cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ Rapport de ZHPDiag v2014.1.10.8 - Nicolas Coolman (10/01/2014)
~ Lancé par fernand (12/01/2014 17:01:42)
~ Adresse du Site Web http://nicolascoolman.webs.com
~ Forums gratuits d'Assistance à la désinfection : http://nicolascoolman.webs.com/apps/links/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Activate by user


---\\ Navigateurs Internet
MSIE: Internet Explorer v10.0.9200.16750
GCIE: Google Chrome v31.0.1650.63 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Français
Windows 8 Pro, 64-bit (Build 9200)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : D3R9V
Windows License : OK
~ Windows Remaining Initializations Number : 1000
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection du système
Malwarebytes Anti-Malware version 1.75.0.1300
Norton Internet Security v21.1.0.18
Windows Defender W8

---\\ Logiciels d'optimisation du système
CCleaner v4.09 =>Piriform Ltd

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Flash Player 11 Plugin
Adobe Reader XI
Java 7 Update 45

---\\ Informations sur le système
~ Processor: AMD64 Family 18 Model 1 Stepping 0, AuthenticAMD
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3561 MB (50% free)
System Restore: Activé (Enable)
System drive C: has 395 GB (84%) free of 466 GB

---\\ Mode de connexion au système
~ Computer Name: FERNAND
~ User Name: fernand
~ All Users Names: HomeGroupUser$, fernand, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\fernand\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\fernand\AppData\Roaming\
~ %Desktop% : C:\Users\fernand\Desktop\
~ %Favorites% : C:\Users\fernand\Favorites\
~ %LocalAppData% : C:\Users\fernand\AppData\Local\
~ %StartMenu% : C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 395 Go of 466 Go)
D: CD-ROM drive (Not Inserted)
E: Hard drive, Flash drive, Thumb drive (Free 32 Go of 32 Go)
F: Hard drive, Flash drive, Thumb drive (Free 426 Go of 434 Go)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 49 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.0E8E6463F81C80AFBED533E0F1F8895D] - (.Microsoft Corporation - Explorateur Windows.) (.01/06/2013 - 12:34:21.) -- C:\Windows\Explorer.exe [2391280]
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608]
[MD5.E7099336BF7531B6FCC920DCB5101259] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.25/10/2013 - 07:19:22.) -- C:\Windows\System32\wininet.dll [2241536]
[MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120]
[MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408]
[MD5.7C0E0EDF18D6CC565D7BFBB451709FA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.04/09/2013 - 04:11:23.) -- C:\Windows\system32\Drivers\AFD.sys [576512]
[MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840]
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544]
[MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080]
[MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784]
[MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/09/2012 - 07:08:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168]
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640]
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920]
[MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 23:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688]
[MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776]
[MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 11:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544]
[MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984]
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928]
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712]
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248]
[MD5.78A5BBA3819FFFC62FFEC3E2220D102D] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.01/06/2013 - 12:26:33.) -- C:\Windows\system32\Drivers\volsnap.sys [327936]
~ Generic Processes: Scanned in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 1/17
~ Mes musiques (My Musics) : 1/8
~ Mes Videos (My Videos) : 1/3
~ Mes Favoris (My Favorites) : 1/2187
~ Mes Documents (My Documents) : 1/7073
~ Mon Bureau (My Desktop) : 1/39
~ Menu demarrer (Programs) : 1/135
~ Hidden Files: Scanned in 00mn 00s



---\\ Processus lancés
[MD5.D1D5DAB39DCB4BE0359943738D87409B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [532040] [PID.1588]
[MD5.C87442B6D17912785DC143CEDCA508C9] - (.Symantec Corporation - Norton Internet Security.) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\NIS.exe [275696] [PID.2024]
[MD5.376A9B411BF8B77D5BF84B24D0C7DACD] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [863184] [PID.3160]
[MD5.58920E6A409046BA06548D9D139CE0F0] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608] [PID.4776]
[MD5.CBE0D982904A629AF2D2E8B6EA9B1ED2] - (.ooVoo LLC - ooVoo.) -- C:\Program Files (x86)\ooVoo\ooVoo.exe [36125760] [PID.4968]
[MD5.78504091073419F4AAE3C2EFB021189D] - (.Inbox.com, Inc. - Inbox Storage.) -- C:\Program Files (x86)\Inbox Storage\InboxStorage.exe [4104832] [PID.4640]
[MD5.A043F2DCB3DE6A01317FD7DDDAA53736] - (.APN LLC. - Virtual New Tab Loader.) -- C:\Users\fernand\AppData\Local\VNT\vntldr.exe [202192] [PID.4428] =>Toolbar.Ask
[MD5.29A4611EE6F24AF1EB4014088A1911C6] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8323072] [PID.4540]
~ Processes Running: Scanned in 00mn 00s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Google Store v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Documents Google v.0.5 (Activé)
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Drive v.6.3 (Activé)
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé)
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activé)
G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [gfdkimpbcpahaombhbimeihdjnejgicl] Feedback v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mkfokfffehpeedafpekjeddnmnjhmcmk] Norton Identity Protection v.2014.6.2.3, (Activé)
G2 - GCE: Preference [User Data\Default] [nikdaiaidiiiogaidkkekcmokcgcdeac] Discount Dragon v.1.0, (Activé) =>PUP.DiscountDragon
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Wallet v.0.0.6.0 (Activé)
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé)
~ Google Browser: 43 Scanned in 00mn 01s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20913.0.) -- C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll
~ Firefox Browser: 2 Scanned in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
~ IE Browser: 21 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
O1 - Hosts: 54.225.95.126 nikdaiaidiiiogaidkkekcmokcgcdeac =>PUP.DiscountDragon
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 23



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Norton Identity Protection [64Bits] - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection [64Bits] - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} . (.Symantec Corporation - IPS Browser Helper DLL.) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\IPS\IPSBHO.dll
O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>Trojan.FindFDSearch
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
~ BHO: 18 Scanned in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Norton Toolbar - [HKLM]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files (x86)\Norton Internet Security\Engine64\21.1.0.18\coIEPlg.dll
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Clé orpheline
~ Toolbar: Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: ACDSee for PENTAX 3.0.lnk . (.InstallShield Software Corp. - InstallShield.) -- C:\WINDOWS\Installer\{82515476-A57B-4C43-B642-5F396E20C648}\ACDSeeDesktopShortcu_B2D418833BFC4BA0A2F65A2C9836C238.exe
O4 - GS\Desktop [Public]: Adobe Reader XI.lnk . (.Adobe Systems Incorporated - Adobe Reader.) -- C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe
O4 - GS\Desktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>Piriform Ltd
O4 - GS\Desktop [Public]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files (x86)\CDBurnerXP\cdbxpp.exe
O4 - GS\Desktop [Public]: Gestionnaire de Connexion.lnk . (.SFR - Gestionnaire de connexion.) -- C:\Program Files (x86)\SFR\Gestionnaire de Connexion\SFR_Gestionnaire_connexion.exe
O4 - GS\Desktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Public]: Google Earth.lnk . (.Google - Google Earth.) -- C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe =>.Google Inc
O4 - GS\Desktop [Public]: Ham Radio Deluxe.lnk . (.Simon Brown, HB9DRV - Ham Radio Deluxe.) -- C:\Program Files (x86)\Amateur Radio\Ham Radio Deluxe\HamRadioDeluxe.exe
O4 - GS\Desktop [Public]: iTunes.lnk . (.Apple Inc. - iTunes.) -- C:\Program Files (x86)\iTunes\iTunes.exe
O4 - GS\Desktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
O4 - GS\Desktop [Public]: Norton Internet Security.lnk . (.Symantec Corporation - Norton Protection Center UI Stub.) -- C:\Program Files (x86)\Norton Internet Security\Engine64\21.1.0.18\uiStub.exe
O4 - GS\Desktop [Public]: ooVoo.lnk . (.ooVoo LLC - ooVoo.) -- C:\Program Files (x86)\ooVoo\ooVoo.exe
O4 - GS\Desktop [Public]: Picasa 3.lnk . (.Google Inc. - Picasa.) -- C:\Program Files (x86)\Google\Picasa3\Picasa3.exe
O4 - GS\Desktop [Public]: RegHunter.lnk . (...) -- C:\Program Files (x86)\Enigma Software Group\RegHunter\RegHunter.exe (.not file.) =>Crapware.RegHunter
O4 - GS\Desktop [Public]: Samsung Kies (Lite).lnk . (...) -- C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe
O4 - GS\Desktop [Public]: Samsung Kies.lnk . (...) -- C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe
O4 - GS\Desktop [Public]: Skype.lnk . (...) -- C:\WINDOWS\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe
O4 - GS\Desktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player 2.1.2.) -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN
O4 - GS\Desktop [Public]: Wondershare Data Recovery.lnk . (...) -- C:\Program Files (x86)\Wondershare\Data Recovery\DataRecovery.exe
O4 - GS\Program [Public]: Adobe Reader XI.lnk . (...) -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico
O4 - GS\Program [Public]: Apple Software Update.lnk . (...) -- C:\WINDOWS\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc
O4 - GS\Program [Public]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) -- C:\Program Files (x86)\CDBurnerXP\cdbxpp.exe
O4 - GS\Program [Public]: Desktop.lnk - Clé orpheline
O4 - GS\Program [Public]: Windows Store.lnk . (...) -- C:\WINDOWS\WinStore\WinStore.htm
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\WINDOWS\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (...) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe (.not file.)
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) -- C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\WINDOWS\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) -- C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\WINDOWS\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\QuickLaunch [fernand]: Bandizip.lnk . (.Bandisoft.com - Bandizip.) -- C:\Users\fernand\AppData\Local\Bandizip\Bandizip64.exe
O4 - GS\QuickLaunch [fernand]: Gestionnaire de Connexion.lnk . (.SFR - Gestionnaire de connexion.) -- C:\Program Files (x86)\SFR\Gestionnaire de Connexion\SFR_Gestionnaire_connexion.exe
O4 - GS\QuickLaunch [fernand]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [fernand]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [fernand]: Microsoft Office Outlook.lnk . (.Microsoft Corporation - Microsoft Office Outlook.) -- C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.exe =>.Microsoft Corporation
O4 - GS\QuickLaunch [fernand]: PhotoScape.lnk . (...) -- C:\Program Files (x86)\PhotoScape\PhotoScape.exe
O4 - GS\QuickLaunch [fernand]: Picasa 3.lnk . (.Google Inc. - Picasa.) -- C:\Program Files (x86)\Google\Picasa3\Picasa3.exe
O4 - GS\QuickLaunch [fernand]: Samsung Kies (Lite).lnk . (...) -- C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe
O4 - GS\QuickLaunch [fernand]: Samsung Kies.lnk . (...) -- C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe
O4 - GS\TaskBar [fernand]: Bandizip64.exe.lnk . (.Bandisoft.com - Bandizip.) -- C:\Users\fernand\AppData\Local\Bandizip\Bandizip64.exe
O4 - GS\TaskBar [fernand]: File Explorer.lnk . (...) -- C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Libraries
O4 - GS\TaskBar [fernand]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\TaskBar [fernand]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\TaskBar [fernand]: Microsoft Office Word 2007.lnk . (...) -- C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe
O4 - GS\TaskBar [fernand]: MixW 2.20.lnk . (.MixW Team - Multimode software for amateur radio.) -- C:\Program Files (x86)\MixW\MixW2.exe
O4 - GS\TaskBar [fernand]: ooVoo.lnk . (.ooVoo LLC - ooVoo.) -- C:\Program Files (x86)\ooVoo\ooVoo.exe
O4 - GS\TaskBar [fernand]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) -- C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\TaskBar [fernand]: Trafic2011.lnk . (.F6ADE - Pas de description.) -- C:\Trafic2011\Trafic2011.exe
O4 - GS\TaskBar [fernand]: VLC media player.lnk . (.VideoLAN - VLC media player 2.1.2.) -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN
O4 - GS\Program [fernand]: COUPE DU REF2011.lnk . (.F6ADE - Pas de description.) -- C:\Trafic2011\COUPE DU REF2011.exe
O4 - GS\Program [fernand]: Create Amazing Presentations.lnk - Clé orpheline
O4 - GS\Program [fernand]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Program [fernand]: Trafic2011.lnk . (.F6ADE - Pas de description.) -- C:\Trafic2011\Trafic2011.exe
O4 - GS\Accessories [fernand]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\SendTo [fernand]: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - GS\Desktop [fernand]: Bandizip.lnk . (.Bandisoft.com - Bandizip.) -- C:\Users\fernand\AppData\Local\Bandizip\Bandizip64.exe
O4 - GS\Desktop [fernand]: Fichiers d’installation Norton.lnk . (...) -- C:\Users\Public\Downloads\Norton\{NIS211018-SHPD-FSD40014} =>.Symantec Corporation
O4 - GS\Desktop [fernand]: MixW2 - Raccourci.lnk . (.MixW Team - Multimode software for amateur radio.) -- C:\Program Files (x86)\MixW\MixW2.exe
O4 - GS\Desktop [fernand]: PhotoScape.lnk . (...) -- C:\Program Files (x86)\PhotoScape\PhotoScape.exe
O4 - GS\Desktop [fernand]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) -- C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
O4 - GS\Desktop [fernand]: S6000013 - Raccourci.lnk . (...) -- C:\PHOTO\famille\manu\S6000013.JPG
O4 - GS\Desktop [fernand]: SpyHunter.lnk . (...) -- C:\Program Files (x86)\Enigma Software Group\SpyHunter\SpyHunter4.exe (.not file.) =>Crapware.SpyHunter
O4 - GS\Desktop [fernand]: ZHPDiag - Raccourci.lnk . (...) -- C:\Users\fernand\Documents\Notes\ZHPDiag.txt =>.Nicolas Coolman
O4 - GS\Desktop [fernand]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\Desktop [fernand]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman
~ Global Startup: 72 Scanned in 00mn 00s



---\\ Applications lancées au démarrage du sytème (O4)
O4 - HKLM\..\Run: [Logitech Download Assistant] . (.Logitech, Inc. - Logitech Download Assistant.) -- C:\Windows\System32\LogiLDA.dll
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp
O4 - HKLM\..\Run: [SpywareTerminatorShield] C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe (.not file.)
