~ Rapport de ZHPDiag v2014.1.17.19 - Nicolas Coolman (17/01/2014) ~ Lancé par Laura (20/01/2014 10:49:26) ~ Adresse du Site Web http://nicolascoolman.webs.com ~ Forums gratuits d'Assistance à la désinfection : http://nicolascoolman.webs.com/apps/links/ ~ Traduit par Nicolas Coolman ~ Etat de la version : ~ Liste blanche : Désactivée par l'utilisateur ~ Elévation des Privilèges : OK ~ User Account Control (UAC): Deactivate by program ---\\ Navigateurs Internet MSIE: Internet Explorer v11.0.9600.16476 GCIE: Google Chrome v32.0.1700.76 (Defaut) ---\\ Informations sur les produits Windows ~ Langage: Français Windows Vista (TM) Ultimate, 64-bit Service Pack 1 (Build 6000) Windows Server License Manager Script : OK ~ Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : BWX77 Windows License : OK ~ Windows Remaining Initializations Number : 3 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK ---\\ Logiciels de protection du système avast! Free Antivirus v9.0.2011 McAfee Internet Security v11.6.434 ---\\ Logiciels d'optimisation du système ---\\ Logiciels de partage PeerToPeer ---\\ Surveillance de Logiciels Adobe Flash Player 10 ActiveX Adobe Reader X ---\\ Informations sur le système ~ Processor: Intel64 Family 6 Model 37 Stepping 5, GenuineIntel ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 3893 MB (60% free) System Restore: Activé (Enable) System drive C: has 235 GB (78%) free of 298 GB ---\\ Mode de connexion au système ~ Computer Name: LAURA-TOSH ~ User Name: Laura ~ All Users Names: Laura, HomeGroupUser$, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Variables d'environnement ~ System Unit : C:\ ~ %AppZHP% : C:\Users\Laura\AppData\Roaming\ZHP\ ~ %AppData% : C:\Users\Laura\AppData\Roaming\ ~ %Desktop% : C:\Users\Laura\Desktop\ ~ %Favorites% : C:\Users\Laura\Favorites\ ~ %LocalAppData% : C:\Users\Laura\AppData\Local\ ~ %StartMenu% : C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumération des unités disques C: Hard drive, Flash drive, Thumb drive (Free 235 Go of 298 Go) D: Hard drive, Flash drive, Thumb drive (Free 284 Go of 298 Go) E: CD-ROM drive (Not Inserted) Q: Hard drive, Flash drive, Thumb drive (Free 0 Go of 0 Go) ---\\ Etat du Centre de Sécurité Windows [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 46 Scanned in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024] [MD5.9B6678DB9C6A232C5A84D2FDFFF8B0E1] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.26/11/2013 - 08:07:57.) -- C:\Windows\System32\wininet.dll [2334208] [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.21/11/2010 - 04:24:29.) -- C:\Windows\System32\Winlogon.exe [390656] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.21/11/2010 - 04:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.79059559E89D06E8B80CE2944BE20228] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/09/2013 - 02:09:10.) -- C:\Windows\system32\Drivers\AFD.sys [497152] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224] [MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 04:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632] [MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 15:45:08.) -- C:\Windows\system32\Drivers\ntfs.sys [1656680] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 04:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\volsnap.sys [295808] ~ Generic Processes: Scanned in 00mn 03s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 3/5057 ~ Mes musiques (My Musics) : 12/312 ~ Mes Favoris (My Favorites) : 1/15 ~ Mes Documents (My Documents) : 1/466 ~ Mon Bureau (My Desktop) : 1/7 ~ Menu demarrer (Programs) : 1/22 ~ Hidden Files: Scanned in 00mn 35s ---\\ Processus lancés [MD5.E61BE53C92B4FC2BE5F820C9E6CE1791] - (.TOSHIBA CORPORATION. - Bluetooth Manager.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe [2745760] [PID.1504] [MD5.6E95474CB9E22BC9768EFA176C6A0A29] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208] [PID.3992] [MD5.CDFFB0058BA113ED8C6099DE11FAAD49] - (.CANON INC. - Canon Quick Menu.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.exe [1273448] [PID.4076] [MD5.AFEBF9E0B223FF04709F747C172D3540] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024] [PID.4084] [MD5.934C25B08D102832B0095E0668205EF8] - (.TOSHIBA CORPORATION. - TosA2DP.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe [677264] [PID.5964] [MD5.6868CFBF025314D630918A23939B494D] - (.TOSHIBA CORPORATION. - TosBtHid.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe [87440] [PID.1980] [MD5.C2546BD4174CAD72C78D79339CB2347A] - (.TOSHIBA CORPORATION. - TosBtHSP.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe [746384] [PID.6596] [MD5.47B4FCDCE4C0A64A54BC9A66B176B0F1] - (.TOSHIBA CORPORATION. - TosAVRC.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe [447816] [PID.7032] [MD5.8E5651B04BE775696B32F7F1F5DA8871] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8336896] [PID.4272] [MD5.BE4F25620D39E7FA1A9CB715E2F60E96] - (.CANON INC. - Canon Quick Menu Updater.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.exe [1087608] [PID.3720] [MD5.C2AFC01FA404ADFD3B915730C7DB2D55] - (.CANON INC. - Canon Quick Menu Image Display.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.exe [940168] [PID.6004] [MD5.9CB27AE21BF0553BF20F571DD9E2C3A0] - (.Microsoft Corporation - Windows Live Photo Gallery.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe [131440] [PID.5232] [MD5.D74884939D53612FD84AC82C59CCFE27] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344] [PID.1364] [MD5.3927397AC60D943DAF8808AFFED582B7] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65192] [PID.1780] [MD5.EDCCC8C13B1EB882F77BA0ABB84566E7] - (.Pas de propriétaire - Inkjet Printer/Scanner/Fax Extended Survey.) -- C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.exe [140456] [PID.2184] [MD5.39B1D0A636A400304565D4521FAD6D77] - (.Microsoft Corporation - Microsoft Application Virtualization Virtua.) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [207528] [PID.1632] [MD5.51138BEEA3E2C21EC44D0932C71762A8] - (...) -- ysWOW64\rundll32.exe [0] [PID.3536] [MD5.77C5A741A7452812F278EF2C18478862] - (.Microsoft Corporation - Microsoft Application Virtualization Client.) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [523944] [PID.3468] [MD5.FD557A50A65E44041CD2FCEF4BEB04DB] - (.Microsoft Corporation - Microsoft Office Client Virtualization Serv.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.exe [822504] [PID.1524] [MD5.CAB0EEAF5295FC96DDD3E19DCE27E131] - (.TOSHIBA CORPORATION - ConfigFree Service Process.) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [46448] [PID.7020] [MD5.19787BF6E2588620C19B5F582B40F652] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [325656] [PID.1576] [MD5.2989174DF02E0AEF54BAE90674FB445F] - (.Nero AG - NeroUpdate.) -- c:\Program Files (x86)\Nero\Update\NASvc.exe [572712] [PID.6248] ~ Processes Running: Scanned in 00mn 02s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Preferences ~ Google Browser: 0 Scanned in 00mn 00s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) P2 - FPN: [HKLM] [@mcafee.com/MSC,version=10] - (...) -- C:\Program Files\mcafee\msc\npMcSnFFPl64.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20913.0.) -- C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll P2 - FPN: [HKCU] [@Skype Limited.com/Facebook Video Calling Plugin] - (.Skype Limited - Facebook Video Calling Plugin.) -- C:\Users\Laura\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll ~ Firefox Browser: 3 Scanned in 00mn 01s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.fr R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://google.fr R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://toshiba.msn.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://google.fr R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snapdo.com =>Hijacker.SmartBar R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.16428 (winblue_gdr.131013-1700)) -- C:\Windows\SysWOW64\ieframe.dll R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ~ IE Browser: 24 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Canon Easy-WebPrint EX BHO [64Bits] - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper [64Bits] - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O2 - BHO: McAfee SiteAdvisor BHO [64Bits] - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} . (.McAfee, Inc. - SiteAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll O2 - BHO: TOSHIBA Media Controller Plug-in [64Bits] - {F3C88694-EFFA-4d78-B409-54B7B2535B14} . (. - TOSHIBA Media Controller Plug-in.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll O2 - BHO: (no name) [64Bits] - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline ~ BHO: 12 Scanned in 00mn 02s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: avast! Online Security - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll O3 - Toolbar: (no name) - [HKLM]{ae07101b-46d4-4a98-af68-0333ea26e113} Clé orpheline O3 - Toolbar: avast! Online Security - [HKLM]{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll ~ Toolbar: Scanned in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - GS\Desktop [Public]: avast! Free Antivirus.lnk . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe O4 - GS\Desktop [Public]: Enregistrement de la garantie Toshiba.lnk . (...) -- C:\Program Files (x86)\Toshiba\Registration\ToshibaRegistration.exe (.not file.) O4 - GS\Desktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - GS\Desktop [Public]: Nero StartSmart 10.lnk . (.Acresso Software Inc. - InstallShield.) -- c:\Windows\Installer\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}\ScStartSmartDeskto_3AF47A4E14DF4546B1449D27245505A0.exe O4 - GS\Desktop [Public]: Picasa 3.lnk . (.Google Inc. - Picasa.) -- C:\Program Files (x86)\Google\Picasa3\Picasa3.exe O4 - GS\Desktop [Public]: Skype.lnk . (...) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe O4 - GS\Program [Public]: Adobe Reader X.lnk . (...) -- C:\Windows\Installer\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}\SC_Reader.ico O4 - GS\Program [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Microsoft Office 2010.lnk . (...) -- C:\Windows\Installer\{95140000-0070-0000-0000-0000000FF1CE}\oobeicon.exe O4 - GS\Program [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Toshiba Places.lnk - Clé orpheline O4 - GS\Program [Public]: TuneUp Utilities 2013.lnk . (.TuneUp Software - TuneUp Utilities - Interface de démarrage.) -- C:\Program Files (x86)\TuneUp Utilities 2013\Integrator.exe O4 - GS\Program [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) -- C:\Windows\system32\WindowsAnytimeUpgradeUI.exe O4 - GS\Program [Public]: Windows DVD Maker.lnk . (...) -- C:\Program Files (x86)\DVD Maker\DVDMaker.exe (.not file.) O4 - GS\Program [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Live Mail.lnk . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\wlmail.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Live Movie Maker.lnk . (.Microsoft Corporation - Windows Live Movie Maker.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Live Photo Gallery.lnk . (.Microsoft Corporation - Windows Live Photo Gallery.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation O4 - GS\Program [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Program [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) -- C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) -- C:\Windows\system32\mblctr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Mise en route.) -- C:\Windows\system32\OobeFldr.dll =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) -- C:\Windows\system32\perfmon.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) -- C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\system32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\system32\taskschd.msc O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) -- C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) -- C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\QuickLaunch [Laura]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - GS\QuickLaunch [Laura]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\QuickLaunch [Laura]: Picasa 3.lnk . (.Google Inc. - Picasa.) -- C:\Program Files (x86)\Google\Picasa3\Picasa3.exe O4 - GS\TaskBar [Laura]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\TaskBar [Laura]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [Laura]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Program [Laura]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\Accessories [Laura]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Laura]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Laura]: Run.lnk - Clé orpheline O4 - GS\Accessories [Laura]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Laura]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - GS\SystemTools [Laura]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\SendTo [Laura]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O4 - GS\SendTo [Laura]: TOSHIBA Bulletin Board.lnk . (...) -- C:\Program Files (x86)\TOSHIBA\BulletinBoard\TosBulletinBoard.exe (.not file.) O4 - GS\SendTo [Laura]: TOSHIBA Disc Creator(Audio).lnk . (.TOSHIBA Corporation - Pas de description.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe =>.Toshiba Corporation O4 - GS\SendTo [Laura]: TOSHIBA Disc Creator(Data).lnk . (.TOSHIBA Corporation - Pas de description.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe =>.Toshiba Corporation O4 - GS\SendTo [Laura]: TOSHIBA Disc Creator(Image).lnk . (.TOSHIBA Corporation - Pas de description.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe =>.Toshiba Corporation O4 - GS\SendTo [Laura]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Pas de description.) -- C:\Windows\System32\fsquirt.exe O4 - GS\Desktop [Laura]: PhotoFiltre 7.lnk . (.Antonio Da Cruz - PhotoFiltre.) -- C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe O4 - GS\Desktop [Laura]: Web Camera Application.lnk . (.TOSHIBA CORPORATION. - TOSHIBA Web Camera Application.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe O4 - GS\Desktop [Laura]: Windows Live Messenger.lnk . (...) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (.not file.) O4 - GS\Desktop [Laura]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman O4 - GS\Desktop [Laura]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman ~ Global Startup: 68 Scanned in 00mn 05s ---\\ Applications lancées au démarrage du sytème (O4) O4 - GS\Startup [Public]: Bluetooth Manager.lnk . (.TOSHIBA CORPORATION. - Bluetooth Manager.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe O4 - GS\Startup [Public]: Toshiba Places Icon Utility.lnk . (.Toshiba - Toshiba Places Icon Utility.) -- C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe O4 - HKLM\..\Run: [TosNC] C:\Program Files (x86)\Toshiba\BulletinBoard\TosNcCore.exe (.not file.) O4 - HKLM\..\Run: [TosReelTimeMonitor] C:\Program Files (x86)\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (.not file.) O4 - HKLM\..\Run: [Toshiba TEMPRO] . (.Toshiba Europe GmbH - Toshiba TEMPRO.) -- C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe =>.Toshiba Corporation O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe O4 - HKLM\..\Run: [TPwrMain] C:\Program Files (x86)\TOSHIBA\Power Saver\TPwrMain.exe (.not file.) O4 - HKLM\..\Run: [TCrdMain] C:\Program Files (x86)\TOSHIBA\FlashCards\TCrdMain.exe (.not file.) O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp O4 - HKLM\..\Run: [RtHDVBg] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.) O4 - HKLM\..\Run: [TosSENotify] . (.TOSHIBA Corporation - Pas de description.) -- C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe O4 - HKLM\..\Run: [TosVolRegulator] . (.TOSHIBA Corporation - Toshiba Volume Regulator.) -- C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe =>.Toshiba Corporation O4 - HKLM\..\Run: [Toshiba Registration] . (.Toshiba Europe GmbH - Toshiba Notebook Registration Reminder.) -- C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe O4 - HKCU\..\Run: [TOPI.EXE] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe =>.Toshiba Corporation O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_4A482ADE7BA14BD80C73B5D8EC859C6B] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - HKCU\..\Run: [Facebook Update] C:\Users\Laura\AppData\Local\Facebook\Update\FacebookUpdate.exe (.not file.) O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated O4 - HKLM\..\Wow6432Node\Run: [NBAgent] . (.Nero AG - Nero BackItUp.) -- c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe O4 - HKLM\..\Wow6432Node\Run: [mcui_exe] . (.McAfee, Inc. - McAfee Security Center.) -- C:\Program Files\McAfee.com\Agent\mcagent.exe O4 - HKLM\..\Wow6432Node\Run: [ITSecMng] . (.TOSHIBA CORPORATION - IT Security Manager for Toshiba Stack.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe O4 - HKLM\..\Wow6432Node\Run: [ToshibaServiceStation] . (.TOSHIBA Corporation - TOSHIBA Service Station.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe =>.Toshiba Corporation O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard Co O4 - HKLM\..\Wow6432Node\Run: [CanonQuickMenu] . (.CANON INC. - Canon Quick Menu.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.exe O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe O4 - HKUS\.DEFAULT\..\Run: [TOPI.EXE] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe =>.Toshiba Corporation O4 - HKUS\S-1-5-18\..\Run: [TOPI.EXE] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe =>.Toshiba Corporation O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [TOPI.EXE] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe =>.Toshiba Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [TOPI.EXE] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe =>.Toshiba Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-1417406654-2775627020-3062465056-1000\..\Run: [TOPI.EXE] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe =>.Toshiba Corporation O4 - HKUS\S-1-5-21-1417406654-2775627020-3062465056-1000\..\Run: [GoogleChromeAutoLaunch_4A482ADE7BA14BD80C73B5D8EC859C6B] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - HKUS\S-1-5-21-1417406654-2775627020-3062465056-1000\..