cjoint

Publicité

Priorité au Logiciel Libre! Je soutiens l'April.

Publicité

Priorité au Logiciel Libre! Je soutiens l'April.

Format du document : text/plain

Prévisualisation

Rapport de ZHPDiag v1.3.5.16 par Nicolas Coolman, Update du 04/02/2013
Run by Dimitri at 13/02/2013 14:36:27
State : Nouvelle version disponible
UAC : Deactivate by program


---\\ Web Browser
MSIE: Internet Explorer v9.0.8112.16421
MFIE: Mozilla Firefox 15.0 v15.0
GCIE: Google Chrome v24.0.1312.57 (Defaut)

---\\ Windows Product Information
~ Langage: Fran�ais
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 9YQTR
Windows License : OK
~ Windows Remaining Initializations Number : 1
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ System Information
~ Processor: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 5920 MB (71% free)
System Restore: Activ� (Enable)
System drive C: has 127 GB (67%) free of 186 GB

---\\ Logged in mode
~ Computer Name: DIMITRI-PC
~ User Name: Dimitri
~ All Users Names: UpdatusUser, Dimitri, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\Dimitri\AppData\Roaming\
~ %Desktop% : C:\Users\Dimitri\Desktop\
~ %Favorites% : C:\Users\Dimitri\Favorites\
~ %LocalAppData% : C:\Users\Dimitri\AppData\Local\
~ %StartMenu% : C:\Users\Dimitri\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 127 Go of 186 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 254 Go of 254 Go)
E:\ CD-ROM drive (Not Inserted)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Scan Security Center in 00mn 00s



---\\ Recherche particuli�re de fichiers g�n�riques
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.24/02/2012 - 01:55:29.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de d�marrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.5121DB613E10A46A3C5085B479026AA7] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.14/11/2012 - 07:04:11.) -- C:\Windows\System32\wininet.dll [1392128]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d�ouverture de session Windows.) (.20/11/2010 - 14:25:32.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioth�que de licences.) (.20/11/2010 - 14:27:28.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 10:19:22.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 10:26:34.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 11:43:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.24/02/2012 - 02:02:21.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 10:23:22.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.E453ACF4E7D44E5530B5D5F2B9CA8563] - (.Microsoft Corporation - Pilote du syst�me de fichiers NT.) (.31/08/2012 - 19:19:35.) -- C:\Windows\system32\Drivers\ntfs.sys [1659760]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parall�le.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 11:52:36.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 10:21:58.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.DF8126BD41180351A093A3AD2FC8903B] - (.Microsoft Corporation - Pilote de clich� instantan� du volume.) (.24/02/2012 - 01:35:34.) -- C:\Windows\system32\Drivers\volsnap.sys [296320]
~ Scan Generic Processes in 00mn 00s



---\\ Etat des fichiers cach�s (Cach�/Total)
~ Mes images (My Pictures) : 1/65
~ Mes musiques (My Musics) : 9/24
~ Mes Videos (My Videos) : 1/5
~ Mes Favoris (My Favorites) : 1/8
~ Mes Documents (My Documents) : 1/178
~ Mon Bureau (My Desktop) : 1/16
~ Menu demarrer (Programs) : 0/45
~ Scan Hidden Files in 00mn 00s



---\\ Processus lanc�s
[MD5.63A0FE3B1B094DAE328F46FCADABDBE4] - (.ASUS - FaceLogon Application.) -- C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe [375424] [PID.2620]
[MD5.2CC9F71A12C3F7E1D8F1EBD52163637C] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [318080] [PID.2700]
[MD5.D5E4E7A2E8CC651ED737B4CF9515D225] - (.ASUSTeK Computer Inc. - ASUS Live Update.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1556128] [PID.2724]
[MD5.64A7C84C0A8C79B22033F92D43919062] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [102568] [PID.2076]
[MD5.98CADC34741738CFC24F5CDFDAA408FA] - (.ASUSTeK - ACEngSvr Module.) -- C:\Windows\SysWOW64\ACEngSvr.exe [162456] [PID.3112]
[MD5.7853D2AB445C10F97610B2B05FA4CF0A] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [512360] [PID.3196]
[MD5.37DEB76A2CF005841C4E45DE2B94D84F] - (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe [3058304] [PID.3548]
[MD5.A44740AD996C9B9574283B0172DBEE11] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [18709248] [PID.3736]
[MD5.B54921381A950C8215FB363B485C432B] - (.Hewlett-Packard Co. - HP Digital Imaging Monitor.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [270336] [PID.3828]
[MD5.083649EF692A066880C9326020915AFE] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [4297136] [PID.1196]
[MD5.C637FC4638A96165256B28D38DE7B953] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208] [PID.3944]
[MD5.F16EEA6CCA9D8A7D1193AE80E43FBBC7] - (.Hewlett-Packard Co. - HP CUE Status Root.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe [168960] [PID.5816]
[MD5.8A9FACCB684500829F7D0BCC67B386CC] - (.Hewlett-Packard Co. - HP CUE Alert Popup Window Objects.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe [559104] [PID.5876]
[MD5.883008A9B5BFF94A153D99DBA54CB5C1] - (.Hewlett-Packard - GPCore COM object.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe [362496] [PID.5928]
[MD5.927DC83A2FB5897DE3DDD54DF604EA00] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [5649408] [PID.5912]
[MD5.A3626C6D3F2DC95497F3F61842D7FD89] - (.ASUS - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [80512] [PID.1296]
[MD5.DBC598E47E7A382E60E2A4745D41FEF9] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1416]
[MD5.8FA553E9AE69808D99C164733A0F9590] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [44808] [PID.1488]
[MD5.C14E6798A092E0E86556104767BEBD48] - (.ASUSTek Computer Inc. - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [174720] [PID.1680]
[MD5.3927397AC60D943DAF8808AFFED582B7] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65192] [PID.1436]
[MD5.A5299D04ED225D64CF07A568A3E1BF8C] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55184] [PID.1464]
[MD5.EDF4B8A072414E43CC3F85F68F4960E7] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [277120] [PID.2228]
[MD5.1ACAA67676E9E7BDA5E0C41B6E0DECAF] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [398184] [PID.2752]
[MD5.916B8954AC3E06DC9E898AFFB41F3FB6] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [682344] [PID.2776]
[MD5.72CD20D0B4C7848008263D91ECC001CA] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe [277120] [PID.4768]
[MD5.149126216A694E6BA84E92ECA77AAE3B] - (.ASUS - ATKOSD.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe [2488888] [PID.4916]
[MD5.AA11E1368EEB237DD100BAC6AFFE1C57] - (.ASUS - KBFiltr.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe [113208] [PID.4952]
[MD5.4A7C441D99D86704D194E7678873B95D] - (.ASUS - WDC.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe [174648] [PID.5012]
[MD5.F02A533F517EB38333CB12A9E8963773] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [136176] [PID.4004]
[MD5.7F32D4C47A50E7223491E8FB9359907D] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [325656] [PID.3836]
[MD5.03AA7307C0D92D38D7AF90E181736B8D] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2253120] [PID.2760]
[MD5.2C16648A12999AE69A9EBF41974B0BA2] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2656280] [PID.5972]
~ Scan Processes Running in 00mn 00s



---\\ Google Chrome, D�marrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] http://search.conduit.com
~ Scan Google Browser in 00mn 00s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Dimitri\AppData\Roaming\Mozilla\Firefox\Profiles\vuv4c5y3.default\prefs.js
M3 - MFPP: Plugins - [Dimitri] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\amazon-france.xml
M3 - MFPP: Plugins - [Dimitri] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\bing.xml
M3 - MFPP: Plugins - [Dimitri] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
M3 - MFPP: Plugins - [Dimitri] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\eBay-france.xml
M3 - MFPP: Plugins - [Dimitri] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\google.xml
M3 - MFPP: Plugins - [Dimitri] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\wikipedia-fr.xml
M3 - MFPP: Plugins - [Dimitri] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\yahoo-france.xml
M2 - MFEP: prefs.js [Dimitri - vuv4c5y3.default\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}] [WOT] WOT v20130116 (.WOT Services Oy.)
M2 - MFEP: prefs.js [Dimitri - vuv4c5y3.default\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] [] Free YouTube Download (Free Studio) Menu v20130116 (.DVDVideoSoft Ltd..)
P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 11.0.01.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_149.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.11.2] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Windows\system32\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.11.2] - (.Oracle Corporation - Next Generation Java Plug-in 10.11.2 for Mozilla browsers.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
~ Scan Firefox Browser in 00mn 00s



---\\ Internet Explorer, D�marrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ Scan IE Browser in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Scan Keys in 00mn 00s



---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 04s
~ Nombre de lignes (Lines number): 15327



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: HP Print Enhancer [64Bits] - {0347C33E-8762-4905-BF09-768834316C61} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Programme d�aide de l�Assistant de connexion au compte Microsoft [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft� Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows L
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class [64Bits] - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
~ Scan BHO in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: (no name) [64Bits] - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Cl� orpheline
~ Scan Toolbar in 00mn 00s



---\\ Applications d�marr�es par registre & par dossier (O4)
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - HKCU\..\Run: [FileHippo.com] . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Wow6432Node\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastUI.exe
O4 - HKLM\..\Wow6432Node\Run: [hpqSRMon] . (.Hewlett-Packard - HpqSRmon.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-21-1526059893-305988771-3302340161-1001-1526059893-305988771-3302340161-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-21-1526059893-305988771-3302340161-1001-1526059893-305988771-3302340161-1000\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
~ Scan Application in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\Dimitri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Dimitri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Dimitri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk . (.Microsoft Corporation.) -- C:\Users\Dimitri\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
O4 - Global Startup: C:\Users\Dimitri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Update Checker.lnk . (.FileHippo.com.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe
O4 - Global Startup: C:\Users\Dimitri\Desktop\Apprenez la Musique avec la 1�re �cole de Musique sur Internet.url . (...) -- C:\Users\Dimitri\Desktop\Apprenez la Musique avec la 1�re �cole de Musique sur Internet.url
O4 - Global Startup: C:\Users\Dimitri\Desktop\ASIO4ALL v2 Instruction Manual.lnk . (...) -- C:\Program Files (x86)\ASIO4ALL v2\ASIO4ALL v2 Instruction Manual.pdf
O4 - Global Startup: C:\Users\Dimitri\Desktop\Audacity.lnk . (.The Audacity Team.) -- C:\Program Files (x86)\Audacity\audacity.exe
O4 - Global Startup: C:\Users\Dimitri\Desktop\DivX Movies.lnk . (...) -- C:\Users\Dimitri\Videos\DivX Movies
O4 - Global Startup: C:\Users\Dimitri\Desktop\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\Dimitri\Desktop\Guitariste-en-carton on-line ! - YouTube.url . (.Google Inc..) -- C:\Users\Dimitri\Desktop\Guitariste-en-carton on-line ! - YouTube.url
O4 - Global Startup: C:\Users\Dimitri\Desktop\Logiciel - Instinct Guitare.url . (...) -- C:\Users\Dimitri\Desktop\Logiciel - Instinct Guitare.url
O4 - Global Startup: C:\Users\Dimitri\Desktop\Outils de diagnostic d'imprimante HP.url . (...) -- C:\Users\Dimitri\Desktop\Outils de diagnostic d'imprimante HP.url
O4 - Global Startup: C:\Users\Dimitri\Desktop\Update Checker.lnk . (.FileHippo.com.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe
O4 - Global Startup: C:\Users\Dimitri\Desktop\Windows Live Messenger.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - Global Startup: C:\Users\Dimitri\Desktop\[Guide Troph�e] Need for Speed Most Wanted - PS3 - Roadmap - Blog de Mr_Seb.url . (.Microsoft Corporation.) -- C:\Users\Dimitri\Desktop\[Guide Troph�e] Need for Speed Most Wanted - PS3 - Roadmap - Blog de Mr
O4 - Global Startup: C:\Users\Dimitri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\Dimitri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
~ Scan Global Startup in 00mn 00s



---\\ Invisibilit� de l'ic�ne d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ Scan IE Control Panel in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d�affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll
O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corp. - Microsoft� Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000010\Winsock LSP File . (.Microsoft Corp. - Microsoft� Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
~ Scan Winsock in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{51911C3D-82DA-4A61-B99C-4F29570FCD5D}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{A29333B3-FF79-4AAF-AD24-AC41A8239C42}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{51911C3D-82DA-4A61-B99C-4F29570FCD5D}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{A29333B3-FF79-4AAF-AD24-AC41A8239C42}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{51911C3D-82DA-4A61-B99C-4F29570FCD5D}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{A29333B3-FF79-4AAF-AD24-AC41A8239C42}: DhcpNameServer = 192.168.1.1
~ Scan Domain in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contr�le ActiveX pour le flux vid�o.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft� InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\system32\inetcomm.dll
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft� InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: skype-ie-addon-data [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Click to Call with Skype for Internet Explo.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contr�le ActiveX pour le flux vid�o.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
~ Scan Protocole Additionnel in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-cl�s Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Scan Winlogon in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-cl�s Winlogon Notify (autorun) (O20)
O20 - AppInit_DLLs: . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 285.) - C:\Windows\system32\nvinitx.dll
~ Scan AppInit DLL in 00mn 00s



---\\ Cl� de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ Scan SSODL in 00mn 00s



---\\ Liste des services NT non Microsoft et non d�sactiv�s (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AFBAgent (AFBAgent) . (.ASUSTeK Computer Inc. - ASUS FastBoot.) - C:\Windows\system32\FBAgent.exe
O23 - Service: Intel� Centrino� Wireless Bluetooth� 3.0 (AMPPALR3) . (.Intel Corporation - Intel� Centrino� Wireless Bluetooth� 3.0 +.) - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) . (.ASUS - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) . (.ASUS - ASUS InstantOn Program.) - C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth (BTHSSecurityMgr) . (.Intel(R) Corporation - Intel(R) BlueTooth(R) HS Security Manager S.) - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: CyberLink Product - 2012/05/04 10:20:43 (CLKMSVC10_38F51D56) . (.CyberLink - CyberLink KM Service.) - C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Management and Security Applica (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 285.6.) - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Servic (RegSrvc) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: Intel(R) Management and Security Applica (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
~ Scan Services in 00mn 06s