O4 - HKLM\..\Run: [SpywareTerminatorUpdater] C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe (.not file.)
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKCU\..\Run: [Connexion SFR 9props.exe] . (.SFR - Propriétés de la connexion SFR.) -- C:\Program Files (x86)\SFR\Kit\9props.exe
O4 - HKCU\..\Run: [TomTomHOME.exe] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
O4 - HKCU\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe
O4 - HKCU\..\Run: [ooVoo.exe] . (.ooVoo LLC - ooVoo.) -- C:\Program Files (x86)\ooVoo\ooVoo.exe
O4 - HKCU\..\Run: [Inbox Storage] . (.Inbox.com, Inc. - Inbox Storage.) -- C:\Program Files (x86)\Inbox Storage\InboxStorage.exe
O4 - HKLM\..\Wow6432Node\Run: [GrooveMonitor] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Wow6432Node\Run: [KiesTrayAgent] . (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe =>.Samsung Electronics Co
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe
O4 - HKLM\..\Wow6432Node\Run: [VNT] . (.APN LLC. - Virtual New Tab Loader.) -- C:\Program Files (x86)\VNT\vntldr.exe =>Toolbar.Ask
O4 - HKUS\S-1-5-21-2416844428-2729830873-3903884127-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKUS\S-1-5-21-2416844428-2729830873-3903884127-1001\..\Run: [Connexion SFR 9props.exe] . (.SFR - Propriétés de la connexion SFR.) -- C:\Program Files (x86)\SFR\Kit\9props.exe
O4 - HKUS\S-1-5-21-2416844428-2729830873-3903884127-1001\..\Run: [TomTomHOME.exe] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
O4 - HKUS\S-1-5-21-2416844428-2729830873-3903884127-1001\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe
O4 - HKUS\S-1-5-21-2416844428-2729830873-3903884127-1001\..\Run: [ooVoo.exe] . (.ooVoo LLC - ooVoo.) -- C:\Program Files (x86)\ooVoo\ooVoo.exe
O4 - HKUS\S-1-5-21-2416844428-2729830873-3903884127-1001\..\Run: [Inbox Storage] . (.Inbox.com, Inc. - Inbox Storage.) -- C:\Program Files (x86)\Inbox Storage\InboxStorage.exe
~ Application: Scanned in 00mn 00s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\WINDOWS\system32\napinsp.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\WINDOWS\system32\pnrpnsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\WINDOWS\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\WINDOWS\system32\NLAapi.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\WINDOWS\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll
~ Winsock: 7 Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{81BF0387-7442-4335-A95A-23FDC913F725}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{81BF0387-7442-4335-A95A-23FDC913F725}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Norton Internet Security (NIS) . (.Symantec Corporation - Norton Internet Security.) - C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\NIS.exe
O23 - Service: (SFR.DashBoard.Service) . (.SFR - SFR.Dashboard.Service.) - C:\Program Files (x86)\SFR\Gestionnaire de Connexion\SFR.DashBoard.Service.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
~ Services: 10 Scanned in 00mn 06s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1082]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1086]
[MD5.1BA1AB4141A92EB34DA99F1249CA2D4D] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [257416]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.5971A95EA3A5A0086C3419B5F3C60223] [APT] [Norton WSC Integration] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\WSCStub.exe [163944]
[MD5.00000000000000000000000000000000] [APT] [{8915887E-14A9-4BFA-83C2-F98477AF84D6}] (...) -- C:\PMAIL\Programs\unins000.exe (.not file.) [0]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984]
[MD5.A0BE4F14B497E5120165F4E8130EDE93] [APT] [Norton Error Analyzer] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\SymErr.exe [52560]
[MD5.A0BE4F14B497E5120165F4E8130EDE93] [APT] [Norton Error Processor] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\SymErr.exe [52560]
~ Scheduled Task: 36 Scanned in 00mn 02s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll
~ Active Setup: 9 Scanned in 00mn 00s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (BasicDisplay) . (.Microsoft Corporation - Microsoft Basic Display Driver.) - C:\Windows\system32\drivers\BasicDisplay.sys
O41 - Driver: (BasicRender) . (.Microsoft Corporation - Microsoft Basic Render Driver.) - C:\Windows\system32\drivers\BasicRender.sys
O41 - Driver: (BHDrvx64) . (.Symantec Corporation - BASH Driver.) - C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\BASHDefs\20131218.001\BHDrvx64.sys
O41 - Driver: (ccSet_NIS) . (.Symantec Corporation - Common Client Settings Driver.) - C:\Windows\system32\drivers\NISx64\1501000.012\ccSetx64.sys
O41 - Driver: cdrom.inf (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys
O41 - Driver: C:\Windows\System32\cscsvc.dll (CSC) . (.Microsoft Corporation - Windows Client Side Caching Driver.) - C:\Windows\System32\drivers\csc.sys
O41 - Driver: C:\Windows\System32\drivers\dam.sys (dam) . (.Microsoft Corporation - DAM Kernel Driver.) - C:\Windows\System32\drivers\dam.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (Dfsc) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (eeCtrl) . (.Symantec Corporation - Symantec Eraser Control Driver.) - C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
O41 - Driver: (IDSVia64) . (.Symantec Corporation - IDS Core Driver.) - C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\IPSDefs\20140110.001\IDSvia64.sys
O41 - Driver: mssmbios.inf (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: netnb.inf (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: npsvctrig.inf (npsvctrig) . (.Microsoft Corporation - Named pipe service triggers.) - C:\Windows\system32\drivers\npsvctrig.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: (SRTSPX) . (.Symantec Corporation - Symantec AutoProtect.) - C:\Windows\system32\drivers\NISx64\1501000.012\SRTSPX64.sys
O41 - Driver: (SymIRON) . (.Symantec Corporation - Iron Driver.) - C:\Windows\system32\drivers\NISx64\1501000.012\Ironx64.sys
O41 - Driver: (SymNetS) . (.Symantec Corporation - Network Security Driver.) - C:\Windows\system32\drivers\NISx64\1501000.012\SYMNETS.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\system32\DRIVERS\wanarp.sys
~ Drivers: 48 Scanned in 00mn 00s



---\\ Logiciels installés (O42)
O42 - Logiciel: ACDSee for PENTAX 3.0 - (.ACD Systems Ltd..) [HKLM][64Bits] -- {82515476-A57B-4C43-B642-5F396E20C648}
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader XI (11.0.05) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {46F044A5-CE8B-4196-984E-5BD6525E361D}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc
O42 - Logiciel: Bandizip - (.Bandisoft.com.) [HKCU][64Bits] -- Bandizip
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>Piriform Ltd
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM][64Bits] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1
O42 - Logiciel: Gestionnaire de Connexion 3.5 - (.SFR.) [HKLM][64Bits] -- {FC48747D-095F-4CF6-B54E-37D4F4738A15}_is1
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}
O42 - Logiciel: Ham Radio Deluxe - (...) [HKLM][64Bits] -- {4DF979D5-464C-4926-AF73-54C1C219F06A}
O42 - Logiciel: Inbox Storage - (.Inbox.com, Inc..) [HKLM][64Bits] -- {8E262F9D-DDEA-4F30-85CD-FD5C28613894}_is1
O42 - Logiciel: Java 7 Update 45 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217045FF}
O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: MixW 2.20 - (.MixW Team.) [HKCU][64Bits] -- MixW
O42 - Logiciel: Norton Internet Security - (.Symantec Corporation.) [HKLM][64Bits] -- NIS
O42 - Logiciel: Oovoo Toolbar - (.APN, LLC.) [HKLM][64Bits] -- {4F564F32-5637-4300-76A7-A758B70C0700} =>Toolbar.Oovoo
O42 - Logiciel: PhotoScape - (...) [HKLM][64Bits] -- PhotoScape
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: RegHunter - (.Enigma Software Group USA, LLC.) [HKLM][64Bits] -- {F94A63D7-9A61-403B-8F6F-90B1BF77211A} =>Crapware.RegHunter
O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM][64Bits] -- Revo Uninstaller
O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44}
O42 - Logiciel: SES Driver - (.Western Digital.) [HKLM][64Bits] -- {D8CC254C-C671-4664-9A38-FA368D1E2C97}
O42 - Logiciel: SFR - Kit de connexion - (.SFR.) [HKLM][64Bits] -- SFR_Kit
O42 - Logiciel: SFR - Media Center - (.SFR.) [HKLM][64Bits] -- SFR_Media Center
O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{758C8301-2696-4855-AF45-534B1200980A}
O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {758C8301-2696-4855-AF45-534B1200980A}
O42 - Logiciel: Skype™ 6.11 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}
O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM][64Bits] -- {99072AB4-D795-44D5-9D65-E3C9F8322C97}
O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM][64Bits] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}
O42 - Logiciel: VLC media player 2.1.2 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: Windows Driver Package - Western Digital Technologies (WDC_SAM) WDC_SAM (0 - (.Western Digital Technologies.) [HKLM][64Bits] -- 4CA7CFBB29889F25ACB3DF6E3A42BAE29EB43B20
O42 - Logiciel: Wondershare Data Recovery(Build 4.3.1.6) - (.Wondershare Software Co.,Ltd..) [HKLM][64Bits] -- {FEA3976F-D621-45F3-AFBD-E812A1F2F00D}_is1
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}
O42 - Logiciel: ooVoo - (.ooVoo LLC..) [HKLM][64Bits] -- {FAA7F8FF-3C05-4A61-8F14-D8A6E9ED6623}
~ Logic: 44 Scanned in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\ACD Systems]
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\JavaSoft]
[HKCU\Software\AppDataLow\Software\MarkAny]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Canneverbe Limited]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\F6ADE]
[HKCU\Software\Google]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\IM Providers]
[HKCU\Software\Inbox Storage]
[HKCU\Software\JavaSoft]
[HKCU\Software\Licenses]
[HKCU\Software\LogiShrd]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\Mooii]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Netscape]
[HKCU\Software\Neuf]
[HKCU\Software\Norton]
[HKCU\Software\ODBC]
[HKCU\Software\PC SOFT]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Realtek]
[HKCU\Software\RegisteredApplications]
[HKCU\Software\Samsung]
[HKCU\Software\Simon Brown]
[HKCU\Software\Skype]
[HKCU\Software\Software]
[HKCU\Software\Symantec]
[HKCU\Software\Trolltech]
[HKCU\Software\VNT]
[HKCU\Software\VSRevoGroup]
[HKCU\Software\Wow6432Node]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\ooVoo]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\DTS]
[HKLM\Software\Dolby]
[HKLM\Software\EnigmaSoftwareGroup]
[HKLM\Software\GEAR Software]
[HKLM\Software\Huawei technologies]
[HKLM\Software\IM Providers]
[HKLM\Software\Intel]
[HKLM\Software\Knowles]
[HKLM\Software\Logishrd]
[HKLM\Software\Logitech]
[HKLM\Software\Macromedia]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Norton]
[HKLM\Software\Nuance]
[HKLM\Software\ODBC]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SAMSUNG]
[HKLM\Software\SRS Labs]
[HKLM\Software\SmartPCFixer]
[HKLM\Software\SonicFocus]
[HKLM\Software\Symantec]
[HKLM\Software\Wow6432Node\ACD Systems]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\AdwCleaner]
[HKLM\Software\Wow6432Node\Apple Computer, Inc.]
[HKLM\Software\Wow6432Node\Apple Inc.]
