743F38B834A44] - 29/04/2011 - 14:25:09 ---A- . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\Drivers\srvnet.sys [102400] O58 - SDL:[MD5.47E55AFE1ED1D5AFF09690DB226F4A7A] - 10/04/2009 - 23:32:56 ---A- . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\Drivers\Storport.sys [122344] O58 - SDL:[MD5.70A92E46A2F459CDEDE3CA558CB26B6A] - 10/04/2009 - 21:42:48 ---A- . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\Drivers\stream.sys [52992] O58 - SDL:[MD5.7BA58ECF0C0A9A69D44B3DCA62BECF56] - 21/01/2008 - 03:23:01 ---A- . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\Drivers\swenum.sys [15288] O58 - SDL:[MD5.192AA3AC01DF071B541094F251DEED10] - 02/11/2006 - 10:50:05 ---A- . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\Drivers\symc8xx.sys [35944] O58 - SDL:[MD5.8C8EB8C76736EBAF3B13B633B2E64125] - 02/11/2006 - 10:49:56 ---A- . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\Drivers\sym_hi.sys [31848] O58 - SDL:[MD5.8072AF52B5FD103BBBA387A1E49F62CB] - 02/11/2006 - 10:50:03 ---A- . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\Drivers\sym_u3.sys [34920] O58 - SDL:[MD5.D2AA5D5FDB821EB5F9366C5E3BC2D9EA] - 08/06/2007 - 03:53:56 ---A- . (.Synaptics, Inc. - Synaptics Touchpad Driver.) -- C:\Windows\System32\Drivers\SynTP.sys [187448] O58 - SDL:[MD5.1239FD18895040D97B7CDBC19BC2075E] - 21/01/2008 - 03:24:44 ---A- . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\Drivers\tape.sys [24576] O58 - SDL:[MD5.D18D53974FD715D50FC76F9FFE1C830D] - 05/07/2013 - 05:53:33 ---A- . (.Microsoft Corporation - TCP/IP Driver.) -- C:\Windows\System32\Drivers\tcpip.sys [905664] O58 - SDL:[MD5.608C345A255D82A6289C2D468EB41FD7] - 08/12/2009 - 18:26:18 ---A- . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\Drivers\tcpipreg.sys [30720] O58 - SDL:[MD5.77937EFF009AC696B90E09F671F9D0A4] - 21/01/2008 - 03:24:05 ---A- . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\Drivers\tdi.sys [20992] O58 - SDL:[MD5.5DCF5E267BE67A1AE926F2DF77FBCC56] - 21/01/2008 - 03:24:08 ---A- . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\Windows\System32\Drivers\tdpipe.sys [17920] O58 - SDL:[MD5.389C63E32B3CEFED425B61ED92D3F021] - 21/01/2008 - 03:24:08 ---A- . (.Microsoft Corporation - TCP Transport Driver.) -- C:\Windows\System32\Drivers\tdtcp.sys [29184] O58 - SDL:[MD5.76B06EB8A01FC8624D699E7045303E54] - 10/04/2009 - 21:45:58 ---A- . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\Drivers\tdx.sys [72192] O58 - SDL:[MD5.3CAD38910468EAB9A6479E2F01DB43C7] - 10/04/2009 - 23:32:54 ---A- . (.Microsoft Corporation - Terminal Server Driver.) -- C:\Windows\System32\Drivers\termdd.sys [53224] O58 - SDL:[MD5.F4EAA7ECBCB25DE901C9B7F2CDCDA0B3] - 15/06/2013 - 12:23:33 ---A- . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\Drivers\tssecsrv.sys [24064] O58 - SDL:[MD5.CAECC0120AC49E3D2F758B9169872D38] - 21/01/2008 - 03:24:25 ---A- . (.Microsoft Corporation - Microsoft Tunnel Interface Driver.) -- C:\Windows\System32\Drivers\TUNMP.SYS [15360] O58 - SDL:[MD5.300DB877AC094FEAB0BE7688C3454A9C] - 18/02/2010 - 12:28:13 ---A- . (.Microsoft Corporation - Microsoft Tunnel Interface Driver.) -- C:\Windows\System32\Drivers\tunnel.sys [25088] O58 - SDL:[MD5.7D33C4DB2CE363C8518D2DFCF533941F] - 21/01/2008 - 03:23:22 ---A- . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\Windows\System32\Drivers\UAGP35.SYS [59448] O58 - SDL:[MD5.D9728AF68C4C7693CB100B8441CBDEC6] - 10/04/2009 - 21:14:00 ---A- . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\Drivers\udfs.sys [226816] O58 - SDL:[MD5.B0ACFDC9E4AF279E9116C03E014B2B27] - 21/01/2008 - 03:23:01 ---A- . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à processeur K8/9.) -- C:\Windows\System32\Drivers\ULIAGPKX.SYS [60984] O58 - SDL:[MD5.9224BB254F591DE4CA8D572A5F0D635C] - 21/01/2008 - 03:23:20 ---A- . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\Drivers\uliahci.sys [238648] O58 - SDL:[MD5.8514D0E5CD0534467C5FC61BE94A569F] - 02/11/2006 - 10:50:35 ---A- . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win2003.) -- C:\Windows\System32\Drivers\ulsata.sys [98408] O58 - SDL:[MD5.38C3C6E62B157A6BC46594FADA45C62B] - 21/01/2008 - 03:23:23 ---A- . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\Drivers\ulsata2.sys [115816] O58 - SDL:[MD5.32CFF9F809AE9AED85464492BF3E32D2] - 21/01/2008 - 03:23:22 ---A- . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\Drivers\umbus.sys [34816] O58 - SDL:[MD5.88BD96A1BAEED33EE8BDF9499C07A841] - 21/01/2008 - 03:23:49 ---A- . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\Drivers\umpass.sys [7680] O58 - SDL:[MD5.8D31A140B55021BBD3A608F5A7AA2E18] - 12/02/2013 - 02:57:27 ---A- . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\Drivers\usb8023.sys [15872] O58 - SDL:[MD5.83CAFCB53201BBAC04D822F32438E244] - 10/05/2011 - 07:06:08 ---A- . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\Drivers\usbaapl.sys [42496] O58 - SDL:[MD5.1114579556DB85E9FAF9590DBC64CD62] - 12/07/2013 - 10:04:18 ---A- . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\Windows\System32\Drivers\USBAUDIO.sys [73344] O58 - SDL:[MD5.D06F193F3E9CC3B356DF97F6A43C054A] - 10/04/2009 - 21:42:58 ---A- . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\Drivers\USBCAMD.sys [25856] O58 - SDL:[MD5.EAE017D3AA298374A1967B96C379C5AB] - 10/04/2009 - 21:42:58 ---A- . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\Drivers\USBCAMD2.sys [25856] O58 - SDL:[MD5.AAB0B5F72D2D726FBFDC895A2902DE1D] - 29/06/2013 - 03:07:04 ---A- . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\Drivers\usbccgp.sys [73216] O58 - SDL:[MD5.E9476E6C486E76BC4898074768FB7131] - 02/11/2006 - 09:55:09 ---A- . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\usbcir.sys [68608] O58 - SDL:[MD5.FE619ED13CE12F5B43C04E3EA061BBD6] - 29/06/2013 - 03:06:53 ---A- . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\Drivers\usbd.sys [6016] O58 - SDL:[MD5.153E8515CB86F8BB5D1A8B478EBF4BB2] - 05/05/2011 - 14:54:07 ---A- . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\Drivers\usbehci.sys [39936] O58 - SDL:[MD5.2AE6BCEBD85D31317E433733DAF25888] - 29/06/2013 - 03:07:15 ---A- . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\Drivers\usbhub.sys [197632] O58 - SDL:[MD5.38DBC7DD6CC5A72011F187425384388B] - 02/11/2006 - 09:55:05 ---A- . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbohci.sys [19456] O58 - SDL:[MD5.B09C74A41F26B08149707EA5E7F956C2] - 29/06/2013 - 03:07:01 ---A- . (.Microsoft Corporation - USB 1.1 & 2.0 Port Driver.) -- C:\Windows\System32\Drivers\usbport.sys [226304] O58 - SDL:[MD5.E75C4B5269091D15A2E7DC0B6D35F2F5] - 21/01/2008 - 03:23:22 ---A- . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\Drivers\usbprint.sys [18944] O58 - SDL:[MD5.1D714B8497CD68307806D5D3F60A5169] - 03/07/2013 - 03:33:45 ---A- . (.Microsoft Corporation - USB Scanner Driver.) -- C:\Windows\System32\Drivers\usbscan.sys [35328] O58 - SDL:[MD5.BE3DA31C191BC222D9AD503C5224F2AD] - 10/04/2009 - 21:42:56 ---A- . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\Drivers\USBSTOR.SYS [65536] O58 - SDL:[MD5.44056325428A8E4C755830426E29878F] - 05/05/2011 - 14:54:07 ---A- . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbuhci.sys [23552] O58 - SDL:[MD5.73FF24E21B690625A58109637DDA0DF7] - 12/07/2013 - 10:04:32 ---A- . (.Microsoft Corporation - USB Video Class Driver.) -- C:\Windows\System32\Drivers\usbvideo.sys [134272] O58 - SDL:[MD5.2E93AC0A1D8C79D019DB6C51F036636C] - 21/01/2008 - 03:24:50 ---A- . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys [25088] O58 - SDL:[MD5.87B06E1F30B749A114F74622D013F8D4] - 21/01/2008 - 03:23:02 ---A- . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vgapnp.sys [26112] O58 - SDL:[MD5.5D7159DEF58A800D5781BA3A879627BC] - 21/01/2008 - 03:23:01 ---A- . (.Microsoft Corporation - Filtre VIA NT AGP.) -- C:\Windows\System32\Drivers\VIAAGP.SYS [56888] O58 - SDL:[MD5.C4F3A691B5BAD343E6249BD8C2D45DEE] - 21/01/2008 - 03:23:00 ---A- . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\Drivers\viac7.sys [41472] O58 - SDL:[MD5.AADF5587A4063F52C2C3FED7887426FC] - 21/01/2008 - 03:23:00 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [20024] O58 - SDL:[MD5.C048D2C33D27441A0CDCAAE2651EB03D] - 21/01/2008 - 03:23:42 ---A- . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\Drivers\videoprt.sys [110080] O58 - SDL:[MD5.69503668AC66C77C6CD7AF86FBDF8C43] - 21/01/2008 - 03:23:01 ---A- . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys [52792] O58 - SDL:[MD5.23E41B834759917BFD6B9A0D625D0C28] - 10/04/2009 - 23:33:04 ---A- . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys [292840] O58 - SDL:[MD5.786DB5771F05EF300390399F626BF30A] - 21/08/2012 - 12:47:42 ---A- . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\Drivers\volsnap.sys [224640] O58 - SDL:[MD5.587253E09325E6BF226B299774B728A9] - 21/01/2008 - 03:23:23 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [130616] O58 - SDL:[MD5.48DFEE8F1AF7C8235D4E626F0C4FE031] - 02/11/2006 - 09:52:52 ---A- . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\Drivers\wacompen.sys [20608] O58 - SDL:[MD5.55201897378CCA7AF8B5EFD874374A26] - 21/01/2008 - 03:24:25 ---A- . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\Drivers\wanarp.sys [62464] O58 - SDL:[MD5.4A5C31E2C1646034E6A60EBA4C747FF6] - 10/04/2009 - 21:22:48 ---A- . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\Drivers\watchdog.sys [33280] O58 - SDL:[MD5.78FE9542363F297B18C027B2D7E7C07F] - 21/01/2008 - 03:23:24 ---A- . (.Microsoft Corporation - Microsoft Watchdog Timer Driver.) -- C:\Windows\System32\Drivers\wd.sys [22072] O58 - SDL:[MD5.25944D2CC49E0A6C581D02A74B7D6645] - 27/06/2013 - 00:01:59 ---A- . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en mode noyau.) -- C:\Windows\System32\Drivers\Wdf01000.sys [527064] O58 - SDL:[MD5.48704647CD2E9DAA2EB81BDE6D029EDB] - 26/07/2012 - 04:39:21 ---A- . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\Drivers\WdfLdr.sys [47720] O58 - SDL:[MD5.2E7255D172DF0B8283CDFB7B433B864E] - 21/01/2008 - 03:23:00 ---A- . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\Drivers\wmiacpi.sys [11264] O58 - SDL:[MD5.C546864EED786304762D030FEBF6B411] - 21/01/2008 - 03:23:42 ---A- . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\Drivers\wmilib.sys [17976] O58 - SDL:[MD5.DE9D36F91A4DF3D911626643DEBF11EA] - 01/10/2009 - 02:01:54 ---A- . (.Microsoft Corporation - WPD USB Driver.) -- C:\Windows\System32\Drivers\WpdUsb.sys [40448] O58 - SDL:[MD5.E3A3CB253C0EC2494D4A61F5E43A389C] - 21/01/2008 - 03:24:47 ---A- . (.Microsoft Corporation - Winsock2 IFS Layer.) -- C:\Windows\System32\Drivers\ws2ifsl.sys [15872] O58 - SDL:[MD5.06E6F32C8D0A3F66D956F57B43A2E070] - 26/07/2012 - 03:33:43 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Platform.) -- C:\Windows\System32\Drivers\WUDFPf.sys [66560] O58 - SDL:[MD5.867C301E8B790040AE9CF6486E8041DF] - 26/07/2012 - 03:32:51 ---A- . (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Reflecto.) -- C:\Windows\System32\Drivers\WUDFRd.sys [155136] O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 02/11/2006 - 08:09:42 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:[MD5.D7659D3B5B92C31E84E53C1431F35132] - 10/04/2009 - 23:32:48 ---A- . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\clfs.sys [245736] O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 02/11/2006 - 08:09:45 ---A- . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 02/11/2006 - 08:09:41 ---A- . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 02/11/2006 - 08:09:29 ---A- . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 02/11/2006 - 08:09:35 ---A- . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 02/11/2006 - 08:09:38 ---A- . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 02/11/2006 - 08:09:40 ---A- . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 02/11/2006 - 08:09:31 ---A- . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 02/11/2006 - 08:09:20 ---A- . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 02/11/2006 - 08:09:23 ---A- . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 02/11/2006 - 08:09:24 ---A- . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 02/11/2006 - 08:09:26 ---A- . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 02/11/2006 - 08:09:22 ---A- . (...) -- C:\Windows\System32\NTIO804.SYS [34672] O58 - SDL:[MD5.A6E18756EA7B6E971184B57B86251FC5] - 30/10/2013 - 01:35:24 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [2050560] ~ Drivers: 18 Scanned in 00mn 09s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 01/01/2034 - 22:43:52 ---A- . (...) -- C:\Users\Kévin\Music\Hardcore\Full\Noizmash - 2012 EP\A1 Noizmash - 2012.mp3 [13508485] O61 - LFC: 01/01/2034 - 22:43:52 ---A- . (...) -- C:\Users\Kévin\Music\Hardcore\Full\Noizmash - 2012 EP\A2 Noizmash - Stress In Da City '09 .mp3 [12638085] O61 - LFC: 01/01/2034 - 22:43:52 ---A- . (...) -- C:\Users\Kévin\Music\Hardcore\Full\Noizmash - 2012 EP\B1 Noizmash - The Gates.mp3 [10220191] O61 - LFC: 01/01/2034 - 22:43:52 ---A- . (...) -- C:\Users\Kévin\Music\Hardcore\Full\Noizmash - 2012 EP\B2 Noizmash - Right In Yo' Face.mp3 [12849154] O61 - LFC: 01/01/2034 - 22:44:10 ---A- . (...) -- C:\Users\Kévin\Music\Hardcore\Hc\Full\Noizmash - 2012 EP\A1 Noizmash - 2012.mp3 [13508485] O61 - LFC: 01/01/2034 - 22:44:10 ---A- . (...) -- C:\Users\Kévin\Music\Hardcore\Hc\Full\Noizmash - 2012 EP\A2 Noizmash - Stress In Da City '09 .mp3 [12638085] O61 - LFC: 01/01/2034 - 22:44:10 ---A- . (...) -- C:\Users\Kévin\Music\Hardcore\Hc\Full\Noizmash - 2012 EP\B1 Noizmash - The Gates.mp3 [10220191] O61 - LFC: 01/01/2034 - 22:44:10 ---A- . (...) -- C:\Users\Kévin\Music\Hardcore\Hc\Full\Noizmash - 2012 EP\B2 Noizmash - Right In Yo' Face.mp3 [12849154] O61 - LFC: 02/02/2014 - 22:42:06 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\BitComet\BitComet.xml [3640] =>P2P.BitComet O61 - LFC: 02/02/2014 - 22:42:06 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\BitComet\Downloads.xml [1808] =>P2P.BitComet O61 - LFC: 02/02/2014 - 22:42:06 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\BitComet\Downloads.xml.bak [1808] =>P2P.BitComet O61 - LFC: 02/02/2014 - 22:42:07 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\BitComet\torrents\Office Professional Plus 2013 FR RTM x86 et x64 [MSDN].xml [8379] =>P2P.BitComet O61 - LFC: 02/02/2014 - 22:43:17 ---A- . (.MyCity.) -- C:\Users\Kévin\Downloads\MCShield-Setup.exe [2846904] O61 - LFC: 02/02/2014 - 22:43:20 ---A- . (.Nicolas Coolman.) -- C:\Users\Kévin\Downloads\ZHPDiag2.exe [6862845] =>.Nicolas Coolman O61 - LFC: 03/02/2014 - 22:38:33 ---A- . (...) -- C:\Users\Kévin\AppData\Local\Packard Bell\Setup my PC\1.MSG [486] O61 - LFC: 03/02/2014 - 22:38:33 ---A- . (...) -- C:\Users\Kévin\AppData\Local\Packard Bell\Setup my PC\2.MSG [374] O61 - LFC: 03/02/2014 - 22:39:29 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Adobe\Acrobat\8.0\AdobeCMapFnt08.lst [508] O61 - LFC: 03/02/2014 - 22:39:29 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Adobe\Acrobat\8.0\UserCache.bin [96161] O61 - LFC: 03/02/2014 - 22:42:09 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\actions.oi [74] O61 - LFC: 03/02/2014 - 22:42:09 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\crypv.oi [310] O61 - LFC: 03/02/2014 - 22:42:09 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\menuWin.xml [924] O61 - LFC: 03/02/2014 - 22:42:09 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\menuWin\email.bmp [822] O61 - LFC: 03/02/2014 - 22:42:09 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\menuWin\orange.bmp [822] O61 - LFC: 03/02/2014 - 22:42:09 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\menuWin\search.bmp [822] O61 - LFC: 03/02/2014 - 22:42:09 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\menuWin\sms.bmp [822] O61 - LFC: 03/02/2014 - 22:42:09 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\src\AddFavorites_html\AddFavorites.html [392] O61 - LFC: 03/02/2014 - 22:42:09 ---A- . (.Orange.) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\OIExt.dll [190976] O61 - LFC: 03/02/2014 - 22:42:10 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\src\OISearch.ico [2550] O61 - LFC: 03/02/2014 - 22:42:10 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\src\orange_html\orange.html [334] O61 - LFC: 03/02/2014 - 22:42:10 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\src\selectedsearch_html\selectedsearch.html [534] O61 - LFC: 03/02/2014 - 22:42:10 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\src\sendmail_html\sendmail.html [335] O61 - LFC: 03/02/2014 - 22:42:10 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\src\sendsms_html\sendsms.html [379] O61 - LFC: 03/02/2014 - 22:42:10 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\src\sendsmsselectedtext_html\sendsmsselectedtext.html [524] O61 - LFC: 03/02/2014 - 22:42:10 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\src\translateSelectedText_html\translateSelectedText.html [540] O61 - LFC: 03/02/2014 - 22:42:10 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\src\translate_html\translate.html [395] O61 - LFC: 03/02/2014 - 22:42:10 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Orange\OrangeInside\uninstall.exe [162473] O61 - LFC: 03/02/2014 - 22:43:16 ---A- . (...) -- C:\Users\Kévin\Downloads\adwcleaner.exe [1166132] O61 - LFC: 03/02/2014 - 22:43:20 ---A- . (.El Desaparecido - SosVirus.net - UsbFix.net.) -- C:\Users\Kévin\Downloads\UsbFix.exe [2203492] O61 - LFC: 04/02/2014 - 22:38:32 ---A- . (...) -- C:\Users\Kévin\AppData\Local\Google\Chrome\User Data\Default\preferences [0] O61 - LFC: 04/02/2014 - 22:38:32 ---A- . (...) -- C:\Users\Kévin\AppData\Local\Google\Google Desktop\077d60ddfca1\sites.txt [2418] O61 - LFC: 04/02/2014 - 22:39:29 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Adobe\Acrobat\8.0\TMDocs.sav [36] O61 - LFC: 04/02/2014 - 22:39:29 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Adobe\Acrobat\8.0\TMGrpPrm.sav [54] O61 - LFC: 04/02/2014 - 22:42:08 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Microsoft\Office\Recent\Projet.LNK [1249] O61 - LFC: 04/02/2014 - 22:42:08 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Microsoft\Office\Recent\Projet.docx.LNK [1377] O61 - LFC: 04/02/2014 - 22:42:08 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Microsoft\Office\Word12.pip [1772] O61 - LFC: 04/02/2014 - 22:42:08 --H-- . (...) -- C:\Users\Kévin\AppData\Roaming\Microsoft\Office\Recent\index.dat [52] O61 - LFC: 04/02/2014 - 22:43:16 ---A- . (...) -- C:\Users\Kévin\Downloads\adwcleaner(1).exe [1166132] O61 - LFC: 04/02/2014 - 22:43:17 ---A- . (.Malwarebytes Corporation.) -- C:\Users\Kévin\Downloads\mbam-setup-1.75.0.1300.exe [10285040] O61 - LFC: 04/02/2014 - 22:43:17 ---A- . (.Thisisu.) -- C:\Users\Kévin\Downloads\JRT.exe [1037530] O61 - LFC: 05/02/2014 - 22:38:31 ---A- . (...) -- C:\Users\Kévin\AppData\Local\ATI\ACE\Manifest.Bin [14799] O61 - LFC: 05/02/2014 - 22:38:31 ---A- . (...) -- C:\Users\Kévin\AppData\Local\ATI\ACE\Manifest.xml [13605] O61 - LFC: 05/02/2014 - 22:38:31 ---A- . (...) -- C:\Users\Kévin\AppData\Local\ATI\ACE\Profiles.xml [11772] O61 - LFC: 05/02/2014 - 22:38:31 ---A- . (...) -- C:\Users\Kévin\AppData\Local\Ahead\Nero Home\crawlercfg.dat [2726] O61 - LFC: 05/02/2014 - 22:38:32 ---A- . (...) -- C:\Users\Kévin\AppData\Local\Google\Google Desktop\077d60ddfca1\uinfo.dat [337408] O61 - LFC: 05/02/2014 - 22:38:32 --HA- . (...) -- C:\Users\Kévin\AppData\Local\IconCache.db [6291456] O61 - LFC: 05/02/2014 - 22:42:07 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-02-04 (23-46-21).txt [15558] O61 - LFC: 05/02/2014 - 22:42:08 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Microsoft\IdentityCRL\production\MetaConfig.xml [163] O61 - LFC: 05/02/2014 - 22:42:08 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\Microsoft\Office\PowerP12.pip [1512] O61 - LFC: 05/02/2014 - 22:42:10 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\ZHP\Log.txt [122588] =>.Nicolas Coolman O61 - LFC: 05/02/2014 - 22:42:10 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\ZHP\TestsZHPDiag.txt [2845] =>.Nicolas Coolman O61 - LFC: 05/02/2014 - 22:42:10 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\ZHP\ZHPADSReport.txt [488] =>.Nicolas Coolman O61 - LFC: 05/02/2014 - 22:42:10 ---A- . (...) -- C:\Users\Kévin\AppData\Roaming\ZHP\ZHPDiag.txt [299100] =>.Nicolas Coolman O61 - LFC: 05/02/2014 - 22:45:52 ---A- . (...) -- C:\Users\Kévin\Tracing\WindowsLiveMessenger-uccapi-0.uccapilog [0] ~ Files: 63 Scanned in 07mn 21s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: UsbFix - (.El Desaparecido - www.usbfix.net - www.sosvirus.net.) [HKLM] -- Usbfix O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman ~ ADS: Scanned in 00mn 00s ---\\ Liste les services legacy du registre (LALS) (O64) O64 - Services: CurCS - 21/04/2011 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD O64 - Services: CurCS - 06/09/2011 - C:\Windows\System32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK O64 - Services: CurCS - 06/09/2011 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT O64 - Services: CurCS - 06/09/2011 - C:\Windows\System32\Drivers\aswRdr.sys (aswRdr) .(.AVAST Software - avast! TDI RDR Driver.) - LEGACY_ASWRDR O64 - Services: CurCS - 06/09/2011 - C:\Windows\System32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX O64 - Services: CurCS - 06/09/2011 - C:\Windows\System32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP O64 - Services: CurCS - 06/09/2011 - C:\Windows\System32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI O64 - Services: CurCS - 10/04/2009 - C:\Windows\System32\drivers\atapi.sys (atapi) .(.Microsoft Corporation - ATAPI IDE Miniport Driver.) - LEGACY_ATAPI O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\Drivers\Beep.sys (Beep) .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP O64 - Services: CurCS - 22/02/2011 - C:\Windows\System32\DRIVERS\bowser.sys (bowser) .(.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) - LEGACY_BOWSER O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\DRIVERS\cdfs.sys (cdfs) .(.Microsoft Corporation - CD-ROM File System Driver.) - LEGACY_CDFS O64 - Services: CurCS - 10/04/2009 - C:\Windows\System32\CLFS.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\drivers\crcdisk.sys (crcdisk) .(.Microsoft Corporation - Disk Block Verification Filter Driver.) - LEGACY_CRCDISK O64 - Services: CurCS - 14/04/2011 - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC O64 - Services: CurCS - 01/08/2013 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL O64 - Services: CurCS - 10/04/2009 - C:\Windows\System32\Drivers\fastfat.sys (fastfat) .(.Microsoft Corporation - Fast FAT File System Driver.) - LEGACY_FASTFAT O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO O64 - Services: CurCS - 10/04/2009 - C:\Windows\System32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR O64 - Services: CurCS - 20/02/2010 - C:\Windows\System32\drivers\HTTP.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP O64 - Services: CurCS - 04/06/2012 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO O64 - Services: CurCS - 21/01/2008 - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV O64 - Services: CurCS - 05/02/2014 - C:\Users\KVIN~1\AppData\Local\Temp\mbr.sys (mbr) .(...) - LEGACY_MBR O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\drivers\mountmgr.sys (MountMgr) .(.Microsoft Corporation - Mount Point Manager.) - LEGACY_MOUNTMGR O64 - Services: CurCS - 21/01/2008 - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV O64 - Services: CurCS - 10/04/2009 - C:\Windows\system32\drivers\mrxdav.sys (MRxDAV) .(.Microsoft Corporation - Windows NT WebDav Minirdr.) - LEGACY_MRXDAV O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\mrxsmb.sys (mrxsmb) .(.Microsoft Corporation - Windows NT SMB Minirdr.) - LEGACY_MRXSMB O64 - Services: CurCS - 06/07/2011 - C:\Windows\System32\DRIVERS\mrxsmb10.sys (mrxsmb10) .(.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) - LEGACY_MRXSMB10 O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\mrxsmb20.sys (mrxsmb20) .(.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) - LEGACY_MRXSMB20 O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\drivers\msisadrv.sys (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV O64 - Services: CurCS - 10/04/2009 - C:\Windows\System32\Drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider driver.) - LEGACY_MUP O64 - Services: CurCS - 10/04/2009 - C:\Windows\System32\DRIVERS\nwifi.sys (NativeWifiP) .