---\\ Enum�ration Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Scan Desktop Component in 00mn 00s



---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ Scan Keys in 00mn 00s



---\\ T�ches planifi�es en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job
[MD5.EC807244904FA170C299AB06D87FBDBE] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
[MD5.D5E4E7A2E8CC651ED737B4CF9515D225] [APT] [ASUS Live Update] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
[MD5.0FEDC24834D26DDB558D12C15F182FDD] [APT] [ASUS P4G] (.ASUS.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe
[MD5.63A0FE3B1B094DAE328F46FCADABDBE4] [APT] [ASUS SmartLogon Console Sensor] (.ASUS.) -- C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
[MD5.2CC9F71A12C3F7E1D8F1EBD52163637C] [APT] [ATKOSD2] (.ASUSTek Computer Inc..) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
[MD5.7F19838AC317C34FCED020BE529AF71E] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
[MD5.74660C1E9139D95F4E006E8E49EA4986] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe
[MD5.0654E4C1F597FC07D6FC7443D4F94840] [APT] [{1DF73CA0-64BC-4267-8398-EA598946682C}] (.Google Inc..) -- c:\program files (x86)\google\chrome\application\chrome.exe
[MD5.0654E4C1F597FC07D6FC7443D4F94840] [APT] [{3BA26770-B8F8-4392-80D8-211E7A32746C}] (.Google Inc..) -- c:\program files (x86)\google\chrome\application\chrome.exe
[MD5.0654E4C1F597FC07D6FC7443D4F94840] [APT] [{425968D0-211B-47E6-B0E4-7466E9455AA7}] (.Google Inc..) -- c:\program files (x86)\google\chrome\application\chrome.exe
[MD5.0654E4C1F597FC07D6FC7443D4F94840] [APT] [{8313D81E-42FF-45E7-AF60-249C83DAD5C1}] (.Google Inc..) -- c:\program files (x86)\google\chrome\application\chrome.exe
[MD5.0654E4C1F597FC07D6FC7443D4F94840] [APT] [{F2FAF6A6-D654-4B95-A5E2-840932E8271E}] (.Google Inc..) -- c:\program files (x86)\google\chrome\application\chrome.exe
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe
~ Scan Scheduled Task in 00mn 03s



---\\ Composants install�s (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Internet Explorer [64Bits] - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: Browser Customizations [64Bits] - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d�IEAK.) -- C:\Windows\System32\iedkcs32.dll
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Scan Active Setup in 00mn 00s



---\\ Pilotes lanc�s au d�marrage (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\Drivers\aswrdr2.sys
O41 - Driver: (ATKWMIACPIIO) . (.ASUS - ATK WMIACPI Utility.) - C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\System32\DRIVERS\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-syst�me de mise en m�moire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Scan Drivers in 00mn 00s



---\\ Logiciels install�s (O42)
O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {FF21C3E6-97FD-474F-9518-8DCBE94C2854}
O42 - Logiciel: ASIO4ALL - (.Michael Tippach.) [HKLM][64Bits] -- ASIO4ALL
O42 - Logiciel: ASUS AI Recovery - (.ASUS.) [HKLM][64Bits] -- {D39F0676-163E-4595-A917-E28F99BBD4D2}
O42 - Logiciel: ASUS FaceLogon - (.ASUS.) [HKLM][64Bits] -- {64452561-169F-4A36-A2FF-B5E118EC65F5}
O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158}
O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4}
O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {9B6239BF-4E85-4590-8D72-51E30DB1A9AA}
O42 - Logiciel: ASUS Sonic Focus - (.Synopsys .) [HKLM][64Bits] -- {B0002707-4F7E-4745-88A7-852DA8A88635}
O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D}
O42 - Logiciel: ASUS Virtual Camera - (.ASUS.) [HKLM][64Bits] -- {EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}
O42 - Logiciel: ASUS WebStorage - (.eCareme Technologies, Inc..) [HKLM][64Bits] -- ASUS WebStorage
O42 - Logiciel: ASUSDVD - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
O42 - Logiciel: ASUSDVD - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE}
O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader XI (11.0.01) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1033-7B44-AB0000000001}
O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- AmUStor
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {63EC2120-1742-4625-AA47-C6A8AEC9C64C}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {7446FE8D-C1F9-4D42-AAAE-5DBCE58605A6}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: Asmedia ASM104x USB 3.0 Host Controller Driver - (.Asmedia Technology.) [HKLM][64Bits] -- {E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}
O42 - Logiciel: AsusScr_K3 Series_ENG - (.ASUS.) [HKLM][64Bits] -- AsusScr_K3 Series_ENG
O42 - Logiciel: AsusVibe2.0 - (.ASUSTEK.) [HKLM][64Bits] -- Asus Vibe2.0
O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549}
O42 - Logiciel: Audacity 2.0.2 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: Bubbletown - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115065740}
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner
O42 - Logiciel: Click to Call with Skype - (.Skype Technologies S.A..) [HKLM][64Bits] -- {B6CF2967-C81E-40C0-9815-C05774FEF120}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Deadtime Stories - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-118716773}
O42 - Logiciel: Defraggler - (.Piriform.) [HKLM][64Bits] -- Defraggler
O42 - Logiciel: Dream Day First Home - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}
O42 - Logiciel: Dream Vacation Solitaire - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111249233}
O42 - Logiciel: FL Studio 10 - (.Image-Line.) [HKLM][64Bits] -- FL Studio 10
O42 - Logiciel: Farm Frenzy 3 - Madagascar - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-119205603}
O42 - Logiciel: Fast Boot - (.ASUS.) [HKLM][64Bits] -- {13F4A7F3-EABC-4261-AF6B-1317777F0755}
O42 - Logiciel: FileHippo.com Update Checker - (.Pas de propri�taire.) [HKLM][64Bits] -- FileHippo.com
O42 - Logiciel: Fotogalerie - (.Microsoft Corporation.) [HKLM][64Bits] -- {3CBD94C1-BA15-488C-888B-D8DD296CC6DC}
O42 - Logiciel: Galapago - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457}
O42 - Logiciel: Galeria de Fotografias - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5E338CE-E1C6-4F7D-8300-44DBD05B9F14}
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {446CC8CE-0E90-44F7-ADD0-774B243EF090}
O42 - Logiciel: Galer�a de fotos - (.Microsoft Corporation.) [HKLM][64Bits] -- {8F7FECEC-088F-431D-A5FB-2B59E1E69943}
O42 - Logiciel: Game Park Console - (.Oberon Media Inc..) [HKLM][64Bits] -- Game Park Console
O42 - Logiciel: Go Go Gourmet Chef of the Year - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115290153}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: HP Customer Participation Program 13.0 - (.HP.) [HKLM][64Bits] -- HPExtendedCapabilities
O42 - Logiciel: HP Imaging Device Functions 13.0 - (.HP.) [HKLM][64Bits] -- HP Imaging Device Functions
O42 - Logiciel: HP Photosmart C4200 All-In-One Driver Software 13.0 Rel. 1 - (.HP.) [HKLM][64Bits] -- {14BC5667-22B0-4DC4-8205-597053BBDDC9}
O42 - Logiciel: HP Photosmart Essential 3.5 - (.HP.) [HKLM][64Bits] -- HP Photosmart Essential
O42 - Logiciel: HP Smart Web Printing 4.51 - (.HP.) [HKLM][64Bits] -- HP Smart Web Printing
O42 - Logiciel: HP Solution Center 13.0 - (.HP.) [HKLM][64Bits] -- HP Solution Center & Imaging Support Tools
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}
O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM][64Bits] -- {846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}
O42 - Logiciel: IL Download Manager - (.Image-Line.) [HKLM][64Bits] -- IL Download Manager
O42 - Logiciel: InstantOn for NB - (.ASUS.) [HKLM][64Bits] -- {749F674B-2674-47E8-879C-5626A06B2A91}
O42 - Logiciel: Intel PROSet Wireless - (.Pas de propri�taire.) [HKLM][64Bits] -- ProInst
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Intel(R) PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {25FBDA9A-E868-4B3B-B9FF-D923818511A1}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Java 7 Update 11 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86417011FF}
O42 - Logiciel: Java 7 Update 9 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217007FF}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {400C31E4-796F-4E86-8FDC-C3C4FACC6847}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77}
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: MadTracker 2 - (.Pas de propri�taire.) [HKLM][64Bits] -- MadTracker 2
O42 - Logiciel: Mahjong Memoirs - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-117948443}
O42 - Logiciel: Malwarebytes Anti-Malware version 1.70.0.1100 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft SkyDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- SkyDriveSetup.exe
O42 - Logiciel: Mozilla Firefox 15.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 15.0 (x86 fr)
O42 - Logiciel: Mozilla Firefox 15.0.1 (x86 fr) - (.Mozilla.) [HKCU][64Bits] -- Mozilla Firefox 15.0.1 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: NVIDIA Graphics Driver 285.64 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}
O42 - Logiciel: PDFCreator - (.Frank Heind�rfer, Philip Chinery.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
O42 - Logiciel: Plants vs Zombies - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-117080787}
O42 - Logiciel: Raccolta foto - (.Microsoft Corporation.) [HKLM][64Bits] -- {D04EBB49-C985-4A38-8695-62000861293A}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM][64Bits] -- Shop for HP Supplies
O42 - Logiciel: Skype� 6.1 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey
O42 - Logiciel: TuneUp 2.4.6.4 - (.TuneUp Media, Inc..) [HKLM][64Bits] -- TuneUpMedia
O42 - Logiciel: Turbo Fiesta - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115320460}
O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM][64Bits] -- {933B4015-4618-4716-A828-5289FC03165F}
O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D}
O42 - Logiciel: WinRAR 4.20 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: WinRAR 4.20 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Wireless Console 3 - (.ASUS.) [HKLM][64Bits] -- {19EA33FB-B34E-40EA-8B8A-61743AEB795A}
O42 - Logiciel: World of Goo - (.Oberon Media.) [HKLM][64Bits] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-116672750}
O42 - Logiciel: avast! Free Antivirus v7.0.1474.0 - (.AVAST Software.) [HKLM][64Bits] -- avast
O42 - Logiciel: S?????? f?t???af??? - (.Microsoft Corporation.) [HKLM][64Bits] -- {A19A8C25-272A-4CD6-8BA8-3772321A021B}
O42 - Logiciel: ?????????? - (.Microsoft Corporation.) [HKLM][64Bits] -- {087D261B-73AE-4B8A-8F18-2EE80DD2ED8B}
O42 - Logiciel: ?????????? (????????????? ??????) - (.Microsoft Corporation.) [HKLM][64Bits] -- {2B068A64-F867-44E9-8827-A795647C8730}
O42 - Logiciel: ?????? ??????? - (.Microsoft Corporation.) [HKLM][64Bits] -- {E37CD6E8-BC51-4D48-9840-803EC3B418D3}
O42 - Logiciel: ???? ????? - (.Microsoft Corporation.) [HKLM][64Bits] -- {5006FD66-7E9B-4F92-BD36-275AD7712348}
O42 - Logiciel: ???? - (.Microsoft Corporation.) [HKLM][64Bits] -- {631C4E4F-6FDC-4CC0-A067-E9876A9BA7FD}