[HKLM\Software\Wow6432Node\Canneverbe Limited]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\DivXNetworks]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\IM Providers]
[HKLM\Software\Wow6432Node\Inbox Storage]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\JavaSoft]
[HKLM\Software\Wow6432Node\JreMetrics]
[HKLM\Software\Wow6432Node\Logitech]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware]
[HKLM\Software\Wow6432Node\Mooii]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\Neuf]
[HKLM\Software\Wow6432Node\Norton]
[HKLM\Software\Wow6432Node\Nuance]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\SFR]
[HKLM\Software\Wow6432Node\Simon Brown]
[HKLM\Software\Wow6432Node\Skype]
[HKLM\Software\Wow6432Node\Software]
[HKLM\Software\Wow6432Node\Symantec]
[HKLM\Software\Wow6432Node\VBMZ] =>PUP.Duuqu
[HKLM\Software\Wow6432Node\VideoLAN]
[HKLM\Software\Wow6432Node\Wondershare]
[HKLM\Software\Wow6432Node]
~ Key Software: 198 Scanned in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 08/11/2013 - 20:34:52 - [35,659] ----D C:\Program Files (x86)\ACD Systems
O43 - CFD: 08/11/2013 - 20:06:05 - [120,785] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 08/01/2014 - 17:39:22 - [79,364] ----D C:\Program Files (x86)\Amateur Radio
O43 - CFD: 21/11/2013 - 18:48:08 - [2,316] ----D C:\Program Files (x86)\Apple Software Update =>.Apple Inc
O43 - CFD: 21/11/2013 - 18:47:34 - [0,602] ----D C:\Program Files (x86)\Bonjour
O43 - CFD: 09/11/2013 - 09:09:23 - [17,303] ----D C:\Program Files (x86)\CDBurnerXP
O43 - CFD: 10/01/2014 - 19:01:35 - [516,367] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 10/01/2014 - 20:48:52 - [713,915] ----D C:\Program Files (x86)\Google
O43 - CFD: 11/01/2014 - 21:14:57 - [7,125] ----D C:\Program Files (x86)\Inbox Storage
O43 - CFD: 08/01/2014 - 17:39:22 - [4,078] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 08/01/2014 - 10:19:34 - [4,632] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 21/11/2013 - 18:48:54 - [184,756] ----D C:\Program Files (x86)\iTunes
O43 - CFD: 29/12/2013 - 17:06:04 - [121,070] ----D C:\Program Files (x86)\Java
O43 - CFD: 11/01/2014 - 21:25:10 - [0] ----D C:\Program Files (x86)\Lavasoft
O43 - CFD: 08/01/2014 - 15:35:36 - [13,350] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 28/12/2013 - 16:02:30 - [0,216] ----D C:\Program Files (x86)\Microsoft
O43 - CFD: 10/11/2013 - 18:12:56 - [676,548] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 09/11/2013 - 19:01:27 - [40,851] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 08/11/2013 - 18:21:15 - [0,014] ----D C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 09/11/2013 - 06:23:56 - [3,554] ----D C:\Program Files (x86)\Microsoft Works
O43 - CFD: 28/12/2013 - 12:11:37 - [7,797] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 13/11/2013 - 16:36:24 - [8,755] ----D C:\Program Files (x86)\MixW
O43 - CFD: 28/12/2013 - 11:43:41 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 08/11/2013 - 19:39:07 - [501,519] ----D C:\Program Files (x86)\Norton Internet Security
O43 - CFD: 08/11/2013 - 19:38:57 - [14,111] ----D C:\Program Files (x86)\NortonInstaller
O43 - CFD: 03/01/2014 - 16:09:19 - [36,333] ----D C:\Program Files (x86)\ooVoo
O43 - CFD: 08/11/2013 - 22:27:11 - [25,371] ----D C:\Program Files (x86)\PhotoScape
O43 - CFD: 28/12/2013 - 11:17:55 - [0] ----D C:\Program Files (x86)\predm
O43 - CFD: 28/12/2013 - 11:43:42 - [36,536] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 21/11/2013 - 17:51:40 - [186,864] ----D C:\Program Files (x86)\Samsung
O43 - CFD: 16/11/2013 - 13:57:15 - [59,906] ----D C:\Program Files (x86)\SFR
O43 - CFD: 27/11/2013 - 13:12:19 - [19,916] R---D C:\Program Files (x86)\Skype
O43 - CFD: 17/11/2013 - 13:20:54 - [1,372] ----D C:\Program Files (x86)\Temp
O43 - CFD: 12/11/2013 - 11:27:16 - [48,573] ----D C:\Program Files (x86)\TomTom HOME 2
O43 - CFD: 12/11/2013 - 11:26:32 - [0,021] ----D C:\Program Files (x86)\TomTom International B.V
O43 - CFD: 08/11/2013 - 22:16:10 - [98,636] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 03/01/2014 - 16:09:34 - [0,326] ----D C:\Program Files (x86)\VNT
O43 - CFD: 10/11/2013 - 18:00:24 - [6,523] ----D C:\Program Files (x86)\VS Revo Group
O43 - CFD: 09/11/2013 - 08:27:51 - [1,038] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 28/12/2013 - 15:50:16 - [2,786] ----D C:\Program Files (x86)\Windows Live
O43 - CFD: 26/07/2012 - 11:08:59 - [5,466] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 10/11/2013 - 18:16:45 - [3,494] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 26/07/2012 - 09:13:01 - [0,209] ----D C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 26/07/2012 - 09:12:59 - [7,243] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 08/11/2013 - 21:41:26 - [5,226] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 26/07/2012 - 09:13:01 - [0,209] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 26/07/2012 - 09:12:59 - [0] -SH-D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 17/11/2013 - 13:20:53 - [51,679] ----D C:\Program Files (x86)\Wondershare
O43 - CFD: 12/01/2014 - 16:52:07 - [17,241] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 08/11/2013 - 20:34:55 - [17,024] ----D C:\Program Files (x86)\Common Files\ACD Systems
O43 - CFD: 08/11/2013 - 20:06:09 - [6,289] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 21/11/2013 - 18:48:28 - [96,844] ----D C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 08/11/2013 - 18:21:15 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 08/01/2014 - 17:38:47 - [1,827] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 29/12/2013 - 17:06:33 - [1,191] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 08/11/2013 - 17:22:45 - [0,322] ----D C:\Program Files (x86)\Common Files\logishrd
O43 - CFD: 31/12/2013 - 15:04:25 - [252,635] ----D C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 26/07/2012 - 09:13:01 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 09/11/2013 - 14:24:04 - [1,904] ----D C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 08/11/2013 - 19:52:02 - [0,594] ----D C:\Program Files (x86)\Common Files\Symantec Shared
O43 - CFD: 28/12/2013 - 16:02:40 - [41,893] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 28/12/2013 - 10:44:43 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 11/01/2014 - 09:53:33 - [92,681] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 17/11/2013 - 13:20:58 - [3,073] ----D C:\Program Files (x86)\Common Files\Wondershare
O43 - CFD: 21/11/2013 - 18:48:55 - [2,774] ----D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 08/11/2013 - 20:34:53 - [0,186] ----D C:\ProgramData\ACD Systems
O43 - CFD: 08/11/2013 - 20:06:06 - [147,431] ----D C:\ProgramData\Adobe
O43 - CFD: 21/11/2013 - 18:47:58 - [36,775] ----D C:\ProgramData\Apple
O43 - CFD: 21/11/2013 - 18:48:28 - [67,827] ----D C:\ProgramData\Apple Computer
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Application Data
O43 - CFD: 08/11/2013 - 17:08:31 - [0] -SH-D C:\ProgramData\Bureau
O43 - CFD: 09/11/2013 - 09:09:28 - [0] ----D C:\ProgramData\Canneverbe Limited
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Desktop
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Documents
O43 - CFD: 11/01/2014 - 20:44:13 - [1,851] ----D C:\ProgramData\Lavasoft
O43 - CFD: 08/11/2013 - 20:40:04 - [7,918] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 08/11/2013 - 17:08:32 - [0] -SH-D C:\ProgramData\Menu Démarrer
O43 - CFD: 08/01/2014 - 15:17:31 - [321,624] -S--D C:\ProgramData\Microsoft
O43 - CFD: 11/12/2013 - 16:15:43 - [0,064] ----D C:\ProgramData\Microsoft Help
O43 - CFD: 13/11/2013 - 16:36:19 - [0,459] ----D C:\ProgramData\MixW
O43 - CFD: 08/11/2013 - 17:08:32 - [0] -SH-D C:\ProgramData\Modèles
O43 - CFD: 12/11/2013 - 18:41:45 - [321,407] ----D C:\ProgramData\Norton
O43 - CFD: 08/11/2013 - 19:38:57 - [0,467] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 30/12/2013 - 17:36:21 - [0] ----D C:\ProgramData\Oracle
O43 - CFD: 08/11/2013 - 21:50:12 - [0,039] ----D C:\ProgramData\PRICache
O43 - CFD: 26/07/2012 - 11:11:33 - [0,001] ----D C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 21/11/2013 - 17:51:24 - [11,133] ----D C:\ProgramData\Samsung
O43 - CFD: 27/11/2013 - 13:12:26 - [38,478] ----D C:\ProgramData\Skype
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 29/12/2013 - 17:06:35 - [0] ----D C:\ProgramData\Sun
O43 - CFD: 26/07/2012 - 08:22:08 - [0] -SH-D C:\ProgramData\Templates
O43 - CFD: 12/11/2013 - 11:27:36 - [0,034] ----D C:\ProgramData\TomTom
O43 - CFD: 08/11/2013 - 20:35:15 - [0] ----D C:\Users\fernand\AppData\Roaming\ACD Systems
O43 - CFD: 09/11/2013 - 12:53:09 - [0,075] ----D C:\Users\fernand\AppData\Roaming\Adobe
O43 - CFD: 21/11/2013 - 18:54:19 - [0,182] ----D C:\Users\fernand\AppData\Roaming\Apple Computer
O43 - CFD: 09/11/2013 - 09:09:23 - [0,001] ----D C:\Users\fernand\AppData\Roaming\Canneverbe Limited
O43 - CFD: 08/12/2013 - 16:11:37 - [0] ----D C:\Users\fernand\AppData\Roaming\Google