(.Microsoft Corporation - NativeWiFi Miniport Driver.) - LEGACY_NATIVEWIFIP O64 - Services: CurCS - 10/04/2009 - C:\Windows\System32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - NDIS 6.0 wrapper driver.) - LEGACY_NDIS O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\DRIVERS\ndisuio.sys (Ndisuio) .(.Microsoft Corporation - NDIS User mode I/O driver.) - LEGACY_NDISUIO O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS O64 - Services: CurCS - 10/04/2009 - C:\Windows\System32\DRIVERS\netbt.sys (netbt) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY O64 - Services: CurCS - 02/11/2006 - C:\Windows\System32\drivers\peauth.sys (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH O64 - Services: CurCS - 10/04/2009 - C:\Windows\System32\drivers\pacer.sys (PSched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\DRIVERS\rasacd.sys (RasAcd) .(.Microsoft Corporation - RAS Automatic Connection Driver.) - LEGACY_RASACD O64 - Services: CurCS - 10/04/2009 - C:\Windows\System32\DRIVERS\rdbss.sys (rdbss) .(.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - LEGACY_RDBSS O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\drivers\rdpencdd.sys (RDPENCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPENCDD O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR O64 - Services: CurCS - 13/07/2001 - C:\Windows\system32\Drivers\SBKUPNT.sys (SBKUPNT) .(...) - LEGACY_SBKUPNT O64 - Services: CurCS - 02/11/2006 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV O64 - Services: CurCS - 10/04/2009 - C:\Windows\system32\tcpipcfg.dll (Smb) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_SMB O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\Drivers\spldr.sys (spldr) .(.Microsoft Corporation - loader for security processor.) - LEGACY_SPLDR O64 - Services: CurCS - 05/02/2014 - C:\Windows\System32\Drivers\sptd.sys (sptd) .(...) - LEGACY_SPTD O64 - Services: CurCS - 18/02/2011 - C:\Windows\System32\DRIVERS\srv.sys (srv) .(.Microsoft Corporation - Server driver.) - LEGACY_SRV O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srv2.sys (srv2) .(.Microsoft Corporation - Smb 2.0 Server driver.) - LEGACY_SRV2 O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET O64 - Services: CurCS - 10/04/2009 - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP O64 - Services: CurCS - 08/12/2009 - C:\Windows\System32\drivers\tcpipreg.sys (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG O64 - Services: CurCS - 10/04/2009 - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX O64 - Services: CurCS - 21/01/2008 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE O64 - Services: CurCS - 10/04/2009 - C:\Windows\System32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Volume Manager Extension Driver.) - LEGACY_VOLMGRX O64 - Services: CurCS - 21/08/2012 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP O64 - Services: CurCS - 21/01/2008 - C:\Windows\System32\DRIVERS\wanarp.sys (Wanarpv6) .(.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - LEGACY_WANARPV6 O64 - Services: CurCS - 27/06/2013 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000 O64 - Services: CurCS - 21/01/2008 - C:\Windows\system32\drivers\ws2ifsl.sys (ws2ifsl) .(.Microsoft Corporation - Winsock2 IFS Layer.) - LEGACY_WS2IFSL O64 - Services: CurCS - 26/07/2012 - C:\Windows\system32\drivers\Wudfpf.sys (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF ~ Legacy: 76 Scanned in 00mn 04s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.com> <>[HKU\..\open\Command] (.Not Key.) O67 - Shell Spawning: <.exe> <>[HKU\..\open\Command] (.Not Key.) ~ FASS Keys: 11 Scanned in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) O69 - SBI: prefs.js [Kévin - 5tjuuor1.default] user_pref("extensions.plugin2@gameplaylabs.com.fr", "1391546713"); =>Spyware.GamePlayLabs O69 - SBI: prefs.js [Kévin - 5tjuuor1.default] user_pref("extensions.plugin2@gameplaylabs.com.ranonce", true); =>Spyware.GamePlayLabs O69 - SBI: prefs.js [Kévin - 5tjuuor1.default] user_pref("extensions.plugin2@gameplaylabs.com.rule_/", "1391546723"); =>Spyware.GamePlayLabs O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - http://www.google.com O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com O69 - SBI: SearchScopes [HKCU] {814C76CB-2623-43F4-AAD0-58A0E5190A20} - (Orange) - http://r.orange.fr ~ Keys: Scanned in 00mn 00s ---\\ Enumère les service demarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [40448] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [40448] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [576512] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [444928] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [315392] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [90624] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [47104] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [288256] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [242688] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Terminal Server.) -- C:\Windows\System32\termsrv.dll [449024] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [1933848] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [758784] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [200704] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [19968] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [45056] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153088] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [601600] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Terminal Server.) -- C:\Windows\System32\sessenv.dll [84992] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [68096] ~ Services: 31 Scanned in 00mn 00s ---\\ Recherche particulière à la racine du système (SPRF) (O84) [MD5.3E1DF378A184A9298DE9BCE87A127AC7] [SPRF][01/02/2014] (...) -- C:\Users\Kévin\AppData\Local\d3d9caps.dat [6836] [MD5.92D5229BE906242CA823A3AA2BAFB469] [SPRF][28/01/2012] (...) -- C:\Users\Kévin\AppData\Roaming\ey4baudxre2wud1p.dat [8] [MD5.D41D8CD98F00B204E9800998ECF8427E] [SPRF][21/03/2012] (...) -- C:\Users\Kévin\AppData\Roaming\wklnhst.dat [0] [MD5.BA5D817CF90597D0053CD765DAC99BDF] [SPRF][17/12/2008] (...) -- C:\Users\Kévin\Desktop\FlashLockV224.exe [1245184] [MD5.56DBC01BF6DFBA60A863DE308FB58334] [SPRF][04/02/2014] (.Thisisu - Junkware Removal Tool.) -- C:\Users\Kévin\Desktop\JRT.exe [1037530] [MD5.9085DE089A6E26794C3E482E4E79F75E] [SPRF][04/02/2014] (...) -- C:\Users\Kévin\Desktop\RogueKiller.exe [3796480] [MD5.23559EB760D28016AEA2D77890EEDCD5] [SPRF][05/02/2014] (.Pas de propriétaire - Nettoyage des fichiers temporaires.) -- C:\Users\Kévin\Desktop\SFTGC.exe [1052688] [MD5.3FEA9D2EDF23B0283C7A66C8DEA380BD] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\Windows\Downloaded Program Files\dwusplay.dll [24576] [MD5.CDBE35EA59BC9223E4F800BD1DB82D27] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\Windows\Downloaded Program Files\dwusplay.exe [196608] [MD5.0C78701C6F42345DFF2B2B6C3C3D01EF] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Web Agent.) -- C:\Windows\Downloaded Program Files\isusweb.dll [172032] ~ Files: 10 Scanned in 00mn 00s ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus de l’autorité de sécurité locale.) -- C:\Windows\system32\lsass.exe O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "NetPres-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation O87 - FAEL: "NetPres-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation O87 - FAEL: "NetPres-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation O87 - FAEL: "NetPres-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation O87 - FAEL: "NetPres-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation O87 - FAEL: "NetPres-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "RemoteAssistance-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Programme DTCconsole MS.