---\\ HKCU & HKLM Software Keys
[HKCU\Software\ASProtect]
[HKCU\Software\ASUS]
[HKCU\Software\ATK0100]
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Audacity]
[HKCU\Software\Avast Software]
[HKCU\Software\BrowserTemp]
[HKCU\Software\Canneverbe Limited]
[HKCU\Software\ChicaLogic, Inc.]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CyberLink]
[HKCU\Software\DT Soft]
[HKCU\Software\DivXNetworks]
[HKCU\Software\ECAREME]
[HKCU\Software\FileHippo.com]
[HKCU\Software\Google]
[HKCU\Software\HP]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\IM Providers]
[HKCU\Software\Image-Line]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\Lavalys]
[HKCU\Software\Licenses]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\MCAFEE]
[HKCU\Software\Macromedia]
[HKCU\Software\Madhouse]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\NVIDIA Corporation]
[HKCU\Software\Netscape]
[HKCU\Software\Ohm Force]
[HKCU\Software\PDFCreator]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\PySoft]
[HKCU\Software\Realtek]
[HKCU\Software\Skype]
[HKCU\Software\SoftVoice]
[HKCU\Software\Synaptics]
[HKCU\Software\SysInternals]
[HKCU\Software\TeleCharger]
[HKCU\Software\Trolltech]
[HKCU\Software\Unlimited Possibilities]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\Valve]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Wow6432Node]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\ej-technologies]
[HKLM\Software\AGEIA Technologies]
[HKLM\Software\ASIO]
[HKLM\Software\ASUS]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Agere]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Cyberlink]
[HKLM\Software\DTS]
[HKLM\Software\DivX]
[HKLM\Software\ECAREME]
[HKLM\Software\GEAR Software]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\IM Providers]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\Khronos]
[HKLM\Software\LSI]
[HKLM\Software\Macromedia]
[HKLM\Software\McAfee.com]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\ODBC]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\SonicFocus]
[HKLM\Software\Sonic]
[HKLM\Software\Synaptics]
[HKLM\Software\Waves Audio]
[HKLM\Software\WinRAR]
[HKLM\Software\Wow6432Node\ACE Compression Software]
[HKLM\Software\Wow6432Node\AGEIA Technologies]
[HKLM\Software\Wow6432Node\ASIO]
[HKLM\Software\Wow6432Node\ASUS]
[HKLM\Software\Wow6432Node\AVAST Software]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\AdwCleaner]
[HKLM\Software\Wow6432Node\Apple Inc.]
[HKLM\Software\Wow6432Node\AsLdr]
[HKLM\Software\Wow6432Node\Atheros Communications Inc.]
[HKLM\Software\Wow6432Node\Bunndle]
[HKLM\Software\Wow6432Node\Canneverbe Limited]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\CyberLink]
[HKLM\Software\Wow6432Node\DT Soft]
[HKLM\Software\Wow6432Node\DivXNetworks]
[HKLM\Software\Wow6432Node\DivX]
[HKLM\Software\Wow6432Node\ECAREME]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\HP]
[HKLM\Software\Wow6432Node\Hewlett-Packard]
[HKLM\Software\Wow6432Node\IM Providers]
[HKLM\Software\Wow6432Node\Image-Line]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\JavaSoft]
[HKLM\Software\Wow6432Node\JreMetrics]
[HKLM\Software\Wow6432Node\Khronos]
[HKLM\Software\Wow6432Node\Lake]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\Madhouse]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware]
[HKLM\Software\Wow6432Node\McAfee.com]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\NVIDIA Corporation]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\Oberon Media]
[HKLM\Software\Wow6432Node\Outsim]
[HKLM\Software\Wow6432Node\PDFCreator]
[HKLM\Software\Wow6432Node\Plustech]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\Propellerhead Software]
[HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\Safer Networking Limited]
[HKLM\Software\Wow6432Node\Skype]
[HKLM\Software\Wow6432Node\SoftVoice]
[HKLM\Software\Wow6432Node\Symantec]
[HKLM\Software\Wow6432Node\Systweak]
[HKLM\Software\Wow6432Node\Uniblue]
[HKLM\Software\Wow6432Node\VST]
[HKLM\Software\Wow6432Node\Valve]
[HKLM\Software\Wow6432Node\WinRAR]
[HKLM\Software\Wow6432Node\ej-technologies]
[HKLM\Software\Wow6432Node\linplug]
[HKLM\Software\Wow6432Node\mozilla.org]
[HKLM\Software\Wow6432Node]
~ Scan Softwares in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 24/10/2012 - 17:47:58 - [115,446] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 04/05/2012 - 18:10:10 - [2,950] ----D C:\Program Files (x86)\AmIcoSingLun
O43 - CFD: 28/08/2012 - 16:49:25 - [2,316] ----D C:\Program Files (x86)\Apple Software Update
O43 - CFD: 08/02/2013 - 22:41:34 - [0,508] ----D C:\Program Files (x86)\ASIO4ALL v2
O43 - CFD: 04/05/2012 - 18:09:39 - [2,271] ----D C:\Program Files (x86)\ASM104xUSB3
O43 - CFD: 04/05/2012 - 18:16:24 - [1007,539] ----D C:\Program Files (x86)\ASUS
O43 - CFD: 04/12/2012 - 21:51:27 - [43,789] ----D C:\Program Files (x86)\Audacity
O43 - CFD: 28/08/2012 - 16:48:39 - [0,602] ----D C:\Program Files (x86)\Bonjour
O43 - CFD: 09/11/2012 - 13:57:00 - [0,024] ----D C:\Program Files (x86)\ChrisPC Free Anonymous Proxy
O43 - CFD: 04/05/2012 - 18:10:55 - [6,384] ----D C:\Program Files (x86)\Cisco
O43 - CFD: 10/02/2013 - 17:54:51 - [183,490] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 29/10/2012 - 09:16:34 - [213,914] ----D C:\Program Files (x86)\CyberLink
O43 - CFD: 29/10/2012 - 09:07:43 - [2,431] ----D C:\Program Files (x86)\DivX
O43 - CFD: 20/08/2012 - 18:16:31 - [0,421] ----D C:\Program Files (x86)\FileHippo.com
O43 - CFD: 09/12/2012 - 00:57:47 - [0] ----D C:\Program Files (x86)\FTDownloader.com
O43 - CFD: 24/02/2012 - 03:29:08 - [362,499] ----D C:\Program Files (x86)\Google
O43 - CFD: 30/09/2012 - 14:33:34 - [208,831] ----D C:\Program Files (x86)\HP
O43 - CFD: 08/02/2013 - 22:41:12 - [661,998] ----D C:\Program Files (x86)\Image-Line
O43 - CFD: 29/10/2012 - 09:13:16 - [36,977] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 04/05/2012 - 18:08:18 - [14,980] ----D C:\Program Files (x86)\Intel
O43 - CFD: 13/12/2012 - 16:01:15 - [7,122] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 29/10/2012 - 09:22:58 - [1,447] ----D C:\Program Files (x86)\iTunes
O43 - CFD: 24/10/2012 - 13:03:31 - [121,165] ----D C:\Program Files (x86)\Java
O43 - CFD: 12/01/2013 - 18:09:31 - [40,481] ----D C:\Program Files (x86)\MadTracker
O43 - CFD: 08/02/2013 - 09:08:54 - [12,191] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 16/08/2012 - 08:42:18 - [0,019] ----D C:\Program Files (x86)\McAfee
O43 - CFD: 17/12/2012 - 18:38:12 - [0] ----D C:\Program Files (x86)\Microsoft
O43 - CFD: 24/02/2012 - 03:19:02 - [6,126] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 21/08/2012 - 00:41:27 - [36,641] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 20/08/2012 - 18:44:57 - [5,306] ----D C:\Program Files (x86)\Microsoft SkyDrive
O43 - CFD: 24/02/2012 - 03:37:31 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 24/02/2012 - 03:26:02 - [0,023] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 09/11/2012 - 13:57:01 - [44,788] ----D C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 09/11/2012 - 13:57:01 - [0,211] ----D C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 14/07/2009 - 06:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 23/09/2012 - 20:10:08 - [0] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 19/10/2012 - 19:11:52 - [114,900] ----D C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 08/02/2013 - 22:40:59 - [4,957] ----D C:\Program Files (x86)\Outsim
O43 - CFD: 11/11/2012 - 21:19:04 - [25,682] ----D C:\Program Files (x86)\PDFCreator
O43 - CFD: 04/05/2012 - 18:10:17 - [13,725] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - 06:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 10/02/2013 - 17:54:51 - [34,964] R---D C:\Program Files (x86)\Skype
O43 - CFD: 04/05/2012 - 18:10:43 - [0] --H-D C:\Program Files (x86)\Temp
O43 - CFD: 25/09/2012 - 18:36:35 - [56,076] ----D C:\Program Files (x86)\TuneUpMedia
O43 - CFD: 14/07/2009 - 05:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 02/12/2012 - 13:06:36 - [0] ----D C:\Program Files (x86)\vGrabber-software
O43 - CFD: 08/02/2013 - 22:41:15 - [1,785] ----D C:\Program Files (x86)\VstPlugins
O43 - CFD: 16/09/2012 - 02:08:02 - [0,500] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 24/10/2012 - 13:41:10 - [305,657] ----D C:\Program Files (x86)\Windows Live
O43 - CFD: 16/09/2012 - 02:08:07 - [5,895] ----D C:\Program Files (x86)\Windows Mail
O43 - CFD: 16/09/2012 - 02:08:04 - [4,791] ----D C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - 06:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 16/09/2012 - 02:08:04 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 18/02/2011 - 21:09:10 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 16/09/2012 - 02:12:22 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 09/12/2012 - 00:32:18 - [4,131] ----D C:\Program Files (x86)\WinRAR
O43 - CFD: 13/02/2013 - 14:36:35 - [11,998] ----D C:\Program Files (x86)\ZHPDiag
O43 - CFD: 24/10/2012 - 17:48:07 - [7,394] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 29/10/2012 - 09:22:57 - [81,076] ----D C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 23/09/2012 - 12:12:52 - [0,507] ----D C:\Program Files (x86)\Common Files\Hewlett-Packard
O43 - CFD: 23/09/2012 - 12:13:09 - [5,403] ----D C:\Program Files (x86)\Common Files\HP
O43 - CFD: 04/05/2012 - 18:10:15 - [2,009] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 04/05/2012 - 18:06:45 - [13,605] ----D C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 09/09/2012 - 10:42:54 - [1,184] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 24/10/2012 - 13:39:06 - [19,851] ----D C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 24/02/2012 - 03:42:35 - [0,338] ----D C:\Program Files (x86)\Common Files\Oberon Media
O43 - CFD: 04/05/2012 - 18:08:21 - [0,155] ----D C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 29/10/2012 - 09:07:36 - [0,438] ----D C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 14/07/2009 - 04:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 10/02/2013 - 17:54:51 - [2,056] ----D C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 14/07/2009 - 04:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 24/10/2012 - 16:55:51 - [0,505] ----D C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 16/09/2012 - 02:12:21 - [9,767] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 24/02/2012 - 03:29:35 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 29/10/2012 - 09:22:57 - [0,008] ----D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 01/12/2012 - 19:49:36 - [125,939] ----D C:\ProgramData\Adobe
O43 - CFD: 04/05/2012 - 18:10:10 - [0,001] ----D C:\ProgramData\AmUStor
O43 - CFD: 28/08/2012 - 16:49:08 - [65,805] ----D C:\ProgramData\Apple
O43 - CFD: 28/08/2012 - 16:50:34 - [0,001] ----D C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Application Data
O43 - CFD: 24/02/2012 - 03:50:45 - [20,323] ----D C:\ProgramData\Asus
O43 - CFD: 24/02/2012 - 03:42:14 - [0,002] ----D C:\ProgramData\ASUS WebStorage
O43 - CFD: 31/08/2012 - 16:33:27 - [17,563] ----D C:\ProgramData\AVAST Software
O43 - CFD: 28/10/2012 - 20:05:56 - [0] ----D C:\ProgramData\Canneverbe Limited
O43 - CFD: 06/08/2012 - 17:23:07 - [4,685] ----D C:\ProgramData\ChangeFolderView
O43 - CFD: 04/05/2012 - 18:20:51 - [0,000] ----D C:\ProgramData\CyberLink
O43 - CFD: 29/10/2012 - 15:03:54 - [0,002] ----D C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 24/02/2012 - 03:43:10 - [562,558] ----D C:\ProgramData\Deadtime Stories
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Desktop
O43 - CFD: 29/10/2012 - 09:07:46 - [1,164] ----D C:\ProgramData\DivX
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Documents
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Favorites
O43 - CFD: 06/08/2012 - 17:20:07 - [0,900] ----D C:\ProgramData\FolderView
O43 - CFD: 08/08/2012 - 17:55:19 - [0,071] ----D C:\ProgramData\Hewlett-Packard
O43 - CFD: 28/10/2012 - 20:45:24 - [16,307] ----D C:\ProgramData\HP
O43 - CFD: 23/09/2012 - 12:15:16 - [0,009] ----D C:\ProgramData\HP Product Assistant
O43 - CFD: 04/05/2012 - 18:14:58 - [0,002] ----D C:\ProgramData\Intel
O43 - CFD: 19/10/2012 - 09:24:47 - [17,553] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 01/12/2012 - 18:38:15 - [0,003] ----D C:\ProgramData\McAfee
O43 - CFD: 17/12/2012 - 18:38:12 - [761,263] -S--D C:\ProgramData\Microsoft
O43 - CFD: 20/08/2012 - 18:44:25 - [0] ----D C:\ProgramData\Microsoft SkyDrive
O43 - CFD: 06/08/2012 - 18:08:56 - [0,010] ----D C:\ProgramData\Mozilla
O43 - CFD: 16/12/2012 - 21:20:42 - [0] ----D C:\ProgramData\NCH Software
O43 - CFD: 04/05/2012 - 18:14:11 - [16,635] ----D C:\ProgramData\NVIDIA
O43 - CFD: 04/05/2012 - 18:07:37 - [0,966] ----D C:\ProgramData\NVIDIA Corporation
O43 - CFD: 09/11/2012 - 13:57:04 - [0,003] ----D C:\ProgramData\P4G
O43 - CFD: 30/10/2012 - 15:48:38 - [0] ----D C:\ProgramData\PY_Software
O43 - CFD: 04/05/2012 - 18:11:42 - [0] ----D C:\ProgramData\Roaming
O43 - CFD: 10/02/2013 - 17:55:00 - [99,508] ----D C:\ProgramData\Skype
O43 - CFD: 04/05/2012 - 18:10:33 - [0,009] ----D C:\ProgramData\SonicFocus
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Start Menu
O43 - CFD: 09/09/2012 - 10:42:54 - [0,000] ----D C:\ProgramData\Sun
O43 - CFD: 04/05/2012 - 18:22:27 - [0,530] ----D C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Templates
O43 - CFD: 25/09/2012 - 18:36:35 - [0,286] ----D C:\ProgramData\TuneUpMedia
O43 - CFD: 23/09/2012 - 18:15:16 - [0,000] ----D C:\ProgramData\WEBREG
O43 - CFD: 28/08/2012 - 16:51:25 - [0,004] ----D C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
O43 - CFD: 20/08/2012 - 18:13:33 - [2,480] ----D C:\Users\Dimitri\AppData\Roaming\Adobe
O43 - CFD: 28/08/2012 - 18:29:11 - [0,193] ----D C:\Users\Dimitri\AppData\Roaming\Apple Computer
O43 - CFD: 06/08/2012 - 23:09:06 - [0] ----D C:\Users\Dimitri\AppData\Roaming\ASUS WebStorage
O43 - CFD: 13/01/2013 - 15:25:36 - [0,001] ----D C:\Users\Dimitri\AppData\Roaming\Audacity
O43 - CFD: 09/11/2012 - 13:57:06 - [0,312] ----D C:\Users\Dimitri\AppData\Roaming\Azureus
O43 - CFD: 28/10/2012 - 20:05:55 - [0,001] ----D C:\Users\Dimitri\AppData\Roaming\Canneverbe Limited
O43 - CFD: 20/08/2012 - 18:06:47 - [0,000] ----D C:\Users\Dimitri\AppData\Roaming\CrystalIdea Software
O43 - CFD: 08/09/2012 - 11:49:14 - [0] ----D C:\Users\Dimitri\AppData\Roaming\CyberLink
O43 - CFD: 02/11/2012 - 15:40:48 - [1,342] ----D C:\Users\Dimitri\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 22/09/2012 - 22:19:26 - [0,095] ----D C:\Users\Dimitri\AppData\Roaming\DivX
O43 - CFD: 23/09/2012 - 12:24:31 - [0,896] ----D C:\Users\Dimitri\AppData\Roaming\DVDVideoSoft
O43 - CFD: 30/09/2012 - 09:46:22 - [0,221] ----D C:\Users\Dimitri\AppData\Roaming\HP
O43 - CFD: 17/01/2013 - 17:21:24 - [0,007] ----D C:\Users\Dimitri\AppData\Roaming\HpUpdate
O43 - CFD: 06/08/2012 - 17:20:28 - [0] ----D C:\Users\Dimitri\AppData\Roaming\Identities
O43 - CFD: 06/08/2012 - 17:19:14 - [0,001] ----D C:\Users\Dimitri\AppData\Roaming\Intel
O43 - CFD: 06/08/2012 - 17:48:10 - [0,000] ----D C:\Users\Dimitri\AppData\Roaming\Macromedia
O43 - CFD: 19/10/2012 - 09:24:53 - [0,006] ----D C:\Users\Dimitri\AppData\Roaming\Malwarebytes
O43 - CFD: 14/07/2009 - 08:44:38 - [0] ----D C:\Users\Dimitri\AppData\Roaming\Media Center Programs
O43 - CFD: 10/01/2013 - 14:19:23 - [0,429] -S--D C:\Users\Dimitri\AppData\Roaming\Microsoft
O43 - CFD: 06/08/2012 - 18:09:29 - [23,431] ----D C:\Users\Dimitri\AppData\Roaming\Mozilla
O43 - CFD: 13/02/2013 - 14:05:20 - [6,523] ----D C:\Users\Dimitri\AppData\Roaming\Skype
O43 - CFD: 25/09/2012 - 18:36:11 - [0,000] ----D C:\Users\Dimitri\AppData\Roaming\TuneUpMedia
O43 - CFD: 24/11/2012 - 19:39:27 - [0,000] ----D C:\Users\Dimitri\AppData\Roaming\Windows Live Writer
O43 - CFD: 22/08/2012 - 15:12:03 - [0,000] ----D C:\Users\Dimitri\AppData\Roaming\WinRAR
O43 - CFD: 20/08/2012 - 18:13:33 - [14,723] ----D C:\Users\Dimitri\AppData\Local\Adobe
O43 - CFD: 28/08/2012 - 16:49:27 - [0] ----D C:\Users\Dimitri\AppData\Local\Apple
O43 - CFD: 28/08/2012 - 16:51:43 - [3,559] ----D C:\Users\Dimitri\AppData\Local\Apple Computer
O43 - CFD: 06/08/2012 - 17:19:09 - [0] ----D C:\Users\Dimitri\AppData\Local\Application Data
O43 - CFD: 06/08/2012 - 17:19:17 - [0,000] ----D C:\Users\Dimitri\AppData\Local\ASUS
O43 - CFD: 23/12/2012 - 23:11:27 - [92,375] ----D C:\Users\Dimitri\AppData\Local\Axialis
O43 - CFD: 03/11/2012 - 22:13:09 - [1,614] ----D C:\Users\Dimitri\AppData\Local\CRE
O43 - CFD: 12/02/2013 - 18:08:28 - [1,551] ----D C:\Users\Dimitri\AppData\Local\Diagnostics
O43 - CFD: 11/10/2012 - 19:10:21 - [52,533] ----D C:\Users\Dimitri\AppData\Local\Google
O43 - CFD: 06/08/2012 - 17:19:09 - [0] ----D C:\Users\Dimitri\AppData\Local\Historique
O43 - CFD: 30/09/2012 - 09:46:20 - [1,054] ----D C:\Users\Dimitri\AppData\Local\HP
O43 - CFD: 08/08/2012 - 13:11:44 - [0] ----D C:\Users\Dimitri\AppData\Local\Macromedia
O43 - CFD: 17/12/2012 - 18:38:11 - [381,516] ----D C:\Users\Dimitri\AppData\Local\Microsoft
O43 - CFD: 06/08/2012 - 18:09:16 - [53,253] ----D C:\Users\Dimitri\AppData\Local\Mozilla
O43 - CFD: 19/10/2012 - 19:45:20 - [0,004] ----D C:\Users\Dimitri\AppData\Local\PAYDAY
O43 - CFD: 07/08/2012 - 09:46:46 - [0,039] ----D C:\Users\Dimitri\AppData\Local\Power2Go
O43 - CFD: 30/12/2012 - 13:57:18 - [0] ----D C:\Users\Dimitri\AppData\Local\Programs
O43 - CFD: 09/12/2012 - 00:48:31 - [0,001] ----D C:\Users\Dimitri\AppData\Local\PutLockerDownloader
O43 - CFD: 13/02/2013 - 14:35:35 - [0,036] ----D C:\Users\Dimitri\AppData\Local\Temp
O43 - CFD: 06/08/2012 - 17:19:09 - [0] ----D C:\Users\Dimitri\AppData\Local\Temporary Internet Files
O43 - CFD: 13/01/2013 - 14:34:15 - [0,045] ----D C:\Users\Dimitri\AppData\Local\VirtualStore
O43 - CFD: 13/02/2013 - 13:24:12 - [0,078] ----D C:\Users\Dimitri\AppData\Local\Windows Live
O43 - CFD: 24/11/2012 - 19:37:42 - [0,618] ----D C:\Users\Dimitri\AppData\Local\Windows Live Writer
O43 - CFD: 08/02/2013 - 08:51:56 - [0,000] ----D C:\Users\Dimitri\AppData\Local\yesmessenger
O43 - CFD: 14/07/2009 - 05:54:32 - [0,014] R---D C:\Users\Dimitri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 07/08/2012 - 19:26:15 - [0,000] R---D C:\Users\Dimitri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 08/02/2013 - 22:41:34 - [0,003] ----D C:\Users\Dimitri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
O43 - CFD: 08/02/2013 - 22:41:13 - [0,019] ----D C:\Users\Dimitri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
O43 - CFD: 12/01/2013 - 17:56:58 - [0] ----D C:\Users\Dimitri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MadTracker
O43 - CFD: 14/07/2009 - 05:49:38 - [0,001] R---D C:\Users\Dimitri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 30/10/2012 - 15:28:14 - [0] R---D C:\Users\Dimitri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 09/12/2012 - 00:32:18 - [0,003] ----D C:\Users\Dimitri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
~ Scan Program Folder in 00mn 22s