\Run: [Facebook Update] C:\Users\Laura\AppData\Local\Facebook\Update\FacebookUpdate.exe (.not file.) O4 - HKUS\S-1-5-21-1417406654-2775627020-3062465056-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. ~ Application: Scanned in 00mn 00s ---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ IE Control Panel: 1 Scanned in 00mn 00s ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9) O9 - Extra button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 [64Bits] - {97F922BD-8563-4184-87EE-8C4ACA438823} . (...) -- C:\Program Files\TOSHIBA\BulletinBoard\images\pin.ico ~ IE Extra Buttons: Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation ~ Winsock: 9 Scanned in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{59EE2B73-6B8C-44CF-BC6B-71A50CD128C7}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CS1\Services\Tcpip\..\{59EE2B73-6B8C-44CF-BC6B-71A50CD128C7}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CS2\Services\Tcpip\..\{59EE2B73-6B8C-44CF-BC6B-71A50CD128C7}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.240 212.27.40.241 ~ Domain: Scanned in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) -- O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll ~ Winlogon: Scanned in 00mn 00s ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - AppInit_DLLs: . (...) - c:\progra~3\bitguard\271832~1.68\{c16c1~1\loader.dll (.not file.) =>PUP.BitGuard ~ AppInit DLL: Scanned in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ SSODL: 1 Scanned in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) . (.TOSHIBA CORPORATION - ConfigFree Service Process.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe O23 - Service: ConfigFree Service (ConfigFree Service) . (.TOSHIBA CORPORATION - ConfigFree Service Process.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: GFNEX Service (GFNEXSrv) . (.Pas de propriétaire - GFNEXSrv.) - C:\Windows\System32\GFNEXSrv.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Pas de propriétaire - Inkjet Printer/Scanner/Fax Extended Survey.) - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.exe O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe O23 - Service: McAfee Personal Firewall Service (McMPFSvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe O23 - Service: McAfee Services (mcmscsvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe O23 - Service: McAfee VirusScan Announcer (McNaiAnn) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe O23 - Service: McAfee Network Agent (McNASvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe O23 - Service: McAfee Proxy Service (McProxy) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe O23 - Service: McAfee McShield (McShield) . (.McAfee, Inc. - McAfee On-Access Scanner service.) - C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe O23 - Service: McAfee Firewall Core Service (mfefire) . (.McAfee, Inc. - McAfee Core Firewall Service.) - C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe O23 - Service: McAfee Validation Trust Protection Service (mfevtp) . (.McAfee, Inc. - McAfee Process Validation Service.) - C:\Windows\system32\mfevtps.exe O23 - Service: McAfee Anti-Spam Service (MSK80Service) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe O23 - Service: c:\Program Files (x86)\Nero\Update\NASvc.exe (NAUpdate) . (.Nero AG - NeroUpdate.) - c:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) . (.TOSHIBA Corporation - TDCSrv Application.) - C:\Windows\system32\TODDSrv.exe O23 - Service: TOSHIBA Power Saver (TosCoSrv) . (.TOSHIBA Corporation - TOSHIBA Power Saver.) - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) . (.TuneUp Software - TuneUp Utilities Service.) - C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe O23 - Service: Intel(R) Management & Security Application User Notificatio (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ~ Services: 24 Scanned in 00mn 23s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ Enumère les données de BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1062] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1066] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HP Photo Creations Communicator.job [338] [MD5.24DC2A6F110B79787D6C5D5FF52A0235] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [765176] [MD5.97A1AFD42B8016D132C7BF38C955C6E1] [APT] [ConfigFree Startup Programs] (.TOSHIBA CORPORATION.) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [304560] [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [136176] [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [136176] [MD5.41D03688603C3FF78637E352B746A11F] [APT] [HP Photo Creations Communicator] (...) -- C:\ProgramData\HP Photo Creations\Communicator.exe [185472] [MD5.E84C580843F2C0D548539C2F1FD19E0C] [APT] [HPCustParticipation HP Deskjet 3070 B611 series] (.Hewlett-Packard Co..) -- C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\HPCustPartic.exe [4238184] [MD5.E23CEA1EB2DB539A138EBA7814874FDE] [APT] [TuneUpUtilities_Task_BkGndMaintenance2013] (.TuneUp Software.) -- C:\Program Files (x86)\TuneUp Utilities 2013\OneClick.exe [435040] [MD5.C155A13687144076286989EF078112C2] [APT] [{6C421A10-EB9F-4201-A07D-8B92293942C6}] (.Nicolas Coolman.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe [1917440] ~ Scheduled Task: 14 Scanned in 00mn 09s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Internet Explorer [64Bits] - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll ~ Active Setup: 10 Scanned in 00mn 00s ---\\ Pilotes lancés au démarrage du système (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\drivers\aswRdr2.sys O41 - Driver: (aswSnx) . (.AVAST Software - avast! Virtualization Driver.) - C:\Windows\system32\drivers\aswSnx.sys O41 - Driver: (aswSP) . (.AVAST Software - avast! self protection module.) - C:\Windows\system32\drivers\aswSP.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\drivers\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys O41 - Driver: (Tosrfcom) . (.TOSHIBA Corporation - Bluetooth RFCOMM Driver.) - C:\Windows\System32\Drivers\tosrfcom.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys ~ Drivers: 72 Scanned in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- {B194272D-1F92-46DF-99EB-8D5CE91CB4EC} O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Reader X (10.1.6) MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001} O42 - Logiciel: Atheros Bluetooth Filter Driver Package - (.Atheros Communications.) [HKLM][64Bits] -- {65486209-5C54-439C-8383-8AC9BBE25932} O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM][64Bits] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7} O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-6eb1cd87-ac47-460a-96de-dd15863f887c O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-48e01760-0a97-45cd-9fca-0153a296e7f4 O42 - Logiciel: Bluetooth Stack for Windows by Toshiba - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {CEBB6BFB-D708-4F99-A633-BC2600E01EF6} O42 - Logiciel: Canon Easy-WebPrint EX - (...) [HKLM][64Bits] -- Easy-WebPrint EX O42 - Logiciel: Canon IJ Scan Utility - (.‪Canon Inc.‬.) [HKLM][64Bits] -- Canon_IJ_Scan_Utility O42 - Logiciel: Canon Inkjet Printer/Scanner/Fax Extended Survey Program - (.Canon Inc..) [HKLM][64Bits] -- CANONIJPLM100 O42 - Logiciel: Canon MG3200 series MP Drivers - (.Canon Inc..) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3200_series O42 - Logiciel: Canon MG3200 series On-screen Manual - (.Canon Inc..) [HKLM][64Bits] -- Canon MG3200 series On-screen Manual O42 - Logiciel: Canon My Image Garden - (.Canon Inc..) [HKLM][64Bits] -- Canon My Image Garden O42 - Logiciel: Canon My Image Garden Design Files - (.Canon Inc..) [HKLM][64Bits] -- Canon My Image Garden Design Files O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM][64Bits] -- CanonMyPrinter O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM][64Bits] -- CanonQuickMenu O42 - Logiciel: Chicken Invaders 3 - Revenge of the Yolk - (.WildTangent.) [HKLM][64Bits] -- WTA-6472dba8-ab74-41bc-bc48-069044ba2e01 O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-57b76690-08fb-49ed-877b-dfd7aaa40026 O42 - Logiciel: Complemento Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {3A09ED0F-8DDF-47BB-B53D-841AB9D1D3A7} O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: Diner Dash 2 Restaurant Rescue - (.WildTangent.) [HKLM][64Bits] -- WTA-c6a2d7a4-e785-4f2d-b59f-aed06e7dd600 O42 - Logiciel: Enregistrement utilisateur de Canon MG3200 series - (.Canon Inc.‎.) [HKLM][64Bits] -- Enregistrement utilisateur de Canon MG3200 series =>.Canon Inc O42 - Logiciel: FATE - (.WildTangent.) [HKLM][64Bits] -- WTA-e82bbe0a-ede8-4707-a064-341ad30b5ea5 O42 - Logiciel: Facebook Video Calling 2.0.0.447 - (.Skype Limited.) [HKLM][64Bits] -- {8DF41A9F-FE13-43E8-A003-5F9B55A011EE} O42 - Logiciel: Final Drive: Nitro - (.WildTangent.) [HKLM][64Bits] -- WTA-cf46603d-cf8e-4ad9-8a25-9da98365bfd6 O42 - Logiciel: Free YouTube to MP3 Converter version 3.11.37.1212 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free YouTube to MP3 Converter_is1 O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: HP Deskjet 3070 B611 series - Enquête sur l'amélioration du produit - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {D7B4D3F4-D78F-4D46-A69F-A54D286238FF} O42 - Logiciel: HP Deskjet 3070 B611 series Aide - (.Hewlett Packard.) [HKLM][64Bits] -- {9F20CE56-3828-432D-A3C5-3EC6A2ED93C6} O42 - Logiciel: HP Photo Creations - (.HP Photo Creations.) [HKLM][64Bits] -- HP Photo Creations O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {85DF2EED-08BC-46FB-90DA-28B0D0A8E8A8} O42 - Logiciel: High-Definition Video Playback - (.Nero AG.) [HKLM][64Bits] -- {237CCB62-8454-43E3-B158-3ACD0134852E} O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-04037e72-5f9c-466a-94a7-a85db3f434ea O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} O42 - Logiciel: Java(TM) 6 Update 20 - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216020FF} O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} O42 - Logiciel: Logiciel de base du périphérique HP Deskjet 3070 B611 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {27DEFFDD-A0F8-4F16-AED1-C7A75266CBFC} =>.Hewlett-Packard Co O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: McAfee Internet Security - (.McAfee, Inc..) [HKLM][64Bits] -- MSC O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {066219C8-4BE6-46D7-9E01-60FCFA6B32DC} O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {50816F92-1652-4A7C-B9BC-48F682742C4B} O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {847C879C-1467-4924-A491-1302B4C58F70} O42 - Logiciel: Microsoft Primary Interoperability Assemblies 2005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2C303EE0-A595-3543-A71A-931C7AC40EDE} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Nero 10 Movie ThemePack Basic - (.Nero AG.) [HKLM][64Bits] -- {F5CB822F-B365-43D1-BCC0-4FDA1A2017A7} O42 - Logiciel: Nero BackItUp 10 - (.Nero AG.) [HKLM][64Bits] -- {68AB6930-5BFF-4FF6-923B-516A91984FE6} O42 - Logiciel: Nero BackItUp 10 Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {08C8666B-C502-4AB3-B4CB-D74AC42D14FE} O42 - Logiciel: Nero BurnRights 10 - (.Nero AG.) [HKLM][64Bits] -- {943CFD7D-5336-47AF-9418-E02473A5A517} O42 - Logiciel: Nero BurnRights 10 Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {555868C6-49FB-484F-BB43-8980651A1B00} O42 - Logiciel: Nero Control Center 10 - (.Nero AG.) [HKLM][64Bits] -- {6DFB899F-17A2-48F0-A533-ED8D6866CF38} O42 - Logiciel: Nero ControlCenter 10 Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {523B2B1B-D8DB-4B41-90FF-C4D799E2758A} O42 - Logiciel: Nero Core Components 10 - (.Nero AG.) [HKLM][64Bits] -- {2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F} O42 - Logiciel: Nero Express 10 - (.Nero AG.) [HKLM][64Bits] -- {70550193-1C22-445C-8FA4-564E155DB1A7} O42 - Logiciel: Nero Express 10 Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {33643918-7957-4839-92C7-EA96CB621A98} O42 - Logiciel: Nero InfoTool 10 - (.Nero AG.) [HKLM][64Bits] -- {F412B4AF-388C-4FF5-9B2F-33DB1C536953} O42 - Logiciel: Nero InfoTool 10 Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {66049135-9659-4AAD-9169-9CCA269EBB3E} O42 - Logiciel: Nero MediaHub 10 - (.Nero AG.) [HKLM][64Bits] -- {1F7FB68F-52F6-46A3-B42F-38CE46295AE5} O42 - Logiciel: Nero MediaHub 10 Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {F467862A-D9CA-47ED-8D81-B4B3C9399272} O42 - Logiciel: Nero Multimedia Suite 10 Essentials - (.Nero AG.) [HKLM][64Bits] -- {0FF68F26-416C-4954-ACA5-6AD5F9DE99C1} O42 - Logiciel: Nero RescueAgent 10 - (.Nero AG.) [HKLM][64Bits] -- {E337E787-CF61-4B7B-B84F-509202A54023} O42 - Logiciel: Nero RescueAgent 10 Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {92E25238-61A3-4ACD-A407-3C480EEF47A7} O42 - Logiciel: Nero StartSmart 10 - (.Nero AG.) [HKLM][64Bits] -- {F61D489E-6C44-49AC-AD02-7DA8ACA73A65} O42 - Logiciel: Nero StartSmart 10 Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {F6117F9C-ADB5-4590-9BE4-12C7BEC28702} O42 - Logiciel: Nero Update - (.Nero AG.) [HKLM][64Bits] -- {65BB0407-4CC8-4DC7-952E-3EEFDF05602A} O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WTA-11e40443-6fb3-4cc9-84a5-796f7a35f104 O42 - Logiciel: Photo Service - powered by myphotobook - (.myphotobook GmbH.) [HKLM][64Bits] -- eu.myphotobook.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1 O42 - Logiciel: Photo Service - powered by myphotobook - (.myphotobook GmbH.) [HKLM][64Bits] -- {3D047C6C-19EE-46E3-C14B-9FA84260DF9B} O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU][64Bits] -- PhotoFiltre 7 O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3 O42 - Logiciel: Plants vs. Zombies - Game of the Year - (.WildTangent.) [HKLM][64Bits] -- WTA-4115b911-2bb8-4855-9141-c53629de81a0 O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04} O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WTA-186c1810-19d8-4c83-adcb-9dd2fb5aa16b O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911} O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054} O42 - Logiciel: Skype Web Plugin - (.Skype Technologies S.A..) [HKLM][64Bits] -- {6F11BED2-859F-46C4-A9DA-A91AAD5BC849} O42 - Logiciel: Skype™ 6.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D} O42 - Logiciel: Slingo Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-681afbdd-3d58-4436-9390-e2f077d40fc8 O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey O42 - Logiciel: TOSHIBA Assist - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {C2A276E3-154E-44DC-AAF1-FFDD7FD30E35} O42 - Logiciel: TOSHIBA Bulletin Board - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{43DBC64B-3DD1-47E2-8788-D3C3B110C574} O42 - Logiciel: TOSHIBA Bulletin Board - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {43DBC64B-3DD1-47E2-8788-D3C3B110C574} O42 - Logiciel: TOSHIBA ConfigFree - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {D5AEEAA2-184E-4A2A-BAA3-6225EA4B9516} O42 - Logiciel: TOSHIBA Disc Creator - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {5DA0E02F-970B-424B-BF41-513A5018E4C0} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Face Recognition - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F} O42 - Logiciel: TOSHIBA Face Recognition - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {F67FA545-D8E5-4209-86B1-AEE045D1003F} O42 - Logiciel: TOSHIBA HDD/SSD Alert - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38} O42 - Logiciel: TOSHIBA HDD/SSD Alert - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {D4322448-B6AF-4316-B859-D8A0E84DCB38} O42 - Logiciel: TOSHIBA Hardware Setup - (.TOSHIBA.) [HKLM][64Bits] -- {2FD5D2C5-A7A1-4065-89BA-90542BF7CCD3} O42 - Logiciel: TOSHIBA Media Controller - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {C7A4F26F-F9B0-41B2-8659-99181108CDE3} O42 - Logiciel: TOSHIBA Media Controller Plug-in - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {F26FDF57-483E-42C8-A9C9-EEE1EDB256E0} O42 - Logiciel: TOSHIBA Online Product Information - (.TOSHIBA.) [HKLM][64Bits] -- {2290A680-4083-410A-ADCC-7092C67FC052} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Places Icon Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {461F6F0D-7173-4902-9604-AB1A29108AF2} O42 - Logiciel: TOSHIBA Recovery Media Creator - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {B65BBB06-1F8E-48F5-8A54-B024A9E15FDF} O42 - Logiciel: TOSHIBA Recovery Media Creator Reminder - (.TOSHIBA.) [HKLM][64Bits] -- InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492} O42 - Logiciel: TOSHIBA ReelTime - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{24811C12-F4A9-4D0F-8494-A7B8FE46123C} O42 - Logiciel: TOSHIBA ReelTime - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {24811C12-F4A9-4D0F-8494-A7B8FE46123C} O42 - Logiciel: TOSHIBA Service Station - (.TOSHIBA.) [HKLM][64Bits] -- {AC6569FA-6919-442A-8552-073BE69E247A} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Supervisor Password - (.TOSHIBA.) [HKLM][64Bits] -- {119826A8-4EF6-4BE5-A88B-D2D81FA7CEE2} O42 - Logiciel: TOSHIBA TEMPRO - (.Toshiba Europe GmbH.) [HKLM][64Bits] -- {F082CB11-4794-4259-99A1-D91BA762AD15} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E} O42 - Logiciel: TOSHIBA Web Camera Application - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{6F3C8901-EBD3-470D-87F8-AC210F6E5E02} O42 - Logiciel: TOSHIBA Web Camera Application - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {6F3C8901-EBD3-470D-87F8-AC210F6E5E02} O42 - Logiciel: TOSHIBA Wireless LAN Indicator - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {CA5CF466-CAE3-4D99-8BB4-C80F4AC55028} O42 - Logiciel: TRORMCLauncher - (...) [HKLM][64Bits] -- InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600} O42 - Logiciel: Toshiba Manuals - (.TOSHIBA.) [HKLM][64Bits] -- {90FF4432-21B7-4AF6-BA6E-FB8C1FED9173} O42 - Logiciel: TuneUp Utilities 2013 - (.TuneUp Software.) [HKLM][64Bits] -- TuneUp Utilities 2013 O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App O42 - Logiciel: Wedding Dash 2 - Rings Around the World - (.WildTangent.) [HKLM][64Bits] -- WTA-0cdc8803-807f-4547-864e-b28729b80ec8 O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent toshiba Master Uninstall O42 - Logiciel: WildTangent Games App (Toshiba Games) - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-toshiba O42 - Logiciel: Zuma Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-438d4b92-21ff-4f29-9786-140b9e94dff5 O42 - Logiciel: avast! Free Antivirus v9.0.2011 - (.Avast Software.) [HKLM][64Bits] -- avast ~ Logic: 74 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\Adobe] [HKCU\Software\AppDataLow\Software\Canon] [HKCU\Software\AppDataLow] [HKCU\Software\Avast Software] [HKCU\Software\Canon] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\DVDVideoSoft] [HKCU\Software\Facebook] [HKCU\Software\Google] [HKCU\Software\HP Photo Creations] [HKCU\Software\HP] [HKCU\Software\Hewlett-Packard] [HKCU\Software\IM Providers] [HKCU\Software\Intel\Indeo\4.1] [HKCU\Software\Intel] [HKCU\Software\Licenses] [HKCU\Software\Macromedia] [HKCU\Software\McAfee] [HKCU\Software\MozillaPlugins] [HKCU\Software\Nero] [HKCU\Software\Netscape] [HKCU\Software\Policies] [HKCU\Software\Realtek] [HKCU\Software\SkypeApps] [HKCU\Software\Skype] [HKCU\Software\Synaptics] [HKCU\Software\TOSHIBA] [HKCU\Software\TuneUp] [HKCU\Software\Visan] [HKCU\Software\Wow6432Node] [HKCU\Software\ZebHelpProcess Helper] [HKCU\Software\mozilla] [HKLM\Software\ATI Technologies] [HKLM\Software\Atheros] [HKLM\Software\CBSTEST] [HKLM\Software\Canon] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\Cyberlink] [HKLM\Software\DTS] [HKLM\Software\Dolby] [HKLM\Software\HP] [HKLM\Software\IM Providers] [HKLM\Software\InstalledOptions] [HKLM\Software\Intel] [HKLM\Software\McAfee.com] [HKLM\Software\McAfee] [HKLM\Software\MozillaPlugins] [HKLM\Software\ODBC] [HKLM\Software\Policies] [HKLM\Software\RTLSetup] [HKLM\Software\Realtek Semiconductor Corp.] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SOFTWARE] [HKLM\Software\SRS Labs] [HKLM\Software\SiteAdvisor] [HKLM\Software\SonicFocus] [HKLM\Software\Sonic] [HKLM\Software\Synaptics] [HKLM\Software\TOSHIBA Corporation] [HKLM\Software\TOSHIBA] [HKLM\Software\TuneUp] [HKLM\Software\Waves Audio] [HKLM\Software\Wow6432Node\AVAST Software] [HKLM\Software\Wow6432Node\Adobe] [HKLM\Software\Wow6432Node\Atheros] [HKLM\Software\Wow6432Node\Canon] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\DVDVideoSoft] [HKLM\Software\Wow6432Node\DivXNetworks] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\Hewlett-Packard] [HKLM\Software\Wow6432Node\IM Providers] [HKLM\Software\Wow6432Node\InstallShield] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\JavaSoft] [HKLM\Software\Wow6432Node\JreMetrics] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\McAfee.com] [HKLM\Software\Wow6432Node\McAfee] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\Nero] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.] [HKLM\Software\Wow6432Node\Realtek] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\RocketLife] [HKLM\Software\Wow6432Node\RtWLan] [HKLM\Software\Wow6432Node\SiteAdvisor] [HKLM\Software\Wow6432Node\SkypeWebPlugin] [HKLM\Software\Wow6432Node\Skype] [HKLM\Software\Wow6432Node\TOH class filter] [HKLM\Software\Wow6432Node\TOSHIBA CORPORATION] [HKLM\Software\Wow6432Node\TOSHIBA] [HKLM\Software\Wow6432Node\TuneUp] [HKLM\Software\Wow6432Node\Visan] [HKLM\Software\Wow6432Node\Vittalia] =>PUP.Vittalia [HKLM\Software\Wow6432Node\Volatile] [HKLM\Software\Wow6432Node\WildTangent] [HKLM\Software\Wow6432Node] ~ Key Software: 306 Scanned in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 04/05/2011 - 14:28:21 - [456,092] ----D C:\Program Files (x86)\Adobe O43 - CFD: 19/04/2012 - 06:16:30 - [3,002] ----D C:\Program Files (x86)\Atheros O43 - CFD: 03/02/2013 - 14:31:46 - [730,312] ----D C:\Program Files (x86)\Canon O43 - CFD: 13/01/2014 - 21:23:15 - [280,251] ----D C:\Program Files (x86)\Common Files O43 - CFD: 15/12/2012 - 18:20:52 - [6,158] ----D C:\Program Files (x86)\DVDVideoSoft O43 - CFD: 20/01/2014 - 10:45:01 - [559,433] ----D C:\Program Files (x86)\Google O43 - CFD: 03/02/2013 - 14:01:40 - [4,055] ----D C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 03/02/2013 - 14:00:40 - [6,963] ----D C:\Program Files (x86)\HP O43 - CFD: 08/10/2013 - 22:10:00 - [0,428] ----D C:\Program Files (x86)\HP Photo Creations O43 - CFD: 19/04/2012 - 06:33:48 - [149,872] --H-D C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 19/04/2012 - 06:04:20 - [20,461] ----D C:\Program Files (x86)\Intel O43 - CFD: 16/12/2013 - 11:56:16 - [9,991] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 04/05/2011 - 13:52:52 - [86,366] ----D C:\Program Files (x86)\Java O43 - CFD: 09/10/2013 - 18:24:15 - [16,863] ----D C:\Program Files (x86)\McAfee O43 - CFD: 04/05/2011 - 14:23:34 - [0,432] ----D C:\Program Files (x86)\mcafee.com O43 - CFD: 20/01/2014 - 10:37:02 - [0] ----D C:\Program Files (x86)\Microsoft O43 - CFD: 16/01/2014 - 11:39:34 - [12,461] ----D C:\Program Files (x86)\Microsoft Application Virtualization Client O43 - CFD: 13/01/2014 - 21:23:15 - [6,414] ----D C:\Program Files (x86)\Microsoft Office O43 - CFD: 09/10/2013 - 17:48:30 - [40,851] ----D C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 04/05/2011 - 14:36:13 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 04/05/2011 - 14:11:15 - [7,816] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 29/10/2012 - 22:25:07 - [0] ----D C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 14/07/2009 - 06:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 27/08/2012 - 09:45:21 - [0] ----D C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 04/05/2011 - 14:23:08 - [657,625] ----D C:\Program Files (x86)\Nero O43 - CFD: 08/10/2013 - 22:11:09 - [29,847] ----D C:\Program Files (x86)\Photo-Service O43 - CFD: 08/10/2013 - 22:11:09 - [7,801] ----D C:\Program Files (x86)\PhotoFiltre 7 O43 - CFD: 19/04/2012 - 06:22:54 - [16,115] ----D C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - 06:32:38 - [37,360] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 08/10/2013 - 22:11:09 - [19,225] R---D C:\Program Files (x86)\Skype O43 - CFD: 08/10/2013 - 22:11:09 - [10,855] ----D C:\Program Files (x86)\SkypeWebPlugin O43 - CFD: 19/04/2012 - 06:14:15 - [0] --H-D C:\Program Files (x86)\Temp O43 - CFD: 19/04/2012 - 06:20:38 - [0,196] ----D C:\Program Files (x86)\TOH Class Filter O43 - CFD: 19/04/2012 - 06:34:00 - [426,418] ----D C:\Program Files (x86)\TOSHIBA O43 - CFD: 08/10/2013 - 22:11:11 - [406,951] ----D C:\Program Files (x86)\TOSHIBA Games O43 - CFD: 08/10/2013 - 22:18:12 - [11,294] ----D C:\Program Files (x86)\Toshiba TEMPRO =>.Toshiba Corporation O43 - CFD: 08/10/2013 - 22:11:21 - [75,340] ----D C:\Program Files (x86)\TuneUp Utilities 2013 O43 - CFD: 14/07/2009 - 05:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information O43 - CFD: 18/10/2013 - 20:49:48 - [12,314] ----D C:\Program Files (x86)\WildTangent Games O43 - CFD: 08/10/2013 - 22:17:21 - [0,500] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 16/05/2013 - 20:25:02 - [196,998] ----D C:\Program Files (x86)\Windows Live O43 - CFD: 08/10/2013 - 22:18:12 - [5,895] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 16/12/2013 - 11:56:19 - [4,791] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 14/07/2009 - 06:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 08/10/2013 - 22:17:21 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 08/10/2013 - 22:18:12 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 08/10/2013 - 22:18:12 - [6,267] ----D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 20/01/2014 - 10:49:09 - [17,257] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman O43 - CFD: 21/04/2013 - 15:18:43 - [18,411] ----D C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 04/05/2011 - 14:28:20 - [29,103] ----D C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 13/01/2014 - 21:23:15 - [0,095] ----D C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 08/10/2013 - 22:09:52 - [65,886] ----D C:\Program Files (x86)\Common Files\DVDVideoSoft O43 - CFD: 19/04/2012 - 06:32:47 - [5,246] ----D C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 19/04/2012 - 05:58:35 - [12,691] ----D C:\Program Files (x86)\Common Files\Intel O43 - CFD: 04/05/2011 - 13:53:06 - [1,175] ----D C:\Program Files (x86)\Common Files\Java O43 - CFD: 08/10/2013 - 22:09:53 - [2,788] ----D C:\Program Files (x86)\Common Files\mcafee O43 - CFD: 13/01/2014 - 21:23:16 - [38,259] ----D C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 04/05/2011 - 14:21:18 - [46,916] ----D C:\Program Files (x86)\Common Files\Nero O43 - CFD: 19/04/2012 - 05:57:28 - [0,154] ----D C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 14/07/2009 - 04:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 08/10/2013 - 22:09:54 - [1,904] ----D C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/07/2009 - 04:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 08/10/2013 - 22:18:12 - [9,767] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 04/05/2011 - 14:29:08 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 08/10/2013 - 22:09:55 - [8,654] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 24/01/2013 - 17:36:50 - [257,751] ----D C:\ProgramData\Adobe O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Application Data O43 - CFD: 19/04/2012 - 06:16:36 - [0,017] ----D C:\ProgramData\Atheros O43 - CFD: 19/11/2013 - 09:29:44 - [47,471] ----D C:\ProgramData\AVAST Software O43 - CFD: 01/12/2013 - 16:27:46 - [7,264] ----D C:\ProgramData\BitGuard =>PUP.BitGuard O43 - CFD: 02/02/2013 - 16:53:18 - [33,950] --H-D C:\ProgramData\CanonBJ O43 - CFD: 03/02/2013 - 14:35:20 - [0] --H-D C:\ProgramData\CanonIJEGV O43 - CFD: 03/02/2013 - 14:18:09 - [0] --H-D C:\ProgramData\CanonIJETV O43 - CFD: 03/02/2013 - 15:48:13 - [0,014] --H-D C:\ProgramData\CanonIJMIG O43 - CFD: 13/01/2014 - 21:24:52 - [0,095] ----D C:\ProgramData\CanonIJPLM O43 - CFD: 03/02/2013 - 14:35:28 - [0,003] --H-D C:\ProgramData\CanonIJQuickMenu O43 - CFD: 03/02/2013 - 14:38:31 - [0,005] --H-D C:\ProgramData\CanonIJScan O43 - CFD: 03/02/2013 - 14:30:04 - [0,083] ----D C:\ProgramData\CanonIJWSpt O43 - CFD: 31/10/2012 - 16:18:29 - [0] --H-D C:\ProgramData\Common Files O43 - CFD: 14/07/2009 - 06:08:56 - [0] -S--D C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Documents O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Favorites O43 - CFD: 03/02/2013 - 13:58:29 - [9,821] ----D C:\ProgramData\HP O43 - CFD: 08/10/2013 - 22:11:53 - [128,565] ----D C:\ProgramData\HP Photo Creations O43 - CFD: 28/09/2012 - 17:56:30 - [193,948] ----D C:\ProgramData\McAfee O43 - CFD: 20/01/2014 - 10:37:03 - [123,381] -S--D C:\ProgramData\Microsoft O43 - CFD: 04/05/2011 - 14:23:11 - [2,527] ----D C:\ProgramData\Nero O43 - CFD: 27/07/2013 - 20:08:16 - [70,135] ----D C:\ProgramData\Skype O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Start Menu O43 - CFD: 04/05/2011 - 13:53:06 - [0] ----D C:\ProgramData\Sun O43 - CFD: 14/07/2009 - 06:08:56 - [0] -SH-D C:\ProgramData\Templates O43 - CFD: 02/12/2012 - 14:02:12 - [0,011] ----D C:\ProgramData\Toshiba O43 - CFD: 22/08/2012 - 11:28:31 - [0,001] ----D C:\ProgramData\ToshibaEurope O43 - CFD: 31/10/2012 - 16:19:00 - [5,091] ----D C:\ProgramData\TuneUp Software O43 - CFD: 03/02/2013 - 14:08:36 - [0,330] ----D C:\ProgramData\Visan O43 - CFD: 18/10/2013 - 20:48:36 - [566,778] ----D C:\ProgramData\WildTangent O43 - CFD: 11/12/2012 - 19:09:23 - [0,252] ----D C:\Users\Laura\AppData\Roaming\Adobe O43 - CFD: 19/11/2013 - 09:55:44 - [0,002] ----D C:\Users\Laura\AppData\Roaming\AVAST Software O43 - CFD: 10/02/2013 - 14:35:32 - [-774,809] ----D C:\Users\Laura\AppData\Roaming\Canon O43 - CFD: 08/10/2013 - 22:12:52 - [4,586] ----D C:\Users\Laura\AppData\Roaming\DVDVideoSoft O43 - CFD: 03/04/2013 - 13:37:10 - [0,017] ----D C:\Users\Laura\AppData\Roaming\HpUpdate O43 - CFD: 22/08/2012 - 11:29:24 - [0] ----D C:\Users\Laura\AppData\Roaming\Identities O43 - CFD: 04/05/2011 - 14:28:21 - [0,056] ----D C:\Users\Laura\AppData\Roaming\Macromedia O43 - CFD: 21/11/2010 - 08:16:41 - [0] ----D C:\Users\Laura\AppData\Roaming\Media Center Programs O43 - CFD: 25/08/2013 - 15:21:32 - [4,296] -S--D C:\Users\Laura\AppData\Roaming\Microsoft O43 - CFD: 04/09/2012 - 21:11:56 - [0,041] ----D C:\Users\Laura\AppData\Roaming\Nero O43 - CFD: 08/10/2013 - 22:12:55 - [0,003] ----D C:\Users\Laura\AppData\Roaming\PhotoFiltre 7 O43 - CFD: 20/01/2014 - 10:49:22 - [9,251] ----D C:\Users\Laura\AppData\Roaming\Skype O43 - CFD: 22/08/2012 - 21:41:55 - [26,085] ----D C:\Users\Laura\AppData\Roaming\Toshiba O43 - CFD: 23/08/2012 - 11:52:14 - [0,002] ----D C:\Users\Laura\AppData\Roaming\TOSHIBA Online Product Information =>.Toshiba Corporation O43 - CFD: 13/01/2014 - 21:24:25 - [0] ----D C:\Users\Laura\AppData\Roaming\TP O43 - CFD: 31/10/2012 - 16:18:59 - [0,005] ----D C:\Users\Laura\AppData\Roaming\TuneUp Software O43 - CFD: 03/02/2013 - 14:08:36 - [0] ----D C:\Users\Laura\AppData\Roaming\Visan O43 - CFD: 08/10/2013 - 22:12:55 - [2,124] ----D C:\Users\Laura\AppData\Roaming\WildTangent O43 - CFD: 23/08/2012 - 17:56:21 - [0] ----D C:\Users\Laura\AppData\Roaming\WinBatch O43 - CFD: 20/01/2014 - 10:51:12 - [200,591] ----D C:\Users\Laura\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 11/12/2012 - 19:09:23 - [14,666] ----D C:\Users\Laura\AppData\Local\Adobe O43 - CFD: 22/08/2012 - 11:20:37 - [0] -SH-D C:\Users\Laura\AppData\Local\Application Data O43 - CFD: 20/01/2014 - 10:39:55 - [0] ----D C:\Users\Laura\AppData\Local\avgchrome O43 - CFD: 02/03/2013 - 10:53:50 - [5,467] ----D C:\Users\Laura\AppData\Local\Diagnostics O43 - CFD: 14/01/2014 - 01:25:26 - [14,445] ----D C:\Users\Laura\AppData\Local\Facebook O43 - CFD: 20/01/2014 - 10:37:33 - [894,920] ----D C:\Users\Laura\AppData\Local\Google O43 - CFD: 22/08/2012 - 11:20:37 - [0] -SH-D C:\Users\Laura\AppData\Local\Historique O43 - CFD: 03/02/2013 - 13:55:33 - [0,025] ----D C:\Users\Laura\AppData\Local\HP O43 - CFD: 20/01/2014 - 10:36:24 - [950,655] ----D C:\Users\Laura\AppData\Local\Microsoft O43 - CFD: 04/02/2013 - 22:58:31 - [243,104] ----D C:\Users\Laura\AppData\Local\SkypeWebPlugin O43 - CFD: 20/01/2014 - 10:56:44 - [0,276] ----D C:\Users\Laura\AppData\Local\Temp O43 - CFD: 22/08/2012 - 11:20:37 - [0] -SH-D C:\Users\Laura\AppData\Local\Temporary Internet Files O43 - CFD: 02/12/2012 - 14:02:12 - [0,006] ----D C:\Users\Laura\AppData\Local\Toshiba O43 - CFD: 11/01/2013 - 18:22:19 - [0,116] ----D C:\Users\Laura\AppData\Local\VirtualStore O43 - CFD: 08/05/2013 - 17:06:45 - [0,074] ----D C:\Users\Laura\AppData\Local\Windows Live O43 - CFD: 08/10/2013 - 22:12:54 - [0,014] R---D C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 09/10/2013 - 18:25:00 - [0] R---D C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 08/10/2013 - 22:12:54 - [0,001] R---D C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 22/08/2012 - 22:09:23 - [0] ----D C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 O43 - CFD: 09/10/2013 - 18:25:00 - [0] R---D C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup ~ Program Folder: 136 Scanned in 05mn 44s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.3555BA97171CD153118F73FDCCC8BFDE] - 16/01/2014 - 08:32:12 ---A- . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\Drivers\netio.sys [376768] O44 - LFC:[MD5.F2BF71FCEAB8FB8A691408C478E2FF4C] - 16/01/2014 - 08:32:16 ---A- . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [3156480] O44 - LFC:[MD5.765A92D428A8DB88B960DA5A8D6089DC] - 16/01/2014 - 08:32:19 ---A- . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbohci.sys [25600] O44 - LFC:[MD5.FFA06EF43987ED0DD42AD59B260C0C78] - 16/01/2014 - 08:32:19 ---A- . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\Drivers\usbd.sys [7808] O44 - LFC:[MD5.8D1196CFBB223621F2C67D45710F25BA] - 16/01/2014 - 08:32:20 ---A- . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\Drivers\usbhub.sys [343040] O44 - LFC:[MD5.12FEB33791920678F8433701C822BCFD] - 16/01/2014 - 08:32:20 ---A- . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\Drivers\usbport.sys [325120] O44 - LFC:[MD5.DD253AFC3BC6CBA412342DE60C3647F3] - 16/01/2014 - 08:32:20 ---A- . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\Drivers\usbuhci.sys [30720] O44 - LFC:[MD5.DCA68B0943D6FA415F0C56C92158A83A] - 16/01/2014 - 08:32:20 ---A- . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\Drivers\usbccgp.sys [99840] O44 - LFC:[MD5.18A85013A3E0F7E1755365D287443965] - 16/01/2014 - 08:32:21 ---A- . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\Drivers\usbehci.sys [53248] O44 - LFC:[MD5.B3455A08EA96E170EFF28D9553CE074C] - 16/01/2014 - 22:03:35 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [275856] O44 - LFC:[MD5.4190D736956AE25C020686CC1FF41895] - 19/01/2014 - 20:58:58 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512] O44 - LFC:[MD5.6B9ECAC3BF631F4D5812BAAC78B5DA26] - 20/01/2014 - 10:45:01 ---A- . (...) -- C:\Windows\PFRO.log [121652] O44 - LFC:[MD5.3C2F906C8858C5AB95F59E0B619A9B54] - 20/01/2014 - 10:45:16 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.7D75F02F3C3A3EA5F14459084E416F5C] - 20/01/2014 - 10:45:26 ---A- . (...) -- C:\Windows\setupact.log [58906] O44 - LFC:[MD5.6AD0C8E48BE8963732F448D63B341F10] - 20/01/2014 - 10:52:35 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1551212] O44 - LFC:[MD5.9369A2B52F5E32F2A75179949831C2E8] - 20/01/2014 - 10:52:35 ---A- . (...) -- C:\Windows\System32\perfc009.dat [106574] O44 - LFC:[MD5.AD43C45F57010ACF988E819EFB09EF17] - 20/01/2014 - 10:52:35 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [130940] O44 - LFC:[MD5.5F86E20EA8BDD181A52407F114A0CEB8] - 20/01/2014 - 10:52:35 ---A- . (...) -- C:\Windows\System32\perfh009.dat [616452] O44 - LFC:[MD5.1A5C7DF70553DB667C08AD71622F0576] - 20/01/2014 - 10:52:35 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [704924] O44 - LFC:[MD5.3DB8B17459390B45D87DD7F3CCAEB83F] - 20/01/2014 - 10:52:56 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1950213] O44 - LFC:[MD5.3150E7EC8C1FEC183FAEC2006C96B37D] - 20/01/2014 - 10:54:45 --HA- . (...) -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [25120] O44 - LFC:[MD5.3150E7EC8C1FEC183FAEC2006C96B37D] - 20/01/2014 - 10:54:45 --HA- . (...) -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [25120] ~ Files: 22 Scanned in 00mn 27s ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.8F2326643A6F7F3586B9CF5EC379A336] - 02/01/2014 - 12:12:05 ---A- - C:\Windows\Prefetch\IGFXTRAY.EXE-C444237E.pf O45 - LFCP:[MD5.F2D6D6B45F9963EA256A4DDA82D17639] - 08/01/2014 - 21:00:02 ---A- - C:\Windows\Prefetch\WSQMCONS.EXE-118B52B7.pf O45 - LFCP:[MD5.7F5C3DBBCE0EB7EB8D94591CAE9792A8] - 10/01/2014 - 20:40:25 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-09F406DD.pf O45 - LFCP:[MD5.8470C76FBEC666945C450132B58973EB] - 11/01/2014 - 17:54:56 ---A- - C:\Windows\Prefetch\MOVIEMAKER.EXE-BC01D3A6.pf O45 - LFCP:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 11/12/2289 - 08:07:44 ----D - C:\Windows\Prefetch\ReadyBoot O45 - LFCP:[MD5.B0857142192B9DDDCAB57FA3C1F62AF5] - 13/01/2014 - 20:55:45 ---A- - C:\Windows\Prefetch\RAVCPL64.EXE-D6B4B613.pf O45 - LFCP:[MD5.ECB27F7A08686BE1375BB77508C44CCD] - 13/01/2014 - 21:00:17 ---A- - C:\Windows\Prefetch\HPCUSTPARTIC.EXE-FD0BEA1A.pf O45 - LFCP:[MD5.127D6530908A15F208BA06A81218E67C] - 13/01/2014 - 21:55:57 ---A- - C:\Windows\Prefetch\PHOTOFILTRE7.EXE-B05839CF.pf O45 - LFCP:[MD5.C8E8ED451546D992A3F1D9CC9134E10A] - 16/01/2014 - 08:32:37 ---A- - C:\Windows\Prefetch\MCHLP32.EXE-7C183BB3.pf O45 - LFCP:[MD5.36616051D61341511EE46A42D6DD36D5] - 16/01/2014 - 11:12:02 ---A- - C:\Windows\Prefetch\AgCx_SC2.db O45 - LFCP:[MD5.0BC4D32FFD013A0BB0417B2EE58BEB0A] - 16/01/2014 - 22:04:38 ---A- - C:\Windows\Prefetch\GFXUI.EXE-C6B3880F.pf O45 - LFCP:[MD5.3D94B6DFD12A7F670D263909B517662E] - 16/01/2014 - 22:04:41 ---A- - C:\Windows\Prefetch\TCRDKBB.EXE-BD533577.pf O45 - LFCP:[MD5.C0CEA383298315911DE36091B80C7306] - 16/01/2014 - 22:04:45 ---A- - C:\Windows\Prefetch\IGFXPERS.EXE-254DBA08.pf O45 - LFCP:[MD5.61A5D7DE1A7AF28112C1E8A965CC19F8] - 16/01/2014 - 22:04:45 ---A- - C:\Windows\Prefetch\IGFXSRVC.EXE-96A493A4.pf O45 - LFCP:[MD5.1EDCB255C5E6162A8C886AE503DB8873] - 16/01/2014 - 22:04:52 ---A- - C:\Windows\Prefetch\SYNTPENH.EXE-E6DC1353.pf O45 - LFCP:[MD5.7A40EE82B85D4E11AD2011FBCE7E573A] - 17/01/2014 - 11:23:56 ---A- - C:\Windows\Prefetch\RAVBG64.EXE-44375395.pf O45 - LFCP:[MD5.3A3DB2B88FB96E50B7130FFF0D3D67AE] - 17/01/2014 - 11:24:38 ---A- - C:\Windows\Prefetch\TOSDIMONITOR.EXE-F8499E76.pf O45 - LFCP:[MD5.9A5DCD49D3605DB3DDF46E9035A7E097] - 17/01/2014 - 20:55:48 ---A- - C:\Windows\Prefetch\TOSHIBASERVICESTATION.EXE-92A6EAE9.pf O45 - LFCP:[MD5.D9F73E32DB56B1D9CC318A8CC16512A1] - 17/01/2014 - 23:10:47 ---A- - C:\Windows\Prefetch\MCSVRCNT.EXE-7C466466.pf O45 - LFCP:[MD5.C8817A2F5A8CD30C01484B8EBFAAB790] - 17/01/2014 - 23:10:48 ---A- - C:\Windows\Prefetch\MCVSMAP.EXE-50B39320.pf O45 - LFCP:[MD5.72582766C1DC2873F41AA44074CED090] - 17/01/2014 - 23:10:49 ---A- - C:\Windows\Prefetch\HWUPDCHK.EXE-17789F96.pf O45 - LFCP:[MD5.68BA3A4AF34560966851220DDA75832C] - 17/01/2014 - 23:10:55 ---A- - C:\Windows\Prefetch\MCUPDMGR.EXE-D515E3C4.pf O45 - LFCP:[MD5.DE612CD38E7679CBA520BC7561BB4333] - 18/01/2014 - 10:26:23 ---A- - C:\Windows\Prefetch\TOSWAITSRV.EXE-4901C686.pf O45 - LFCP:[MD5.85FD2709CEF2E4375222F120E3AAB0AF] - 18/01/2014 - 10:26:23 ---A- - C:\Windows\Prefetch\WLIDSVC.EXE-5514E75E.pf O45 - LFCP:[MD5.49D1295A588E01C5E707494C9B78B5CE] - 18/01/2014 - 17:39:31 ---A- - C:\Windows\Prefetch\ITSECMNG.EXE-F0CB947F.pf O45 - LFCP:[MD5.EE29C9186EE31DDEA33730714C596E5D] - 18/01/2014 - 18:55:06 ---A- - C:\Windows\Prefetch\SAUPD.EXE-5AED0364.pf O45 - LFCP:[MD5.683C7FEA5E22D172FE8B3596C3D76BCB] - 18/01/2014 - 19:13:08 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db O45 - LFCP:[MD5.E9F620123685AC3636B671078F09C87A] - 18/01/2014 - 19:13:09 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db O45 - LFCP:[MD5.EB0672CE213194969CE2F77696BEA3F0] - 18/01/2014 - 19:13:09 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db O45 - LFCP:[MD5.1AEE4684AAF14AE0B4A4D115A5BBE10F] - 19/01/2014 - 20:25:40 ---A- - C:\Windows\Prefetch\READER_SL.EXE-B1C62096.pf O45 - LFCP:[MD5.0F90D154289EEE0FD69243004E7784CD] - 19/01/2014 - 20:27:39 ---A- - C:\Windows\Prefetch\DRVINST.EXE-4CB4314A.pf O45 - LFCP:[MD5.E3A3544453BFFCF8B852DB75855C844D] - 19/01/2014 - 20:27:44 ---A- - C:\Windows\Prefetch\DINOTIFY.EXE-35A869D6.pf O45 - LFCP:[MD5.7E91C0A98EF753BD02735E2766EBD7BF] - 19/01/2014 - 20:36:05 ---A- - C:\Windows\Prefetch\SEAPORT.EXE-E1948A31.pf O45 - LFCP:[MD5.231861FC11C04FC4CB062D935AC61EA7] - 19/01/2014 - 20:36:52 ---A- - C:\Windows\Prefetch\MCSVRCNT.EXE-9D546F81.pf O45 - LFCP:[MD5.061EA62B7CDA0C3479AB6F807CDEBE05] - 19/01/2014 - 20:37:32 ---A- - C:\Windows\Prefetch\MCINFO.EXE-73BBFA2D.pf O45 - LFCP:[MD5.34120D81DFACD0BFDD02FCF099E16711] - 19/01/2014 - 20:37:33 ---A- - C:\Windows\Prefetch\QCSHM.EXE-A644EB40.pf O45 - LFCP:[MD5.3E3915C590062C159E1749F02C106EB8] - 19/01/2014 - 20:41:59 ---A- - C:\Windows\Prefetch\TUMESSAGES.EXE-84C9472D.pf O45 - LFCP:[MD5.D123DC15258B79A72C74E9B7B4C3A8C3] - 19/01/2014 - 20:56:03 ---A- - C:\Windows\Prefetch\TUNEUPSYSTEMSTATUSCHECK.EXE-17B10090.pf O45 - LFCP:[MD5.7E93338B19E6E70BD40CB12C20832B6C] - 19/01/2014 - 21:01:31 ---A- - C:\Windows\Prefetch\TOSBTPSS.EXE-7D8110FF.pf O45 - LFCP:[MD5.C79F2FF3CF79217ACF262E5F494A5E92] - 19/01/2014 - 21:01:56 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-DE9673F9.pf O45 - LFCP:[MD5.3130ACF341C7B9EB687963C318B8A9D9] - 19/01/2014 - 21:06:18 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx O45 - LFCP:[MD5.46B263D8ADCF65FB902D2BABA02976BC] - 19/01/2014 - 21:06:40 ---A- - C:\Windows\Prefetch\WUDFHOST.EXE-AFFEF87C.pf O45 - LFCP:[MD5.52B718A907B56627E7B0498F4C77C63E] - 19/01/2014 - 21:06:48 ---A- - C:\Windows\Prefetch\PRESENTATIONFONTCACHE.EXE-73BE9E78.pf O45 - LFCP:[MD5.E5411FD4FB99D1FACFD9C10471217C0C] - 19/01/2014 - 21:07:09 ---A- - C:\Windows\Prefetch\TOSKILLINDICATOR.EXE-8C0AA630.pf O45 - LFCP:[MD5.039C5845CAF09562CF22F49C19E56202] - 19/01/2014 - 21:07:19 ---A- - C:\Windows\Prefetch\AgCx_SC1.db O45 - LFCP:[MD5.51A4A2D8E5B664861250CD342699A0B1] - 19/01/2014 - 21:08:27 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-76936ED5.pf O45 - LFCP:[MD5.1A3F9243360F99BA8545AD3481373A8F] - 19/01/2014 - 21:15:35 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin O45 - LFCP:[MD5.0AB9224BEFF871777EC847DE5DA508AD] - 19/01/2014 - 21:15:36 ---A- - C:\Windows\Prefetch\AgRobust.db O45 - LFCP:[MD5.14C61355CCB78137822937E2EA254DD5] - 20/01/2014 - 10:26:41 ---A- - C:\Windows\Prefetch\SKYPE.EXE-E71BF59F.pf O45 - LFCP:[MD5.E62A9D39037FCB218BA9CC4A8CBCCDB6] - 20/01/2014 - 10:28:21 ---A- - C:\Windows\Prefetch\LMS.EXE-8C70F87D.pf O45 - LFCP:[MD5.688A2D47F52749473ACF371F09B469E1] - 20/01/2014 - 10:31:47 ---A- - C:\Windows\Prefetch\MCUICNT.EXE-DF90E34C.pf O45 - LFCP:[MD5.B421126BD2D7070917433D76F0909378] - 20/01/2014 - 10:31:47 ---A- - C:\Windows\Prefetch\QCSHM.EXE-12ED2E03.pf O45 - LFCP:[MD5.98D1371DCB1A8C42BFB478351B5D69F1] - 20/01/2014 - 10:31:48 ---A- - C:\Windows\Prefetch\MCSMTFWK.EXE-047F7B2C.pf O45 - LFCP:[MD5.FDA163EABDC5F81851C342B673A0B376] - 20/01/2014 - 10:31:49 ---A- - C:\Windows\Prefetch\MCINSTRU.EXE-5D74CB87.pf O45 - LFCP:[MD5.A1F646A75A6FF53E5A27D7ED9DD1C480] - 20/01/2014 - 10:31:49 ---A- - C:\Windows\Prefetch\MCOCROLLBACK.EXE-C2E56CCF.pf O45 - LFCP:[MD5.F22872581297CB56ECF28AF83FE63E74] - 20/01/2014 - 10:31:57 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-BDFD3029.pf O45 - LFCP:[MD5.9632D6C8C78C1DF8123CBBFFB5304665] - 20/01/2014 - 10:32:54 ---A- - C:\Windows\Prefetch\SAUPD.EXE-1E90320D.pf O45 - LFCP:[MD5.0CBB9E322E5FE3EE1802D4FC4D9D4392] - 20/01/2014 - 10:34:42 ---A- - C:\Windows\Prefetch\CSC.EXE-A3B8D95D.pf O45 - LFCP:[MD5.BF026293178319E1B3940E8985A6DD61] - 20/01/2014 - 10:34:42 ---A- - C:\Windows\Prefetch\CVTRES.EXE-069169FB.pf O45 - LFCP:[MD5.672FDFA8E757C25AE3CF3FCE01525EC5] - 20/01/2014 - 10:37:48 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7CFEDEA3.pf O45 - LFCP:[MD5.E4203590AF92CC485E301F3740137B12] - 20/01/2014 - 10:38:34 ---A- - C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf O45 - LFCP:[MD5.ADAEA2D304CA5C0305E9D198EB1F114C] - 20/01/2014 - 10:39:45 ---A- - C:\Windows\Prefetch\MCVSMAP.EXE-AC93DF0C.pf O45 - LFCP:[MD5.02ECACA0F96B6D5C562D5D672DD4BE6E] - 20/01/2014 - 10:40:37 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-E7777CC4.pf O45 - LFCP:[MD5.2785730B33B039716E046E83B917E7BE] - 20/01/2014 - 10:47:14 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf O45 - LFCP:[MD5.928EC1C30F9D64C2C28A297D844E9533] - 20/01/2014 - 10:47:14 ---A- - C:\Windows\Prefetch\TUNEUPUTILITIESAPP64.EXE-A29D6790.pf O45 - LFCP:[MD5.AD7759F427E276873B6BEF1FD826E4F1] - 20/01/2014 - 10:47:15 ---A- - C:\Windows\Prefetch\AVASTUI.EXE-56B29A08.pf O45 - LFCP:[MD5.83FC6FD76291FD579E7D94226D0A5759] - 20/01/2014 - 10:47:15 ---A- - C:\Windows\Prefetch\CNQMMAIN.EXE-4BEBBBDE.pf O45 - LFCP:[MD5.6AC8FBF895760D9CC9A1B51C65E069BD] - 20/01/2014 - 10:47:15 ---A- - C:\Windows\Prefetch\HPWUSCHD2.EXE-DE9C9D03.pf O45 - LFCP:[MD5.89140BBF2B5342C662745D7DCE9AF4F5] - 20/01/2014 - 10:47:15 ---A- - C:\Windows\Prefetch\MCSHIELD.EXE-9299FC7A.pf O45 - LFCP:[MD5.59FB5F825E0B13A40AA20E42616E4650] - 20/01/2014 - 10:47:15 ---A- - C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf O45 - LFCP:[MD5.CB042027EB1A7DC50F7D8C8F44E19BFB] - 20/01/2014 - 10:47:25 ---A- - C:\Windows\Prefetch\CVHSVC.EXE-F0F061EE.pf O45 - LFCP:[MD5.31A5D146F786DB8F5699C966B75C4A74] - 20/01/2014 - 10:47:31 ---A- - C:\Windows\Prefetch\UNSECAPP.EXE-A02905A6.pf O45 - LFCP:[MD5.A7E2E6BCA5AEB1C6996AE7DF38724C32] - 20/01/2014 - 10:47:43 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-7238F31D.pf O45 - LFCP:[MD5.61C7F4CE547D5BF4DCB7F8F36712EBE3] - 20/01/2014 - 10:47:46 ---A- - C:\Windows\Prefetch\SEARCHINDEXER.EXE-4A6353B9.pf O45 - LFCP:[MD5.C9EF15A0466BE7D9E2423F4AB3A82D10] - 20/01/2014 - 10:47:47 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-3AB35CA7.pf O45 - LFCP:[MD5.8F1BFD94CF4D31361B41100D4E4C54E8] - 20/01/2014 - 10:47:55 ---A- - C:\Windows\Prefetch\CHROME.EXE-D999B1BA.pf O45 - LFCP:[MD5.939824E7B0FD4A9BF40F05CC56C9909B] - 20/01/2014 - 10:47:58 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-8461DBEE.pf O45 - LFCP:[MD5.97E31908C84C87784B1513E744DB119A] - 20/01/2014 - 10:47:59 ---A- - C:\Windows\Prefetch\TOSBTSRV.EXE-D50E7CF0.pf O45 - LFCP:[MD5.6ADE7041F740063DC5B1B88F3DE03EF8] - 20/01/2014 - 10:48:00 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-007FEA55.pf O45 - LFCP:[MD5.1DB447B1AD86CE131293B1629D74264B] - 20/01/2014 - 10:48:06 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf O45 - LFCP:[MD5.39DAE5D7C4F369506BAF6E6D40BD6FD8] - 20/01/2014 - 10:48:15 ---A- - C:\Windows\Prefetch\TOSA2DP.EXE-4764BD7E.pf O45 - LFCP:[MD5.1581B5CF9905F998AF5EC388D92CB77F] - 20/01/2014 - 10:48:24 ---A- - C:\Windows\Prefetch\TOSBTHID.EXE-5D063D2A.pf O45 - LFCP:[MD5.3EEE0FA851F6EA5332A0AAD167F86B38] - 20/01/2014 - 10:48:25 ---A- - C:\Windows\Prefetch\TOSSMARTSRV.EXE-BCFE7888.pf O45 - LFCP:[MD5.A62AEB677F2DBCADAE8E28A1949A3DF3] - 20/01/2014 - 10:48:26 ---A- - C:\Windows\Prefetch\TOSBTAVAC.EXE-DD4B12E8.pf O45 - LFCP:[MD5.91175B709B5B58DBF1BEA0C79E5E939E] - 20/01/2014 - 10:48:30 ---A- - C:\Windows\Prefetch\BTASSIST.EXE-1ACF3C4E.pf O45 - LFCP:[MD5.F725BF91D7977542C6134346650FAB1B] - 20/01/2014 - 10:48:31 ---A- - C:\Windows\Prefetch\TOSBT1ST.EXE-F1E47419.pf O45 - LFCP:[MD5.ABFE235FA471259BE01C5328666F2616] - 20/01/2014 - 10:48:32 ---A- - C:\Windows\Prefetch\REMODEM.EXE-34328832.pf O45 - LFCP:[MD5.A3513C10A9584A108EF5D7FFFB502CAE] - 20/01/2014 - 10:48:34 ---A- - C:\Windows\Prefetch\TMACHINFO.EXE-2FCB5A05.pf O45 - LFCP:[MD5.AC5F74606174309B9CE12E9995B54891] - 20/01/2014 - 10:48:36 ---A- - C:\Windows\Prefetch\BTWLANDP.EXE-31DF9F41.pf O45 - LFCP:[MD5.6705EDB892762A853C0858C1350473F4] - 20/01/2014 - 10:48:38 ---A- - C:\Windows\Prefetch\TOSBTHSP.EXE-3B8367C8.pf O45 - LFCP:[MD5.867F711C300AF21BBE948F3079FF5A03] - 20/01/2014 - 10:48:38 ---A- - C:\Windows\Prefetch\TOSSENOTIFY.EXE-BC36C1CB.pf O45 - LFCP:[MD5.8D4F568475D772FCC09E2E2FC515985E] - 20/01/2014 - 10:48:39 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf O45 - LFCP:[MD5.358F059868F1019D67BE3339AE5FE9E7] - 20/01/2014 - 10:48:40 ---A- - C:\Windows\Prefetch\CSC.EXE-BE9AC2DF.pf O45 - LFCP:[MD5.E7219E752C28A7BC5BB3DA3B0014906A] - 20/01/2014 - 10:48:40 ---A- - C:\Windows\Prefetch\CVTRES.EXE-2B9D810D.pf O45 - LFCP:[MD5.225FF60C22D17BE4B6BEF34876D5B624] - 20/01/2014 - 10:48:48 ---A- - C:\Windows\Prefetch\TOSAVRC.EXE-FC3C9987.pf O45 - LFCP:[MD5.B4A4E35D7A840E5C93FA7226D3BA8761] - 20/01/2014 - 10:48:50 ---A- - C:\Windows\Prefetch\TOSSKYPEAPL.EXE-348642F8.pf O45 - LFCP:[MD5.98666A86EADDBC313EF8124E3A376F36] - 20/01/2014 - 10:48:51 ---A- - C:\Windows\Prefetch\TOSOBEX.EXE-14817829.pf O45 - LFCP:[MD5.4E12D00A6B4D568B8C5EA3577C5F9157] - 20/01/2014 - 10:48:53 ---A- - C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf O45 - LFCP:[MD5.F6775321C6772C268693FBF1EDA5C0C8] - 20/01/2014 - 10:48:59 ---A- - C:\Windows\Prefetch\TOSBTPROC.EXE-F9375BCD.pf O45 - LFCP:[MD5.ABF2884104D3A6EB20F5A5EF805D5FD7] - 20/01/2014 - 10:49:02 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-C871F054.pf O45 - LFCP:[MD5.930E803E6ABBA43810DFFD12F26C8496] - 20/01/2014 - 10:49:03 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-80F4A784.pf O45 - LFCP:[MD5.9721ECBF2C57F21D9B744ABAED535F45] - 20/01/2014 - 10:49:14 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-37549B7E.pf O45 - LFCP:[MD5.AAB3CBD9AD1B865E6727CD79BCBA69B7] - 20/01/2014 - 10:49:29 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-40DD444D.pf O45 - LFCP:[MD5.07314A1C8F1D1EB34828886017BECAA1] - 20/01/2014 - 10:49:29 ---A- - C:\Windows\Prefetch\MCODS.EXE-8D46D95B.pf O45 - LFCP:[MD5.EBB7B0BB349DCB4AE5B4EA46B013EAA5] - 20/01/2014 - 10:49:34 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf O45 - LFCP:[MD5.5B365AE21EA8775DC434632590638FF1] - 20/01/2014 - 10:49:37 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-57D17DAF.pf O45 - LFCP:[MD5.288E0444A18107F6091699B7AF7FD050] - 20/01/2014 - 10:49:43 ---A- - C:\Windows\Prefetch\CFIWMXSVCS64.EXE-E079CBBA.pf O45 - LFCP:[MD5.3FBA029DA3D0F34F77AADE1E078B95CF] - 20/01/2014 - 10:49:43 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-6768A320.pf O45 - LFCP:[MD5.567C0B06F584581FDC7625F1F995C3A3] - 20/01/2014 - 10:49:46 ---A- - C:\Windows\Prefetch\SPLWOW64.EXE-297C4568.pf O45 - LFCP:[MD5.5093F5727CBB1CF1A88A66F639D0009C] - 20/01/2014 - 10:49:47 ---A- - C:\Windows\Prefetch\CFSVCS.EXE-35E839CF.pf O45 - LFCP:[MD5.5E39DA7C57CB2F562BC4822EDAE0B135] - 20/01/2014 - 10:49:47 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-B0F8131B.pf O45 - LFCP:[MD5.2D5624DEC5CEC525A5397685C9D1436A] - 20/01/2014 - 10:49:48 ---A- - C:\Windows\Prefetch\PRINTISOLATIONHOST.EXE-E0CD10A9.pf O45 - LFCP:[MD5.4909BAA1FADF2AD0A36218DF20FF5F32] - 20/01/2014 - 10:49:58 ---A- - C:\Windows\Prefetch\CNQMUPDT.EXE-08D1DC4E.pf O45 - LFCP:[MD5.807331C3760EDE79816E4469884CCC10] - 20/01/2014 - 10:49:58 ---A- - C:\Windows\Prefetch\MCHOST.EXE-7C07A572.pf O45 - LFCP:[MD5.8D5A5045E2AAD727C53AFE4A15526C17] - 20/01/2014 - 10:50:01 ---A- - C:\Windows\Prefetch\CNQMSWCS.EXE-69BCF625.pf O45 - LFCP:[MD5.F34246D9A6D3975D2A563E77F7CDD874] - 20/01/2014 - 10:50:06 ---A- - C:\Windows\Prefetch\NASVC.EXE-B158719F.pf O45 - LFCP:[MD5.C23FD6089041215FF0A37906248EE257] - 20/01/2014 - 10:50:39 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf O45 - LFCP:[MD5.812C5E3AE7C9360732FDA8AFD848A072] - 20/01/2014 - 10:50:53 ---A- - C:\Windows\Prefetch\UNS.EXE-E6E49771.pf O45 - LFCP:[MD5.6E06F56DACEF77E302526B36405EDFAA] - 20/01/2014 - 10:51:40 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf O45 - LFCP:[MD5.EF075C16FC47C61A2AFC1B7B8E89A6AE] - 20/01/2014 - 10:51:57 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf O45 - LFCP:[MD5.2C3379AA5B43F746916155C0FF303465] - 20/01/2014 - 10:52:44 ---A- - C:\Windows\Prefetch\MCSYNC.EXE-A4B62562.pf O45 - LFCP:[MD5.F8657FCB570B3855B9AE559F73904855] - 20/01/2014 - 10:52:46 ---A- - C:\Windows\Prefetch\MCHLP32.EXE-1A7D6B0E.pf O45 - LFCP:[MD5.595DEF5E241D530F9942D3E56CF7F477] - 20/01/2014 - 10:52:56 ---A- - C:\Windows\Prefetch\MCUPDATE.EXE-3BDA89ED.pf O45 - LFCP:[MD5.91BBB320CF31B87F95515ECC5C19FFA6] - 20/01/2014 - 10:53:05 ---A- - C:\Windows\Prefetch\SAUI.EXE-5CA19F3E.pf O45 - LFCP:[MD5.D744C37150077D40330D69D8AF45F697] - 20/01/2014 - 10:53:06 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf O45 - LFCP:[MD5.3E2DD3F3F64FB929C72FFF475543BAC2] - 20/01/2014 - 10:53:10 ---A- - C:\Windows\Prefetch\WLXPHOTOGALLERY.EXE-F184FD87.pf O45 - LFCP:[MD5.BA57481DE327081BAC74A53817AF1D65] - 20/01/2014 - 10:53:56 ---A- - C:\Windows\Prefetch\ONECLICKSTARTER.EXE-6F17EE39.pf O45 - LFCP:[MD5.CED3193A7739293AD716E4A0AB5912F7] - 20/01/2014 - 10:54:10 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-B95715F5.pf O45 - LFCP:[MD5.B557F06B23B5072EE3A94FECD67FDCE2] - 20/01/2014 - 10:55:03 ---A- - C:\Windows\Prefetch\SC.EXE-945D79AE.pf O45 - LFCP:[MD5.01CB318950E38B37A9DAA561D4A47E3B] - 20/01/2014 - 10:56:48 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf O45 - LFCP:[MD5.FB2CA95375417BC50B05D622704F7A29] - 20/01/2014 - 10:56:52 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf ~ Prefetcher: 131 Scanned in 00mn 03s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll ~ LSA: 9 Scanned in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\mfefirek.sys . (.McAfee, Inc. - McAfee Core Firewall Engine Driver.) -- C:\Windows\System32\Drivers\mfefirek.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\mfehidk.sys . (.McAfee, Inc. - McAfee Link Driver.) -- C:\Windows\System32\Drivers\mfehidk.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ CSB: 15 Scanned in 00mn 00s ---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ TDSD: 2 Scanned in 00mn 01s ---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ MSCP: 2 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "DisableTaskMgr"=0 O55 - MWPS:[HKLM\...