O43 - CFD: 08/11/2013 - 18:35:36 - [0] ----D C:\Users\fernand\AppData\Roaming\Identities
O43 - CFD: 12/01/2014 - 16:40:32 - [0,309] ----D C:\Users\fernand\AppData\Roaming\Inbox Storage
O43 - CFD: 11/01/2014 - 21:10:45 - [0,001] ----D C:\Users\fernand\AppData\Roaming\LavasoftStatistics
O43 - CFD: 08/11/2013 - 19:52:39 - [0,001] ----D C:\Users\fernand\AppData\Roaming\Macromedia
O43 - CFD: 08/11/2013 - 20:40:09 - [82,656] ----D C:\Users\fernand\AppData\Roaming\Malwarebytes
O43 - CFD: 10/01/2014 - 21:21:59 - [2,421] -S--D C:\Users\fernand\AppData\Roaming\Microsoft
O43 - CFD: 13/11/2013 - 16:48:14 - [2,291] ----D C:\Users\fernand\AppData\Roaming\MixW
O43 - CFD: 12/11/2013 - 11:27:34 - [0] ----D C:\Users\fernand\AppData\Roaming\Mozilla
O43 - CFD: 06/12/2013 - 17:18:22 - [0,090] ----D C:\Users\fernand\AppData\Roaming\ooVoo Details
O43 - CFD: 08/01/2014 - 15:51:01 - [0,003] ----D C:\Users\fernand\AppData\Roaming\Pegasus Mail
O43 - CFD: 08/11/2013 - 22:27:31 - [0,032] ----D C:\Users\fernand\AppData\Roaming\PhotoScape
O43 - CFD: 21/11/2013 - 17:52:10 - [3,492] ----D C:\Users\fernand\AppData\Roaming\Samsung
O43 - CFD: 11/01/2014 - 20:46:27 - [0,014] ----D C:\Users\fernand\AppData\Roaming\SecureSearch
O43 - CFD: 08/01/2014 - 17:40:46 - [1,176] ----D C:\Users\fernand\AppData\Roaming\Simon Brown, HB9DRV
O43 - CFD: 05/01/2014 - 10:27:43 - [7,088] ----D C:\Users\fernand\AppData\Roaming\Skype
O43 - CFD: 12/11/2013 - 11:27:34 - [22,355] ----D C:\Users\fernand\AppData\Roaming\TomTom
O43 - CFD: 08/11/2013 - 22:17:34 - [0,081] ----D C:\Users\fernand\AppData\Roaming\vlc
O43 - CFD: 12/01/2014 - 17:01:58 - [0,771] ----D C:\Users\fernand\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 08/11/2013 - 20:35:17 - [1,188] ----D C:\Users\fernand\AppData\Local\ACD Systems
O43 - CFD: 03/01/2014 - 18:08:53 - [0,307] ----D C:\Users\fernand\AppData\Local\Adobe
O43 - CFD: 21/11/2013 - 18:48:11 - [0] ----D C:\Users\fernand\AppData\Local\Apple
O43 - CFD: 21/11/2013 - 18:49:43 - [5,013] ----D C:\Users\fernand\AppData\Local\Apple Computer
O43 - CFD: 08/11/2013 - 17:09:18 - [0] -SH-D C:\Users\fernand\AppData\Local\Application Data
O43 - CFD: 28/12/2013 - 12:54:54 - [1,579] ----D C:\Users\fernand\AppData\Local\Apps
O43 - CFD: 08/11/2013 - 20:10:22 - [12,976] ----D C:\Users\fernand\AppData\Local\Bandizip
O43 - CFD: 28/12/2013 - 10:45:34 - [2,325] ----D C:\Users\fernand\AppData\Local\cache
O43 - CFD: 12/01/2014 - 15:34:04 - [17,297] ----D C:\Users\fernand\AppData\Local\CrashDumps
O43 - CFD: 10/01/2014 - 20:48:42 - [0] ----D C:\Users\fernand\AppData\Local\Deployment
O43 - CFD: 26/12/2013 - 17:37:35 - [1,001] ----D C:\Users\fernand\AppData\Local\Diagnostics
O43 - CFD: 21/11/2013 - 17:48:26 - [116,572] ----D C:\Users\fernand\AppData\Local\Downloaded Installations
O43 - CFD: 09/01/2014 - 11:08:44 - [0,061] ----D C:\Users\fernand\AppData\Local\ElevatedDiagnostics
O43 - CFD: 28/12/2013 - 12:09:13 - [0,029] ----D C:\Users\fernand\AppData\Local\emaze
O43 - CFD: 28/12/2013 - 10:45:34 - [1,224] ----D C:\Users\fernand\AppData\Local\genienext
O43 - CFD: 17/12/2013 - 11:35:58 - [67,805] ----D C:\Users\fernand\AppData\Local\Google
O43 - CFD: 08/11/2013 - 17:09:18 - [0] -SH-D C:\Users\fernand\AppData\Local\Historique
O43 - CFD: 28/12/2013 - 15:35:35 - [632,158] ----D C:\Users\fernand\AppData\Local\Microsoft
O43 - CFD: 14/11/2013 - 17:11:29 - [0,130] ----D C:\Users\fernand\AppData\Local\Microsoft Help
O43 - CFD: 10/11/2013 - 19:57:36 - [0] ----D C:\Users\fernand\AppData\Local\MigWiz
O43 - CFD: 16/11/2013 - 11:01:54 - [0,003] ----D C:\Users\fernand\AppData\Local\Neuf
O43 - CFD: 23/12/2013 - 11:13:08 - [302,390] ----D C:\Users\fernand\AppData\Local\Packages
O43 - CFD: 08/11/2013 - 20:39:53 - [0] ----D C:\Users\fernand\AppData\Local\Programs
O43 - CFD: 21/11/2013 - 17:52:13 - [0,025] ----D C:\Users\fernand\AppData\Local\Samsung
O43 - CFD: 16/11/2013 - 14:00:31 - [17,826] ----D C:\Users\fernand\AppData\Local\SFR
O43 - CFD: 28/12/2013 - 12:05:59 - [0] ----D C:\Users\fernand\AppData\Local\Software
O43 - CFD: 12/01/2014 - 16:52:50 - [12,200] ----D C:\Users\fernand\AppData\Local\Temp
O43 - CFD: 08/11/2013 - 17:09:18 - [0] -SH-D C:\Users\fernand\AppData\Local\Temporary Internet Files
O43 - CFD: 12/11/2013 - 11:27:34 - [1,913] ----D C:\Users\fernand\AppData\Local\TomTom
O43 - CFD: 08/11/2013 - 22:06:48 - [0] ----D C:\Users\fernand\AppData\Local\VirtualStore
O43 - CFD: 03/01/2014 - 16:09:37 - [0,275] ----D C:\Users\fernand\AppData\Local\VNT
O43 - CFD: 17/11/2013 - 13:21:00 - [0] ----D C:\Users\fernand\AppData\Local\Wondershare
O43 - CFD: 26/07/2012 - 09:13:00 - [0,004] R---D C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 26/07/2012 - 09:13:00 - [0,001] R---D C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 09/11/2013 - 08:45:57 - [0] R---D C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 08/11/2013 - 20:10:19 - [0,001] ----D C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bandizip
O43 - CFD: 26/07/2012 - 09:13:00 - [0] ----D C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 11/01/2014 - 10:12:25 - [0,010] ----D C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MixW
O43 - CFD: 10/11/2013 - 18:00:25 - [0,005] ----D C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
O43 - CFD: 10/01/2014 - 21:21:59 - [0,005] ----D C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter =>Crapware.SpyHunter
O43 - CFD: 11/01/2014 - 10:12:25 - [0] ----D C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop =>Adware.Lollipop
O43 - CFD: 11/01/2014 - 10:12:25 - [0] R---D C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 26/07/2012 - 09:13:00 - [0,005] R---D C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
~ Program Folder: 158 Scanned in 00mn 00s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.2472C6DE9BF86E3C169206F3B653E8C5] - 08/01/2014 - 15:27:27 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1793362]
O44 - LFC:[MD5.F15863D9E61C7CB3BC0AA791476F87B2] - 08/01/2014 - 15:27:27 ---A- . (...) -- C:\Windows\System32\perfc009.dat [132416]
O44 - LFC:[MD5.59474643B69AA84FE8D9648664786BEF] - 08/01/2014 - 15:27:27 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [155444]
O44 - LFC:[MD5.DC165B73BE7352A49617201DE6469C2E] - 08/01/2014 - 15:27:27 ---A- . (...) -- C:\Windows\System32\perfh009.dat [710046]
O44 - LFC:[MD5.933BFE9D04A3C3180A3BE03FB7B1A9E5] - 08/01/2014 - 15:27:27 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [799736]
O44 - LFC:[MD5.2C5B17AA25B2E83E64F099F75513CEE7] - 08/01/2014 - 18:17:19 ---A- . (...) -- C:\Windows\HRDLog001.INI [147]
O44 - LFC:[MD5.09DC813EA00294A6F5B2B6C75E2740ED] - 11/01/2014 - 19:01:24 ---A- . (.Microsoft Corporation - API du Pare-feu Windows.) -- C:\Windows\System32\FirewallAPI.dll [758784]
O44 - LFC:[MD5.9B1384CE8E681D2D77BB3524B8E86311] - 11/01/2014 - 19:01:24 ---A- . (.Microsoft Corporation - Fichier DLL du service DAV pour le Web.) -- C:\Windows\System32\WebClnt.dll [227840]
O44 - LFC:[MD5.4CCBBD4944777CA100B9A6C2F149A46F] - 11/01/2014 - 19:01:24 ---A- . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\Drivers\mpsdrv.sys [74752]
O44 - LFC:[MD5.AE3786294CC246A5403783E1B86A0168] - 11/01/2014 - 19:01:24 ---A- . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\Drivers\disk.sys [100696]
O44 - LFC:[MD5.A28DE7725EC0426BC76C064B3A9D64EF] - 11/01/2014 - 19:01:24 ---A- . (.Microsoft Corporation - SHCORE.) -- C:\Windows\System32\SHCore.dll [588288]
O44 - LFC:[MD5.9DE3341BD4E14BC5FADFCAD3019F2D0D] - 11/01/2014 - 19:01:24 ---A- . (.Microsoft Corporation - Service de protection Microsoft.) -- C:\Windows\System32\MPSSVC.dll [915968]
O44 - LFC:[MD5.353F85DB0B6EB92A77DA1DC2B9DD4FEF] - 11/01/2014 - 19:01:24 ---A- . (.Microsoft Corporation - Web DAV Client DLL.) -- C:\Windows\System32\davclnt.dll [104448]
O44 - LFC:[MD5.B9657A0AFF28C1CB114ACC0CB93EE4BB] - 11/01/2014 - 21:14:36 ---A- . (.Windows (R) Win 7 DDK provider - Spyware Terminator 2012 driver.) -- C:\Windows\System32\Drivers\stflt.sys [51496]
O44 - LFC:[MD5.E9599F34BDAF6CB7EEF3A612EE11146C] - 12/01/2014 - 16:39:32 ---A- . (...) -- C:\Windows\PFRO.log [206224]
O44 - LFC:[MD5.AB7FF018B1718E2E000804BB5C2B7310] - 12/01/2014 - 16:41:39 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.064BE21ADB2CD533D21950808D5E08D9] - 12/01/2014 - 16:51:27 ---A- . (...) -- C:\Windows\WindowsUpdate.log [201770]
O44 - LFC:[MD5.680370EFF4F232B5739D202EBD974E9E] - 12/01/2014 - 16:56:52 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512]
O44 - LFC:[MD5.20E0FC5F724B85CA09C82D2776E84C5E] - 31/12/2013 - 14:39:51 ---A- . (.Microsoft Corporation - WinFX OpenType/CFF Rasterizer.) -- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll [124112]
~ Files: 19 Scanned in 00mn 01s



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.F66FAACF22FDB4E1E6404D2469B6AF5F] - 03/01/2014 - 16:08:14 ---A- - C:\Windows\Prefetch\3C3.EXE-0DF3E604.pf
O45 - LFCP:[MD5.79F93AF4C85249621CAF58FECA831701] - 03/01/2014 - 16:08:18 ---A- - C:\Windows\Prefetch\OFFERCAST.EXE-ACDBAA58.pf