---\\ Derniers fichiers modifi�s ou cr�es sous Windows et System32 (O44)
O44 - LFC:[MD5.E61B6D279DD5A36A79CC9F16CB375148] - 13/02/2013 - 14:12:41 ----- . (...) -- C:\Windows\WindowsUpdate.log [1112817]
O44 - LFC:[MD5.EEDFBF451CC11D74C1F8A33DA0CB2F96] - 13/02/2013 - 14:08:48 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.F816F84A86FBC2E4B9A73FAF7DC4E74C] - 07/02/2013 - 18:48:21 . (...) -- C:\Windows\System32\AutoRunFilter.ini []
O44 - LFC:[MD5.F816F84A86FBC2E4B9A73FAF7DC4E74C] - 07/02/2013 - 18:48:21 ---A- . (...) -- C:\Windows\SysNative\AutoRunFilter.ini [2522]
O44 - LFC:[MD5.CE9EFE69E8D56AEC516EAA92CFE518D0] - 06/02/2013 - 19:19:48 ---A- . (...) -- C:\AdwCleaner[S1].txt [1334]
O44 - LFC:[MD5.EAA284202AA95D7FC9FDE9B78DE48F7E] - 05/02/2013 - 20:07:21 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512]
O44 - LFC:[MD5.10E87E181F1A41CD658CB70B879384FC] - 31/01/2013 - 17:55:15 . (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(T.) -- C:\Windows\System32\perfc009.dat [1081760]
O44 - LFC:[MD5.6FEB14199A676B3E184EDD5FC81C5E93] - 31/01/2013 - 17:55:15 . (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(T.) -- C:\Windows\System32\perfc00C.dat [1081760]
O44 - LFC:[MD5.031AA0A1C3D3BFA3F134E5B026AC680C] - 31/01/2013 - 17:55:15 . (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(T.) -- C:\Windows\System32\perfh009.dat [1081760]
O44 - LFC:[MD5.895311D810B09A479929368814CB05CE] - 31/01/2013 - 17:55:15 . (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(T.) -- C:\Windows\System32\perfh00C.dat [1081760]
O44 - LFC:[MD5.A50C47E016D79D072AE0386BC264B2B9] - 31/01/2013 - 17:55:15 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1661710]
O44 - LFC:[MD5.10E87E181F1A41CD658CB70B879384FC] - 31/01/2013 - 17:55:15 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [121080]
O44 - LFC:[MD5.6FEB14199A676B3E184EDD5FC81C5E93] - 31/01/2013 - 17:55:15 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [148792]
O44 - LFC:[MD5.031AA0A1C3D3BFA3F134E5B026AC680C] - 31/01/2013 - 17:55:15 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [652148]
O44 - LFC:[MD5.895311D810B09A479929368814CB05CE] - 31/01/2013 - 17:55:15 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [745306]
O44 - LFC:[MD5.A50C47E016D79D072AE0386BC264B2B9] - 31/01/2013 - 17:55:15 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1661710]
O44 - LFC:[MD5.94BCE5A03EF5F9340AD9095E0D409C82] - 17/01/2013 - 01:28:58 . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\MpSigStub.exe [188832]
O44 - LFC:[MD5.7C09323F49846FA7F81AAC56E2920FEC] - 15/01/2013 - 15:25:55 . (...) -- C:\Windows\System32\WindowsAccessBridge-64.dll [1661710]
O44 - LFC:[MD5.7C09323F49846FA7F81AAC56E2920FEC] - 15/01/2013 - 15:25:55 ---A- . (.Oracle Corporation - Pas de description.) -- C:\Windows\SysNative\WindowsAccessBridge-64.dll [108448]
O44 - LFC:[MD5.CB952820D5305967C4BA8661224067AE] - 15/01/2013 - 15:25:53 . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\javaws.exe [188832]
O44 - LFC:[MD5.9D35087555A25FB70D5348B7FF2D5BB8] - 15/01/2013 - 15:25:53 ----- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\deployJava1.dll [960416]
O44 - LFC:[MD5.95EF52E273B26FD3603B56BDCC43EEB8] - 15/01/2013 - 15:25:53 ----- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\java.exe [188832]
O44 - LFC:[MD5.6A67B4855A61D0FC12FE24196FABD1BF] - 15/01/2013 - 15:25:53 ----- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\javaw.exe [188832]
O44 - LFC:[MD5.31CD76452D3CF6E886A194165DAA11D1] - 15/01/2013 - 15:25:53 ----- . (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(T.) -- C:\Windows\System32\npDeployJava1.dll [1081760]
O44 - LFC:[MD5.9D35087555A25FB70D5348B7FF2D5BB8] - 15/01/2013 - 15:25:53 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\SysNative\deployJava1.dll [960416]
O44 - LFC:[MD5.95EF52E273B26FD3603B56BDCC43EEB8] - 15/01/2013 - 15:25:53 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\SysNative\java.exe [188832]
O44 - LFC:[MD5.6A67B4855A61D0FC12FE24196FABD1BF] - 15/01/2013 - 15:25:53 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\SysNative\javaw.exe [188832]
O44 - LFC:[MD5.CB952820D5305967C4BA8661224067AE] - 15/01/2013 - 15:25:53 ---A- . (.Oracle Corporation - Java(TM) Web Start Launcher.) -- C:\Windows\SysNative\javaws.exe [308640]
O44 - LFC:[MD5.31CD76452D3CF6E886A194165DAA11D1] - 15/01/2013 - 15:25:53 ---A- . (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(T.) -- C:\Windows\SysNative\npDeployJava1.dll [1081760]
O44 - LFC:[MD5.92EB844D90615CB266F84C3202B8786E] - 14/12/2012 - 16:49:28 . (...) -- C:\Windows\System32\Drivers\mbam.sys []
~ Scan Files in 00mn 09s