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Programme DTCconsole MS.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Programme DTCconsole MS.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Programme DTCconsole MS.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "BITSSVC-RPCSS-In-TCP" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "BITSSVC-RPC-In-TCP" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "BITSSVC-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "BITSSVC-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-In-UDP" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WinCollab-P2P-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WinCollab-P2P-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WinCollab-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe =>.Microsoft Corporation O87 - FAEL: "WinCollab-In-UDP" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe =>.Microsoft Corporation O87 - FAEL: "WinCollab-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe =>.Microsoft Corporation O87 - FAEL: "WinCollab-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe =>.Microsoft Corporation O87 - FAEL: "WinCollab-DFSR-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Réplication DFS.) -- C:\Windows\system32\dfsr.exe O87 - FAEL: "WinCollab-DFSR-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Réplication DFS.) -- C:\Windows\system32\dfsr.exe O87 - FAEL: "MCX-Prov-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-QWave-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-In-TCP" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-In-TCP" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Media Center.) -- C:\Windows\ehome\ehshell.exe O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMP-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Serveur DCOM des journaux et alertes de performance.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Serveur DCOM des journaux et alertes de performance.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "{62CC688D-9814-4CA3-A3F4-811296EF9C8B}" | In - Public - P6 - FALSE | .(...) -- C:\Program Files\Adobe\Photoshop Elements 6.0\AdobePhotoshopElementsMediaServer.exe O87 - FAEL: "{4889215F-5714-48DA-81A2-6A45EFC5BED6}" | In - Public - P17 - FALSE | .(...) -- C:\Program Files\Adobe\Photoshop Elements 6.0\AdobePhotoshopElementsMediaServer.exe O87 - FAEL: "{0365AB48-91ED-4C0C-8E5C-CFF5E8F3FF7B}" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files\Microsoft Office\Office12\ONENOTE.exe O87 - FAEL: "{98E101BF-99CA-4853-B26E-81BE7AC90E25}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files\Microsoft Office\Office12\ONENOTE.exe O87 - FAEL: "TCP Query User{F2E7FA19-6634-4701-8AA5-3569CAA06BBA}C:\program files\dassault systemes\b17\intel_a\code\bin\orbixd.exe" | In - Public - P6 - TRUE | .(...) -- C:\program files\dassault systemes\b17\intel_a\code\bin\orbixd.exe O87 - FAEL: "UDP Query User{59DFAEBE-256E-4598-8F4F-FF5E400C5618}C:\program files\dassault systemes\b17\intel_a\code\bin\orbixd.exe" | In - Public - P17 - TRUE | .(...) -- C:\program files\dassault systemes\b17\intel_a\code\bin\orbixd.exe O87 - FAEL: "TCP Query User{B0CF76FB-E99B-4AC8-A45F-10155D178099}C:\program files\dassault systemes\b17\intel_a\code\bin\cnext.exe" | In - Public - P6 - TRUE | .(.Dassault Systemes - CATIA.) -- C:\program files\dassault systemes\b17\intel_a\code\bin\cnext.exe O87 - FAEL: "UDP Query User{69AF23ED-D62A-41FD-8043-54F648F50199}C:\program files\dassault systemes\b17\intel_a\code\bin\cnext.exe" | In - Public - P17 - TRUE | .(.Dassault Systemes - CATIA.) -- C:\program files\dassault systemes\b17\intel_a\code\bin\cnext.exe O87 - FAEL: "TCP Query User{1DAB92E2-FA6A-4B70-BA8F-D4BEF2893921}C:\program files\dassault systemes\b19\intel_a\code\bin\orbixd.exe" | In - Public - P6 - TRUE | .(...) -- C:\program files\dassault systemes\b19\intel_a\code\bin\orbixd.exe O87 - FAEL: "UDP Query User{1F84E8B9-8879-4D68-8649-7DE2E1DDC939}C:\program files\dassault systemes\b19\intel_a\code\bin\orbixd.exe" | In - Public - P17 - TRUE | .(...) -- C:\program files\dassault systemes\b19\intel_a\code\bin\orbixd.exe O87 - FAEL: "TCP Query User{A82F3D10-6CDB-4791-84AB-FAD78DF5ABB0}C:\program files\dassault systemes\b19\intel_a\code\bin\cnext.exe" | In - Public - P6 - TRUE | .(.Dassault Systemes - CATIA.) -- C:\program files\dassault systemes\b19\intel_a\code\bin\cnext.exe O87 - FAEL: "UDP Query User{B07483AA-B238-4C20-AF8C-99143E17DD86}C:\program files\dassault systemes\b19\intel_a\code\bin\cnext.exe" | In - Public - P17 - TRUE | .(.Dassault Systemes - CATIA.) -- C:\program files\dassault systemes\b19\intel_a\code\bin\cnext.exe O87 - FAEL: "{D11CF4D5-5174-425C-87F3-D6ED0B0415D7}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Call.) -- C:\Program Files\Windows Live\Messenger\wlcsdk.exe O87 - FAEL: "TCP Query User{96756F0B-F38F-4D64-A14A-E32E35F9B5CB}C:\program files\windows live\messenger\msnmsgr.exe" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Windows Live Messenger.) -- C:\program files\windows live\messenger\msnmsgr.exe O87 - FAEL: "UDP Query User{FC303ACA-BC35-48D8-A8F0-CFE6E26D6B20}C:\program files\windows live\messenger\msnmsgr.exe" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Windows Live Messenger.) -- C:\program files\windows live\messenger\msnmsgr.exe O87 - FAEL: "{A3D7D80D-1A76-44C1-ACF2-35C2D879AC5B}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Microsoft Office Outlook.) -- C:\Program Files\Microsoft Office\Office12\outlook.exe =>.Microsoft Corporation O87 - FAEL: "TCP Query User{07B24B08-B495-46DE-8560-6B395A43565B}C:\program files\mozilla firefox\plugin-container.exe" | In - Public - P6 - TRUE | .(.Mozilla Corporation - Plugin Container for Firefox.) -- C:\program files\mozilla firefox\plugin-container.exe O87 - FAEL: "UDP Query User{8CCC5104-C97B-4CCA-9F9C-37A0DE46486E}C:\program files\mozilla firefox\plugin-container.exe" | In - Public - P17 - TRUE | .(.Mozilla Corporation - Plugin Container for Firefox.) -- C:\program files\mozilla firefox\plugin-container.exe O87 - FAEL: "TCP Query User{004719C9-BCFA-4CAA-A71B-929DC65E820A}C:\program files\infogrames\hogs of war\warhogs.exe" | In - Public - P6 - TRUE | .(.Gremlin - warhogs.) -- C:\program files\infogrames\hogs of war\warhogs.exe O87 - FAEL: "UDP Query User{FE7586FA-9C91-4C23-BDC9-A6B74343A6F1}C:\program files\infogrames\hogs of war\warhogs.exe" | In - Public - P17 - TRUE | .(.Gremlin - warhogs.) -- C:\program files\infogrames\hogs of war\warhogs.exe O87 - FAEL: "TCP Query User{17B94603-127F-45CB-AC94-BE99ED18B8ED}C:\program files\windows live\messenger\msnmsgr.exe" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Windows Live Messenger.) -- C:\program files\windows live\messenger\msnmsgr.exe O87 - FAEL: "UDP Query User{EF6FAA88-BF0F-4579-9F95-D962AA18A84E}C:\program files\windows live\messenger\msnmsgr.exe" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Windows Live Messenger.) -- C:\program files\windows live\messenger\msnmsgr.exe O87 - FAEL: "{AF1BB7C2-491A-4FAF-9529-3DF87DCB83BB}" | In - Public - P6 - TRUE | .(.SEIKO EPSON CORPORATION - EpsonNet Setup.) -- C:\Program Files\EpsonNet\EpsonNet Setup\tool09\ENEasyApp.exe O87 - FAEL: "{A9EB1869-25F1-46CC-810E-82D2F5D52A21}" | In - Public - P17 - TRUE | .(.SEIKO EPSON CORPORATION - EpsonNet Setup.) -- C:\Program Files\EpsonNet\EpsonNet Setup\tool09\ENEasyApp.exe O87 - FAEL: "{95913625-1BD0-4E84-9C76-02C7C513B182}" | In - Public - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "{6095F529-065A-4FF8-A4D7-EF8774C3FC6F}" | In - Public - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O87 - FAEL: "TCP Query User{CA7F6ADB-68EC-4366-9F9B-FDB75D0C1D5F}C:\program files\epson software\event manager\eeventmanager.exe" | In - Public - P6 - TRUE | .(.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\program files\epson software\event manager\eeventmanager.exe O87 - FAEL: "UDP Query User{37D437E4-5F25-4BBC-B6EF-7173E283563B}C:\program files\epson software\event manager\eeventmanager.exe" | In - Public - P17 - TRUE | .(.