O45 - LFCP:[MD5.E45C072AD3F481139AE58D17AF286066] - 03/01/2014 - 16:09:33 ---A- - C:\Windows\Prefetch\APNSETUP.EXE-6D328E8D.pf
O45 - LFCP:[MD5.2B1A8FDC7254AEC1F69BAF1238705F0A] - 03/01/2014 - 16:35:26 ---A- - C:\Windows\Prefetch\LOGIDPPAPP.EXE-9EDBF124.pf
O45 - LFCP:[MD5.9AB77CD4C0758669641A43D983DA6D6D] - 03/01/2014 - 17:12:05 ---A- - C:\Windows\Prefetch\FLASHPLAYERSETUP__3873_I23093-EE519A32.pf
O45 - LFCP:[MD5.1DFD52C19DB180144B4D8BDF59245EC8] - 03/01/2014 - 17:25:18 ---A- - C:\Windows\Prefetch\FIXMAPI.EXE-0C83F412.pf
O45 - LFCP:[MD5.E691AA5C2DAD3154A5B20ABD03FF2E21] - 03/01/2014 - 17:51:21 ---A- - C:\Windows\Prefetch\JAVAW.EXE-2AB1E03D.pf
O45 - LFCP:[MD5.661D77AA86FE6095899779F5D4FC9AA4] - 03/01/2014 - 17:51:58 ---A- - C:\Windows\Prefetch\JAVA.EXE-07FE5A9A.pf
O45 - LFCP:[MD5.FDFFEEB7297C58128E1E5731FFA08F7E] - 07/01/2014 - 12:16:51 ---A- - C:\Windows\Prefetch\OUTLOOK.EXE-85B274FA.pf
O45 - LFCP:[MD5.661C2D6B7C3DEA15A1A65DA007A0538C] - 08/01/2014 - 09:54:05 ---A- - C:\Windows\Prefetch\APNSETUP.EXE-FBA60655.pf
O45 - LFCP:[MD5.8241A515FC87A939F4CBCA1446D07070] - 08/01/2014 - 09:56:41 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-8533F634.pf
O45 - LFCP:[MD5.E19A54F0615EEE1F52AE1F49AEDBA71C] - 08/01/2014 - 11:01:58 ---A- - C:\Windows\Prefetch\ACDSEEQV.EXE-D7BEB709.pf
O45 - LFCP:[MD5.F2E4F0F334B0009051BB39FCA425FDD9] - 08/01/2014 - 11:02:04 ---A- - C:\Windows\Prefetch\ACDSEE9.EXE-184EB2DB.pf
O45 - LFCP:[MD5.E63D8F17FA17F14004702794E93A5B56] - 08/01/2014 - 11:05:25 ---A- - C:\Windows\Prefetch\WMPLAYER.EXE-26C72A86.pf
O45 - LFCP:[MD5.09D497E9E295C16DC8BF975B015A0008] - 08/01/2014 - 15:06:07 ---A- - C:\Windows\Prefetch\SETUP32.EXE-C3744DB9.pf
O45 - LFCP:[MD5.CA83412C86926FE6F5E5C60F60423AD5] - 08/01/2014 - 15:06:13 ---A- - C:\Windows\Prefetch\IERENDERER.TMP-0A071F8C.pf
O45 - LFCP:[MD5.64712467A7A2B93E0E8E4EE1FB4E6B87] - 08/01/2014 - 15:07:14 ---A- - C:\Windows\Prefetch\PEGASUS-MAIL_PEGASUS_MAIL_4.6-204D561C.pf
O45 - LFCP:[MD5.80071B115A87B61A280A19ED2F0D4457] - 08/01/2014 - 15:07:34 ---A- - C:\Windows\Prefetch\DRIVERDETECTIVE.EXE-AF32074F.pf
O45 - LFCP:[MD5.849FC902BA522A78F724F0B3046F470C] - 08/01/2014 - 15:35:25 ---A- - C:\Windows\Prefetch\MBAM-CONSUMER.TMP-421228F2.pf
O45 - LFCP:[MD5.AF07691876BD93306860F31DB2BBB44F] - 08/01/2014 - 15:35:27 ---A- - C:\Windows\Prefetch\MBAM-CONSUMER.TMP-045CA9A0.pf
O45 - LFCP:[MD5.F4889CC10EB5AFFFB0783BF97D378CFC] - 08/01/2014 - 15:44:35 ---A- - C:\Windows\Prefetch\DRIVERSHQ.DRIVERDETECTIVE.CLI-B186E44D.pf
O45 - LFCP:[MD5.74B39A30AF4A6CF5036CC1A3592EC0CD] - 08/01/2014 - 15:53:55 ---A- - C:\Windows\Prefetch\WINPM-32.EXE-F9C68876.pf
O45 - LFCP:[MD5.4201033B04748B1432C6D2AE2464D3B7] - 08/01/2014 - 15:54:34 ---A- - C:\Windows\Prefetch\DESETUP.EXE-273A07AF.pf
O45 - LFCP:[MD5.C828AF808CAE035A489B95930E09EAB1] - 08/01/2014 - 16:00:39 ---A- - C:\Windows\Prefetch\SYSTEMSETTINGS.EXE-6069CEA4.pf
O45 - LFCP:[MD5.5B410CB878304BEDA92DBE554506EAB8] - 08/01/2014 - 16:17:54 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-41467C2F.pf
O45 - LFCP:[MD5.F7327FE5ACF115E17F557A757CC0F8E6] - 08/01/2014 - 16:17:57 ---A- - C:\Windows\Prefetch\USERACCOUNTCONTROLSETTINGS.EX-1B2F66BE.pf
O45 - LFCP:[MD5.BB90019BA4193CAF3953C9604ABC5DF3] - 08/01/2014 - 16:18:40 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-66F2A017.pf
O45 - LFCP:[MD5.3C0A1085969A8C9659FA2185645EF90C] - 08/01/2014 - 16:19:40 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-B98FDEEE.pf
O45 - LFCP:[MD5.EE75A24258B15FCFCEFB02E398BC0EDA] - 08/01/2014 - 17:38:57 ---A- - C:\Windows\Prefetch\HRDV041B1989_FULL.EXE-9820439A.pf
O45 - LFCP:[MD5.CE9938F2A4E9F41FF1F7B587794467F7] - 08/01/2014 - 17:40:15 ---A- - C:\Windows\Prefetch\HAMRADIODELUXE.EXE-FA7B347B.pf
O45 - LFCP:[MD5.E5E20FEA47E19201FA2AA55DB9CC1B11] - 08/01/2014 - 17:58:07 ---A- - C:\Windows\Prefetch\MSPAINT.EXE-B4A5B5E8.pf
O45 - LFCP:[MD5.2B38C85F69ADC2D7ADDC1732A8C7B9D9] - 08/01/2014 - 18:16:20 ---A- - C:\Windows\Prefetch\MIXW2.EXE-AEE1BDC5.pf
O45 - LFCP:[MD5.C1E8EA16A7E68EE71FCCFE5E98192528] - 08/01/2014 - 18:17:29 ---A- - C:\Windows\Prefetch\DIGITAL MASTER.EXE-6BF28779.pf
O45 - LFCP:[MD5.9AE98E012276AB4F094A931CDC0E4950] - 08/01/2014 - 21:21:03 ---A- - C:\Windows\Prefetch\TRAFIC2011.EXE-FCAFE6AD.pf
O45 - LFCP:[MD5.234E0EB4154FEC6A928627D08FB62B56] - 08/01/2014 - 21:34:06 ---A- - C:\Windows\Prefetch\EXCEL.EXE-16800A1F.pf
O45 - LFCP:[MD5.C4AFEF006A28C668E17BDFF1C38DF726] - 09/01/2014 - 11:08:40 ---A- - C:\Windows\Prefetch\MSDT.EXE-09841468.pf
O45 - LFCP:[MD5.3B9FA6C6C4AEFDAD6F636DB47C21DDE4] - 09/01/2014 - 11:16:45 ---A- - C:\Windows\Prefetch\UNINS000.EXE-B9FB7556.pf
O45 - LFCP:[MD5.BF94A9022944901BBC8E9D20C81A1A1F] - 09/01/2014 - 14:06:36 ---A- - C:\Windows\Prefetch\ACRORD32.EXE-D066635E.pf
O45 - LFCP:[MD5.88121A8E23E029DAFFC295AC69A7B7D0] - 10/01/2014 - 10:28:22 ---A- - C:\Windows\Prefetch\NGENTASK.EXE-4F8BD802.pf
O45 - LFCP:[MD5.59714BA6405208B5D0888BC304F5D7A5] - 10/01/2014 - 10:28:22 ---A- - C:\Windows\Prefetch\NGENTASK.EXE-BB7F7010.pf
O45 - LFCP:[MD5.A5A1BC5BB04A18029D84BB33471E0ACD] - 10/01/2014 - 18:44:49 ---A- - C:\Windows\Prefetch\FRST64.EXE-A238E777.pf
O45 - LFCP:[MD5.C11C03B83C53A730C0E05673B1763933] - 10/01/2014 - 18:56:38 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-175F5E71.pf
O45 - LFCP:[MD5.09186FBBC67E7AB7D75AB438E06203F5] - 10/01/2014 - 18:59:40 ---A- - C:\Windows\Prefetch\SPYHUNTER-INSTALLER.EXE-B16510AB.pf =>Crapware.SpyHunter
O45 - LFCP:[MD5.65144C3A3211DDA6171E41AD12995661] - 10/01/2014 - 19:52:32 ---A- - C:\Windows\Prefetch\SPYHUNTER-INSTALLER (1).EXE-63900C2D.pf =>Crapware.SpyHunter
O45 - LFCP:[MD5.FB72D15F6C792A859C5BCA0C3EC0DC35] - 10/01/2014 - 20:12:36 ---A- - C:\Windows\Prefetch\ADWCLEANER.EXE-A4250B87.pf
O45 - LFCP:[MD5.A48475B3A9F4A3DE65E578206BEECCA6] - 10/01/2014 - 20:27:01 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-477D889B.pf
O45 - LFCP:[MD5.DC4CCA6FB26CB82A3477B54663475C41] - 10/01/2014 - 20:27:03 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-AA559CCD.pf
O45 - LFCP:[MD5.353042CF3A9AE4A032F32737D065A555] - 10/01/2014 - 20:48:45 ---A- - C:\Windows\Prefetch\DFSVC.EXE-3D1775F1.pf
O45 - LFCP:[MD5.0990D7A2B5C4C1E800D7FEE85B24338E] - 10/01/2014 - 20:48:53 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-D190E12E.pf
O45 - LFCP:[MD5.4316CB9F7461FFF869265C746E0898E6] - 10/01/2014 - 20:48:56 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-D3DA283C.pf
O45 - LFCP:[MD5.5A167FA42542F14F55F3187A953F3320] - 10/01/2014 - 21:07:22 ---A- - C:\Windows\Prefetch\REVOUNINSTALLER.EXE-0601D209.pf
O45 - LFCP:[MD5.278716052D440AF7A9CE92746EA6814E] - 10/01/2014 - 21:07:54 ---A- - C:\Windows\Prefetch\UNINS000.EXE-F777E8AD.pf
O45 - LFCP:[MD5.DCAB616702794E7CD0980F9B08994CCE] - 10/01/2014 - 21:19:45 ---A- - C:\Windows\Prefetch\SPYHUNTER-INSTALLER.EXE-4BD35293.pf =>Crapware.SpyHunter
O45 - LFCP:[MD5.0D9A927B437F879AA7EE89E9667AA12B] - 10/01/2014 - 21:22:08 ---A- - C:\Windows\Prefetch\ESGRKCHK.EXE-E2C5E533.pf
O45 - LFCP:[MD5.790D61B44BE6A45E2A45CEDE447CEEB5] - 10/01/2014 - 22:15:39 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-C779AC98.pf
O45 - LFCP:[MD5.6C47B6B0952567130DCE58119DA2ED5A] - 11/01/2014 - 09:48:54 ---A- - C:\Windows\Prefetch\REGHUNTER-INSTALLER.EXE-FA026729.pf =>Crapware.RegHunter
O45 - LFCP:[MD5.9FF2742E0B9FA35536D08300FEB10A5C] - 11/01/2014 - 09:49:10 ---A- - C:\Windows\Prefetch\RHSETUP.EXE-DA0BB9D6.pf
O45 - LFCP:[MD5.AFE3A5DD9F21B7FF95F915688BF65F65] - 11/01/2014 - 09:50:32 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-37549B7E.pf
O45 - LFCP:[MD5.80B002FEACC77DAC9B2B575C0562D136] - 11/01/2014 - 09:51:42 ---A- - C:\Windows\Prefetch\SPYHUNTER-INSTALLER.EXE-5A29D257.pf =>Crapware.SpyHunter
O45 - LFCP:[MD5.F9BA61278F309D0C3FA9B9A15E130A3D] - 11/01/2014 - 09:53:33 ---A- - C:\Windows\Prefetch\SHSETUP.EXE-207D516B.pf =>Crapware.SpyHunter
O45 - LFCP:[MD5.AA26AA6636D9E0A84D58124BA9B4AA2C] - 11/01/2014 - 10:20:07 ---A- - C:\Windows\Prefetch\SPYHUNTER4.EXE-7BD5E907.pf =>Crapware.SpyHunter
O45 - LFCP:[MD5.EC4FAFE2C96035BB5A3871ACE48E3DA3] - 11/01/2014 - 11:00:52 ---A- - C:\Windows\Prefetch\HELPPANE.EXE-FEDC965B.pf
O45 - LFCP:[MD5.11C467F59F8A6B17760D626F69A51FFD] - 11/01/2014 - 11:03:30 ---A- - C:\Windows\Prefetch\OPTIONALFEATURES.EXE-27133C71.pf
O45 - LFCP:[MD5.C15DE02CF58C9F0D1BF3ADF47566FFA1] - 11/01/2014 - 12:39:27 ---A- - C:\Windows\Prefetch\dynreservedpri.db
O45 - LFCP:[MD5.76370D6B116C9B3BB09B788D486A286C] - 11/01/2014 - 13:08:24 ---A- - C:\Windows\Prefetch\ZHPDIAG2 (1).TMP-99AB2CF7.pf
O45 - LFCP:[MD5.C096928F59A8CAC3CC1BEA58017CA303] - 11/01/2014 - 13:08:27 ---A- - C:\Windows\Prefetch\ZHPDIAG2 (1).EXE-854488C1.pf
O45 - LFCP:[MD5.AD49D54C6D2B133D1F42BC2F095BEF72] - 11/01/2014 - 13:08:27 ---A- - C:\Windows\Prefetch\ZHPDIAG2 (1).TMP-16D5E4FA.pf
O45 - LFCP:[MD5.C7AF6585DE7BF61E08C034D10DE5BE7F] - 11/01/2014 - 13:18:22 ---A- - C:\Windows\Prefetch\ADWCLEANER.EXE-CFC418C0.pf