---\\ Derniers fichiers cr��s dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.74FE77366404183CC0B3F73CCA584312] - 06/02/2013 - 19:54:55 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx
O45 - LFCP:[MD5.5668EA4A5697E1E1CDE7BDFD398D70BA] - 06/02/2013 - 19:55:55 ---A- - C:\Windows\Prefetch\AgCx_SC1.db
O45 - LFCP:[MD5.F1D29C8893012D8A02263986F885149E] - 08/02/2013 - 09:32:15 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-80F4A784.pf
O45 - LFCP:[MD5.0E5E4AE39F4A362B5F56E460C84A02DE] - 08/02/2013 - 10:25:33 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-230FC512.pf
O45 - LFCP:[MD5.03DCB8D641F78F8F163C9D94B1FDCBD1] - 08/02/2013 - 10:25:34 ---A- - C:\Windows\Prefetch\SDIAGNHOST.EXE-4F023D6C.pf
O45 - LFCP:[MD5.0F07F22569F6844CA36073E34EC38967] - 08/02/2013 - 10:25:35 ---A- - C:\Windows\Prefetch\W32TM.EXE-4AD7E713.pf
O45 - LFCP:[MD5.8B1A453F3DEADF81D516A93CEE50461E] - 08/02/2013 - 10:25:39 ---A- - C:\Windows\Prefetch\VSSVC.EXE-27BE3793.pf
O45 - LFCP:[MD5.DB9E9A1DA18BAA4CCD77130A7DAE604D] - 08/02/2013 - 10:25:44 ---A- - C:\Windows\Prefetch\PING.EXE-EF869602.pf
O45 - LFCP:[MD5.5465EDC45C1F821567EB11E75D5DAE10] - 08/02/2013 - 13:40:11 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-09140401.pf
O45 - LFCP:[MD5.D684782CB91D56036C2EB989480FE4F9] - 08/02/2013 - 19:44:39 ---A- - C:\Windows\Prefetch\HPQTRA08.EXE-9DA8F9E8.pf
O45 - LFCP:[MD5.26E101C9CBD8C03554E020CA8253F217] - 08/02/2013 - 19:46:17 ---A- - C:\Windows\Prefetch\WSQMCONS.EXE-118B52B7.pf
O45 - LFCP:[MD5.F9DF17B8A162D7677A0DB46D7595F39A] - 08/02/2013 - 19:49:12 ---A- - C:\Windows\Prefetch\MPAS-D_BD_1.143.1556.0.EXE-1727BAB2.pf
O45 - LFCP:[MD5.4D9D623B481A19515B8724C383C2A429] - 08/02/2013 - 19:49:13 ---A- - C:\Windows\Prefetch\MPMINISIGSTUB.EXE-7991DCF4.pf
O45 - LFCP:[MD5.EB77FFD040F06247BA1013F039D037F0] - 08/02/2013 - 20:59:53 ---A- - C:\Windows\Prefetch\EXPLORER.EXE-A80E4F97.pf
O45 - LFCP:[MD5.73738CDF4DFF1FFE900020161301A384] - 08/02/2013 - 22:37:24 ---A- - C:\Windows\Prefetch\FLSTUDIO_10.0.9.EXE-5AD2EB29.pf
O45 - LFCP:[MD5.5D593369F497C8550B5D9C2D1354029F] - 08/02/2013 - 22:37:31 ---A- - C:\Windows\Prefetch\SHAREDDLLS_INSTALL.EXE-176C493F.pf
O45 - LFCP:[MD5.A15F83A1297E573166C3553170219A4D] - 08/02/2013 - 22:37:41 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-D327D386.pf
O45 - LFCP:[MD5.47488612A5A5118E046100D8BBF26C79] - 08/02/2013 - 22:41:06 ---A- - C:\Windows\Prefetch\GRPCONV.EXE-F5E7CCEF.pf
O45 - LFCP:[MD5.78C37A15198DA32EF0F249D34590095E] - 08/02/2013 - 22:41:06 ---A- - C:\Windows\Prefetch\INFDEFAULTINSTALL.EXE-A0F2EF51.pf
O45 - LFCP:[MD5.CE3D64D48133679D09D12570FEBEC3B1] - 08/02/2013 - 22:41:14 ---A- - C:\Windows\Prefetch\ILDOWNLOADER_INSTALL.EXE-4259747D.pf
O45 - LFCP:[MD5.D7ACF4BBCBCCD59D4C529C22A2FD9BC9] - 08/02/2013 - 22:41:26 ---A- - C:\Windows\Prefetch\ASIO4ALL.EXE-31CB4669.pf
O45 - LFCP:[MD5.4E2AD28C574D630EFB6BAD7E8006E32A] - 08/02/2013 - 22:41:34 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-8461DBEE.pf
O45 - LFCP:[MD5.02A5FA23C0F9B3D0B64F01F33671D8CC] - 08/02/2013 - 22:47:44 ---A- - C:\Windows\Prefetch\MPCMDRUN.EXE-F401FBB4.pf
O45 - LFCP:[MD5.9AFEE17E93ED766CF91346E3DA583EB2] - 10/02/2013 - 17:53:47 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf
O45 - LFCP:[MD5.F60AFCECA912A233E2889D5346F32CA3] - 10/02/2013 - 17:53:47 ---A- - C:\Windows\Prefetch\UPDATECHECKER.EXE-36EB3522.pf
O45 - LFCP:[MD5.F33C42E8F6B8D5EBC29DCF2F2D46B5D3] - 10/02/2013 - 17:54:00 ---A- - C:\Windows\Prefetch\SKYFD22.TMP-25C3AD90.pf
O45 - LFCP:[MD5.8D5F830D27EDB51A33A53A7F8C30E586] - 10/02/2013 - 17:54:10 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-A2D55CB6.pf
O45 - LFCP:[MD5.F237F1C0E73F9D90B480069D74E214A6] - 10/02/2013 - 17:54:36 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-E09A077A.pf
O45 - LFCP:[MD5.57BA96AB5B78F59098B055C945F4169A] - 10/02/2013 - 17:54:57 ---A- - C:\Windows\Prefetch\ATTRIB.EXE-73917FEA.pf
O45 - LFCP:[MD5.D46C4E741555573755F7BF3D30283288] - 10/02/2013 - 17:55:17 ---A- - C:\Windows\Prefetch\UPDATER.EXE-EA1310CB.pf
O45 - LFCP:[MD5.563E7B7282E81036A081DDD0F8EDA55C] - 10/02/2013 - 17:58:03 ---A- - C:\Windows\Prefetch\HPWUCLI.EXE-C018277F.pf
O45 - LFCP:[MD5.E40CB9703F0E4BC25D1ED80A27196354] - 10/02/2013 - 18:08:40 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-67751737.pf
O45 - LFCP:[MD5.D87A0666089039F59A004192EE9FE4A8] - 10/02/2013 - 18:48:06 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-97229F6A.pf
O45 - LFCP:[MD5.2105D4BABB31BA46A12BCE93E71B0B73] - 10/02/2013 - 20:19:54 ---A- - C:\Windows\Prefetch\FL.EXE-C9300BD6.pf
O45 - LFCP:[MD5.0328EBC64EB3792B55260AFC280B36C5] - 11/02/2013 - 00:30:06 ---A- - C:\Windows\Prefetch\HH.EXE-21B3A58C.pf
O45 - LFCP:[MD5.E0A00985C0F5BEE38B64817488A8F621] - 11/02/2013 - 15:49:05 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-C775D18D.pf
O45 - LFCP:[MD5.4654A675F21D29545191B2739B491781] - 11/02/2013 - 15:49:41 ---A- - C:\Windows\Prefetch\AVASTEMUPDATE.EXE-6EF4B603.pf
O45 - LFCP:[MD5.87FF7DB2CC93E75885ADFC30BB97A939] - 11/02/2013 - 16:11:04 ---A- - C:\Windows\Prefetch\Layout.ini
O45 - LFCP:[MD5.D837010F2AA941A06893439E8CD947AF] - 11/02/2013 - 16:11:13 ---A- - C:\Windows\Prefetch\DEFRAG.EXE-588F90AD.pf
O45 - LFCP:[MD5.E7B5573811A205D4D19F3A796EA6AD40] - 11/02/2013 - 16:11:14 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7AC6742A.pf
O45 - LFCP:[MD5.9E50021794B983EDA9C069155138A85C] - 11/02/2013 - 16:14:06 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-411A328D.pf
O45 - LFCP:[MD5.63EB8F8699E15A32C8F4664DB7168C64] - 11/02/2013 - 16:21:08 ---A- - C:\Windows\Prefetch\W32TM.EXE-1101AF41.pf
O45 - LFCP:[MD5.889A96AF220E527BFBE1214542D42F19] - 11/02/2013 - 16:21:17 ---A- - C:\Windows\Prefetch\PING.EXE-7E94E73E.pf
O45 - LFCP:[MD5.F793BDB77CD3C44DB07CA970EB2D7869] - 11/02/2013 - 16:22:03 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf
O45 - LFCP:[MD5.71DDA4FA8B1D055825151D27BA77E350] - 11/02/2013 - 17:07:17 ---A- - C:\Windows\Prefetch\FIREFOX.EXE-18ACFCFF.pf
O45 - LFCP:[MD5.65F837F893A13F7E333C7ACC9F35F229] - 11/02/2013 - 17:08:37 ---A- - C:\Windows\Prefetch\FLASHPLAYERPLUGIN_11_5_502_14-30A8047D.pf
O45 - LFCP:[MD5.DE98575F4B3DE1D20DBFB45F8B9BF3B0] - 11/02/2013 - 17:08:37 ---A- - C:\Windows\Prefetch\PLUGIN-CONTAINER.EXE-F1B02F03.pf
O45 - LFCP:[MD5.66AFC28295A17E33DAED79340F6AF6F7] - 11/02/2013 - 17:16:18 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-072DB435.pf
O45 - LFCP:[MD5.43D30C7163F4317CE46367BD6496305D] - 11/02/2013 - 19:05:33 ---A- - C:\Windows\Prefetch\HPQSRMON.EXE-2C500AB8.pf
O45 - LFCP:[MD5.B69D27FCC52337CFD61CF44F5059BCEF] - 11/02/2013 - 19:05:33 ---A- - C:\Windows\Prefetch\RAVCPL64.EXE-D6B4B613.pf
O45 - LFCP:[MD5.D9629299CD613A26E85113383215440C] - 11/02/2013 - 19:06:14 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-3AB35CA7.pf
O45 - LFCP:[MD5.8BE99FA285216822BB694B2260DE0FA0] - 11/02/2013 - 19:06:33 ---A- - C:\Windows\Prefetch\WMPNETWK.EXE-D9F2A96F.pf
O45 - LFCP:[MD5.EF201B13DB1F6563700A3BB7C3AFDE00] - 11/02/2013 - 19:10:48 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-4B6C9213.pf
O45 - LFCP:[MD5.C3074A135191794876678F93F9A2601C] - 11/02/2013 - 19:36:23 ---A- - C:\Windows\Prefetch\INSTALLFLASHPLAYER.EXE-E04FE790.pf
O45 - LFCP:[MD5.A02400F8DC93DC0C75F3B6B845758CFF] - 11/02/2013 - 19:48:43 ---A- - C:\Windows\Prefetch\CALC.EXE-77FDF17F.pf
O45 - LFCP:[MD5.2C9B4423FEC06BB3870A2D4E6F5B223B] - 12/02/2013 - 17:46:21 ---A- - C:\Windows\Prefetch\SEARCHINDEXER.EXE-4A6353B9.pf
O45 - LFCP:[MD5.F9CBD7F3C1D8C2B5CF24F55008976422] - 12/02/2013 - 17:46:21 ---A- - C:\Windows\Prefetch\UNSECAPP.EXE-A02905A6.pf
O45 - LFCP:[MD5.4632031C07E8418552F59D2E3FD5330E] - 12/02/2013 - 17:51:39 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7CFEDEA3.pf
O45 - LFCP:[MD5.5B49C2A8F0AC92DE14F0445A7161D565] - 12/02/2013 - 17:51:39 ---A- - C:\Windows\Prefetch\VSSVC.EXE-B8AFC319.pf
O45 - LFCP:[MD5.4E019EAD5630C938D4921BA05988627F] - 12/02/2013 - 17:52:12 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf
O45 - LFCP:[MD5.083168E283BFEE6201FE131932BB4D6E] - 12/02/2013 - 17:52:13 ---A- - C:\Windows\Prefetch\MPAS-D_BD_1.143.1848.0.EXE-C8BDE15E.pf
O45 - LFCP:[MD5.774F7C61474F8FE6359FBC8ECDD9A50B] - 12/02/2013 - 17:52:15 ---A- - C:\Windows\Prefetch\MPMINISIGSTUB.EXE-33BE07DA.pf
O45 - LFCP:[MD5.7C7FE2530C17CF17604ADA3E7EF1D0AD] - 12/02/2013 - 17:52:15 ---A- - C:\Windows\Prefetch\MPSIGSTUB.EXE-6CB27A06.pf
O45 - LFCP:[MD5.38281DC3FF10513ABB632098EBAEF071] - 12/02/2013 - 18:00:01 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-E7777CC4.pf
O45 - LFCP:[MD5.CD6DD36C146A78C2268A47A55197B445] - 12/02/2013 - 18:05:31 ---A- - C:\Windows\Prefetch\CSC.EXE-BE9AC2DF.pf
O45 - LFCP:[MD5.A60E060ADE28F5C62EDF52EFD7D41761] - 12/02/2013 - 18:05:31 ---A- - C:\Windows\Prefetch\CVTRES.EXE-2B9D810D.pf
O45 - LFCP:[MD5.C5362968BB0960B7947930A205614653] - 12/02/2013 - 18:05:33 ---A- - C:\Windows\Prefetch\MSDT.EXE-09841468.pf
O45 - LFCP:[MD5.BB872B73C7513C776F5E3D2753F4C99B] - 12/02/2013 - 18:05:35 ---A- - C:\Windows\Prefetch\IPCONFIG.EXE-912F3D5B.pf
O45 - LFCP:[MD5.0E6836E07BAB86A636043EEA1140F763] - 12/02/2013 - 18:05:35 ---A- - C:\Windows\Prefetch\MAKECAB.EXE-0F1704A4.pf
O45 - LFCP:[MD5.58187E1A92F6AC29BABF24FF59B41C93] - 12/02/2013 - 18:05:35 ---A- - C:\Windows\Prefetch\ROUTE.EXE-5E3D06CB.pf
O45 - LFCP:[MD5.A2AEF74F0B6C6857D7C9BC704E1BB5F7] - 12/02/2013 - 18:05:37 ---A- - C:\Windows\Prefetch\NETSH.EXE-F1B6DA12.pf
O45 - LFCP:[MD5.D4A7B02AAF1C703F9CED421BD6C1B1DE] - 12/02/2013 - 18:05:37 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-DE9673F9.pf
O45 - LFCP:[MD5.4D56E69C2CC3D2F300B852661EBDF958] - 12/02/2013 - 18:05:37 ---A- - C:\Windows\Prefetch\SDIAGNHOST.EXE-8D72177C.pf
O45 - LFCP:[MD5.9429805DC519992E0AEF4FF7A3030F77] - 12/02/2013 - 18:05:48 ---A- - C:\Windows\Prefetch\WLANEXT.EXE-D2CEDC57.pf
O45 - LFCP:[MD5.F75707484E07114BFEDF477254950AFF] - 12/02/2013 - 18:11:02 ---A- - C:\Windows\Prefetch\WMPNSCFG.EXE-FC0D39BF.pf
O45 - LFCP:[MD5.1B7F27025B20FF69BF39673219A6E361] - 12/02/2013 - 18:23:00 ---A- - C:\Windows\Prefetch\WORDPAD.EXE-D7FD7414.pf
O45 - LFCP:[MD5.3935AD6865EC1A670DD2EB614623BCA1] - 12/02/2013 - 18:30:40 ---A- - C:\Windows\Prefetch\PRINTISOLATIONHOST.EXE-E0CD10A9.pf
O45 - LFCP:[MD5.BE11A0A70F2B9674EA219D84A4F009F4] - 12/02/2013 - 19:08:39 ---A- - C:\Windows\Prefetch\UPDATUS.15031493_RUNASUSER.EX-54A72D7F.pf
O45 - LFCP:[MD5.F2849E455FCC1B02CFB81862D55601FE] - 12/02/2013 - 19:08:39 ---A- - C:\Windows\Prefetch\WLMERGER.EXE-C117DFA3.pf
O45 - LFCP:[MD5.246A16EBB618C86DC197CA995615B50F] - 12/02/2013 - 19:08:40 ---A- - C:\Windows\Prefetch\WLMERGER.EXE-7AC87BA2.pf
O45 - LFCP:[MD5.7A8C26473787C838796919AE1A6AAB6B] - 12/02/2013 - 19:08:46 ---A- - C:\Windows\Prefetch\COMUPDATUS.EXE-D7F34848.pf
O45 - LFCP:[MD5.54E30AB30E1AD0CE0C8BAA5EEC3E01A9] - 12/02/2013 - 19:24:17 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-1526059893-305988771-3302340161-1001.db
O45 - LFCP:[MD5.DB76AE77270D1E317C4E574FD43E9DAA] - 12/02/2013 - 19:24:17 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-1526059893-305988771-3302340161-1001.db
O45 - LFCP:[MD5.41407002D465A4F4FA04D417A7A1EE08] - 12/02/2013 - 21:36:16 ---A- - C:\Windows\Prefetch\FLASHPLAYERINSTALLER.EXE-21C59411.pf
O45 - LFCP:[MD5.D57FC0C63695C1836D2530310C3E1B19] - 12/02/2013 - 21:36:19 ---A- - C:\Windows\Prefetch\INSTALLFLASHPLAYER.EXE-DCF86DA1.pf
O45 - LFCP:[MD5.4AF3A8E3745BFB64198168750AA15C46] - 12/02/2013 - 21:36:36 ---A- - C:\Windows\Prefetch\CMD.EXE-4A81B364.pf
O45 - LFCP:[MD5.47E656781B52F9D0084FA551C6BA7445] - 13/02/2013 - 13:23:06 ---A- - C:\Windows\Prefetch\AVASTUI.EXE-56B29A08.pf
O45 - LFCP:[MD5.F7C62F82B08C91AAA9DF38544FC7BC7A] - 13/02/2013 - 13:23:06 ---A- - C:\Windows\Prefetch\HPWUSCHD2.EXE-DE9C9D03.pf
O45 - LFCP:[MD5.8B3F7734152FEA1EC5B555B2A091C079] - 13/02/2013 - 13:23:06 ---A- - C:\Windows\Prefetch\RUNONCE.EXE-0E293DD6.pf
O45 - LFCP:[MD5.DB34E68535C81BA32B75A19261118204] - 13/02/2013 - 13:23:17 ---A- - C:\Windows\Prefetch\KBFILTR.EXE-3F28552B.pf
O45 - LFCP:[MD5.8CD0EBAA8E61DD7DCCA13567CA8A8A12] - 13/02/2013 - 13:23:19 ---A- - C:\Windows\Prefetch\WDC.EXE-37A6A0A3.pf
O45 - LFCP:[MD5.FA60AB161C5A915E5C3135FED9891929] - 13/02/2013 - 13:23:45 ---A- - C:\Windows\Prefetch\IELOWUTIL.EXE-903B8AC1.pf
O45 - LFCP:[MD5.E5903C1F7A48E4A00CCEEA853349A927] - 13/02/2013 - 13:24:30 ---A- - C:\Windows\Prefetch\WLCOMM.EXE-324C9362.pf
O45 - LFCP:[MD5.768E20A5232CE82CAEB175B4B31EF03C] - 13/02/2013 - 13:25:16 ---A- - C:\Windows\Prefetch\SNDVOL.EXE-5D4CC7D6.pf
O45 - LFCP:[MD5.478A1B8DF58CCF7F0D3DD096CC2045AB] - 13/02/2013 - 14:00:30 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-7238F31D.pf
O45 - LFCP:[MD5.1E87E11EA3207CA7BD9C244ED5DF487C] - 13/02/2013 - 14:03:04 ---A- - C:\Windows\Prefetch\AgRobust.db
O45 - LFCP:[MD5.B873B619E5828AF7032458F64ABFDCC3] - 13/02/2013 - 14:03:05 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db
O45 - LFCP:[MD5.81F073F1E954811222EA84B041504132] - 13/02/2013 - 14:03:06 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db
O45 - LFCP:[MD5.3078913B6844F2D003E1B1F8624231A2] - 13/02/2013 - 14:03:06 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db
O45 - LFCP:[MD5.D0F0ACF4BDC8EEA3DC7A561761DFBDAB] - 13/02/2013 - 14:05:20 ---A- - C:\Windows\Prefetch\SKYPE.EXE-E71BF59F.pf
O45 - LFCP:[MD5.259D7A3727C4399AD00286143A8296E3] - 13/02/2013 - 14:05:42 ---A- - C:\Windows\Prefetch\MSNMSGR.EXE-D22CE80C.pf
O45 - LFCP:[MD5.1891158E912D653F8E95C38AE569CE36] - 13/02/2013 - 14:08:00 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin
O45 - LFCP:[MD5.E2B686D45A4F901C5F6FC9AC41A7D363] - 13/02/2013 - 14:10:13 ---A- - C:\Windows\Prefetch\ACOVS.EXE-BB4E04D4.pf
O45 - LFCP:[MD5.54B23DA6DDE87EB9128101C2FDF133CB] - 13/02/2013 - 14:10:13 ---A- - C:\Windows\Prefetch\APSDAEMON.EXE-4484BAA6.pf
O45 - LFCP:[MD5.DA264357C8A67D9E5776A654DA37F087] - 13/02/2013 - 14:10:13 ---A- - C:\Windows\Prefetch\IWRAP.EXE-20582B89.pf
O45 - LFCP:[MD5.559404B1AAA8719D30CF7E7C84AFC185] - 13/02/2013 - 14:10:13 ---A- - C:\Windows\Prefetch\NVTRAY.EXE-DB83881B.pf
O45 - LFCP:[MD5.9A24AFC6F22489B4F34D4AAF7B6BDD7C] - 13/02/2013 - 14:10:13 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-D5170E12.pf
O45 - LFCP:[MD5.2688DAB6F9654CA644D09ABC86DFC1F4] - 13/02/2013 - 14:10:16 ---A- - C:\Windows\Prefetch\LPKSETUP.EXE-90F505D8.pf
O45 - LFCP:[MD5.3A3660F97B2C06175E47A3B011EE0EA8] - 13/02/2013 - 14:10:25 ---A- - C:\Windows\Prefetch\HPQSTE08.EXE-DF637819.pf
O45 - LFCP:[MD5.09AEAB1075C1B0104E307895178D203F] - 13/02/2013 - 14:10:29 ---A- - C:\Windows\Prefetch\HPQBAM08.EXE-AB267C75.pf
O45 - LFCP:[MD5.68B9677E3F01F0ED1CAED86DAFD0FA96] - 13/02/2013 - 14:10:32 ---A- - C:\Windows\Prefetch\HPQGPC01.EXE-E2898B9C.pf
O45 - LFCP:[MD5.877A7BF78FCA48972916F4106A2085B1] - 13/02/2013 - 14:10:39 ---A- - C:\Windows\Prefetch\PRESENTATIONFONTCACHE.EXE-73BE9E78.pf
O45 - LFCP:[MD5.765929DCC178FE671AC7755120E99771] - 13/02/2013 - 14:11:01 ---A- - C:\Windows\Prefetch\AVAST.SETUP-B1D66586.pf
O45 - LFCP:[MD5.329E25752AC47C2CFC96FC9050609CA7] - 13/02/2013 - 14:11:31 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-57D17DAF.pf
O45 - LFCP:[MD5.B60474A3AF9D681E6A14B0822DFFD2F1] - 13/02/2013 - 14:11:31 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf
O45 - LFCP:[MD5.EC996B8B7D8C6CA6EB2A0B34AB6623C2] - 13/02/2013 - 14:11:41 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-B95715F5.pf
O45 - LFCP:[MD5.5E7F0761249E95E7D6BFB039C255F340] - 13/02/2013 - 14:11:42 ---A- - C:\Windows\Prefetch\LMS.EXE-8C70F87D.pf
O45 - LFCP:[MD5.55BCEC053ADFCC3DB8ABF2F695F638DA] - 13/02/2013 - 14:11:43 ---A- - C:\Windows\Prefetch\DAEMONU.EXE-B668DD96.pf
O45 - LFCP:[MD5.1877259567D61AD60A98E1B81D9E55E6] - 13/02/2013 - 14:11:44 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-05F624AB.pf
O45 - LFCP:[MD5.6F7D582D6CE94EEDABC6A7EC0E354546] - 13/02/2013 - 14:11:49 ---A- - C:\Windows\Prefetch\UNS.EXE-E6E49771.pf
O45 - LFCP:[MD5.1AADD57B21681C5ECE20AC7E07B8006F] - 13/02/2013 - 14:12:35 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf
O45 - LFCP:[MD5.7C0ADA879AE8BA8A5163589EE85D5280] - 13/02/2013 - 14:13:15 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf
O45 - LFCP:[MD5.78224E6DA272506CC5FDDA4AC208E51C] - 13/02/2013 - 14:22:02 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-02CC9EFF.pf
O45 - LFCP:[MD5.A10F9E2E81E1D8C7978951B431BBB0CB] - 13/02/2013 - 14:22:02 ---A- - C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf
O45 - LFCP:[MD5.2B9A60E9B3FCCA7E89FD176E465A817A] - 13/02/2013 - 14:35:00 ---A- - C:\Windows\Prefetch\CONHOST.EXE-1F3E9D7E.pf
O45 - LFCP:[MD5.7C2985AC306E1FD245BA47A6F51C4E71] - 13/02/2013 - 14:35:00 ---A- - C:\Windows\Prefetch\FLASHPLAYERUPDATESERVICE.EXE-216D9C35.pf
O45 - LFCP:[MD5.39BDB4230E65B57C065D10C172E66A8E] - 13/02/2013 - 14:35:10 ---A- - C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf
O45 - LFCP:[MD5.E03BCB46DADDD3036E02E0D1AD1D3705] - 13/02/2013 - 14:35:17 ---A- - C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf
O45 - LFCP:[MD5.71E2B2A49012C51C9A45820BD2DDF5F6] - 13/02/2013 - 14:35:19 ---A- - C:\Windows\Prefetch\IGFXSRVC.EXE-96A493A4.pf
O45 - LFCP:[MD5.52AC16587EB82A90CBBDAC8EF187EC90] - 13/02/2013 - 14:35:20 ---A- - C:\Windows\Prefetch\CHROME.EXE-D999B1BA.pf
O45 - LFCP:[MD5.3AEBBBFBA5C8F77D4441E97996F76F61] - 13/02/2013 - 14:35:22 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf
O45 - LFCP:[MD5.9F73BCD13896D055E69305805BAD13E1] - 13/02/2013 - 14:35:26 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-BDFD3029.pf
O45 - LFCP:[MD5.2C3A8B8BE8A66D857ECEFB79A115F38B] - 13/02/2013 - 14:35:32 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-B424EBD2.pf
O45 - LFCP:[MD5.A1F721845C936FC367E56265BFA970FE] - 13/02/2013 - 14:35:36 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf
O45 - LFCP:[MD5.EB4D9F42F71E84B66035B5D7FBE16479] - 13/02/2013 - 14:35:40 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf
O45 - LFCP:[MD5.17E9DB0A7C776B9FA2E8B0C715B429F7] - 13/02/2013 - 14:35:40 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf
O45 - LFCP:[MD5.1EB3FDD825D7233FAC367491D9C57357] - 13/02/2013 - 14:36:38 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-B0F8131B.pf
O45 - LFCP:[MD5.40395489AEDDC8FE0485E0925F7D93C2] - 13/02/2013 - 14:36:38 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-6768A320.pf
O45 - LFCP:[MD5.2C8C90EBAF3D382B7FCF261FB51073F7] - 13/02/2013 - 14:36:44 ---A- - C:\Windows\Prefetch\CMD.EXE-AC113AA8.pf
~ Scan Prefetcher in 00mn 01s