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\program files\epson software\event manager\eeventmanager.exe O87 - FAEL: "{0384FD9A-5859-469F-8CF1-47BD6939578F}" |In - Public - P6 - TRUE | .(...) -- D:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{C386D81D-3B52-4F1C-82F1-F03AE350946F}" |In - Public - P17 - TRUE | .(...) -- D:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{900D071B-456B-4DC2-ACD3-EE34593CF541}" | In - Public - P6 - TRUE | .(.www.BitComet.com - BitComet - a BitTorrent Client.) -- C:\Program Files\BitComet\BitComet.exe =>P2P.BitComet O87 - FAEL: "{061A0BF9-2F45-4D8D-BA60-073528DB2DB0}" | In - Public - P17 - TRUE | .(.www.BitComet.com - BitComet - a BitTorrent Client.) -- C:\Program Files\BitComet\BitComet.exe =>P2P.BitComet O87 - FAEL: "{D286F785-37C2-4E93-B92A-E60F13B32F21}" | In - None - P17 - TRUE | .(.Skype Limited - Facebook Video Calling.) -- C:\Users\Kévin\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe O87 - FAEL: "{F4F4BE30-1AB9-4B4C-A816-ADCE9361D595}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Packard Bell - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe O87 - FAEL: "{32E85DB4-67DE-4564-9BFB-8279CEDCE363}" | In - Public - P6 - TRUE | .(.Orange SA - Orange Upd@te.) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe O87 - FAEL: "{438B7DE1-6046-4108-BC6B-2A298543AE28}" | In - Public - P17 - TRUE | .(.Orange SA - Orange Upd@te.) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe O87 - FAEL: "{B339D3A9-9E0A-4B70-B5DF-0E17BB70A34E}" | In - Public - P6 - TRUE | .(.Pinnacle - Render Manager.) -- C:\Program Files\Pinnacle\Studio 17\programs\RM.exe O87 - FAEL: "{1EA45AA4-B50D-494A-B3FF-C3DC757A4FC7}" | In - Public - P17 - TRUE | .(.Pinnacle - Render Manager.) -- C:\Program Files\Pinnacle\Studio 17\programs\RM.exe O87 - FAEL: "{2374B7AA-13E0-4109-BE96-69E9A15FB81A}" | In - Public - P6 - TRUE | .(.Pinnacle - NGStudio.) -- C:\Program Files\Pinnacle\Studio 17\programs\NGStudio.exe O87 - FAEL: "{A4A8A6BC-2A71-4CD1-AB4B-7ADB183C2FF4}" | In - Public - P17 - TRUE | .(.Pinnacle - NGStudio.) -- C:\Program Files\Pinnacle\Studio 17\programs\NGStudio.exe O87 - FAEL: "{729E6508-BF9D-4F89-A5DD-6052EB43E176}" | In - Public - P6 - TRUE | .(.Pinnacle - Usermode Interupt.) -- C:\Program Files\Pinnacle\Studio 17\programs\UMI.exe O87 - FAEL: "{EA68F264-F08C-4FB2-963B-849D70A69953}" | In - Public - P17 - TRUE | .(.Pinnacle - Usermode Interupt.) -- C:\Program Files\Pinnacle\Studio 17\programs\UMI.exe ~ Firewall: 209 Scanned in 00mn 03s ---\\ Enumère les codes produits des logiciels (PUC) (O90) O90 - PUC: "000021090200C0400000000000F01FEC" . (.Module de compatibilité pour Microsoft Office System 2007.) -- C:\Windows\Installer\{90120000-0020-040C-0000-0000000FF1CE}\O12ConvIcon.exe O90 - PUC: "00002159FA00C0400000000000F01FEC" . (.Microsoft Office PowerPoint Viewer 2007 (French).) -- C:\Windows\Installer\{95120000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe,0 =>.Microsoft Corporation O90 - PUC: "00006FCA9B229EC4896DC2FC53B9CA70" . (.ABBYY FineReader 6.0 Sprint.) -- C:\Windows\Installer\{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}\ARPPRODUCTICON.exe O90 - PUC: "0119AE20B27984B23728B9067470B7C3" . (.Catalyst Control Center Localization Portuguese.) -- C:\Windows\Installer\{02EA9110-972B-2B48-7382-9B6047077B3C}\ARPPRODUCTICON.exe O90 - PUC: "02F27865EE55D533EB68FD1DB2233FA6" . (.Catalyst Control Center Localization Japanese.) -- C:\Windows\Installer\{56872F20-55EE-335D-BE86-DFD12B32F36A}\ARPPRODUCTICON.exe O90 - PUC: "144A4120BA4A8A34D8FEF2375C636437" . (.Microsoft Works.) -- C:\Windows\Installer\{0214A441-A4AB-43A8-8DEF-2F73C5364673}\MSWorks.exe O90 - PUC: "16BA081BE1EC4A29ED4BAC389F02BD4C" . (.Catalyst Control Center Localization Greek.) -- C:\Windows\Installer\{B180AB61-CE1E-92A4-DEB4-CA83F920DBC4}\ARPPRODUCTICON.exe O90 - PUC: "1FDDDFF465D90C4497D25D6CD4CF25E9" . (.Catalyst Control Center Localization Spanish.) -- C:\Windows\Installer\{4FFDDDF1-9D56-44C0-792D-D5C64DFC529E}\ARPPRODUCTICON.exe O90 - PUC: "237F4FBDF2E22D667D6CCCEB6D3B9450" . (.Catalyst Control Center Localization Swedish.) -- C:\Windows\Installer\{DBF4F732-2E2F-66D2-D7C6-CCBED6B34905}\ARPPRODUCTICON.exe O90 - PUC: "24DEBDAC24243E63E1DDA2C74C048C37" . (.Catalyst Control Center Localization Norwegian.) -- C:\Windows\Installer\{CADBED42-4242-36E3-1EDD-2A7CC440C873}\ARPPRODUCTICON.exe O90 - PUC: "2A0160E7633E3B046B584C09E579CEA9" . (.OpenOffice.org 3.3.) -- C:\Windows\Installer\{7E0610A2-E336-40B3-B685-C4905E97EC9A}\soffice.ico O90 - PUC: "2A7527EE2A93F2D4D9CA9F2FB5A81E8D" . (.Skype™ 5.10.) -- C:\Windows\Installer\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}\SkypeIcon.exe O90 - PUC: "30C746DDBDD08BBAA981D58A6F78F3CB" . (.Skins.) -- C:\Windows\Installer\{DD647C03-0DDB-ABB8-9A18-5DA8F6873FBC}\ARPPRODUCTICON.exe O90 - PUC: "339FD16A46C0DCEDC2DF516C5954AD4B" . (.Catalyst Control Center Graphics Full New.) -- C:\Windows\Installer\{A61DF933-0C64-DECD-2CFD-15C69545DAB4}\ARPPRODUCTICON.exe O90 - PUC: "41DC8ECD5FBF46449B4A1EE87453647C" . (.Assistant de connexion Windows Live.) -- C:\Windows\Installer\{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}\prodicon.ico O90 - PUC: "427148EB0F876D446B4C3C5D738092B3" . (.Assistant du gestionnaire de contenu pour PlayStation(R).) -- C:\Windows\Installer\{BE841724-78F0-44D6-B6C4-C3D53708293B}\ARPPRODUCTICON.exe O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico =>.Apple Inc O90 - PUC: "48037ACF8194DAF158057AE22C334E3F" . (.Catalyst Control Center Localization Korean.) -- C:\Windows\Installer\{FCA73084-4918-1FAD-8550-A72EC233E4F3}\ARPPRODUCTICON.exe O90 - PUC: "487EA05EEBAFAD641A8FB7B665CD2BE2" . (.Microsoft Office Suite Activation Assistant.) -- C:\Windows\Installer\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}\ARPPRODUCTICON.exe O90 - PUC: "4BD1A970F902F97873A4485E9AD63F83" . (.Catalyst Control Center Localization Italian.) -- C:\Windows\Installer\{079A1DB4-209F-879F-374A-84E5A96DF338}\ARPPRODUCTICON.exe O90 - PUC: "4C27AE4ABBBD815B7FF7F69A4D87E9F4" . (.Catalyst Control Center Graphics Previews Vista.) -- C:\Windows\Installer\{A4EA72C4-DBBB-B518-F77F-6FA9D4789E4F}\ARPPRODUCTICON.exe O90 - PUC: "53451EB7E3D285B468F7C957EB0D02C8" . (.QuickTime.) -- C:\Windows\Installer\{7BE15435-2D3E-4B58-867F-9C75BED0208C}\Installer.ico O90 - PUC: "54076BE97A210C04E354C950972196E2" . (.ccc-utility.) -- C:\Windows\Installer\{9EB67045-12A7-40C0-3E45-9C057912692E}\ARPPRODUCTICON.exe O90 - PUC: "574E0BE7F9E2490E30BDF4C25D6B9243" . (.Catalyst Control Center Localization Thai.) -- C:\Windows\Installer\{7EB0E475-2E9F-E094-03DB-4F2CD5B62934}\ARPPRODUCTICON.exe O90 - PUC: "5DE3C56167833C7E58CB48763EECF007" . (.Catalyst Control Center Localization German.) -- C:\Windows\Installer\{165C3ED5-3876-E7C3-85BC-8467E3CE0F70}\ARPPRODUCTICON.exe O90 - PUC: "609DBB8F4D67F1CE27001C295C310596" . (.ATI Catalyst Install Manager.) -- C:\Windows\Installer\{F8BBD906-76D4-EC1F-7200-C192C5135069}\ARPPRODUCTICON.exe O90 - PUC: "68AB67CA7DA76301B7448A0300000030" . (.Adobe Reader 8.3.1 - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-A83000000003}\SC_Reader.exe O90 - PUC: "808F8AD32E27163428CE3403182D0350" . (.Pinnacle Studio 17.) -- C:\Windows\Installer\{3DA8F808-72E2-4361-82EC-433081D23005}\ARPPRODUCTICON.exe1 O90 - PUC: "8599B08993215CF4C888CA6505230163" . (.Nero 8 Essentials.) -- C:\Windows\Installer\{980B9958-1239-4FC5-8C88-AC5650321036}\ARPPRODUCTICON.exe O90 - PUC: "96AFCA4DAB5201B4A8E5AC229293CF9F" . (.Dazzle Video Capture DVC100 X86 Driver 1.06.) -- C:\Windows\Installer\{D4ACFA69-25BA-4B10-8A5E-CA222939FCF9}\ARPPRODUCTICON.exe O90 - PUC: "9B8752C52632E8D599B71232DED22F2A" . (.Catalyst Control Center Graphics Full Existing.) -- C:\Windows\Installer\{5C2578B9-2362-5D8E-997B-2123ED2DF2A2}\ARPPRODUCTICON.exe O90 - PUC: "A573D91B8C1EBA9FA133BE4E17BF77B0" . (.Catalyst Control Center Localization Polish.) -- C:\Windows\Installer\{B19D375A-E1C8-F9AB-1A33-EBE471FB770B}\ARPPRODUCTICON.exe O90 - PUC: "A9DE3518A49CE6248908E576570CB826" . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{8153ED9A-C94A-426E-9880-5E6775C08B62}\Installer.ico O90 - PUC: "AEA94500848C20F43F268A1F1D87C8A3" . (.Catalyst Control Center Localization Czech.) -- C:\Windows\Installer\{00549AEA-C848-4F02-F362-A8F1D1788C3A}\ARPPRODUCTICON.exe O90 - PUC: "B053570928B546754FD1D700EEE26F47" . (.Catalyst Control Center Localization Russian.) -- C:\Windows\Installer\{9075350B-5B82-5764-F41D-7D00EE2EF674}\ARPPRODUCTICON.exe O90 - PUC: "B2F5519759897D9468219D52080EEDB5" . (.Bonjour.) -- C:\Windows\Installer\{79155F2B-9895-49D7-8612-D92580E0DE5B}\Bonjour.ico O90 - PUC: "B72BC31864DAB9C36A60BF803C2B1B0A" . (.Catalyst Control Center Localization French.) -- C:\Windows\Installer\{813CB27B-AD46-3C9B-A606-FB08C3B2B1A0}\ARPPRODUCTICON.exe O90 - PUC: "B730A8C05F097AA6E52C0BC7CCFD1B14" . (.Catalyst Control Center Localization Dutch.) -- C:\Windows\Installer\{0C8A037B-90F5-6AA7-5EC2-B07CCCDFB141}\ARPPRODUCTICON.exe O90 - PUC: "B88512621F40774F5027BE0B4B08014A" . (.Catalyst Control Center Graphics Light.) -- C:\Windows\Installer\{2621588B-04F1-F477-0572-EBB0B48010A4}\ARPPRODUCTICON.exe O90 - PUC: "C06ECF9E62986B64BBE104ABB299CEE8" . (.O2Micro Flash Memory Card Reader Driver (x86).) -- C:\Windows\Installer\{E9FCE60C-8926-46B6-BB1E-40BA2B99EC8E}\ARPPRODUCTICON.exe O90 - PUC: "CCF59A63A0D0117BABED1F74337AC17F" . (.Catalyst Control Center Core Implementation.) -- C:\Windows\Installer\{36A95FCC-0D0A-B711-BADE-F14733A71CF7}\ARPPRODUCTICON.exe O90 - PUC: "D381B5441F4F8C549BBD1F3155AC56B7" . (.Windows Live Messenger.) -- C:\Windows\Installer\{445B183D-F4F1-45C8-B9DB-F11355CA657B}\MsblIco.Exe O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- c:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon O90 - PUC: "D8B37CBE5CD50F29F0C24B74D64AE5F0" . (.Catalyst Control Center Localization Hungarian.) -- C:\Windows\Installer\{EBC73B8D-5DC5-92F0-0F2C-B4476DA45E0F}\ARPPRODUCTICON.exe O90 - PUC: "D925ABE664FBDEBAC1FC077C2C7B4037" . (.Catalyst Control Center Localization Danish.) -- C:\Windows\Installer\{6EBA529D-BF46-ABED-1CCF-70C7C2B70473}\ARPPRODUCTICON.exe O90 - PUC: "DB1FE1C9360F645BB79EB58C9C0D2FFF" . (.ccc-core-static.) -- C:\Windows\Installer\{9C1EF1BD-F063-B546-7BE9-5BC8C9D0F2FF}\ARPPRODUCTICON.exe O90 - PUC: "DDB6C50237B7ED245850A990F3532A83" . (.Outil de téléchargement Windows Live.) -- C:\Windows\Installer\{205C6BDD-7B73-42DE-8505-9A093F35A238}\RichUpload.ico O90 - PUC: "DDCF6971C27CA4138EFFC5662F57EBFF" . (.Catalyst Control Center Localization Chinese Traditional.) -- C:\Windows\Installer\{1796FCDD-C72C-314A-E8FF-5C66F275BEFF}\ARPPRODUCTICON.exe O90 - PUC: "DF0C5ADEE6561137C97CB7643C2AF3CD" . (.Catalyst Control Center Localization Turkish.) -- C:\Windows\Installer\{EDA5C0FD-656E-7311-9CC7-7B46C3A23FDC}\ARPPRODUCTICON.exe O90 - PUC: "DF3AE8C0600FAEAE974CD212F73D97BD" . (.Catalyst Control Center Localization Chinese Standard.) -- C:\Windows\Installer\{0C8EA3FD-F006-EAEA-79C4-2D217FD379DB}\ARPPRODUCTICON.exe O90 - PUC: "E0A5FC051CF61FD5DF6D975DFC1C51B1" . (.Catalyst Control Center Localization Finnish.) -- C:\Windows\Installer\{50CF5A0E-6FC1-5DF1-FDD6-79D5CFC1151B}\ARPPRODUCTICON.exe O90 - PUC: "EC08DF9F8440F4D4B8DC77CF15C4F399" . (.Vista Codec Package.) -- C:\Windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ARPPRODUCTICON.exe ~ Update Products: 123 Scanned in 00mn 00s ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) [MD5.7D2ECD0BF32BA0D7AF67799455C86E52] [WIS][18/12/2010] (.Medieval Software - Medieval CUE Splitter.) -- C:\Windows\Installer\15eaf2.msi [191488] [MD5.369732A91FE5193B4E1629039369ACEA] [WIS][18/12/2010] (.Shark007 - Vista Codec Package.) -- C:\Windows\Installer\15eb23.msi [6817792] [MD5.741C3FDF7994D5E45E66FE3A5F6A9AE8] [WIS][21/01/2014] (.Corel Corporation - Pinnacle Studio.) -- C:\Windows\Installer\26850b.msi [23051264] [MD5.0F537ADEF969333D5A5C90DB94EB6C59] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\296ea.msi [262656] [MD5.FAD5913939ADDC687FB96A557B087D35] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\296f0.msi [279040] [MD5.9A8CA4FBEBB45D7D6CE96DD93FD1F038] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\296f6.msi [174592] [MD5.02925AA28F6DA88DC4F21DF15792E2C9] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\296fc.msi [176640] [MD5.7A061C41FCA4DE05B714D3037F565F5A] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29702.msi [252416] [MD5.15BE3A865C5CEB66869BA9B57DA94E63] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29709.msi [251392] [MD5.23EAE4FC726750386381CA761841C3C7] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\2970f.msi [251904] [MD5.6BA790FAB963F116BAFD7DB4F0B8C1EB] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29715.msi [249344] [MD5.F02CBBE495844B60432504D1D18C2070] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\2971b.msi [251904] [MD5.426F62BDDBA3B2BF85DD3ACC1F73EA09] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29721.msi [252416] [MD5.DB2A31DC27E766E260AEF625B79069F1] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29727.msi [249344] [MD5.381618E9E9735930A6D0049783720DAE] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\2972d.msi [251392] [MD5.F3565C4763F635AA2102197C4F6795F2] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29733.msi [249344] [MD5.971BF615D49F297B544AE6D3FFE68217] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29739.msi [251392] [MD5.5C8D8D850C1E9BA5714840011C4109AB] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\2973f.msi [248832] [MD5.ECE4EE819A5325F61B13CA33802EBB8E] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29745.msi [248832] [MD5.524C031A281F93FB6A83142B36FF8DC7] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\2974b.msi [248320] [MD5.30A78217350545308874A257F287F83A] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29751.msi [251392] [MD5.87FD54C7B3EB9AB8B74DC303E8862EB0] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29757.msi [251392] [MD5.ECFE0E457DDA8E995E4BFDEA3E09EF6B] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\2975d.msi [251392] [MD5.7AADED3D1CF8A1FF1DD3C0008BF1B200] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29763.msi [251392] [MD5.B89615AEB87843B65576907483A2E06C] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29769.msi [251392] [MD5.E50100FC0C2D4E913ADAAE876364D610] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\2976f.msi [251392] [MD5.5B8DCD342C9399F1262975CAE6F1BCB7] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29775.msi [251392] [MD5.7CA3B2E6A016362C065D5EF5F99A54FF] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\2977b.msi [251392] [MD5.6FDAD8947683143D11BBB9CA83EA9936] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29781.msi [248832] [MD5.C6019BBE14B0DD9B6B041481664A83CA] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29787.msi [248832] [MD5.0F081BBEEC80CCC79987799C65FEDF9A] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\2978d.msi [258048] [MD5.5547B2E0498DA48224F6FC1D33DB0714] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29793.msi [258048] [MD5.1B94F7DD87B1EAB66140AAB1CF9409D2] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29799.msi [258560] [MD5.F64B64DB3AACBDD7E39CB727E0C526DB] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\2979f.msi [258048] [MD5.061E1D43BD6C8F2395D7FFF080D65EF2] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297a5.msi [258560] [MD5.5CCC49B1E7FF0C8A3374B4CE5718086D] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297ab.msi [256512] [MD5.DBC87C8FC87A7DDA62B0FECCE5778E0E] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297b1.msi [181760] [MD5.F223752634ACB1977421FE527B3989B8] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297b7.msi [258048] [MD5.988F5D7AC5F717CA76B16F79E6AA5C16] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297bd.msi [258048] [MD5.2FC230FBEC7BB7290DFAA81C9DE8A7E0] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297c3.msi [179712] [MD5.2FCC0F6AF5ECCCC4FFDB4D64746DA708] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297c9.msi [179712] [MD5.97161ACA89476E2FA254F1F182FB5836] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297cf.msi [260096] [MD5.175DF33890C3FCD74DD5E81EBF27961A] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297d5.msi [260096] [MD5.B6FA1E165554CD2B8E456E29A3968214] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297db.msi [260096] [MD5.F41554E345754096E8C3F686809F1AD7] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297e1.msi [261632] [MD5.4255F0323BF96570DA2998C98C8A3E2E] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297e7.msi [260096] [MD5.F4021583C4B8A065DEC995640391C6E4] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297ed.msi [260096] [MD5.DD7E9D2E5755F58E51CA2F2A7D67E490] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297f3.msi [260096] [MD5.AA367A4C479B5841ADA5DEE076C75062] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297f9.msi [260096] [MD5.52A0DF3158713326E0BF62B68E0D3D66] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\297ff.msi [260096] [MD5.56F3D7C4C8DC096E26C6571FBD200855] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29805.msi [260096] [MD5.86DA55EDCC7C47D035E03D6E9BD6707D] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\2980b.msi [205312] [MD5.C9FD3CE5009FF9DBBDA7AEF7C5D87035] [WIS][22/05/2008] (.ATI - Catalyst Control Center Utility Package.) -- C:\Windows\Installer\29811.msi [189440] [MD5.6D2C1420650FA9CFE04A3B09BB2493EA] [WIS][22/05/2008] (.ATI - Catalyst Control Center.) -- C:\Windows\Installer\29818.msi [1039872] [MD5.7C5A1A34DD199F1247E5C251BB4BF069] [WIS][22/05/2008] (.O2Micro - O2Micro Flash Memory Card Reader Driver.) -- C:\Windows\Installer\2981f.msi [421888] [MD5.A4AEB1D314FC7DE3B466A7B556421E90] [WIS][06/09/2012] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\e04cfb.msi [19333120] [MD5.30815A6D401BA65A47CC275F5644D73A] [WIS][06/09/2012] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\e04d76.msi [1648640] ~ WIS: 126 Scanned in 00mn 08s ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SS - | Demand 12/12/2013 257416 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe SS - | Auto 24/10/2011 55144 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe SS - | Demand 28/12/2010 1296728 | (BITCOMET_HELPER_SERVICE) . (.www.BitComet.com.) - C:\Program Files\BitComet\tools\BitCometService.exe =>P2P.BitComet SS - | Demand 22/05/2008 647680 | (FLEXnet Licensing Service) . (.Macrovision Europe Ltd..) - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe SS - | Demand 05/06/2011 30192 | (GoogleDesktopManager-051210-111108) . (.Google.) - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe SS - | Auto 27/12/2010 135664 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe SS - | Demand 27/12/2010 135664 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe SS - | Demand 03/04/2005 69632 | (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe SS - | Demand 01/02/2014 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe SS - | Auto 29/08/2013 1073160 | (Orange update Core Service) . (.Orange SA.) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe SS - | Auto 13/07/2012 160944 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe SS - | Auto 10/07/1658 0 | (ValueApps) . (...) - C:\Users\Kévin\AppData\Local\ValueApps\ValueApps.exe =>Toolbar.Conduit SR - | Auto 10/09/2007 124832 | (AdobeActiveFileMonitor6.0) . (...) - C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe SR - | Auto 04/07/2008 692224 | (Ati External Event Utility) . (.ATI Technologies Inc..) - C:\Windows\System32\Ati2evxx.exe SR - | Auto 06/09/2011 44768 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe SR - | Auto 29/04/2006 49152 | (BBDemon) . (.Dassault Systemes.) - C:\Program Files\Dassault Systemes\B17\intel_a\code\bin\CATSysDemon.exe SR - | Auto 30/08/2011 390504 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe SR - | Auto 19/12/2006 94208 | (EpsonBidirectionalService) . (.SEIKO EPSON CORPORATION.) - C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe SR - | Auto 09/03/2005 18944 | (libusbd) . (.http://libusb-win32.sourceforge.net.) - C:\Windows\System32\libusbd-nt.exe SR - | Auto 03/12/2007 869672 | (Nero BackItUp Scheduler 3) . (.Nero AG.) - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe SR - | Demand 14/01/2008 447784 | (NMIndexingService) . (.Nero AG.) - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe SR - | Auto 12/02/2007 65536 | (o2flash) . (.O2Micro International.) - C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe SR - | Auto 19/12/2006 81920 | (PLFlash DeviceIoControl Service) . (.Prolific Technology Inc..) - C:\Windows\system32\IoctlSvc.exe SR - | Auto 21/01/2008 21504 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 21/01/2008 21504 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 10s ---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80) Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net Run by Kévin at 05/02/2014 22:48:15 device: opened successfully user: MBR read successfully Disk trace: called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys >>UNKNOWN [0x86B2A1F8]<< 1 ntkrnlpa!IofCallDriver[0x8344C916] >> \Device\Harddisk0\DR0[0x86DE1588] 3 CLASSPNP[0x8BDA98B3] >> ntkrnlpa!IofCallDriver[0x8344C916] >> \Device\Ide\IdeDeviceP0T0L0-0[0x86BB9390] \Driver\atapi[0x86BA5B88] >> IRP_MJ_CREATE >> 0x86B2A1F8 kernel: MBR read successfully detected disk devices: detected hooks: \Driver\atapi >> 0x86b2a1f8 user & kernel MBR OK Warning: possible MBR rootkit infection ! ~ MBR: 17 Scanned in 00mn 02s ---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by Kévin at 05/02/2014 22:48:17 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 04s ---\\ Liste des émulateurs de CD/DVD (MBR Hook) O58 - SDL:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 02/01/1601 - 23:00:00 ---A- . (...) -- C:\Windows\System32\Drivers\sptd.sys [691696] O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM] -- DAEMON Tools Lite =>.DT Soft Ltd ~ Emulateurs: Scanned in 00mn 04s ---\\ Scan Additionnel (O88) Database Version : 13030 - (25/01/2014) Clés trouvées (Keys found) : 7 Valeurs trouvées (Values found) : 1 Dossiers trouvés (Folders found) : 7 Fichiers trouvés (Files found) : 3 [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}] =>P2P.BitComet^ [HKLM\SYSTEM\CurrentControlSet\Services\ValueApps] =>Toolbar.Conduit^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\BitComet] =>P2P.BitComet^ [HKLM\Software\Classes\BHO.GamePlayLabsBHO] =>Adware.GamePlayLabs [HKLM\Software\Classes\BHO.GamePlayLabsBHO.1] => [HKLM\Software\Classes\TypeLib\{199C34A4-5436-403F-A250-219E16672570}] =>Adware.GamePlayLabs [HKLM\Software\Martin Prikryl\OpenCandy] =>Adware.OpenCandy C:\Users\Kévin\AppData\Roaming\Mozilla\Firefox\Profiles\5tjuuor1.default\extensions\plugin2@gameplaylabs.com =>Spyware.GamePlayLabs^ C:\Users\Kévin\AppData\Roaming\Mozilla\Firefox\Profiles\5tjuuor1.default\extensions\support@websteroidsapp.com =>PUP.TubeDimmer^ C:\Users\Kévin\AppData\Roaming\Mozilla\Firefox\Profiles\5tjuuor1.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB} =>P2P.BitComet^ C:\Program Files\BitComet =>P2P.BitComet^ C:\ProgramData\Updater =>PUP.CrossRider^ C:\Users\Kévin\AppData\Roaming\BitComet =>P2P.BitComet^ C:\Users\Kévin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Value Apps =>Toolbar.Conduit^ [HKCU\Software\BitComet] =>P2P.BitComet^ [HKLM\Software\PB_EBAY] =>Toolbar.eBay^ [HKLM\Software\ValueApps] =>Toolbar.Conduit^ ~ Additionnel Scan: 531822 Items scanned in 00mn 35s ---\\ Récapitulatif des détections trouvées sur votre station ~ http://nicolascoolman.webs.com/apps/blog/show/26686441-pup-specialsavings =>Spyware.GamePlayLabs ~ http://nicolascoolman.webs.com/apps/blog/show/37242682-pup-tubedimmer =>PUP.TubeDimmer ~ http://nicolascoolman.webs.com/apps/blog/show/33263878-hijacker-browser =>Hijacker.Browsers ~ http://nicolascoolman.webs.com/apps/blog/show/29507721-toolbar-conduit =>Toolbar.Conduit ~ http://nicolascoolman.webs.com/apps/blog/show/27583526-pup-crossrider =>PUP.CrossRider ~ http://nicolascoolman.webs.com/apps/blog/show/26820943-adware-gameplaylabs =>Adware.GamePlayLabs ~ http://nicolascoolman.webs.com/apps/blog/show/26770694-adware-opencandy =>Adware.OpenCandy ~ MSI: 7 link(s) detected in 00mn 36s End of the scan (2428 lines in 12mn 25s)(0)