O45 - LFCP:[MD5.56E947D36D8D4E738797D57C34904033] - 11/01/2014 - 13:28:50 ---A- - C:\Windows\Prefetch\BANDIZIP64.EXE-4B4F25D5.pf
O45 - LFCP:[MD5.AAFA9BA3B4BF0829AB6EAEB777AE9512] - 11/01/2014 - 13:28:54 ---A- - C:\Windows\Prefetch\UPDATER.EXE-82A9FB47.pf
O45 - LFCP:[MD5.A6BEE3129DD082FF2CB60F7526FE9499] - 11/01/2014 - 13:31:32 ---A- - C:\Windows\Prefetch\OPENWITH.EXE-5C93E816.pf
O45 - LFCP:[MD5.3B1F29765CC01604F70644C00742F327] - 11/01/2014 - 14:31:17 ---A- - C:\Windows\Prefetch\DEFRAG.EXE-588F90AD.pf
O45 - LFCP:[MD5.22FAD12F805199A71A6AE1EF506BAF84] - 11/01/2014 - 14:31:17 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7D248B6A.pf
O45 - LFCP:[MD5.76667369B6C8D1FC86FAA940215AF4BC] - 11/01/2014 - 14:54:45 ---A- - C:\Windows\Prefetch\REGHUNTER.EXE-BAE7767F.pf =>Crapware.RegHunter
O45 - LFCP:[MD5.BFF86C6A68859ADB1B445733539123CC] - 11/01/2014 - 15:16:43 ---A- - C:\Windows\Prefetch\ZHPHEP.EXE-03FFF510.pf
O45 - LFCP:[MD5.3C65D7424D71BA901BD96F8B45EC1AB2] - 11/01/2014 - 15:16:53 ---A- - C:\Windows\Prefetch\ZHPFIX.EXE-32786FC2.pf
O45 - LFCP:[MD5.F42A716C3CF26F583349DFE8D54A2914] - 11/01/2014 - 16:35:59 ---A- - C:\Windows\Prefetch\BACKGROUNDTRANSFERHOST.EXE-626D5C2E.pf
O45 - LFCP:[MD5.F33186F3C4DDA70FD2D42614054F91BE] - 11/01/2014 - 16:50:17 ---A- - C:\Windows\Prefetch\BACKGROUNDTASKHOST.EXE-2C86117E.pf
O45 - LFCP:[MD5.31B05EAC1F6F3B542394E91DA8302D89] - 11/01/2014 - 16:56:05 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-288E383B.pf
O45 - LFCP:[MD5.0819CB9F40EB0C9B81FFB6F6CD7E8139] - 11/01/2014 - 17:06:56 ---A- - C:\Windows\Prefetch\ASOELNCH.EXE-96023318.pf
O45 - LFCP:[MD5.EB3E309C4DDDE7D7479E01773F4D2ADF] - 11/01/2014 - 18:20:15 ---A- - C:\Windows\Prefetch\WINWORD.EXE-CEA9B574.pf
O45 - LFCP:[MD5.2FB62439F21D87335A87A898CC1340BB] - 11/01/2014 - 18:23:53 ---A- - C:\Windows\Prefetch\FIXMAPI.EXE-FF6997A1.pf
O45 - LFCP:[MD5.F92188D8C1D6AEDFF7BCB00F53077591] - 11/01/2014 - 18:23:57 ---A- - C:\Windows\Prefetch\OUTLOOK.EXE-1DD230C3.pf
O45 - LFCP:[MD5.8FB28DF74652581290F43D66971929BB] - 11/01/2014 - 18:36:32 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-571D064C.pf
O45 - LFCP:[MD5.DF7B79BF17F778D3E3FDD3D9073F9757] - 11/01/2014 - 18:47:27 ---A- - C:\Windows\Prefetch\FRST64 (1).EXE-FF2E2D79.pf
O45 - LFCP:[MD5.A4A5CAD1E5CAC6A8C7A50C7CFBB84FC9] - 11/01/2014 - 18:49:52 ---A- - C:\Windows\Prefetch\MOD_FRST.EXE-A54DBBF0.pf
O45 - LFCP:[MD5.89CC1CCE9791F01B046A46B77ED8E74E] - 11/01/2014 - 18:49:53 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-E4DB4546.pf
O45 - LFCP:[MD5.AC4C505E18475C4DBDD5E8D003BF408B] - 11/01/2014 - 18:50:04 ---A- - C:\Windows\Prefetch\SC.EXE-945D79AE.pf
O45 - LFCP:[MD5.E0AE941B7D51D002FD62D0F4A6334837] - 11/01/2014 - 18:50:09 ---A- - C:\Windows\Prefetch\NET.EXE-DF44F913.pf
O45 - LFCP:[MD5.527DFCB2E25A504934F33E9E7FDCB635] - 11/01/2014 - 18:50:09 ---A- - C:\Windows\Prefetch\NET1.EXE-849DA590.pf
O45 - LFCP:[MD5.9A28ACA53B9F03B5E11830B6D961A62C] - 11/01/2014 - 18:50:10 ---A- - C:\Windows\Prefetch\BCDEDIT.EXE-10FC5AAB.pf
O45 - LFCP:[MD5.E4448D9DBFB0AFE9FAD0FB6F23644643] - 11/01/2014 - 18:52:36 ---A- - C:\Windows\Prefetch\ADWCLEANER (2).EXE-F2FD11DF.pf
O45 - LFCP:[MD5.E24E19BD162C362C09DEDDE9D9E73F92] - 11/01/2014 - 18:53:24 ---A- - C:\Windows\Prefetch\CMD.EXE-88FE3504.pf
O45 - LFCP:[MD5.91AAA6DC6E140F8881624AEA14F7F3FF] - 11/01/2014 - 18:53:24 ---A- - C:\Windows\Prefetch\REG.EXE-AF8564A4.pf
O45 - LFCP:[MD5.366C4F85DE8543E79D343A7996E414C2] - 11/01/2014 - 18:58:35 ---A- - C:\Windows\Prefetch\SXCU.EXE-5E358961.pf
O45 - LFCP:[MD5.77F5D901F057A40F9C3D0BFC35FCB7EA] - 11/01/2014 - 18:59:12 ---A- - C:\Windows\Prefetch\WUAPP.EXE-A1F52775.pf
O45 - LFCP:[MD5.F47145E1CC7B340277B448FF4D7E5B47] - 11/01/2014 - 18:59:13 ---A- - C:\Windows\Prefetch\WUAPP.EXE-C6167071.pf
O45 - LFCP:[MD5.4EDA9017837B994A0D59660DA713226E] - 11/01/2014 - 19:01:40 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf
O45 - LFCP:[MD5.16F4B0CD8AA521070A30C6F224CA7BCB] - 11/01/2014 - 19:01:57 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-17680338.pf
O45 - LFCP:[MD5.5BC6706B10F97D9879A365BFE209AEA1] - 11/01/2014 - 19:02:17 ---A- - C:\Windows\Prefetch\POQEXEC.EXE-69592829.pf
O45 - LFCP:[MD5.B3A78516D099D5F59B4D6D150741B57D] - 11/01/2014 - 19:11:15 ---A- - C:\Windows\Prefetch\CCLEANER64.EXE-779BD542.pf =>Piriform Ltd
O45 - LFCP:[MD5.22310D66B9E8BD430E86068DC1A01A6B] - 11/01/2014 - 19:13:41 ---A- - C:\Windows\Prefetch\CLTRT.EXE-37CAEF14.pf
O45 - LFCP:[MD5.455D733CE013503CA81D0BEDE10F2AF6] - 11/01/2014 - 19:20:43 ---A- - C:\Windows\Prefetch\Layout.ini
O45 - LFCP:[MD5.824F7B5A790475AB1C5B8C5037A99B44] - 11/01/2014 - 19:34:06 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-790DE36A.pf
O45 - LFCP:[MD5.FDC51D471F57CFC70D3378EFE2061EF5] - 11/01/2014 - 20:02:30 ---A- - C:\Windows\Prefetch\EVENTVWR.EXE-E775CAE5.pf
O45 - LFCP:[MD5.788EA5DDF064CA223AA355CFA6BB1E3E] - 11/01/2014 - 20:02:43 ---A- - C:\Windows\Prefetch\MMC.EXE-CF516737.pf
O45 - LFCP:[MD5.53CEF54B5A35AF0BA956AF7BB6459559] - 11/01/2014 - 20:08:59 ---A- - C:\Windows\Prefetch\MMC.EXE-5BB17BA2.pf
O45 - LFCP:[MD5.0CE7F651FF8181899F76E78CF202D2EC] - 11/01/2014 - 20:08:59 ---A- - C:\Windows\Prefetch\VDS.EXE-6E7946F9.pf
O45 - LFCP:[MD5.587CA83E8A832A66097F5E893EA7A08A] - 11/01/2014 - 20:08:59 ---A- - C:\Windows\Prefetch\VDSLDR.EXE-6B089E8B.pf
O45 - LFCP:[MD5.8F2421C14C9603F8F76A9A598147E35A] - 11/01/2014 - 20:09:31 ---A- - C:\Windows\Prefetch\SETUP.EXE-2923D586.pf
O45 - LFCP:[MD5.EBAF07B45E99D461AA8FD23F757C84B2] - 11/01/2014 - 20:14:23 ---A- - C:\Windows\Prefetch\MSCONFIG.EXE-3A52734E.pf
O45 - LFCP:[MD5.A89C7651B917A5CA9F911ACC8585EC85] - 11/01/2014 - 20:15:38 ---A- - C:\Windows\Prefetch\CONTROL.EXE-817F8F1D.pf
O45 - LFCP:[MD5.5063D4FF39F9006A299AD758BCAAFA68] - 11/01/2014 - 20:15:38 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-2FFDDE9F.pf
O45 - LFCP:[MD5.199CEEABEE1559B38D8356B537DA6C6C] - 11/01/2014 - 20:23:34 ---A- - C:\Windows\Prefetch\SPYHUNTER-INSTALLER (3).EXE-2E74EEA7.pf =>Crapware.SpyHunter
O45 - LFCP:[MD5.001F468953D557836AC8700F0FAED2CA] - 11/01/2014 - 20:44:25 ---A- - C:\Windows\Prefetch\ADAWARE_INSTALLER.EXE-85F80104.pf
O45 - LFCP:[MD5.9F2C54330FD49EDC8D734FACC46F81D1] - 11/01/2014 - 20:44:44 ---A- - C:\Windows\Prefetch\SRTASKS.EXE-4F77756F.pf
O45 - LFCP:[MD5.02EF4FE541F27D86685CC7DA947C88C0] - 11/01/2014 - 20:46:25 ---A- - C:\Windows\Prefetch\A1E55C9E-049A-4BFB-8ABD-39C34-A44E4919.pf
O45 - LFCP:[MD5.8B9D14D2F1B79FC977675D884F5EA682] - 11/01/2014 - 20:46:37 ---A- - C:\Windows\Prefetch\TOOLBARCLEANERSETUP.EXE-EC03F71C.pf
O45 - LFCP:[MD5.DC9F7DD7EDAEDF60A0FB7CA34EE1EAEF] - 11/01/2014 - 20:46:49 ---A- - C:\Windows\Prefetch\ADAWAREBROWSINGPROTECTION_SET-4CA8C951.pf
O45 - LFCP:[MD5.9FC2C4A7AF289D91563BF2BC7884401C] - 11/01/2014 - 20:46:49 ---A- - C:\Windows\Prefetch\FFHELPER.EXE-8AECE022.pf
O45 - LFCP:[MD5.40FAE82A940947AF9F7C02D615D4C95C] - 11/01/2014 - 20:47:02 ---A- - C:\Windows\Prefetch\SEARCHPROTECTION.EXE-4022C2CB.pf =>Toolbar.Conduit
O45 - LFCP:[MD5.012B2D1433AD01BE0460C01C0F0BF580] - 11/01/2014 - 20:47:11 ---A- - C:\Windows\Prefetch\ISBEW64.EXE-EF0645AE.pf
O45 - LFCP:[MD5.CCB85C409DCF9FECDB4ED10BF9919FDD] - 11/01/2014 - 20:47:15 ---A- - C:\Windows\Prefetch\ISBEW64.EXE-49FDAED6.pf
O45 - LFCP:[MD5.A2A1B9443281B97E74B0FD9A4A75CE0E] - 11/01/2014 - 20:47:15 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-647D5E70.pf
O45 - LFCP:[MD5.79A750024B1AEF65FA868BC129D4CDAF] - 11/01/2014 - 20:48:26 ---A- - C:\Windows\Prefetch\ADAWARESERVICE.EXE-0749A639.pf
O45 - LFCP:[MD5.FA373D22B94D41BA461674DEAA09C037] - 11/01/2014 - 21:11:45 ---A- - C:\Windows\Prefetch\SPYWARETERMINATORSETUP.TMP-EFD2E3CF.pf
O45 - LFCP:[MD5.04858B81EC3BE1FD2159AA23E877D9C7] - 11/01/2014 - 21:11:47 ---A- - C:\Windows\Prefetch\SPYWARETERMINATORSETUP.EXE-605D3B37.pf
O45 - LFCP:[MD5.44C4C0459B7F90549101061822A9DB76] - 11/01/2014 - 21:11:48 ---A- - C:\Windows\Prefetch\SPYWARETERMINATORSETUP.TMP-39E27B36.pf
O45 - LFCP:[MD5.3696B5FDB5D4502F1ADA79CEC98D5D3F] - 11/01/2014 - 21:14:37 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-5444D407.pf
O45 - LFCP:[MD5.DF241AAF402596B26BDDC3E93C2B70FD] - 11/01/2014 - 21:14:44 ---A- - C:\Windows\Prefetch\STSETUP.EXE-2A6F3BEF.pf
O45 - LFCP:[MD5.E3FFDE22ED39985110BDD48B27E2DEDB] - 11/01/2014 - 21:14:44 ---A- - C:\Windows\Prefetch\STSETUP.TMP-ADDA34ED.pf
O45 - LFCP:[MD5.B24CA19EAB7C90A5EFF05ACFF0EC8D3B] - 11/01/2014 - 21:14:46 ---A- - C:\Windows\Prefetch\ST_RSSER64.EXE-580802BC.pf
O45 - LFCP:[MD5.11849CB29BFA3A2A4DE4D7E2A0EBF08D] - 11/01/2014 - 21:14:54 ---A- - C:\Windows\Prefetch\CRAWLERSETUP.EXE-010DD064.pf
O45 - LFCP:[MD5.09069515916C47F1EFC9183040B685E9] - 11/01/2014 - 21:14:54 ---A- - C:\Windows\Prefetch\CRAWLERSETUP.TMP-BC7E66F5.pf
O45 - LFCP:[MD5.B06D4AB592078A936B408A56AEEAA1FF] - 11/01/2014 - 21:14:57 ---A- - C:\Windows\Prefetch\CTOOLBAR.EXE-BAE0D60A.pf
O45 - LFCP:[MD5.CFCB79B298A405DFCF86360E08FF2358] - 11/01/2014 - 21:15:02 ---A- - C:\Windows\Prefetch\INBOXSTORAGESETUP.EXE-13B89A7D.pf
O45 - LFCP:[MD5.7E6795B992763AC17FC60632820EC018] - 11/01/2014 - 21:15:02 ---A- - C:\Windows\Prefetch\INBOXSTORAGESETUP.TMP-BAEC31C8.pf