---\\ D�ni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package�v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l��diteur de configuration de s�curit� Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de s�curit� Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package�v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll
~ Scan Keys in 00mn 00s



---\\ Contr�le du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d�extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d�extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ Scan CSB in 00mn 00s



---\\ MountPoints2 Shell Key (O51) (None)

---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ Scan Keys in 00mn 00s



---\\ ShareTools MSconfig StartupReg (O53)
O53 - SMSR:HKLM\...\startupreg\ACMON [Key] . (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (...) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\AmIcoSinglun64 [Key] . (.Alcor Micro Corp. - Single LUN Icon Utility for VID 058F PID 63.) -- C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
O53 - SMSR:HKLM\...\startupreg\ASUS Screen Saver Protector [Key] . (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe
O53 - SMSR:HKLM\...\startupreg\ASUSPRP [Key] . (.ASUSTek Computer Inc. - ASUS Product Register Program.) -- C:\Program Files (x86)\ASUS\APRP\APRP.exe
O53 - SMSR:HKLM\...\startupreg\ASUSWebStorage [Key] . (.ecareme - AsusWebStorage.) -- C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe
O53 - SMSR:HKLM\...\startupreg\ATKMEDIA [Key] . (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O53 - SMSR:HKLM\...\startupreg\ATKOSD2 [Key] . (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O53 - SMSR:HKLM\...\startupreg\BDRegion [Key] . (.cyberlink - brs.) -- C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
O53 - SMSR:HKLM\...\startupreg\CLMLServer [Key] . (...) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\FileHippo.com [Key] . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe
O53 - SMSR:HKLM\...\startupreg\HControlUser [Key] . (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O53 - SMSR:HKLM\...\startupreg\HotKeysCmds [Key] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O53 - SMSR:HKLM\...\startupreg\IgfxTray [Key] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O53 - SMSR:HKLM\...\startupreg\IntelPAN [Key] . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Framework.) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (...) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\msnmsgr [Key] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O53 - SMSR:HKLM\...\startupreg\RemoteControl10 [Key] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
O53 - SMSR:HKLM\...\startupreg\RtHDVBg [Key] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O53 - SMSR:HKLM\...\startupreg\SonicMasterTray [Key] . (.Virage Logic Corporation / Sonic Focus - ASUS_MATray.exe.) -- C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe
O53 - SMSR:HKLM\...\startupreg\SynAsusAcpi [Key] . (...) -- C:\Program Files (x86)\Synaptics\SynTP\SynAsusAcpi.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\SynTPEnh [Key] . (...) -- C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)
~ Scan SMSR Keys in 00mn 00s