\Policies\System] - "DisableRegistryTools"=0 ~ MWPS: 16 Scanned in 00mn 00s ---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=145 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoRun"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoControlPanel"=0 ~ MWPE Keys: 4 Scanned in 00mn 00s ---\\ Liste des pilotes du système (SDL) (O58) O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088] O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [339536] O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\Drivers\adpu320.sys [182864] O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\Drivers\aliide.sys [15440] O58 - SDL:[MD5.D4121AE6D0C0E7E13AA221AA57EF2D49] - 11/03/2011 - 07:41:12 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [107904] O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\System32\Drivers\amdsbs.sys [194128] O58 - SDL:[MD5.540DAF1CEA6094886D72126FD7C33048] - 11/03/2011 - 07:41:12 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [27008] O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [87632] O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [97856] O58 - SDL:[MD5.6B91E6D483AADB3FC4E13E2355200611] - 30/10/2012 - 23:51:55 ---A- . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\Drivers\aswKbd.sys [21136] O58 - SDL:[MD5.9C2BEA3957EFFD45F352F0938DFB3721] - 02/01/2014 - 12:07:05 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\System32\Drivers\aswMonFlt.sys [78648] O58 - SDL:[MD5.679712B7A353EE665B9301592164A172] - 19/11/2013 - 09:39:37 ---A- . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\Drivers\aswRdr2.sys [92544] O58 - SDL:[MD5.C04F7B373881009D7994D9BF55D24AB4] - 19/11/2013 - 09:39:38 ---A- . (...) -- C:\Windows\System32\Drivers\aswRvrt.sys [65776] O58 - SDL:[MD5.52B5F8FAF7E78C02D26B0B6E3A05F596] - 02/01/2014 - 12:07:05 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\Drivers\aswSnx.sys [1034464] O58 - SDL:[MD5.251360C2FCA22BAFE0583314B3262F98] - 02/01/2014 - 12:07:05 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\Drivers\aswSP.sys [422216] O58 - SDL:[MD5.AAB5F5336EDBB5D99CC7E1A9F4D8F63F] - 02/01/2014 - 12:07:43 ---A- . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\Drivers\aswstm.sys [79672] O58 - SDL:[MD5.90399625F341AB76BA4B85A5E860EB1F] - 02/01/2014 - 12:07:05 ---A- . (...) -- C:\Windows\System32\Drivers\aswVmm.sys [207904] O58 - SDL:[MD5.B2931C83CFB12A3223A47B180473AE1A] - 17/12/2010 - 18:46:46 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\System32\Drivers\athrx.sys [2675712] O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\System32\Drivers\b57nd60a.sys [270848] O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltLo.sys [18432] O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [8704] O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\BrSerId.sys [286720] O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\Drivers\BrSerWdm.sys [47104] O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\Drivers\BrUsbMdm.sys [14976] O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\Drivers\BrUsbSer.sys [14720] O58 - SDL:[MD5.2347ABBD13BADA65826FDAB4CAAFE357] - 18/10/2010 - 13:14:02 ---A- . (.Atheros - Filter Driver for the Bluetooth.) -- C:\Windows\System32\Drivers\btfilter.sys [42096] O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbda.sys [468480] O58 - SDL:[MD5.45B5A89DC41577282E5BF41B1165EA71] - 22/06/2012 - 06:40:58 ---A- . (.McAfee, Inc. - McAfee Personal Firewall IDS Plugin.) -- C:\Windows\System32\Drivers\cfwids.sys [69672] O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\cmdide.sys [17488] O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496] O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbda.sys [3286016] O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232] O58 - SDL:[MD5.B6AC71AAA2B10848F57FC49D55A651AF] - 17/09/2009 - 11:54:54 ---A- . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\Drivers\HECIx64.sys [56344] O58 - SDL:[MD5.A894FB2CAE6A29F5D9C8EDA47B074623] - 20/04/2012 - 15:40:58 ---A- . (.McAfee, Inc. - McAfee HIP IPS Driver.) -- C:\Windows\System32\Drivers\HipShieldK.sys [196440] O58 - SDL:[MD5.39D2ABCD392F3D8A6DCE7B60AE7B8EFC] - 21/11/2010 - 04:23:47 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [78720] O58 - SDL:[MD5.A5F72BB0D024E7E463344105BE613AE4] - 27/04/2010 - 15:57:04 ---A- . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\Drivers\iaStor.sys [540696] O58 - SDL:[MD5.AAAF44DB3BD0B9D1FB6969B23ECC8366] - 11/03/2011 - 07:41:26 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\Drivers\iaStorV.sys [410496] O58 - SDL:[MD5.C02B4A9988A5BE86348C74D6F8CC7E81] - 12/01/2011 - 09:18:38 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdkmd64.sys [10627392] O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [44112] O58 - SDL:[MD5.DD587A55390ED2295BCE6D36AD567DA9] - 26/02/2010 - 14:32:12 ---A- . (.Intel Corporation - Intel(R) Turbo Boost Technology Driver.) -- C:\Windows\System32\Drivers\Impcd.sys [158976] O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_fc.sys [114752] O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [106560] O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [65600] O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [115776] O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\System32\Drivers\megasas.sys [35392] O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [284736] O58 - SDL:[MD5.B574522827D94126C03975FD53F0B26B] - 22/06/2012 - 06:34:00 ---A- . (.McAfee, Inc. - Access Protection Filter Driver.) -- C:\Windows\System32\Drivers\mfeapfk.sys [169320] O58 - SDL:[MD5.B393753ECE9A9E2307CB1984ACF3DA9D] - 22/06/2012 - 06:34:22 ---A- . (.McAfee, Inc. - Anti-Virus File System Filter Driver.) -- C:\Windows\System32\Drivers\mfeavfk.sys [300392] O58 - SDL:[MD5.9E52BEE05AC7D251633E4FA1B291C111] - 22/06/2012 - 06:37:04 ---A- . (.McAfee, Inc. - McAfee Driver Cleaning Driver.) -- C:\Windows\System32\Drivers\mfeclnk.sys [10288] O58 - SDL:[MD5.C52A1ABF03DD219375EA0F6A8BE941C3] - 22/06/2012 - 06:35:02 ---A- . (.McAfee, Inc. - McAfee Core Firewall Engine Driver.) -- C:\Windows\System32\Drivers\mfefirek.sys [513456] O58 - SDL:[MD5.7092A6C6158FC4F5AA39EBEB9D5AF03D] - 22/06/2012 - 06:36:12 ---A- . (.McAfee, Inc. - McAfee Link Driver.) -- C:\Windows\System32\Drivers\mfehidk.sys [752672] O58 - SDL:[MD5.D2A941C82A0A9227CD6F47AD40A40F69] - 22/06/2012 - 06:36:54 ---A- . (.McAfee, Inc. - McAfee Code Analysis Driver.) -- C:\Windows\System32\Drivers\mferkdet.sys [106112] O58 - SDL:[MD5.1631E2DA6C4B47D97ECA94842836592E] - 22/06/2012 - 06:38:16 ---A- . (.McAfee, Inc. - Anti-Virus Mini-Firewall Driver.) -- C:\Windows\System32\Drivers\mfewfpk.sys [335784] O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [51264] O58 - SDL:[MD5.0A92CB65770442ED0DC44834632F66AD] - 11/03/2011 - 07:41:34 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [148352] O58 - SDL:[MD5.DAB0E87525C10052BF65F06152F37E4A] - 11/03/2011 - 07:41:34 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [166272] O58 - SDL:[MD5.91111CEBBDE8015E822C46120ED9537C] - 08/02/2011 - 18:07:00 ---A- . (.TOSHIBA Corporation - TOSHIBA Universal Camera Filter Driver.) -- C:\Windows\System32\Drivers\PGEffect.sys [38096] O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\Drivers\ql2300.sys [1524816] O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\ql40xx.sys [128592] O58 - SDL:[MD5.7B04C9843921AB1F695FB395422C5360] - 14/05/2007 - 16:06:18 ---A- . (.Research In Motion Limited - BlackBerry Device Driver.) -- C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520] O58 - SDL:[MD5.6D3C7E7D82D3DC92DC2A8B0DF9F20F8A] - 13/01/2011 - 19:58:30 ---A- . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver.) -- C:\Windows\System32\Drivers\Rt64win7.sys [413800] O58 - SDL:[MD5.16C324E22208E6E8336C3F2DA14CFE2D] - 13/01/2011 - 12:44:26 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\RTKVHD64.sys [2712680] O58 - SDL:[MD5.BE29B0A3AC1E8BD02FFAB8CEE86BADFA] - 29/10/2010 - 15:11:42 ---A- . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/Vista/Win7.) -- C:\Windows\System32\Drivers\RtsUStor.sys [250984] O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 10/06/2009 - 21:37:19 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [23040] O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 14/07/2009 - 02:45:45 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [43584] O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 14/07/2009 - 02:45:46 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [80464] O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 14/07/2009 - 02:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656] O58 - SDL:[MD5.F5B46DF59FEAA48A442AED7EEB754D4B] - 03/02/2011 - 18:59:06 ---A- . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\Drivers\SynTP.sys [1413680] O58 - SDL:[MD5.FD542B661BD22FA69CA789AD0AC58C29] - 30/07/2009 - 19:22:04 ---A- . (.TOSHIBA Corporation. - TOSHIBA ODD Writing Driver for x64..) -- C:\Windows\System32\Drivers\tdcmdpst.sys [27784] O58 - SDL:[MD5.8021F63311797085949FA387F7C83583] - 17/06/2009 - 11:01:00 ---A- . (.TOSHIBA Corporation - TOSHIBA Bluetooth Port Emulation Driver.) -- C:\Windows\System32\Drivers\tosporte.sys [54664] O58 - SDL:[MD5.09CF82C0068C7CFF7E2B3797BE7F5CC2] - 23/02/2011 - 10:03:42 ---A- . (.TOSHIBA CORPORATION - Bluetooth RF Bus Driver.) -- C:\Windows\System32\Drivers\tosrfbd.sys [291120] O58 - SDL:[MD5.90F0B1745ABF13F44C2A6ED79F7CE9FB] - 11/11/2010 - 09:27:00 ---A- . (.TOSHIBA Corporation - Bluetooth RFBNEP Driver.) -- C:\Windows\System32\Drivers\tosrfbnp.sys [50864] O58 - SDL:[MD5.9E4E65EA51E34647340BD6007467AC54] - 29/11/2010 - 10:47:00 ---A- . (.TOSHIBA Corporation - Bluetooth RFCOMM Driver.) -- C:\Windows\System32\Drivers\tosrfcom.sys [82224] O58 - SDL:[MD5.F5E3AC4CBCD154EE80849B21887FD0B0] - 18/06/2010 - 15:45:00 ---A- . (.TOSHIBA Corporation - TOSHIBA Bluetooth EC Driver.) -- C:\Windows\System32\Drivers\tosrfec.sys [18872] O58 - SDL:[MD5.7D2467D3EB9BAA4B69AE4A28C83DE57A] - 30/08/2010 - 09:48:00 ---A- . (.TOSHIBA Corporation. - Bluetooth HID Driver from TOSHIBA.) -- C:\Windows\System32\Drivers\Tosrfhid.sys [94528] O58 - SDL:[MD5.B6FDC3C76FFE9C5171EEA9C37EA367C2] - 24/07/2009 - 10:33:00 ---A- . (.TOSHIBA Corporation. - Bluetooth BNEP Driver.) -- C:\Windows\System32\Drivers\tosrfnds.sys [26472] O58 - SDL:[MD5.7052B10E54B48AF12BD5606596A8E039] - 26/04/2010 - 10:48:00 ---A- . (.TOSHIBA Corporation - Bluetooth Audio Driver (WDM).) -- C:\Windows\System32\Drivers\TosRfSnd.sys [63488] O58 - SDL:[MD5.7A0048693F98460FF537BE31C741B927] - 27/01/2011 - 14:27:04 ---A- . (.TOSHIBA CORPORATION - Bluetooth USB Miniport Driver.) -- C:\Windows\System32\Drivers\tosrfusb.sys [67384] O58 - SDL:[MD5.550B567F9364D8F7684C3FB3EA665A72] - 14/07/2009 - 15:31:18 ---A- . (.TOSHIBA Corporation - TOSHIBA ACPI-Based Value Added Logical and General Purpose Devi.) -- C:\Windows\System32\Drivers\TVALZ_O.SYS [26840] O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [17488] O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [161872] ~ Drivers: 16 Scanned in 00mn 17s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC: 17/01/2014 - 10:57:57 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\libs\avastwrc.js [76379] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\libs\csl.parser.js [208874] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\libs\dateFormat.js [3948] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\libs\jquery-1.5.2.js [227601] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\libs\jquery.mustache.js [15912] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\libs\lodash.js [230338] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\libs\pbj.js [8411] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\libs\protobuf.js [61408] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\libs\query.js [21181] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\libs\wrc_gpb.js [37491] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\mocks\empty.js [0] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\mocks\ga.js [444] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\mocks\omniture.js [778] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\scripts\bal.js [55839] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\scripts\ial.js [32492] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\scripts\options.js [4581] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\scripts\templates.js [15571] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\css\extension.css [56833] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\css\settings.css [2673] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\arrow.png [1550] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\avast-logo.png [3288] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\avastlogo@2x.png [4437] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\fblike.png [3327] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\flattr.png [3594] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\google+.png [3615] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\grey0-16.png [1441] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_bug.png [357] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icnclose_small.png [470] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icnthumbdownsmall.png [260] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icnthumbdownsmall@2x.png [470] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icnthumbsmall.png [259] O61 - LFC: 17/01/2014 - 10:57:58 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icnthumbsmall@2x.png [436] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_bug@2x.png [665] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_check.png [227] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_check@2x.png [358] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_checkbig.png [2066] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_checkbig@2x.png [4506] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_close.png [463] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_close@2x.png [724] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_close_small.png [470] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_close_small@2x.png [875] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_exclamationmark.png [144] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_exclamationmark@2x.png [182] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_extensiontop.png [1052] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_extensiontop_green.png [1161] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_extensiontop_orange.png [1125] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_extensiontop_red.png [1138] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_eye.png [343] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_eye@2x.png [646] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_interm.png [159] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_maleware.png [367] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_maleware@2x.png [646] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_norating_big.png [2314] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_norating_big2.png [2268] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_norating_big2@2x.png [5055] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_norating_big@2x.png [5071] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_rates.png [215] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_rates@2x.png [264] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_siteforward.png [1952] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_siteforward@2x.png [4424] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_thumbdown_big.png [2227] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_thumbdown_big@2x.png [4932] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_thumblearn.png [287] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_thumblearn@2x.png [450] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_thumbright_big.png [2264] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_thumbright_big@2x.png [4963] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_thumbup_big.png [2233] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_thumbup_big@2x.png [4889] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_warning.png [1812] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icn_warning@2x.png [4160] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icon128.png [7703] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icon256.png [12818] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icon48.png [2120] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\icon64.png [2962] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\inshare.png [4302] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\logo_avast.png [1980] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\logo_avastblack.png [801] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\logo_avastblack@2x.png [1580] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\logo_avastcolor.png [3559] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\logo_avastcolor@2x.png [7628] O61 - LFC: 17/01/2014 - 10:57:59 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\logo_avastsmall.png [503] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\logo_avastsmall@2x.png [974] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\pin.png [3658] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\sas_close.png [1200] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\sas_conf.png [580] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\sas_drop.png [307] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\sas_help.png [532] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\sas_logo.png [836] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\se_icn_green.png [566] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\se_icn_grey.png [619] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\se_icn_norating.png [1825] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\se_icn_orange.png [413] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\se_icn_red.png [481] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\se_icn_thumbdown.png [1733] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\se_icn_thumbneutral.png [1729] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\se_icn_thumbup.png [1690] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switcher_dotgreen.png [909] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switcher_dotgreen@2x.png [1693] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switcher_dotorange.png [812] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switcher_dotorange@2x.png [1638] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switcher_dotred.png [862] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switcher_dotred@2x.png [1683] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switcher_greenbg.png [559] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switcher_greenbg@2x.png [1057] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switcher_orangebg.png [556] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switcher_orangebg@2x.png [1082] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switcher_redbg.png [557] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switcher_redbg@2x.png [1023] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switchersmall_dotgreen.png [679] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switchersmall_dotgreen@2x.png [1274] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switchersmall_dotred.png [653] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\switchersmall_dotred@2x.png [1288] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\tumblr.png [4207] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\tweet.png [3963] O61 - LFC: 17/01/2014 - 10:58:00 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\vklike.png [3571] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\ar\messages.json [27994] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\be\messages.json [15537] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\bg\messages.json [28787] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\bn\messages.json [30898] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\ca\messages.json [12822] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\cs\messages.json [14929] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\da\messages.json [13013] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\de\messages.json [13720] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\el\messages.json [31394] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\en\messages.json [12264] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\en_GB\messages.json [12264] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\es\messages.json [13365] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\et\messages.json [13075] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\fa\messages.json [18274] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\fi\messages.json [13523] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\fr\messages.json [13997] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\he\messages.json [24295] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\hi\messages.json [26285] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\hr\messages.json [13307] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\hu\messages.json [15880] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\common\skin\img\xinglike.png [3932] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\manifest.json [1461] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\options.html [902] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\scripts\anchor.js [17600] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\scripts\aos.js [6325] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\scripts\background.js [16678] O61 - LFC: 17/01/2014 - 10:58:01 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\scripts\extension.js [1542] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\id\messages.json [12776] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\it\messages.json [13165] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\ja\messages.json [21031] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\ko\messages.json [18518] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\lt\messages.json [14134] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\lv\messages.json [13240] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\ms\messages.json [12792] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\nb\messages.json [13084] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\nl\messages.json [12938] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\pl\messages.json [14645] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\pt_BR\messages.json [13567] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\pt_PT\messages.json [13298] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\ro\messages.json [14161] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\ru\messages.json [31830] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\sk\messages.json [14688] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\sl\messages.json [12575] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\sr\messages.json [13113] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\sv\messages.json [13695] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\th\messages.json [19485] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\tr\messages.json [13840] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\uk\messages.json [32674] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\ur\messages.json [15078] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\vi\messages.json [17641] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\zh_CN\messages.json [15452] O61 - LFC: 17/01/2014 - 10:58:02 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2013.75_0\_locales\zh_TW\messages.json [16139] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\bg\messages.json [1585] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\ca\messages.json [682] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\cs\messages.json [743] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\da\messages.json [665] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\de\messages.json [714] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\el\messages.json [1764] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\en\messages.json [611] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\en_GB\messages.json [611] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\es\messages.json [713] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\es_419\messages.json [671] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\et\messages.json [615] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\fi\messages.json [738] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\fil\messages.json [672] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\fr\messages.json [721] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\hi\messages.json [1406] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\hr\messages.json [662] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\hu\messages.json [766] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\craw_background.js [125750] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\craw_window.js [155992] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\css\craw_window.css [1741] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\css\craw_window.css~ [1702] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\html\craw_window.html [810] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\images\icon_128.png [9460] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\images\icon_16.png [702] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\images\topbar_floating_button.png [160] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\images\topbar_floating_button_close.png [252] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\images\topbar_floating_button_hover.png [160] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\images\topbar_floating_button_maximize.png [166] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\images\topbar_floating_button_pressed.png [160] O61 - LFC: 17/01/2014 - 10:58:03 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\manifest.json [1275] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\id\messages.json [612] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\it\messages.json [626] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\ja\messages.json [1181] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\ko\messages.json [892] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\lt\messages.json [706] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\lv\messages.json [735] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\nb\messages.json [665] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\nl\messages.json [630] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\pl\messages.json [701] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\pt_BR\messages.json [701] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\pt_PT\messages.json [702] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\ro\messages.json [700] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\ru\messages.json [1296] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\sk\messages.json [739] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\sl\messages.json [647] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\sr\messages.json [1507] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\sv\messages.json [687] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\th\messages.json [1626] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\tr\messages.json [728] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\uk\messages.json [1403] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\vi\messages.json [798] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\zh_CN\messages.json [760] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\_locales\zh_TW\messages.json [814] O61 - LFC: 17/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\GPUCache\index [262512] O61 - LFC: 17/01/2014 - 10:58:39 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\34DXRME2\justice0-a.akamaihd.net\dealspot.sol [53] O61 - LFC: 17/01/2014 - 10:58:40 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\34DXRME2\macromedia.com\support\flashplayer\sys\settings.sol [3368] O61 - LFC: 17/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.1.377\manifest.fingerprint [66] O61 - LFC: 17/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.1.377\manifest.json [845] O61 - LFC: 17/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12332\_platform_specific\x86_64\pnacl_public_pnacl_json [439] O61 - LFC: 17/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12332\_platform_specific\x86_64\pnacl_public_x86_64_ld_nexe [2184792] O61 - LFC: 17/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12332\_platform_specific\x86_64\pnacl_public_x86_64_libcrt_platform_a [5674] O61 - LFC: 17/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12332\_platform_specific\x86_64\pnacl_public_x86_64_libgcc_a [48668] O61 - LFC: 17/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12332\_platform_specific\x86_64\pnacl_public_x86_64_libgcc_eh_a [234936] O61 - LFC: 17/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12332\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_a [181680] O61 - LFC: 17/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12332\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_dummy_a [1774] O61 - LFC: 17/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12332\_platform_specific\x86_64\pnacl_public_x86_64_pnacl_llc_nexe [9155768] O61 - LFC: 17/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12332\manifest.fingerprint [66] O61 - LFC: 17/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12332\manifest.json [572] O61 - LFC: 17/01/2014 - 11:02:33 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00364.xml [1602] O61 - LFC: 17/01/2014 - 11:02:33 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00364\PRInfo00364.mig\work\cpx\WorkPageID1.cpx [3402] O61 - LFC: 17/01/2014 - 11:02:33 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00364\PRInfo00364.mig\work\docseq.cpx [232] O61 - LFC: 17/01/2014 - 11:02:33 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00364\PRInfo00364.mig\work\imageInfo.xml [113356] O61 - LFC: 17/01/2014 - 11:02:33 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00364\PRInfo00364.mig\work\layoutInfo.xml [279] O61 - LFC: 17/01/2014 - 11:02:33 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00364\PRInfo00364.mig\work\srcinfo.xml [828] O61 - LFC: 17/01/2014 - 11:02:33 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00364\PRInfo00364.png [67918] O61 - LFC: 17/01/2014 - 11:02:34 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00365.xml [1840] O61 - LFC: 17/01/2014 - 11:02:34 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00365\PRInfo00365.mig\work\cpx\WorkPageID1.cpx [9313] O61 - LFC: 17/01/2014 - 11:02:34 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00365\PRInfo00365.mig\work\docseq.cpx [232] O61 - LFC: 17/01/2014 - 11:02:34 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00365\PRInfo00365.mig\work\imageInfo.xml [378205] O61 - LFC: 17/01/2014 - 11:02:34 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00365\PRInfo00365.mig\work\layoutInfo.xml [490] O61 - LFC: 17/01/2014 - 11:02:34 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00365\PRInfo00365.mig\work\srcinfo.xml [2957] O61 - LFC: 17/01/2014 - 11:02:34 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00365\PRInfo00365.png [60692] O61 - LFC: 17/01/2014 - 11:02:42 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Skype\shared_httpfe\Q1389954518M294242444.dat [5778] O61 - LFC: 18/01/2014 - 10:57:56 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Archived History [35819520] O61 - LFC: 18/01/2014 - 10:57:57 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Archived History-journal [16384] O61 - LFC: 18/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_2 [1056768] O61 - LFC: 18/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_3 [4202496] O61 - LFC: 18/01/2014 - 10:58:05 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_apps.facebook.com_0.localstorage [8192] O61 - LFC: 18/01/2014 - 10:58:05 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_apps.facebook.com_0.localstorage-journal [8768] O61 - LFC: 18/01/2014 - 10:58:05 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage [24576] O61 - LFC: 18/01/2014 - 10:58:05 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage-journal [16384] O61 - LFC: 18/01/2014 - 10:58:37 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\34DXRME2\cc1.midasplayer.com\swf\CCMain.swf\giveLifeX.sol [262] O61 - LFC: 18/01/2014 - 10:58:37 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\34DXRME2\cc1.midasplayer.com\swf\CCMain.swf\pwf_giveHelp.sol [233] O61 - LFC: 18/01/2014 - 10:58:37 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\34DXRME2\cc1.midasplayer.com\swf\CCMain.swf\pwf_livesPop.sol [76] O61 - LFC: 18/01/2014 - 10:58:37 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\34DXRME2\cc1.midasplayer.com\swf\CCMain.swf\pwf_movesPop.sol [76] O61 - LFC: 18/01/2014 - 10:58:37 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\34DXRME2\cc1.midasplayer.com\swf\CCMain.swf\receivedBoosterGifts.sol [1858] O61 - LFC: 18/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\34DXRME2\www.ajaxcdn.org\swf.swf\dm_cookie.sol [416] O61 - LFC: 18/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Shortcuts [90112] O61 - LFC: 18/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal [16384] O61 - LFC: 18/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity [1919] O61 - LFC: 18/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom [6076596] O61 - LFC: 18/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom Prefix Set [1342054] O61 - LFC: 18/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Safe Browsing Csd Whitelist [135444] O61 - LFC: 18/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Safe Browsing Download [933124] O61 - LFC: 18/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Safe Browsing Download Whitelist [19428] O61 - LFC: 18/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Safe Browsing Extension Blacklist [6920] O61 - LFC: 18/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Safe Browsing IP Blacklist [48] O61 - LFC: 18/01/2014 - 10:58:56 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Common\BaseUnitSettings.xml [671] O61 - LFC: 18/01/2014 - 10:58:57 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Common\DetailViewMovieSettings.xml [258] O61 - LFC: 19/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Web Data [184320] O61 - LFC: 19/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Web Data.temp [184320] O61 - LFC: 19/01/2014 - 10:58:47 ---A- . (...) -- C:\Users\Laura\AppData\Local\Toshiba\TOPI.exe_Url_4kwdczwgvaas1dp4xf1yp2hz1qx2pecb\4.0.1.0\user.config [1799] O61 - LFC: 19/01/2014 - 10:58:48 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\AddOn\Calendar\EventCalendarSettings.xml [701] O61 - LFC: 19/01/2014 - 10:58:56 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\AddOn\Cpp\PremiumMaterialSetting.xml [373] O61 - LFC: 19/01/2014 - 10:58:56 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\AddOn\Person\PersonSettings.xml [382] O61 - LFC: 19/01/2014 - 10:58:56 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\AddOn\Presentation\ProposalHistory.xml [8735] O61 - LFC: 19/01/2014 - 10:58:56 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\AddOn\Presentation\WorkLists.xml [102950] O61 - LFC: 19/01/2014 - 10:58:57 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Common\FolderViewUnitSettings.xml [146] O61 - LFC: 19/01/2014 - 11:00:20 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Common\TreeViewUnitSettings.xml [1766] O61 - LFC: 19/01/2014 - 11:00:20 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\ImageList.xml [118634] O61 - LFC: 19/01/2014 - 11:02:34 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00367\PRInfo00367.mig\work\cpx\WorkPageID1.cpx [13754] O61 - LFC: 19/01/2014 - 11:02:34 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00367\PRInfo00367.mig\work\docseq.cpx [232] O61 - LFC: 19/01/2014 - 11:02:35 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00367.xml [1780] O61 - LFC: 19/01/2014 - 11:02:35 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00367\PRInfo00367.mig\work\imageInfo.xml [492483] O61 - LFC: 19/01/2014 - 11:02:35 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00367\PRInfo00367.mig\work\layoutInfo.xml [658] O61 - LFC: 19/01/2014 - 11:02:35 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00367\PRInfo00367.mig\work\srcinfo.xml [4699] O61 - LFC: 19/01/2014 - 11:02:35 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00367\PRInfo00367.png [48315] O61 - LFC: 19/01/2014 - 11:02:35 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00368.xml [953] O61 - LFC: 19/01/2014 - 11:02:35 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00368\PRInfo00368.mig\work\cpx\WorkPageID1.cpx [1789] O61 - LFC: 19/01/2014 - 11:02:35 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00368\PRInfo00368.mig\work\docseq.cpx [232] O61 - LFC: 19/01/2014 - 11:02:35 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00368\PRInfo00368.mig\work\imageInfo.xml [38149] O61 - LFC: 19/01/2014 - 11:02:35 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00368\PRInfo00368.mig\work\layoutInfo.xml [309] O61 - LFC: 19/01/2014 - 11:02:35 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00368\PRInfo00368.mig\work\srcinfo.xml [583] O61 - LFC: 19/01/2014 - 11:02:35 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00368\PRInfo00368.png [41004] O61 - LFC: 19/01/2014 - 11:02:36 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00369.xml [947] O61 - LFC: 19/01/2014 - 11:02:36 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00369\PRInfo00369.mig\work\CalendarPrintDetailSettings.xml [5299] O61 - LFC: 19/01/2014 - 11:02:36 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00369\PRInfo00369.mig\work\cpx\WorkPageID1.cpx [25565] O61 - LFC: 19/01/2014 - 11:02:36 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00369\PRInfo00369.mig\work\docseq.cpx [232] O61 - LFC: 19/01/2014 - 11:02:36 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00369\PRInfo00369.mig\work\imageInfo.xml [37736] O61 - LFC: 19/01/2014 - 11:02:36 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00369\PRInfo00369.mig\work\layoutInfo.xml [140] O61 - LFC: 19/01/2014 - 11:02:36 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00369\PRInfo00369.mig\work\srcinfo.xml [228] O61 - LFC: 19/01/2014 - 11:02:36 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Canon\My Image Garden\Showcase\PRInfo00369\PRInfo00369.png [45410] O61 - LFC: 19/01/2014 - 11:02:37 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Microsoft\Spelling\fr-FR\default.acl [2] O61 - LFC: 19/01/2014 - 11:02:37 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Microsoft\Spelling\fr-FR\default.dic [2] O61 - LFC: 19/01/2014 - 11:02:37 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Microsoft\Spelling\fr-FR\default.exc [2] O61 - LFC: 19/01/2014 - 11:02:48 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\TuneUp Software\TU2013\Dashboard\IntegratorStates_fr-FR.xml [4887] O61 - LFC: 19/01/2014 - 11:02:48 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\ZHP\ZHPADSReport.txt [351] =>.Nicolas Coolman O61 - LFC: 19/01/2014 - 11:02:48 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\ZHP\ZHPDiag.txt [389985] =>.Nicolas Coolman O61 - LFC: 20/01/2014 - 10:57:57 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Cookies [1099776] O61 - LFC: 20/01/2014 - 10:57:57 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Cookies-journal [16384] O61 - LFC: 20/01/2014 - 10:57:57 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Current Session [1164] O61 - LFC: 20/01/2014 - 10:57:57 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Current Tabs [862] O61 - LFC: 20/01/2014 - 10:57:57 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG [0] O61 - LFC: 20/01/2014 - 10:57:57 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG [0] O61 - LFC: 20/01/2014 - 10:57:57 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old [0] O61 - LFC: 20/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Favicons [8325120] O61 - LFC: 20/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Favicons-journal [16384] O61 - LFC: 20/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\CURRENT [16] O61 - LFC: 20/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\LOG [145] O61 - LFC: 20/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\LOG.old [145] O61 - LFC: 20/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\MANIFEST-000021 [116] O61 - LFC: 20/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_0 [45056] O61 - LFC: 20/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_1 [270336] O61 - LFC: 20/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\History [21245952] O61 - LFC: 20/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache [198573] O61 - LFC: 20/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\History-journal [16384] O61 - LFC: 20/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Last Session [773] O61 - LFC: 20/01/2014 - 10:58:04 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Last Tabs [518] O61 - LFC: 20/01/2014 - 10:58:09 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor [174080] O61 - LFC: 20/01/2014 - 10:58:09 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor-journal [16384] O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\QuotaManager [15360] O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\QuotaManager-journal [8768] O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000775.ldb [146] O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000777.ldb [399] O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000780.ldb [399] O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000783.ldb [5546] O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Session Storage\CURRENT [16] O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG [270] O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG.old [269] O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000782 [400] =>.Google Inc O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Top Sites [770048] O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Top Sites-journal [16384] O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Visited Links [2097040] O61 - LFC: 20/01/2014 - 10:58:41 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Local State [55911] O61 - LFC: 20/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Safe Browsing Cookies [6144] O61 - LFC: 20/01/2014 - 10:58:42 ---A- . (...) -- C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Safe Browsing Cookies-journal [4640] O61 - LFC: 20/01/2014 - 10:58:44 --HA- . (...) -- C:\Users\Laura\AppData\Local\IconCache.db [2078222] O61 - LFC: 20/01/2014 - 10:58:46 ---A- . (...) -- C:\Users\Laura\AppData\Local\Temp\Twain001.Mtx [3] O61 - LFC: 20/01/2014 - 10:58:46 ---A- . (...) -- C:\Users\Laura\AppData\Local\Temp\Twunk001.MTX [156] O61 - LFC: 20/01/2014 - 10:58:46 ---A- . (...) -- C:\Users\Laura\AppData\Local\Temp\Twunk002.MTX [0] O61 - LFC: 20/01/2014 - 10:58:46 ---A- . (...) -- C:\Users\Laura\AppData\Local\Toshiba\BluetoothStack\V1.0\SDP00337.sdb [3473] O61 - LFC: 20/01/2014 - 10:58:47 ---A- . (...) -- C:\Users\Laura\AppData\Local\Windows Live\uxcore_WLXPhotoGallery_00.etl [12288] O61 - LFC: 20/01/2014 - 10:58:47 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\AVAST Software\Avast\Cache\HTMLayout.xml [1606] O61 - LFC: 20/01/2014 - 11:02:37 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\security.config.cch [16292] O61 - LFC: 20/01/2014 - 11:02:39 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Skype\shared.xml [63470] O61 - LFC: 20/01/2014 - 11:02:39 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Skype\shared_dynco\dc.db [1978368] O61 - LFC: 20/01/2014 - 11:02:44 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Toshiba\DynamicIcon\1\1.xml [1349] O61 - LFC: 20/01/2014 - 11:02:44 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Toshiba\DynamicIcon\dynamicicon.xml [15122] O61 - LFC: 20/01/2014 - 11:02:45 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Toshiba\ReelTime\Backup\ReelTimeMonitorData.dat [5480] O61 - LFC: 20/01/2014 - 11:02:45 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\Toshiba\ReelTime\ReelTimeMonitorData.dat [5730] O61 - LFC: 20/01/2014 - 11:02:48 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\ZHP\Log.txt [45637] =>.Nicolas Coolman O61 - LFC: 20/01/2014 - 11:02:48 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\ZHP\TestsZHPDiag.txt [2857] =>.Nicolas Coolman O61 - LFC: 20/01/2014 - 11:02:49 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\ZHP\ZHPExportRegistry-20-01-2014-10-41-12.txt [615506] =>.Nicolas Coolman O61 - LFC: 20/01/2014 - 11:02:49 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\ZHP\ZHPFixQuarantine.txt [41760] =>.Nicolas Coolman O61 - LFC: 20/01/2014 - 11:02:49 ---A- . (...) -- C:\Users\Laura\AppData\Roaming\ZHP\ZHPFix[R1].txt [30746] =>.Nicolas Coolman O61 - LFC: 20/01/2014 - 11:02:59 -SHA- . (...) -- C:\Users\Laura\Pictures\Appareil Photos\Thumbs.db [2966528] O61 - LFC: 20/01/2014 - 11:02:59 -SHA- . (...) -- C:\Users\Laura\Pictures\Balade en famille\Thumbs.db [678912] O61 - LFC: 20/01/2014 - 11:03:11 -SHA- . (...) -- C:\Users\Laura\Pictures\Mes amours\2009\Thumbs.db [259584] O61 - LFC: 20/01/2014 - 11:03:11 -SHA- . (...) -- C:\Users\Laura\Pictures\Mes amours\2010\Thumbs.db [437248] O61 - LFC: 20/01/2014 - 11:03:11 -SHA- . (...) -- C:\Users\Laura\Pictures\Mes amours\2011\Thumbs.db [226816] O61 - LFC: 20/01/2014 - 11:03:11 -SHA- . (...) -- C:\Users\Laura\Pictures\Mes amours\2012\Thumbs.db [49664] O61 - LFC: 20/01/2014 - 11:03:11 -SHA- . (...) -- C:\Users\Laura\Pictures\Mes amours\Thumbs.db [96256] ~ 3 Fichiers temporaires (Temporary files) ~ Files: 379 Scanned in 05mn 28s ---\\ Liste des outils de désinfection (LATC) (O63) O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman ~ ADS: Scanned in 00mn 00s ---\\ Liste les services legacy du registre (LALS) (O64) O64 - Services: CurCS - 28/09/2013 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD O64 - Services: CurCS - 02/01/2014 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT O64 - Services: CurCS - 19/11/2013 - C:\Windows\system32\drivers\aswRdr2.sys (aswRdr) .(.AVAST Software - avast! WFP Redirect Driver.) - LEGACY_ASWRDR O64 - Services: CurCS - 19/11/2013 - C:\Windows\System32\Drivers\aswRvrt.sys (aswRvrt) .(...) - LEGACY_ASWRVRT O64 - Services: CurCS - 02/01/2014 - C:\Windows\system32\drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX O64 - Services: CurCS - 02/01/2014 - C:\Windows\system32\drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP O64 - Services: CurCS - 02/01/2014 - C:\Windows\system32\drivers\aswStm.sys (aswStm) .(.AVAST Software - Stream Filter.) - LEGACY_ASWSTM O64 - Services: CurCS - 02/01/2014 - C:\Windows\System32\Drivers\aswVmm.sys (aswVmm) .(...) - LEGACY_ASWVMM O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\atapi.sys (atapi) .(.Microsoft Corporation - ATAPI IDE Miniport Driver.) - LEGACY_ATAPI O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\Beep.sys (Beep) .(.Microsoft Corporation - BEEP Driver.) - LEGACY_BEEP O64 - Services: CurCS - 04/07/2012 - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER O64 - Services: CurCS - 22/06/2012 - C:\Windows\System32\drivers\cfwids.sys (cfwids) .(.McAfee, Inc. - McAfee Personal Firewall IDS Plugin.) - LEGACY_CFWIDS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS O64 - Services: CurCS - 04/07/2013 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE O64 - Services: CurCS - 01/08/2013 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR O64 - Services: CurCS - 24/01/2013 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecdd.sys (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD O64 - Services: CurCS - 25/09/2013 - C:\Windows\System32\Drivers\ksecpkg.sys (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV O64 - Services: CurCS - 22/06/2012 - C:\Windows\System32\drivers\mfeapfk.sys (mfeapfk) .(.McAfee, Inc. - Access Protection Filter Driver.) - LEGACY_MFEAPFK O64 - Services: CurCS - 22/06/2012 - C:\Windows\System32\drivers\mfeavfk.sys (mfeavfk) .(.McAfee, Inc. - Anti-Virus File System Filter Driver.) - LEGACY_MFEAVFK O64 - Services: CurCS - 15/09/1747 - McAfee Inc. (mfeavfk01) .(. - .) - LEGACY_MFEAVFK01 O64 - Services: CurCS - 22/06/2012 - C:\Windows\System32\drivers\mfefirek.sys (mfefirek) .(.McAfee, Inc. - McAfee Core Firewall Engine Driver.) - LEGACY_MFEFIREK O64 - Services: CurCS - 22/06/2012 - C:\Windows\System32\drivers\mfehidk.sys (mfehidk) .(.McAfee, Inc. - McAfee Link Driver.) - LEGACY_MFEHIDK O64 - Services: CurCS - 22/06/2012 - C:\Windows\System32\drivers\mferkdet.sys (mferkdet) .(.McAfee, Inc. - McAfee Code Analysis Driver.) - LEGACY_MFERKDET O64 - Services: CurCS - 22/06/2012 - C:\Windows\System32\drivers\mfewfpk.sys (mfewfpk) .(.McAfee, Inc. - Anti-Virus Mini-Firewall Driver.) - LEGACY_MFEWFPK O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10 O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20 O64 - Services: CurCS - 21/11/2010 - C:\Windows\System32\drivers\msahci.sys (msahci) .(.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) - LEGACY_MSAHCI O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\msisadrv.sys (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\nwifi.sys (NativeWifiP) .(.Microsoft Corporation - Pilote de miniport WiFi natif.) - LEGACY_NATIVEWIFIP O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS O64 - Services: CurCS - 21/11/2010 - C:\Windows\System32\DRIVERS\ndisuio.sys (Ndisuio) .(.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) - LEGACY_NDISUIO O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\netbios.sys (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pciide.sys (pciide) .(.Microsoft Corporation - Generic PCI IDE Bus Driver.) - LEGACY_PCIIDE O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pcw.sys (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\peauth.sys (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH O64 - Services: CurCS - 21/11/2010 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR O64 - Services: CurCS - 10/06/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV O64 - Services: CurCS - 26/06/2013 - C:\Windows\System32\DRIVERS\Sftfslh.sys (Sftfs) .(.Microsoft Corporation - Microsoft Application Virtualization File S.) - LEGACY_SFTFS O64 - Services: CurCS - 26/06/2013 - C:\Windows\System32\DRIVERS\Sftplaylh.sys (Sftplay) .(.Microsoft Corporation - Microsoft Application Virtualization System.) - LEGACY_SFTPLAY O64 - Services: CurCS - 26/06/2013 - C:\Windows\System32\DRIVERS\Sftredirlh.sys (Sftredir) .(.Microsoft Corporation - Microsoft Application Virtualization System.) - LEGACY_SFTREDIR O64 - Services: CurCS - 26/06/2013 - C:\Windows\System32\DRIVERS\Sftvollh.sys (Sftvol) .(.Microsoft Corporation - Microsoft Application Virtualization Volume.) - LEGACY_SFTVOL O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\Drivers\spldr.sys (spldr) .(.Microsoft Corporation - loader for security processor.) - LEGACY_SPLDR O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2 O64 - Services: CurCS - 29/04/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP O64 - Services: CurCS - 03/10/2012 - C:\Windows\System32\drivers\tcpipreg.sys (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX O64 - Services: CurCS - 18/09/2012 - C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys (TuneUpUtilitiesDrv) .(.TuneUp Software - TuneUp Utilities Driver.) - LEGACY_TUNEUPUTILITIESDRV O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE O64 - Services: CurCS - 21/11/2010 - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX O64 - Services: CurCS - 21/11/2010 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\vwififlt.sys (vwififlt) .(.Microsoft Corporation - Virtual WiFi Filter Driver.) - LEGACY_VWIFIFLT O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6 O64 - Services: CurCS - 25/06/2013 - C:\Windows\System32\drivers\Wdf01000.sys (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000 O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\wfplwf.sys (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF ~ Legacy: 94 Scanned in 00mn 00s ---\\ Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Not Key.) ~ FASS Keys: 11 Scanned in 00mn 00s ---\\ Menu de démarrage Internet (SMI) (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Enumère les service demarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ~ Services: 32 Scanned in 00mn 01s ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "FPS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Collab-P2PHost-WSD-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-WSD-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "Collab-P2PHost-In-TCP" | In - None - P6 - TRUE | .(.Microsoft Corporation - Voisinage immédiat.) -- C:\Windows\system32\p2phost.exe O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WMP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMP-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "WMP-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{4939B4A1-860B-4503-80E8-1AF26F277463}" | In - None - P6 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O87 - FAEL: "{E2296966-1B1F-405B-BBBB-72189274B7D1}" | In - Public - P6 - TRUE | .(.McAfee, Inc. - McAfee Service Host.) -- C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe O87 - FAEL: "{AFB05964-818A-4B1B-BBF5-955BC23767B5}" | In - Public - P17 - TRUE | .