O45 - LFCP:[MD5.35B532117FAECDC5A824832D6E4C69BE] - 11/01/2014 - 21:15:10 ---A- - C:\Windows\Prefetch\SPYWARETERMINATORUPDATE.EXE-F7407AA0.pf
O45 - LFCP:[MD5.CE6837472842A70D70EAE3DBFA98C0BE] - 11/01/2014 - 21:15:14 ---A- - C:\Windows\Prefetch\SPYWARETERMINATORSHIELD.EXE-4E35A6C6.pf
O45 - LFCP:[MD5.8554D7C9128402CE6280BE3412BA029D] - 11/01/2014 - 21:22:40 ---A- - C:\Windows\Prefetch\ADAWARETRAY.EXE-943B070C.pf
O45 - LFCP:[MD5.88510F609F1E96C127A221FD77E84B74] - 11/01/2014 - 21:22:48 ---A- - C:\Windows\Prefetch\ADAWAREDESKTOP.EXE-A5FD7C8E.pf
O45 - LFCP:[MD5.B4DF2D6C99EA0A52BA7AD65D63356D44] - 11/01/2014 - 21:24:03 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-B19A5B8C.pf
O45 - LFCP:[MD5.EB508F2A9C061D81F79BBF3E4AE440D2] - 11/01/2014 - 21:24:05 ---A- - C:\Windows\Prefetch\ADAWAREUPDATER.EXE-3065F525.pf
O45 - LFCP:[MD5.3482DA313A31B6BD6CA34CB77FB4BE05] - 11/01/2014 - 21:24:14 ---A- - C:\Windows\Prefetch\ADAWARESECURITYCENTER.EXE-0AFFED51.pf
O45 - LFCP:[MD5.9C5A846088561FAC91D4854B9E86DD8C] - 11/01/2014 - 21:24:21 ---A- - C:\Windows\Prefetch\ISBEW64.EXE-334CE807.pf
O45 - LFCP:[MD5.EF2D83B840072315F8051D9D05C2C846] - 11/01/2014 - 21:24:26 ---A- - C:\Windows\Prefetch\ISBEW64.EXE-D8F9F106.pf
O45 - LFCP:[MD5.52146645D81BF52380244028B7D8E4BC] - 11/01/2014 - 21:24:26 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-F2DFD87F.pf
O45 - LFCP:[MD5.C17041681E671C5B8815DD8AD409D8EF] - 11/01/2014 - 21:24:32 ---A- - C:\Windows\Prefetch\ISBEW64.EXE-3CF55C18.pf
O45 - LFCP:[MD5.E7FA4698FC31DE33732EDEA1A3D16E5A] - 11/01/2014 - 21:24:48 ---A- - C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf
O45 - LFCP:[MD5.4DF2650E890760E4B158E3F8F0410D4B] - 11/01/2014 - 21:24:56 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-EE24A910.pf
O45 - LFCP:[MD5.545809B9D39E92A608B2A8E8E4DB33A8] - 11/01/2014 - 21:25:06 ---A- - C:\Windows\Prefetch\AU_.EXE-4A8F09E3.pf
O45 - LFCP:[MD5.470C2E6107ED48EA598754D2C6CC1ECB] - 11/01/2014 - 21:25:10 ---A- - C:\Windows\Prefetch\AD-AWARE SECURITY ADD-ON UNIN-47AE26E6.pf
O45 - LFCP:[MD5.637F006BE57E6185B120CDA48412878C] - 11/01/2014 - 21:25:11 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-E353102C.pf
O45 - LFCP:[MD5.1DEC7FBA85EC599CBE419092B5E27E45] - 11/01/2014 - 21:25:15 ---A- - C:\Windows\Prefetch\BU_.EXE-CB8E9918.pf
O45 - LFCP:[MD5.647A4296B73BAB5C0A1D00EFE8ABD015] - 11/01/2014 - 21:25:15 ---A- - C:\Windows\Prefetch\TOOLBAR CLEANER UNINSTALL.EXE-5C7F1F41.pf =>Adware.ToolbarCleaner
O45 - LFCP:[MD5.AA3630A208B121AE27B0EBCBB33B55DB] - 11/01/2014 - 21:25:16 ---A- - C:\Windows\Prefetch\UNINSTALL.EXE-30306C2F.pf
O45 - LFCP:[MD5.BC507B3898DEE6DEF515D7FD823BA911] - 11/01/2014 - 21:25:23 ---A- - C:\Windows\Prefetch\ADAWAREBP.EXE-1FD58338.pf
O45 - LFCP:[MD5.551D6167ECF08703BBF8DD26B4E730F2] - 11/01/2014 - 21:25:25 ---A- - C:\Windows\Prefetch\AD-AWARE BROWSING PROTECTION -865B6B94.pf
O45 - LFCP:[MD5.DC5FD47161122CE7BB7BBB8DC83ECAC7] - 11/01/2014 - 21:25:25 ---A- - C:\Windows\Prefetch\CU_.EXE-4C8E284D.pf
O45 - LFCP:[MD5.3D6D0B6A6C1CA3A564A543901007292D] - 11/01/2014 - 21:26:49 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-C9E6D054.pf
O45 - LFCP:[MD5.6570E9AB7275C97AB8E8F79835579DFE] - 11/01/2014 - 21:26:49 ---A- - C:\Windows\Prefetch\UNINS000.EXE-69AA549A.pf
O45 - LFCP:[MD5.C2070ADF083F436C2893246DAC86A8B5] - 11/01/2014 - 21:26:50 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-48500808.pf
O45 - LFCP:[MD5.55BC6844DF1AC862BDF852C0179440C6] - 11/01/2014 - 21:26:52 ---A- - C:\Windows\Prefetch\SPYWARETERMINATOR.EXE-3C32A159.pf
O45 - LFCP:[MD5.415080BE5336BDFE1ACD7C75B9DE9124] - 11/01/2014 - 21:26:53 ---A- - C:\Windows\Prefetch\ANALYZEFILE.EXE-4BD725F6.pf
O45 - LFCP:[MD5.C14A154F26642CFBFFBA8B1FC32AC4C5] - 11/01/2014 - 21:26:53 ---A- - C:\Windows\Prefetch\DEFSYSSETTINGS.EXE-A592430D.pf
O45 - LFCP:[MD5.51B06376707CCAF73AA4543784370C0D] - 11/01/2014 - 21:26:53 ---A- - C:\Windows\Prefetch\HARDFILEREMOVER.EXE-2D9ED70D.pf
O45 - LFCP:[MD5.D5C600F545017764752CA29D8094480B] - 11/01/2014 - 21:26:53 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-8461DBEE.pf
O45 - LFCP:[MD5.BE0284EA0354335087A924866646F397] - 11/01/2014 - 21:26:53 ---A- - C:\Windows\Prefetch\SYSTEMRESTORE.EXE-ABC95837.pf
O45 - LFCP:[MD5.AA1C46A9FCF362C8051B5D4B0F93021F] - 11/01/2014 - 21:29:47 ---A- - C:\Windows\Prefetch\SMSS.EXE-E9C28FC6.pf
O45 - LFCP:[MD5.EED2BF5F23821210AF8E74D9E2D7EE50] - 11/01/2014 - 21:29:58 ---A- - C:\Windows\Prefetch\CSRSS.EXE-3FE41F7E.pf
O45 - LFCP:[MD5.2B27C34EB7FEAC171963F5B7DBB2B43E] - 11/01/2014 - 21:29:58 ---A- - C:\Windows\Prefetch\DWM.EXE-6FFD3DA8.pf
O45 - LFCP:[MD5.7DA778797D7DCE130E141B61BFB5653C] - 11/01/2014 - 21:29:58 ---A- - C:\Windows\Prefetch\WINLOGON.EXE-B020DC41.pf
O45 - LFCP:[MD5.2A73FB52E0B6481262D1753472BD3AE1] - 12/01/2014 - 13:37:21 ---A- - C:\Windows\Prefetch\ATBROKER.EXE-2E15A492.pf
O45 - LFCP:[MD5.F89F9949A7BC93626E92A80FEB9BDFFE] - 12/01/2014 - 13:37:31 ---A- - C:\Windows\Prefetch\MBAMGUI.EXE-1CA97248.pf
O45 - LFCP:[MD5.CF4988A0C9203410A5866A2A8E9561F5] - 12/01/2014 - 13:37:31 ---A- - C:\Windows\Prefetch\USERINIT.EXE-2257A3E7.pf
O45 - LFCP:[MD5.53EBA03DE7957BF05CFEE7DD04175D2B] - 12/01/2014 - 13:37:32 ---A- - C:\Windows\Prefetch\EXPLORER.EXE-A80E4F97.pf
O45 - LFCP:[MD5.7E1E80F98EE84742F5309ECBF5300857] - 12/01/2014 - 13:37:38 ---A- - C:\Windows\Prefetch\MOBSYNC.EXE-C5E2284F.pf
O45 - LFCP:[MD5.364188FE450EDF92471076C6398D771B] - 12/01/2014 - 13:37:40 ---A- - C:\Windows\Prefetch\NIS.EXE-34D76251.pf
O45 - LFCP:[MD5.039351370BD8FDCCE1092B0A16A6FF2D] - 12/01/2014 - 13:37:41 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-476142D6.pf
O45 - LFCP:[MD5.F8B064A537C85EF4D504FC2B2B0C1EA7] - 12/01/2014 - 13:37:42 ---A- - C:\Windows\Prefetch\THUMBNAILEXTRACTIONHOST.EXE-D9F4EA67.pf
O45 - LFCP:[MD5.F5AE67CD8B9A88B3EB11759A76355500] - 12/01/2014 - 13:37:47 ---A- - C:\Windows\Prefetch\RTKNGUI64.EXE-211AE6DF.pf
O45 - LFCP:[MD5.0A372F7D353867CFAFC558EAD0A794EC] - 12/01/2014 - 13:37:48 ---A- - C:\Windows\Prefetch\SKYPE.EXE-E71BF59F.pf
O45 - LFCP:[MD5.57B924365187069B477540C950403244] - 12/01/2014 - 13:37:50 ---A- - C:\Windows\Prefetch\GROOVEMONITOR.EXE-F50973DC.pf
O45 - LFCP:[MD5.B2ECF5628EE5C53AF9817540A7F93895] - 12/01/2014 - 13:37:52 ---A- - C:\Windows\Prefetch\ADOBEARM.EXE-7105D3A2.pf
O45 - LFCP:[MD5.0647706A51F4ADA76FB9BF9667ACFD2F] - 12/01/2014 - 13:37:52 ---A- - C:\Windows\Prefetch\OOVOO.EXE-F28902CD.pf
O45 - LFCP:[MD5.8D850DBB41601077DDB3453DCDC9C4A3] - 12/01/2014 - 13:37:52 ---A- - C:\Windows\Prefetch\RUNONCE.EXE-0E293DD6.pf
O45 - LFCP:[MD5.092C9C6A503F0ADAFF73A55FD3CAF4B9] - 12/01/2014 - 13:37:52 ---A- - C:\Windows\Prefetch\VNTLDR.EXE-AFEA433B.pf
O45 - LFCP:[MD5.BB443E296C8B9DC4D3AA416542FB9802] - 12/01/2014 - 13:37:54 ---A- - C:\Windows\Prefetch\INBOXSTORAGE.EXE-5D527AAB.pf
O45 - LFCP:[MD5.142F062D7D128038D794B2D1C9B849EC] - 12/01/2014 - 13:38:02 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-C24A910B.pf
O45 - LFCP:[MD5.8D323D6F92FB3D48A78E765181445512] - 12/01/2014 - 13:38:02 ---A- - C:\Windows\Prefetch\READER_SL.EXE-38C1D083.pf
O45 - LFCP:[MD5.33038DEE9ED6544A441959D679CEC111] - 12/01/2014 - 13:38:02 ---A- - C:\Windows\Prefetch\VNTLDR.EXE-B70D1473.pf
O45 - LFCP:[MD5.F3EC29E654EF56AEA36C9C71F939CF0E] - 12/01/2014 - 13:38:28 ---A- - C:\Windows\Prefetch\TASKHOSTEX.EXE-280CA476.pf
O45 - LFCP:[MD5.7446C3100E2011C456A1FC9803F83BB9] - 12/01/2014 - 13:38:33 ---A- - C:\Windows\Prefetch\AgCx_SC5.db
O45 - LFCP:[MD5.6BB6B8C219B572B7E272E95E4E988D6E] - 12/01/2014 - 14:00:49 ---A- - C:\Windows\Prefetch\Op-EXPLORER.EXE-A80E4F97-000000F5.pf
O45 - LFCP:[MD5.CD03CAD089743EBCF0BA78DACEC15410] - 12/01/2014 - 14:00:56 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-1EA744B6.pf
O45 - LFCP:[MD5.F1E5CB911E8F91ED56BD824AB08F4606] - 12/01/2014 - 14:01:12 ---A- - C:\Windows\Prefetch\SH4SER~1.EXE-CF0016EB.pf
O45 - LFCP:[MD5.CBE6B4848507AA79C1C43DB1F41DB475] - 12/01/2014 - 14:01:12 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-5E731DE3.pf
O45 - LFCP:[MD5.88B7DE269FBEB98396C4B2E4B546D666] - 12/01/2014 - 14:01:12 ---A- - C:\Windows\Prefetch\VSSVC.EXE-B8AFC319.pf
O45 - LFCP:[MD5.0934116399430118B54CFBA5C32D6F18] - 12/01/2014 - 14:01:14 ---A- - C:\Windows\Prefetch\GRPCONV.EXE-B823222B.pf
O45 - LFCP:[MD5.829C549880AC2F02B90DF4EF09B30192] - 12/01/2014 - 14:01:14 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-9E691E8D.pf
O45 - LFCP:[MD5.E84D0492EE878EB74946B8F1361AD319] - 12/01/2014 - 14:01:14 ---A- - C:\Windows\Prefetch\RUNONCE.EXE-D0649312.pf
O45 - LFCP:[MD5.6B75E637DEBCF0692AD989EE2DBC8D2E] - 12/01/2014 - 14:01:18 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-E09A077A.pf
O45 - LFCP:[MD5.294551D0CF3E389DC42D3FEB1B8FE9A8] - 12/01/2014 - 14:01:18 ---A- - C:\Windows\Prefetch\WISECUSTOMCALLA31.EXE-F6367A7B.pf =>Crapware.SpyHunter
O45 - LFCP:[MD5.97AE43AFF9AF655116922C26295611C0] - 12/01/2014 - 14:01:22 ---A- - C:\Windows\Prefetch\WISECUSTOMCALLA37.EXE-6A38D999.pf =>Crapware.SpyHunter