---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveAutoRun"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
~ Scan Keys in 00mn 00s



---\\ Liste des Drivers Syst�me (O58)
O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088]
~ Scan Drivers in 00mn 00s



---\\ Derniers fichiers modifi�s ou cr�es (Utilisateur) (O61)
O61 - LFC:Last File Created 10/02/2013 - 18:08:27 ---A- C:\Users\Dimitri\Pictures\lol.bmp [950958]
O61 - LFC:Last File Created 10/02/2013 - 19:59:32 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\54M5QXXP\media.fdj.fr\##1C225A08E6B7E692\00000001.sol [522]
O61 - LFC:Last File Created 10/02/2013 - 20:00:24 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\54M5QXXP\media.fdj.fr\generated\media\ARTICLE\media_5665-1359474541.swf\lotoXmlData.sol [423]
O61 - LFC:Last File Created 10/02/2013 - 22:40:08 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\chatsync\da\da25b6e3f855a43a.dat [35698]
O61 - LFC:Last File Created 11/02/2013 - 00:01:19 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\54M5QXXP\macromedia.com\support\flashplayer\sys\#ia.media-imdb.com\settings.sol [87]
O61 - LFC:Last File Created 11/02/2013 - 00:02:30 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\54M5QXXP\ia.media-imdb.com\IMDBTEST.sol [65]
O61 - LFC:Last File Created 11/02/2013 - 00:30:06 ---A- C:\Users\Dimitri\AppData\Roaming\Microsoft\HTML Help\hh.dat [8766]
O61 - LFC:Last File Created 11/02/2013 - 00:30:10 ---A- C:\Users\Dimitri\Documents\My Received Files\dimmitri1915172219\History\lulu267401911341817.xml [70045]
O61 - LFC:Last File Created 11/02/2013 - 15:49:04 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\chatsync\73\734d1d779cad311e.dat [50401]
O61 - LFC:Last File Created 11/02/2013 - 19:07:02 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000509.sst [256]
O61 - LFC:Last File Created 11/02/2013 - 20:28:23 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Bookmarks [7772]
O61 - LFC:Last File Created 11/02/2013 - 20:28:23 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Bookmarks.bak [7772]
O61 - LFC:Last File Created 11/02/2013 - 20:33:35 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\54M5QXXP\s.ytimg.com\videostats.sol [275]
O61 - LFC:Last File Created 11/02/2013 - 20:57:13 ---A- C:\Users\Dimitri\Documents\My Received Files\dimmitri1915172219\History\m.er-yyl659250057 [812182]
O61 - LFC:Last File Created 12/02/2013 - 17:54:07 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [263872]
O61 - LFC:Last File Created 12/02/2013 - 17:54:07 ---A- C:\Users\Dimitri\AppData\Local\Temp\CRX_75DAF8CB7768\crl-set [1449]
O61 - LFC:Last File Created 12/02/2013 - 17:54:07 ---A- C:\Users\Dimitri\AppData\Local\Temp\CRX_75DAF8CB7768\manifest.json [34]
O61 - LFC:Last File Created 12/02/2013 - 18:01:37 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\chatsync\f6\f6ec3380371a7e4b.dat [3355]
O61 - LFC:Last File Created 12/02/2013 - 18:05:24 ---A- C:\Users\Dimitri\AppData\Local\Diagnostics\460911090\2013021217.000\results.xsl [49097]
O61 - LFC:Last File Created 12/02/2013 - 18:05:34 ---A- C:\Users\Dimitri\AppData\Local\Diagnostics\460911090\2013021217.000\754DB9C9-D6ED-49CD-86CD-DD8DEDFAF6FA.Diagnose.0.etl [196608]
O61 - LFC:Last File Created 12/02/2013 - 18:05:35 ---A- C:\Users\Dimitri\AppData\Local\Diagnostics\460911090\2013021217.000\NetworkConfiguration.cab [1582]
O61 - LFC:Last File Created 12/02/2013 - 18:05:41 ---A- C:\Users\Dimitri\AppData\Local\Diagnostics\460911090\2013021217.000\754DB9C9-D6ED-49CD-86CD-DD8DEDFAF6FA.Repair.1.etl [131072]
O61 - LFC:Last File Created 12/02/2013 - 18:06:05 ---A- C:\Users\Dimitri\AppData\Local\Diagnostics\460911090\2013021217.000\754DB9C9-D6ED-49CD-86CD-DD8DEDFAF6FA.Verify.2.etl [196608]
O61 - LFC:Last File Created 12/02/2013 - 18:06:07 ---A- C:\Users\Dimitri\AppData\Local\Diagnostics\460911090\2013021217.000\E04E41BC-CA15-4307-975C-05FB13B944E0.Diagnose.3.etl [196608]
O61 - LFC:Last File Created 12/02/2013 - 18:07:55 ---A- C:\Users\Dimitri\AppData\Local\Diagnostics\460911090\2013021217.000\E04E41BC-CA15-4307-975C-05FB13B944E0.Repair.4.etl [196608]
O61 - LFC:Last File Created 12/02/2013 - 18:08:16 ---A- C:\Users\Dimitri\AppData\Local\Diagnostics\460911090\2013021217.000\E04E41BC-CA15-4307-975C-05FB13B944E0.Verify.5.etl [196608]
O61 - LFC:Last File Created 12/02/2013 - 18:08:18 ---A- C:\Users\Dimitri\AppData\Local\Diagnostics\460911090\2013021217.000\ADF4C654-369C-447F-BE48-BDBD20A5182D.Diagnose.6.etl [262144]
O61 - LFC:Last File Created 12/02/2013 - 18:08:28 ---A- C:\Users\Dimitri\AppData\Local\Diagnostics\460911090\2013021217.000\NetworkDiagnostics.0.debugreport.xml [83333]
O61 - LFC:Last File Created 12/02/2013 - 18:08:28 ---A- C:\Users\Dimitri\AppData\Local\Diagnostics\460911090\2013021217.000\ResultReport.xml [55897]
O61 - LFC:Last File Created 12/02/2013 - 18:08:28 ---A- C:\Users\Dimitri\AppData\Local\Diagnostics\460911090\2013021217.000\results.xml [263]
O61 - LFC:Last File Created 12/02/2013 - 18:08:28 ---A- C:\Users\Dimitri\AppData\Local\Diagnostics\460911090\latest.cab [60194]
O61 - LFC:Last File Created 12/02/2013 - 19:48:21 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\chatsync\fc\fc8b48595e617588.dat [3079]
O61 - LFC:Last File Created 13/02/2013 - 13:23:26 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\eas.db [53248]
O61 - LFC:Last File Created 13/02/2013 - 13:23:26 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\eas.db-journal [41552]
O61 - LFC:Last File Created 13/02/2013 - 13:23:33 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\msn.db [61440]
O61 - LFC:Last File Created 13/02/2013 - 13:23:33 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\msn.db-journal [37448]
O61 - LFC:Last File Created 13/02/2013 - 13:23:38 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\dc.db [45056]
O61 - LFC:Last File Created 13/02/2013 - 14:05:20 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\bistats.db [61440]
O61 - LFC:Last File Created 13/02/2013 - 14:05:20 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\bistats.db-journal [33344]
O61 - LFC:Last File Created 13/02/2013 - 14:05:20 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\config.xml [8305]
O61 - LFC:Last File Created 13/02/2013 - 14:05:20 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\httpfe\cookies.dat [2]
O61 - LFC:Last File Created 13/02/2013 - 14:05:20 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\main.db [1531904]
O61 - LFC:Last File Created 13/02/2013 - 14:05:20 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\dimmitrib\main.db-journal [291896]
O61 - LFC:Last File Created 13/02/2013 - 14:05:20 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\shared.xml [69163]
O61 - LFC:Last File Created 13/02/2013 - 14:05:37 ---A- C:\Users\Dimitri\Documents\My Received Files\dimmitri1915172219\History\lilou.07300160944981 [332859]
O61 - LFC:Last File Created 13/02/2013 - 14:05:42 ---A- C:\Users\Dimitri\AppData\Local\Windows Live\uxcore_msnmsgr_01.etl [8192]
O61 - LFC:Last File Created 13/02/2013 - 14:06:48 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\54M5QXXP\media.fdj.fr\##07CF42B1A97FA786\00000001.sol [338]
O61 - LFC:Last File Created 13/02/2013 - 14:09:16 ---A- C:\Users\Dimitri\AppData\Roaming\sp_data.sys [387]
O61 - LFC:Last File Created 13/02/2013 - 14:09:30 ----- C:\Users\Dimitri\AppData\Local\Windows Live\uxcore_msnmsgr_00.etl [4096]
O61 - LFC:Last File Created 13/02/2013 - 14:09:34 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\shared_dynco\dc.db [1761280]
O61 - LFC:Last File Created 13/02/2013 - 14:09:34 ---A- C:\Users\Dimitri\AppData\Roaming\Skype\shared_dynco\dc.db-journal [1067552]
O61 - LFC:Last File Created 13/02/2013 - 14:09:39 ----- C:\Users\Dimitri\Tracing\WindowsLiveMessenger-uccapi-0.uccapilog [0]
O61 - LFC:Last File Created 13/02/2013 - 14:11:22 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\54M5QXXP\macromedia.com\support\flashplayer\sys\#www.cam-hot.com\settings.sol [85]
O61 - LFC:Last File Created 13/02/2013 - 14:11:23 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\54M5QXXP\www.cam-hot.com\c#\om.camhot.client.parameters.sol [84]
O61 - LFC:Last File Created 13/02/2013 - 14:11:31 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000520.sst [255]
O61 - LFC:Last File Created 13/02/2013 - 14:13:47 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Safe Browsing Download [1590100]
O61 - LFC:Last File Created 13/02/2013 - 14:13:49 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom [7900732]
O61 - LFC:Last File Created 13/02/2013 - 14:13:49 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom Prefix Set [1429070]
O61 - LFC:Last File Created 13/02/2013 - 14:13:50 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Safe Browsing Csd Whitelist [134512]
O61 - LFC:Last File Created 13/02/2013 - 14:13:50 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Safe Browsing Download Whitelist [19852]
O61 - LFC:Last File Created 13/02/2013 - 14:13:57 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\CURRENT [16]
O61 - LFC:Last File Created 13/02/2013 - 14:13:57 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\MANIFEST-000013 [107]
O61 - LFC:Last File Created 13/02/2013 - 14:14:11 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\File System\Origins\LOG [145]
O61 - LFC:Last File Created 13/02/2013 - 14:14:16 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Safe Browsing Cookies [6144]
O61 - LFC:Last File Created 13/02/2013 - 14:14:27 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\QuotaManager [15360]
O61 - LFC:Last File Created 13/02/2013 - 14:14:28 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\54M5QXXP\www.xlovecam.com\xlove.sol [190]
O61 - LFC:Last File Created 13/02/2013 - 14:17:03 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\PepperFlash\11.6.602.167\manifest.json [2054]
O61 - LFC:Last File Created 13/02/2013 - 14:17:03 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\PepperFlash\11.6.602.167\pepflashplayer.dll [12638576]
O61 - LFC:Last File Created 13/02/2013 - 14:17:40 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\54M5QXXP\macromedia.com\support\flashplayer\sys\settings.sol [1556]
O61 - LFC:Last File Created 13/02/2013 - 14:19:13 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Favicons [7659520]
O61 - LFC:Last File Created 13/02/2013 - 14:20:55 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_icmlaeflemplmjndnaapfdbbnpncnbda_0.localstorage [5268480]
O61 - LFC:Last File Created 13/02/2013 - 14:23:17 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old [219025]
O61 - LFC:Last File Created 13/02/2013 - 14:23:17 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG.old [170062]
O61 - LFC:Last File Created 13/02/2013 - 14:35:20 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Extension State\CURRENT [16]
O61 - LFC:Last File Created 13/02/2013 - 14:35:20 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000871 [2141]
O61 - LFC:Last File Created 13/02/2013 - 14:35:21 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Session Storage\CURRENT [16]
O61 - LFC:Last File Created 13/02/2013 - 14:35:21 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000522 [5163]
O61 - LFC:Last File Created 13/02/2013 - 14:35:21 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Local State [32434]
O61 - LFC:Last File Created 13/02/2013 - 14:35:22 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG [1204]
O61 - LFC:Last File Created 13/02/2013 - 14:35:22 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Managed Mode Settings [8]
O61 - LFC:Last File Created 13/02/2013 - 14:35:22 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG [148]
O61 - LFC:Last File Created 13/02/2013 - 14:35:22 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity [556]
O61 - LFC:Last File Created 13/02/2013 - 14:35:22 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt [4]
O61 - LFC:Last File Created 13/02/2013 - 14:35:45 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Cookies [395264]
O61 - LFC:Last File Created 13/02/2013 - 14:35:45 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Preferences [60552]
O61 - LFC:Last File Created 13/02/2013 - 14:35:45 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Shortcuts [65536]
O61 - LFC:Last File Created 13/02/2013 - 14:35:45 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\Web Data [174080]
O61 - LFC:Last File Created 13/02/2013 - 14:35:46 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\History [2375680]
O61 - LFC:Last File Created 13/02/2013 - 14:35:46 ---A- C:\Users\Dimitri\AppData\Local\Google\Chrome\User Data\Default\databases\Databases.db [7168]
O61 - LFC:Last File Created 30/12/1899 - 14:07:51 --HA- C:\Users\Dimitri\AppData\Local\IconCache.db [2807165]
~ Scan Files in 00mn 13s



---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 1.3.5 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ Scan ADS in 00mn 00s