(.McAfee, Inc. - McAfee Service Host.) -- C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe O87 - FAEL: "{D3995F19-B81B-46BB-BBBE-C08E5A25E075}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Communications Platform.) -- C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe O87 - FAEL: "{D8BAD471-79BA-470F-9D32-FA39C4F99564}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Mesh Operating Environment.) -- C:\Program Files (x86)\Windows Live\Mesh\MOE.exe O87 - FAEL: "{9FB55ECB-0A80-4640-B6A9-5A13FCDCECDF}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{9459EA3F-79EC-4DB7-BC18-7A58740125FD}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{6AECCB9B-40E4-4A16-9A2A-E27870C044F2}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{A8CD4D7D-8DCE-46E8-BA33-6245E51BF623}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{F16A3E26-42EC-4EDA-94F2-1CBEC36B2E26}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{BBECEB8B-1940-4228-AA93-F73A40068EE5}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{D46A649C-C2FC-4502-8EEE-3F54765A2B00}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{655FDF93-25FA-4CD5-8EC1-F99A513CFDAC}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{C41A2436-7F53-4813-B1E6-2494B14E0065}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{C9525D5D-6609-4A2E-9AC8-3CA7153C3573}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{CF37A0BB-F07E-48D5-97C7-E5D3E38F21EA}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{CE1CA4C1-DC40-4B73-B94F-5F9B72762FA4}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O87 - FAEL: "{06150995-1BE0-4BE3-94BA-132A95271438}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{A823D31A-ACB8-4D52-A014-E1B4843C2A9F}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{FA276FE4-79DD-40B8-AD68-7174624D95BB}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{ACD77438-FC94-41C5-A547-3DB93D84E0A6}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation O87 - FAEL: "{EC46A67E-AFB1-4923-9D70-AA86DF356FA0}" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{D55C8127-E27D-4B4C-B192-17EAB7A4D7A8}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "{9C8E00E4-3807-42A1-ACA5-D41C4B35442B}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{4DD2C7D1-8CF4-421A-B49D-D1D6F6043889}" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{49A0FB5B-DBD4-423B-9ED3-066B43E92424}" | In - Private - P6 - TRUE | .(.McAfee, Inc. - McAfee Service Host.) -- C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe O87 - FAEL: "{172FD39D-A181-4904-A4EE-F6FA99C364A3}" | In - Private - P17 - TRUE | .(.McAfee, Inc. - McAfee Service Host.) -- C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe O87 - FAEL: "{960D295F-6C9D-479F-9FDB-317E49ADC31B}" | In - None - P17 - TRUE | .(.Hewlett-Packard Co. - DeviceSetup.exe.) -- C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\DeviceSetup.exe O87 - FAEL: "{0954D31E-7B86-4928-874B-1239AB414524}" | In - None - P17 - TRUE | .(.Hewlett-Packard Co. - HPNetworkCommunicator.) -- C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\HPNetworkCommunicator.exe O87 - FAEL: "{82D32FED-7C14-4BEC-A8C3-30476BAD4610}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{D884B3F1-D5C7-409F-A86B-3A7E435F07F4}" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation O87 - FAEL: "{BE735031-D122-43E9-863B-5139FDED83EE}" | In - None - P17 - TRUE | .(.Skype - Skype Web Plugin.) -- C:\Program Files (x86)\SkypeWebPlugin\SkypeWebPlugin.exe O87 - FAEL: "{3F3F9631-73F5-485E-9A6B-E6B5BBD54594}" | In - None - P17 - TRUE | .(.Skype Limited - Facebook Video Calling.) -- C:\Users\Laura\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe ~ Firewall: 194 Scanned in 00mn 02s ---\\ Enumère les codes produits des logiciels (PUC) (O90) O90 - PUC: "00004159070000000000000000F01FEC" . (.Microsoft Office 2010.) -- C:\Windows\Installer\{95140000-0070-0000-0000-0000000FF1CE}\oobeicon.exe O90 - PUC: "0396BA86FFB56FF429B315A61989F46E" . (.Nero BackItUp 10.) -- c:\Windows\Installer\{68AB6930-5BFF-4FF6-923B-516A91984FE6}\ARPPRODUCTICON.exe O90 - PUC: "076CFAAAB965F2A4284B2449E5D03EFE" . (.Windows Live Writer.) -- C:\Windows\Installer\{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}\ApplicationIcon.ico O90 - PUC: "0EE303C2595A34537AA139C1A74CE0ED" . (.Microsoft Primary Interoperability Assemblies 2005.) -- c:\Windows\Installer\{2C303EE0-A595-3543-A71A-931C7AC40EDE}\[SystemFolder]msiexec.exe O90 - PUC: "1098C3F63DBED074788FCA12F0E6E520" . (.TOSHIBA Web Camera Application.) -- C:\Windows\Installer\{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}\ARPPRODUCTICON.exe O90 - PUC: "11F12B5E3396B0E42AC597363E0CD711" . (.Windows Live Messenger.) -- C:\Windows\Installer\{E5B21F11-6933-4E0B-A25C-7963E3C07D11}\MsblIco.Exe O90 - PUC: "1C4235E6CF4867F4A9A36CE5708FE06E" . (.Complément Messenger.) -- C:\Windows\Installer\{6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}\CompanionIcon O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon O90 - PUC: "1F079377ABE54744DAEEE13A0B5A4929" . (.TOSHIBA Recovery Media Creator Reminder.) -- C:\Windows\Installer\{773970F1-5EBA-4474-ADEE-1EA3B0A59492}\ARPPRODUCTICON.exe O90 - PUC: "21C118429A4FF0D448497A8BEF6421C3" . (.TOSHIBA ReelTime.) -- C:\Windows\Installer\{24811C12-F4A9-4D0F-8494-A7B8FE46123C}\ARPPRODUCTICON.exe O90 - PUC: "26BCC73245483E341B85A3DC104358E2" . (.High-Definition Video Playback.) -- c:\Windows\Installer\{237CCB62-8454-43E3-B158-3ACD0134852E}\ARPPRODUCTICON.exe O90 - PUC: "29F618052561C7A49BCB846F2847C2B4" . (.Messenger Companion.) -- C:\Windows\Installer\{50816F92-1652-4A7C-B9BC-48F682742C4B}\CompanionIcon O90 - PUC: "2AAEEA5DE481A2A4AB3A2652AEB45961" . (.TOSHIBA ConfigFree.) -- C:\Windows\Installer\{D5AEEAA2-184E-4A2A-BAA3-6225EA4B9516}\ARPPRODUCTICON.exe O90 - PUC: "2DEB11F6F9584C649AAD9AA1DAB58C94" . (.Skype Web Plugin.) -- C:\Windows\Installer\{6F11BED2-859F-46C4-A9DA-A91AAD5BC849}\icon.ico O90 - PUC: "3910550722C1C544F84A65E451D51B7A" . (.Nero Express 10.) -- c:\Windows\Installer\{70550193-1C22-445C-8FA4-564E155DB1A7}\ARPPRODUCTICON.exe O90 - PUC: "4F3D4B7DF87D64D46AF95AD4822683FF" . (.HP Deskjet 3070 B611 series - Enquête sur l'amélioration du produit.) -- C:\Windows\Installer\{D7B4D3F4-D78F-4D46-A69F-A54D286238FF}\ARP_Icon O90 - PUC: "531940669569DAA41996C9AC62E9BBE3" . (.Nero InfoTool 10 Help (CHM).) -- c:\Windows\Installer\{66049135-9659-4AAD-9169-9CCA269EBB3E}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 O90 - PUC: "545AF76F5E8D9024681BEA0E541D00F3" . (.TOSHIBA Face Recognition.) -- C:\Windows\Installer\{F67FA545-D8E5-4209-86B1-AEE045D1003F}\ARPPRODUCTICON.exe O90 - PUC: "62F86FF0C6144594CA5AA65D9FED991C" . (.Nero Multimedia Suite 10 Essentials.) -- c:\Windows\Installer\{0FF68F26-416C-4954-ACA5-6AD5F9DE99C1}\ARPPRODUCTICON.exe O90 - PUC: "65EC02F98283D2343A5CE36C2ADE396C" . (.HP Deskjet 3070 B611 series Aide.) -- C:\Windows\Installer\{9F20CE56-3828-432D-A3C5-3EC6A2ED93C6}\ARP_Icon O90 - PUC: "664FC5AC3EAC99D4B84B8CF0A45C0582" . (.TOSHIBA Wireless LAN Indicator.) -- C:\Windows\Installer\{CA5CF466-CAE3-4D99-8BB4-C80F4AC55028}\ARPPRODUCTICON.exe O90 - PUC: "68AB67CA7DA7FFFFB744AA0000000010" . (.Adobe Reader X (10.1.6) MUI.) -- C:\Windows\Installer\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}\SC_Reader.ico O90 - PUC: "6C868555BF94F484BB34980856A1B100" . (.Nero BurnRights 10 Help (CHM).) -- c:\Windows\Installer\{555868C6-49FB-484F-BB43-8980651A1B00}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 O90 - PUC: "7040BB568CC47CD459E2E3FEFD5006A2" . (.Nero Update.) -- c:\Windows\Installer\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}\ARPPRODUCTICON.exe O90 - PUC: "75FDF62FE3848C249A9CEE1EDE2B650E" . (.TOSHIBA Media Controller Plug-in.) -- C:\Windows\Installer\{F26FDF57-483E-42C8-A9C9-EEE1EDB256E0}\ARPPRODUCTICON.exe O90 - PUC: "76EA78D0BE4101C4885AADC61318BE81" . (.Windows Live Family Safety.) -- C:\Windows\Installer\{0D87AE67-14EB-4C10-88A5-DA6C3181EB18}\fssicon.ico O90 - PUC: "787E733E16FCB7B48BF40529205A0432" . (.Nero RescueAgent 10.) -- c:\Windows\Installer\{E337E787-CF61-4B7B-B84F-509202A54023}\ARPPRODUCTICON.exe O90 - PUC: "8193463375979384297CAE69BC26A189" . (.Nero Express 10 Help (CHM).) -- c:\Windows\Installer\{33643918-7957-4839-92C7-EA96CB621A98}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 O90 - PUC: "83252E293A16DCA44A70C384E0FE747A" . (.Nero RescueAgent 10 Help (CHM).) -- c:\Windows\Installer\{92E25238-61A3-4ACD-A407-3C480EEF47A7}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 O90 - PUC: "8442234DFA6B61348B958D0A8ED4BC83" . (.TOSHIBA HDD/SSD Alert.) -- C:\Windows\Installer\{D4322448-B6AF-4316-B859-D8A0E84DCB38}\ARPPRODUCTICON.exe O90 - PUC: "8C9126606EB47D64E91006CFAFB623CD" . (.Messenger Companion.) -- C:\Windows\Installer\{066219C8-4BE6-46D7-9E01-60FCFA6B32DC}\CompanionIcon O90 - PUC: "8FFFC660FB2109346A37579FE5FF81E8" . (.TOSHIBA Value Added Package.) -- C:\Windows\Installer\{066CFFF8-12BF-4390-A673-75F95EFF188E}\ARPPRODUCTICON.exe O90 - PUC: "9026845645C5C9343838A89CBB2E9523" . (.Atheros Bluetooth Filter Driver Package.) -- C:\Windows\Installer\{65486209-5C54-439C-8383-8AC9BBE25932}\ARPPRODUCTICON.exe O90 - PUC: "A268764FAC9DDE74D8184B3B9C932927" . (.Nero MediaHub 10 Help (CHM).) -- c:\Windows\Installer\{F467862A-D9CA-47ED-8D81-B4B3C9399272}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 O90 - PUC: "B1B2B325BD8D14B409FF4C7D992E57A8" . (.Nero ControlCenter 10 Help (CHM).) -- c:\Windows\Installer\{523B2B1B-D8DB-4B41-90FF-C4D799E2758A}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 O90 - PUC: "B46CBD341DD32E7478883D3C1B015C47" . (.TOSHIBA Bulletin Board.) -- C:\Windows\Installer\{43DBC64B-3DD1-47E2-8788-D3C3B110C574}\ARPPRODUCTICON.exe O90 - PUC: "B6668C80205C3BA44BBC7DA44CD241EF" . (.Nero BackItUp 10 Help (CHM).) -- c:\Windows\Installer\{08C8666B-C502-4AB3-B4CB-D74AC42D14FE}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 O90 - PUC: "BFB6BBEC807D99F46A33CB62000EE16F" . (.Bluetooth Stack for Windows by Toshiba.) -- C:\Windows\Installer\{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}\ARPPRODUCTICON.exe O90 - PUC: "C978C748764142944A1931204B5CF807" . (.Messenger Companion.) -- C:\Windows\Installer\{847C879C-1467-4924-A491-1302B4C58F70}\CompanionIcon O90 - PUC: "C9F7116F5BDA0954B94E217CEB2C7820" . (.Nero StartSmart 10 Help (CHM).) -- c:\Windows\Installer\{F6117F9C-ADB5-4590-9BE4-12C7BEC28702}\NeroHelpIcon.BBDB24D3_07A5_496B_AA18_6A3ED03D6698 O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- C:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon O90 - PUC: "D7DFC3496335FA7449810E42375A5A71" . (.Nero BurnRights 10.) -- c:\Windows\Installer\{943CFD7D-5336-47AF-9418-E02473A5A517}\ARPPRODUCTICON.exe O90 - PUC: "DDFFED728F0A61F4EA1D7C7A2566BCCF" . (.Logiciel de base du périphérique HP Deskjet 3070 B611 series.) -- C:\Windows\Installer\{27DEFFDD-A0F8-4F16-AED1-C7A75266CBFC}\ARP_Icon =>.Hewlett-Packard Co O90 - PUC: "DEE2FD58CB80BF6409AD820B0D8A8E8A" . (.HP Update.) -- C:\Windows\Installer\{85DF2EED-08BC-46FB-90DA-28B0D0A8E8A8}\ARPPRODUCTICON.exe O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype™ 6.6.) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe O90 - PUC: "E8D7C56ED681B484EB8AED0F33C16E00" . (.TRORMCLauncher.) -- C:\Windows\Installer\{E65C7D8E-186D-484B-BEA8-DEF0331CE600}\ARPPRODUCTICON.exe O90 - PUC: "E984D16F44C6CA94DA20D78ACA7AA356" . (.Nero StartSmart 10.) -- c:\Windows\Installer\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}\ARPPRODUCTICON.exe O90 - PUC: "F0DE90A3FDD8BB745BD348A19B1D3D7A" . (.Complemento Messenger.) -- C:\Windows\Installer\{3A09ED0F-8DDF-47BB-B53D-841AB9D1D3A7}\CompanionIcon O90 - PUC: "F20E0AD5B079B424FB1415A305814E0C" . (.TOSHIBA Disc Creator.) -- C:\Windows\Installer\{5DA0E02F-970B-424B-BF41-513A5018E4C0}\ARPPRODUCTICON.exe =>.Toshiba Corporation O90 - PUC: "F228BC5F563B1D34CB0CF4ADA102717A" . (.Nero 10 Movie ThemePack Basic.) -- c:\Windows\Installer\{F5CB822F-B365-43D1-BCC0-4FDA1A2017A7}\ARPPRODUCTICON.exe O90 - PUC: "F86BF7F16F253A644BF283EC6492A55E" . (.Nero MediaHub 10.) -- c:\Windows\Installer\{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}\NeroMediaHub._63C8A7B0BBE5459F9AC436392B2FF50D.exe O90 - PUC: "F998BFD62A710F845A33DED88666FC83" . (.Nero Control Center 10.) -- c:\Windows\Installer\{6DFB899F-17A2-48F0-A533-ED8D6866CF38}\ARPPRODUCTICON.exe O90 - PUC: "FA4B214FC8835FF4B9F233BDC1359635" . (.Nero InfoTool 10.) -- c:\Windows\Installer\{F412B4AF-388C-4FF5-9B2F-33DB1C536953}\ARPPRODUCTICON.exe ~ Update Products: 171 Scanned in 00mn 00s ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) [MD5.5B402BB40D14B96222609B02565334ED] [WIS][29/05/2013] (.Skype Technologies S.A. - Skype Web Plugin.) -- C:\Windows\Installer\1e1b44e6.msi [4321280] [MD5.BD75BF3DA346BC1ADDCE6BD3AD29BC28] [WIS][27/07/2013] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\24375932.msi [21807104] [MD5.BBCDC61C8AA8009FED0028798A761EE2] [WIS][27/07/2013] (.Skype Technologies S.A. - Skype Click to Call.) -- C:\Windows\Installer\24375933.msi [10502144] [MD5.9DDC9D3FFA0EE86BB624F122731FB126] [WIS][31/10/2012] (.TuneUp Software - TuneUp Utilities Language Pack (fr-FR).) -- C:\Windows\Installer\63fbbd5.msi [2510848] [MD5.58090DA7B486900A7AF356058395AB29] [WIS][31/10/2012] (.TuneUp Software - TuneUp Utilities 2013.) -- C:\Windows\Installer\63fbbdb.msi [24145920] [MD5.333A3963E03A1BB4A0116B55613F883E] [WIS][04/05/2011] (.myphotobook GmbH - Photo-Service.) -- C:\Windows\Installer\e32a.msi [61952] ~ WIS: 173 Scanned in 00mn 26s ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SS - | Demand 07/10/2013 240736 | (GamesAppIntegrationService) . (.WildTangent.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe SS - | Demand 12/10/2010 206072 | (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe SS - | Demand 22/08/2012 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 22/08/2012 194032 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe SS - | Demand 14/11/2005 69632 | (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe SS - | Demand 28/01/2011 225216 | (McAWFwk) . (.McAfee, Inc..) - C:\Program Files\mcafee\msc\McAWFwk.exe SS - | Demand 10/09/2012 383608 | (McODS) . (.McAfee, Inc..) - C:\Program Files\mcafee\VirusScan\mcods.exe SS - | Disabled 31/08/2012 201304 | (McOobeSv) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe SS - | Auto 21/06/2013 162408 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe SS - | Demand 10/02/2011 112080 | (TemproMonitoringService) . (.Toshiba Europe GmbH.) - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe =>.Toshiba Corporation SS - | Demand 29/11/2010 54136 | (TMachInfo) . (.TOSHIBA Corporation.) - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe =>.Toshiba Corporation SS - | Demand 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 18/12/2012 65192 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SR - | Auto 02/01/2014 50344 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe SR - | Auto 28/01/2010 249200 | (cfWiMAXService) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe SR - | Auto 10/03/2009 46448 | (ConfigFree Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe SR - | Auto 09/09/2010 162824 | (GFNEXSrv) . (...) - C:\Windows\System32\GFNEXSrv.exe SR - | Auto 22/08/2012 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SR - | Auto 28/03/2012 140456 | (IJPLMSVC) . (...) - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.exe SR - | Auto 06/05/2010 325656 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe SR - | Auto 31/08/2012 201304 | (McAfee SiteAdvisor Service) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe SR - | Auto 31/08/2012 201304 | (McMPFSvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe SR - | Auto 31/08/2012 201304 | (mcmscsvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe SR - | Auto 31/08/2012 201304 | (McNaiAnn) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe SR - | Auto 31/08/2012 201304 | (McNASvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe SR - | Auto 31/08/2012 201304 | (McProxy) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe SR - | Auto 22/06/2012 237920 | (McShield) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe SR - | Auto 22/06/2012 218320 | (mfefire) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe SR - | Auto 22/06/2012 177144 | (mfevtp) . (.McAfee, Inc..) - C:\Windows\system32\mfevtps.exe SR - | Auto 31/08/2012 201304 | (MSK80Service) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe SR - | Auto 14/01/2011 572712 | (NAUpdate) . (.Nero AG.) - c:\Program Files (x86)\Nero\Update\NASvc.exe SR - | Auto 20/10/2010 138656 | (TODDSrv) . (.TOSHIBA Corporation.) - C:\Windows\system32\TODDSrv.exe SR - | Auto 09/12/2010 489384 | (TosCoSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe SR - | Demand 12/04/2010 196976 | (TOSHIBA Bluetooth Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe SR - | Demand 08/12/2010 137632 | (TOSHIBA HDD SSD Alert Service) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe SR - | Auto 19/09/2012 2365792 | (TuneUp.UtilitiesSvc) . (.TuneUp Software.) - C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe SR - | Auto 06/05/2010 2533400 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe SR - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 30s ---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80) Run by Laura at 20/01/2014 11:04:45 ~ OS 64 not supported by MBR tool ~ MBR: 0 Scanned in 00mn 00s ---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by Laura at 20/01/2014 11:04:47 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 02s ---\\ Scan Additionnel (O88) Database Version : 13024 - (17/01/2014) Clés trouvées (Keys found) : 2 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 1 Fichiers trouvés (Files found) : 1 [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings] =>PUP.BProtector [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OpenCandyHelperRunOnce] =>Adware.OpenCandy C:\ProgramData\BitGuard =>PUP.BitGuard^ [HKLM\Software\Wow6432Node\Vittalia] =>PUP.Vittalia^ ~ Additionnel Scan: 263755 Items scanned in 00mn 55s ---\\ Récapitulatif des détections trouvées sur votre station ~ http://nicolascoolman.webs.com/apps/blog/show/26990375-hijacker-smartbar =>Hijacker.SmartBar ~ http://nicolascoolman.webs.com/apps/blog/show/32979753-pup-bitguard =>PUP.BitGuard ~ http://nicolascoolman.webs.com/apps/blog/show/35115580-pup-vittalia =>PUP.Vittalia ~ http://nicolascoolman.webs.com/apps/blog/show/28133096-pup-bprotector =>PUP.BProtector ~ http://nicolascoolman.webs.com/apps/blog/show/26770694-adware-opencandy =>Adware.OpenCandy ~ MSI: 5 link(s) detected in 00mn 55s End of the scan (2118 lines in 16mn 21s)(0)