---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - 28/12/2011 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD
O64 - Services: CurCS - 03/07/2009 - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys (ASMMAP64) .(.ASUS - Memory mapping Driver.) - LEGACY_ASMMAP64
O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK
O64 - Services: CurCS - 30/10/2012 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT
O64 - Services: CurCS - 15/10/2012 - C:\Windows\system32\Drivers\aswrdr2.sys (aswRdr) .(.AVAST Software - avast! WFP Redirect Driver.) - LEGACY_ASWRDR
O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX
O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP
O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI
O64 - Services: CurCS - 07/09/2011 - C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys (ATKWMIACPIIO) .(.ASUS - ATK WMIACPI Utility.) - LEGACY_ATKWMIACPIIO
O64 - Services: CurCS - 02/06/2012 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\dxgkrnl.sys (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO
O64 - Services: CurCS - 14/12/2012 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR
O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\msahci.sys (msahci) .(.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) - LEGACY_MSAHCI
O64 - Services: CurCS - 22/08/2012 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT
O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR
O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
O64 - Services: CurCS - 24/02/2012 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE
O64 - Services: CurCS - 24/02/2012 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de clich� instantan� du volume.) - LEGACY_VOLSNAP
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6
~ Scan Services in 00mn 00s



---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d��v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft � Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d��v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft � Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
~ Scan Keys in 00mn 00s



---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.)
~ Scan Keys in 00mn 00s



---\\ Search Browser Infection (O69)
O69 - SBI: prefs.js [Dimitri - vuv4c5y3.default] user_pref("weboftrust.search.ask.display", "Ask.com Web Search");
~ Scan Keys in 00mn 00s



---\\ Recherche des services d�marr�s par Svchost (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Exp�rience d�application.) -- C:\Windows\System32\aelupsvc.dll [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de strat�gie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de num�rotation automatique d�acc�s distant.) -- C:\Windows\System32\rasauto.dll [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d�acc�s distant.) -- C:\Windows\System32\rasmans.dll [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d�interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d��v�nements syst�me (SENS).) -- C:\Windows\System32\sens.dll [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l�application d�assistance � Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de t�l�phonie Microsoft� Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur h�te de session Burea.) -- C:\Windows\System32\termsrv.dll [680960]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise � jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arri�re-plan.) -- C:\Windows\System32\qmgr.dll [849920]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivit� IPv6 sur un r�seau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d�ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d�application.) -- C:\Windows\System32\appinfo.dll [70656]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de d�couverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multim�dias.) -- C:\Windows\System32\mmcss.dll [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau � distance.) -- C:\Windows\System32\sessenv.dll [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d�ordinateurs.) -- C:\Windows\System32\browser.dll [136704]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de t�ches.) -- C:\Windows\System32\schedsvc.dll [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des cl�s.) -- C:\Windows\System32\kmsvc.dll [90624]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux probl�mes.) -- C:\Windows\System32\wercplsupport.dll [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des th�mes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864]
~ Scan Services in 00mn 00s



---\\ Recherche particuliere � la racine de certains dossiers (O84)
[MD5.A68D6536B8179EE6519C350C45D89F82] [SPRF][13/02/2013] (...) -- C:\Users\Dimitri\AppData\Roaming\sp_data.sys [387]
[MD5.751F248958AF1FC0A8F3F4AF86B6ED5A] [SPRF][06/02/2013] (...) -- C:\Users\Dimitri\Desktop\adwcleaner.exe [582209]
~ Scan Files in 00mn 00s



---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{930C8636-2616-4E90-90E2-C070A158FC7E}" | In - Public - P6 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O87 - FAEL: "{23ADA8D1-D7EF-4C26-A38C-65E2CA585453}" | In - Public - P17 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O87 - FAEL: "{FECEDC17-334F-48E7-851B-D3EF177039C4}" | In - None - P17 - TRUE | .(.Pas de propri�taire - Wireless PAN DHCP and DNS Server.) -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O87 - FAEL: "{4ACB52C1-24E4-490E-BBDC-30033F1A1B91}" | In - None - P17 - TRUE | .(.CyberLink Corp. - CyberLink PowerDVD Cinema 10 Main Program.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe
O87 - FAEL: "{BE27C80B-860C-437F-A878-0B0D3A607A8B}" | In - None - P17 - TRUE | .(.CyberLink Corp. - ASUSDVD.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.exe
O87 - FAEL: "{9B83561D-39CA-480D-8424-592214672DE4}" | In - None - P17 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
O87 - FAEL: "{CCF1F1EE-4D3A-499A-8796-1581C5DC7040}" | In - None - P17 - TRUE | .(.Hewlett-Packard - HP Update Client.) -- C:\Program Files (x86)\HP\hp software update\hpwucli.exe
O87 - FAEL: "{ADEB3229-0D50-4080-A750-F443C74FCBD1}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
~ Scan Firewall in 00mn 00s



---\\ Scan Additionnel (O88)
Database Version : v2.10515 - (04/02/2013)
Cl�s trouv�es (Keys found) : 7
Valeurs trouv�es (Values found) : 0
Dossiers trouv�s (Folders found) : 0
Fichiers trouv�s (Files found) : 0

[HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASMANCS] =>Toolbar.Agent
[HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\64A6E60055D801F4BB8AC269354B72B8] =>Adware.Boxore
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3] =>PUP.SweetIM
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9BB106980C8CD3949921DAF7159A813A] =>Adware.Boxore
~ Scan Additionnel in 00mn 09s



---\\ Recherche d�tournement de DNS routeur (O89) (None)

---\\ Product Upgrade Codes (O90)
O90 - PUC: "00004159070000000000000000F01FEC" . (.Microsoft Office 2010.) -- C:\Windows\Installer\{95140000-0070-0000-0000-0000000FF1CE}\oobeicon.exe
O90 - PUC: "0212CE3624715264AA746C8AEA9C6CC4" . (.Apple Application Support.) -- C:\Windows\Installer\{63EC2120-1742-4625-AA47-C6A8AEC9C64C}\WinInstall.ico
O90 - PUC: "16525446F96163A42AFF5B1E81CE565F" . (.ASUS FaceLogon.) -- C:\Windows\Installer\{64452561-169F-4A36-A2FF-B5E118EC65F5}\_294823.exe
O90 - PUC: "1B641C2DD849FE743878D5C1B689F0C7" . (.Windows Live Writer.) -- C:\Windows\Installer\{D2C146B1-948D-47EF-8387-5D1C6B980F7C}\ApplicationIcon.ico
O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon
O90 - PUC: "21F1DBD139DE0C947ACC65BCED841885" . (.ASUS LifeFrame3.) -- C:\Windows\Installer\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}\_853F67D554F05449430E7E.exe
O90 - PUC: "2B0163E6D0340BE4183EB2758E9BEDD8" . (.Bonjour.) -- C:\Windows\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico
O90 - PUC: "3F7A4F31CBAE1624FAB6317177F77055" . (.Fast Boot.) -- C:\Windows\Installer\{13F4A7F3-EABC-4261-AF6B-1317777F0755}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico
O90 - PUC: "50FA96906FF400C4496034952983EDD0" . (.ASUS Splendid Video Enhancement Technology.) -- C:\Windows\Installer\{0969AF05-4FF6-4C00-9406-43599238DE0D}\_853F67D554F05449430E7E.exe
O90 - PUC: "6760F93DE36159549A712EF899BB4D2D" . (.ASUS AI Recovery.) -- C:\Windows\Installer\{D39F0676-163E-4595-A917-E28F99BBD4D2}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "68AB67CA7DA73301B744BA0000000010" . (.Adobe Reader XI (11.0.01).) -- C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-AB0000000001}\SC_Reader.ico
O90 - PUC: "7072000BE7F45474887A58D28A8A6853" . (.ASUS Sonic Focus.) -- C:\Windows\Installer\{B0002707-4F7E-4745-88A7-852DA8A88635}\ARPPRODUCTICON.exe
O90 - PUC: "7692FC6BE18C0C0489510C7547EF1F02" . (.Click to Call with Skype.) -- C:\Windows\Installer\{B6CF2967-C81E-40C0-9815-C05774FEF120}\IconUninstallIco
O90 - PUC: "76E045AFC590B1A479ABD445D7CEA94F" . (.ASUS Live Update.) -- C:\Windows\Installer\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}\MyIcon
O90 - PUC: "7E31197DC472B074DB64101B2091FDA6" . (.HPPhotosmartEssential.) -- C:\Windows\Installer\{D79113E7-274C-470B-BD46-01B10219DF6A}\ARPPRODUCTICON.exe
O90 - PUC: "93B0BF4E199C7EE459DDA1A187753DD3" . (.Asmedia ASM104x USB 3.0 Host Controller Driver.) -- C:\Windows\Installer\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}\ARPPRODUCTICON.exe
O90 - PUC: "A9ADBF52868EB3B49BFF9D321858111A" . (.Intel(R) PROSet/Wireless WiFi Software.) -- C:\Windows\Installer\{25FBDA9A-E868-4B3B-B9FF-D923818511A1}\ARPPRODUCTICON.exe
O90 - PUC: "ADA116F5C89BBBD4DAED14F48054E7FC" . (.Windows Live Family Safety.) -- C:\Windows\Installer\{5F611ADA-B98C-4DBB-ADDE-414F08457ECF}\fssicon.ico
O90 - PUC: "B476F94747628E7478C965620AB6A219" . (.InstantOn for NB.) -- C:\Windows\Installer\{749F674B-2674-47E8-879C-5626A06B2A91}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "BF33AE91E43BAE04B8A81647A3BE97A5" . (.Wireless Console 3.) -- C:\Windows\Installer\{19EA33FB-B34E-40EA-8B8A-61743AEB795A}\_853F67D554F05449430E7E.exe
O90 - PUC: "C4E4AFE2F5B77F841A0CA18A287B9A3C" . (.HP Update.) -- C:\Windows\Installer\{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}\ARPPRODUCTICON.exe
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- C:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon
O90 - PUC: "D8EF64479F1C24D4AAEAD5CB5E68506A" . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{7446FE8D-C1F9-4D42-AAAE-5DBCE58605A6}\Installer.ico
O90 - PUC: "DE532CED4A8571542A874CE1D8EABAB3" . (.PowerDVD.) -- C:\Windows\Installer\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\ARPPRODUCTICON.exe
O90 - PUC: "E19212F84440D1B49B9F34077AE343D6" . (.WinFlash.) -- C:\Windows\Installer\{8F21291E-0444-4B1D-B9F9-4370A73E346D}\MyIcon
O90 - PUC: "E339C5BAD7C503D43B41C9384AB949EB" . (.ATK Package.) -- C:\Windows\Installer\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}\_4ae13d6c.exe
O90 - PUC: "E5E5322F18873924B9F6402B06F9FB0F" . (.Windows Live Messenger.) -- C:\Windows\Installer\{F2235E5E-7881-4293-9B6F-04B2609FBFF0}\MsblIco.Exe
O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype� 6.1.) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe
O90 - PUC: "E9BB5554517E06241A878EFE2D6B353E" . (.Alcor Micro USB Card Reader.) -- C:\Windows\Installer\{4555BB9E-E715-4260-A178-E8EFD2B653E3}\ARPPRODUCTICON.exe
O90 - PUC: "F12DB8CE0AC0FBB4799DA4253B00141A" . (.ASUS Virtual Camera.) -- C:\Windows\Installer\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "FB9326B958E40954D827153ED01B9AAA" . (.ASUS Power4Gear Hybrid.) -- C:\Windows\Installer\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}\_6FEFF9B68218417F98F549.exe
~ Scan Files in 00mn 00s



---\\ MyComputer Name Space (O92)
O92 - MNS: ASUS WebStorage Drive - {d6044399-0b9e-4084-a9ac-c4b7c7800fcf}
~ Scan MNS in 00mn 00s



---\\ Etat g�n�ral des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 18/12/2012 65192 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - | Demand 12/02/2013 251248 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SR - | Auto 04/03/2011 379520 | (AFBAgent) . (.ASUSTeK Computer Inc..) - C:\Windows\system32\FBAgent.exe
SR - | Auto 01/09/2011 1166848 | (AMPPALR3) . (.Intel Corporation.) - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
SR - | Auto 11/08/2012 55184 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 21/11/2011 80512 | (ASLDRService) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
SR - | Auto 04/02/2012 277120 | (ASUS InstantOn) . (.ASUS.) - C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
SR - | Auto 21/11/2011 96896 | (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
SR - | Auto 30/10/2012 44808 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Auto 03/06/2011 134928 | (BTHSSecurityMgr) . (.Intel(R) Corporation.) - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
SS - | Auto 20/04/2011 241648 | (CLKMSVC10_38F51D56) . (.CyberLink.) - C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe
SR - | Auto 28/07/2011 1517328 | (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
SS - | Auto 24/02/2012 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 24/02/2012 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SR - | Demand 14/07/2009 27136 | C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll (hpqcxs08) . (.Hewlett-Packard Co..) - C:\Windows\System32\svchost.exe
SR - | Auto 14/07/2009 27136 | C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll (hpqddsvc) . (.Hewlett-Packard Co..) - C:\Windows\System32\svchost.exe
SR - | Auto 21/12/2010 325656 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
SR - | Auto 14/12/2012 398184 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
SR - | Auto 14/12/2012 682344 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
SS - | Demand 08/09/2012 114144 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Demand 340240 | (MyWiFiDHCPDNS) . (...) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
SR - | Auto 14/07/2009 27136 | C:\Windows\system32\HPZinw12.dll (Net Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe
SR - | Auto 17/10/2011 1640768 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe
SR - | Auto 17/10/2011 2253120 | (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
SR - | Auto 14/07/2009 27136 | C:\Windows\system32\HPZipm12.dll (Pml Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe
SR - | Auto 28/07/2011 844560 | (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
SS - | Auto 08/01/2013 161536 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SR - | Auto 21/12/2010 2656280 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
SR - | Auto 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Demand 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe
SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Scan Services in 00mn 01s



---\\ Recherche Master Boot Record Infection (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
~ Scan MBR in 00mn 02s



---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by Dimitri at 13/02/2013 14:38:35

********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ Scan MBR in 00mn 04s



End of the scan (1554 lines in 02mn 07s)(0)

Publicité

Soutenons La Quadrature du Net ! Soutenons La Quadrature du Net !

Signaler le contenu de ce document

Publicité

Soutenons La Quadrature du Net !