O45 - LFCP:[MD5.4952805DE572C694BED19A7A02CAB3A2] - 12/01/2014 - 14:01:34 ---A- - C:\Windows\Prefetch\CTOOLBAR.EXE-0E031DBF.pf
O45 - LFCP:[MD5.0F1F3EAD9021D8EE85069C2BC80E2D2B] - 12/01/2014 - 14:06:45 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-93E5B241.pf
O45 - LFCP:[MD5.60E9A1BDE18BB6BA391EA8BF10934BDA] - 12/01/2014 - 14:08:24 ---A- - C:\Windows\Prefetch\ADWCLEANER (1).EXE-8D8AA0A2.pf
O45 - LFCP:[MD5.49A2AC4FF17F12D56902B85BE66ACE48] - 12/01/2014 - 14:08:46 ---A- - C:\Windows\Prefetch\CMD.EXE-4A81B364.pf
O45 - LFCP:[MD5.293237AF5B613042D92D086750AE1AE9] - 12/01/2014 - 14:08:46 ---A- - C:\Windows\Prefetch\REG.EXE-E7E8BD26.pf
O45 - LFCP:[MD5.47CD9410803D5AE1FB9E051D9462CFB0] - 12/01/2014 - 14:08:54 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-C39362D4.pf
O45 - LFCP:[MD5.B136A75173EC458DFD19561093FA2EE0] - 12/01/2014 - 14:10:51 ---A- - C:\Windows\Prefetch\MSMPENG.EXE-B2139669.pf
O45 - LFCP:[MD5.667535057C43602AE0DE00EE753A7E15] - 12/01/2014 - 14:10:51 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-085497F6.pf
O45 - LFCP:[MD5.344A92782E450E4F0BE4D75ABDD22CAC] - 12/01/2014 - 14:10:51 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-2E2328C8.pf
O45 - LFCP:[MD5.3B93AF200D7FFA318F2548BF8538C948] - 12/01/2014 - 14:10:51 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-90C9B795.pf
O45 - LFCP:[MD5.BC54F5B6F43BCFEDC0DEF9B59C822E54] - 12/01/2014 - 14:10:51 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-D55DF7E7.pf
O45 - LFCP:[MD5.DF968FB8A359773AFB4BF467AC1C852D] - 12/01/2014 - 14:10:51 ---A- - C:\Windows\Prefetch\TOMTOMHOMESERVICE.EXE-7F7301AA.pf
O45 - LFCP:[MD5.BC7FCBE28D0D7F459ADDBB515AD0A9A4] - 12/01/2014 - 14:10:51 ---A- - C:\Windows\Prefetch\UPDATER.EXE-EA1310CB.pf
O45 - LFCP:[MD5.5885D0D9AA617A2EC944F67468EB29D2] - 12/01/2014 - 14:21:49 ---A- - C:\Windows\Prefetch\PCAUI.EXE-3E82C312.pf
O45 - LFCP:[MD5.0BD34BF819F3AF6AA7004D5954C73E08] - 12/01/2014 - 14:22:56 ---A- - C:\Windows\Prefetch\SPLWOW64.EXE-297C4568.pf
O45 - LFCP:[MD5.F26C14F145B59EDCA81098D831A92856] - 12/01/2014 - 14:32:25 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-467448AC.pf
O45 - LFCP:[MD5.AD46F0085DA60EC0C73C85E142DE30AF] - 12/01/2014 - 14:33:51 ---A- - C:\Windows\Prefetch\REGEDIT.EXE-90FEEA06.pf
O45 - LFCP:[MD5.4267FD5F3B1F1756EC39BCD0B7D12495] - 12/01/2014 - 14:45:52 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db
O45 - LFCP:[MD5.3BE88AEB868660CACDB8E83F8130B541] - 12/01/2014 - 14:45:52 ---A- - C:\Windows\Prefetch\AgRobust.db
O45 - LFCP:[MD5.EEE3AE43E0DB7DC61D446BD0BFA02A21] - 12/01/2014 - 14:45:53 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db
O45 - LFCP:[MD5.C56B2BBF46FBCA948D278324156A04A0] - 12/01/2014 - 14:45:53 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db
O45 - LFCP:[MD5.94F96D847B0FCFFD4ED2F0D55393B3EF] - 12/01/2014 - 14:47:06 ---A- - C:\Windows\Prefetch\PREVHOST.EXE-4F1C4E0F.pf
O45 - LFCP:[MD5.0F2E98DD3409C6EF12B13884C1297895] - 12/01/2014 - 14:58:04 ---A- - C:\Windows\Prefetch\HH.EXE-0A439DDA.pf
O45 - LFCP:[MD5.B2BC1249FAFDF7D14087C9433E18CB74] - 12/01/2014 - 15:01:48 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-4B6C9215.pf
O45 - LFCP:[MD5.73A6F5E343E3DA8D62174CB737DCC4F6] - 12/01/2014 - 15:01:50 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-908C99F8.pf
O45 - LFCP:[MD5.3BD09EB816B639DBCF38E4BBB2AD8600] - 12/01/2014 - 15:02:12 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-8118CFAF.pf
O45 - LFCP:[MD5.8458A4944D85AB7A0584DAA1D6824B5D] - 12/01/2014 - 15:13:35 ---A- - C:\Windows\Prefetch\SETTINGSYNCHOST.EXE-2521C7ED.pf
O45 - LFCP:[MD5.E75DD355A41AA300E1100CEA593E141D] - 12/01/2014 - 15:27:52 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-4D1274B2.pf
O45 - LFCP:[MD5.0FC12CB2E4B760C000C4D91F0FACFABF] - 12/01/2014 - 15:27:52 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-BF2BB7B2.pf
O45 - LFCP:[MD5.042AB0E455032DD6764E4322A8FD8D90] - 12/01/2014 - 15:29:42 ---A- - C:\Windows\Prefetch\RIBBONS.SCR-9E2C8FF1.pf
O45 - LFCP:[MD5.F7218B4612CEDE0DAA72BFBE05EA0026] - 12/01/2014 - 15:34:08 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-E69F695A.pf
O45 - LFCP:[MD5.CECA83D47485DEF7AE02822FAEBEE4C2] - 12/01/2014 - 15:58:46 ---A- - C:\Windows\Prefetch\CHROME.EXE-D999B1BA.pf
O45 - LFCP:[MD5.8114D7300E4472626C41520A837D94C2] - 12/01/2014 - 16:30:16 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-2416844428-2729830873-3903884127-1001.db
O45 - LFCP:[MD5.961133660492989580AFCD8D0B13376C] - 12/01/2014 - 16:30:16 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-2416844428-2729830873-3903884127-1001.db
O45 - LFCP:[MD5.E9C8BBCBC353E0B3174AF91A9E01AE9D] - 12/01/2014 - 16:36:47 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-D8414F97.pf
O45 - LFCP:[MD5.0E72A369EB0527B9FEF1D15B91B0B0FD] - 12/01/2014 - 16:38:20 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-09140401.pf
O45 - LFCP:[MD5.6ABB6249EB11567300757F90C9B4902F] - 12/01/2014 - 16:38:28 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin
O45 - LFCP:[MD5.5C99387B7B3F0A619FFAC0A70AEE2373] - 12/01/2014 - 16:40:37 ---A- - C:\Windows\Prefetch\DASHOST.EXE-5E5F38F6.pf
O45 - LFCP:[MD5.53BCFE666C4EECCE42CF28791DB1D2DB] - 12/01/2014 - 16:40:37 ---A- - C:\Windows\Prefetch\DELEGATE_EXECUTE.EXE-F9479C38.pf
O45 - LFCP:[MD5.E5E5082A985447384D2851D7CFC4302C] - 12/01/2014 - 16:40:37 ---A- - C:\Windows\Prefetch\FLASHPLAYERUPDATESERVICE.EXE-216D9C35.pf
O45 - LFCP:[MD5.362B4658F8A9126A8C440663E2DC0F48] - 12/01/2014 - 16:40:37 ---A- - C:\Windows\Prefetch\SEARCHINDEXER.EXE-4A6353B9.pf
O45 - LFCP:[MD5.43A2B989FE5959B3DC9C1CB4B6505AB5] - 12/01/2014 - 16:40:46 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-CC5C42C1.pf
O45 - LFCP:[MD5.FC446825A1B9193AEF556AAF13BD6727] - 12/01/2014 - 16:41:01 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf
O45 - LFCP:[MD5.E1FEA3A89F72B44AD1A989A4F1689F82] - 12/01/2014 - 16:41:02 ---A- - C:\Windows\Prefetch\TIWORKER.EXE-7735CF1F.pf
O45 - LFCP:[MD5.022D756B1FF73FC8F4C7BD79208875E9] - 12/01/2014 - 16:41:33 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-A2D55CB6.pf
O45 - LFCP:[MD5.57C61490734107A293090090B2273328] - 12/01/2014 - 16:41:56 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-B95715F5.pf
O45 - LFCP:[MD5.C79A67F01451834D0BA05BF90C33ACA5] - 12/01/2014 - 16:43:54 ---A- - C:\Windows\Prefetch\MBAM.EXE-80210E2F.pf
O45 - LFCP:[MD5.A1ECC39FA56AA90402448CFEFA42D669] - 12/01/2014 - 16:43:54 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf
O45 - LFCP:[MD5.F4A678FD059FF3FFA4C33F37A3508928] - 12/01/2014 - 16:45:32 ---A- - C:\Windows\Prefetch\CLTLMH.EXE-D9937EF3.pf
O45 - LFCP:[MD5.DD1095AA9D6F9A0045B3078C81687985] - 12/01/2014 - 16:45:37 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf
O45 - LFCP:[MD5.6BF0E380C49F7DA62F6BBA3CFF9C7FF7] - 12/01/2014 - 16:49:04 ---A- - C:\Windows\Prefetch\SYMERR.EXE-41701059.pf
O45 - LFCP:[MD5.29770F20920D5EED002CCA294A9AD247] - 12/01/2014 - 16:49:19 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-86E0E9B9.pf
O45 - LFCP:[MD5.9E29D29CD43C565803D73EC15ABBD4E5] - 12/01/2014 - 16:50:19 ---A- - C:\Windows\Prefetch\GOOGLEEARTH.EXE-B259CF8F.pf
O45 - LFCP:[MD5.5224D2C3CF08878636256D874F09FF2B] - 12/01/2014 - 16:50:22 ---A- - C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf
O45 - LFCP:[MD5.CD3420334F9FECEE1612889ED05A4217] - 12/01/2014 - 16:50:22 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-D5170E12.pf
O45 - LFCP:[MD5.613BEC1DB23E7E3EE839B17CC990D26E] - 12/01/2014 - 16:50:27 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-A853C612.pf
O45 - LFCP:[MD5.4B2527708669442CAEBD3B7C674115A2] - 12/01/2014 - 16:52:05 ---A- - C:\Windows\Prefetch\ZHPHEP.EXE-EBD3B8D7.pf
O45 - LFCP:[MD5.D0231B483A425192620BBAE7B1EEAE54] - 12/01/2014 - 16:52:16 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-0D117CAF.pf
O45 - LFCP:[MD5.0D51A28D5EA4CF01CCADCD1719CAFEA5] - 12/01/2014 - 16:54:52 ---A- - C:\Windows\Prefetch\RUNTIMEBROKER.EXE-72C0C855.pf
O45 - LFCP:[MD5.B237263FF9CD40D143099C9F5241A7D3] - 12/01/2014 - 16:54:55 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-3AE259FC.pf
O45 - LFCP:[MD5.785EE3DD64E83027DE4EE713348523E0] - 12/01/2014 - 16:55:26 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-24568AC4.pf
O45 - LFCP:[MD5.0614D05022B65676AE1EA302F3103599] - 12/01/2014 - 16:55:41 ---A- - C:\Windows\Prefetch\LADS.EXE-046BC4A8.pf
O45 - LFCP:[MD5.8D9312DB3757D33863D35A39F4777C6D] - 12/01/2014 - 16:55:47 ---A- - C:\Windows\Prefetch\MPCMDRUN.EXE-F401FBB4.pf
O45 - LFCP:[MD5.E4D582D1E4B408486CEF42AE18E45A15] - 12/01/2014 - 16:55:47 ---A- - C:\Windows\Prefetch\WSCSTUB.EXE-B8991386.pf
O45 - LFCP:[MD5.B0AB34F5CDE8B02B0A7A4C2118064DC3] - 12/01/2014 - 16:56:44 ---A- - C:\Windows\Prefetch\NSLOOKUP.EXE-8DBC12C3.pf
O45 - LFCP:[MD5.F6610DE957ABC39D35704B8C06821B96] - 12/01/2014 - 16:56:52 ---A- - C:\Windows\Prefetch\MBRCHECK.EXE-2CA9EB2F.pf
O45 - LFCP:[MD5.23D621133186A90CD9C1637CA063C534] - 12/01/2014 - 16:57:24 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-9037274D.pf
O45 - LFCP:[MD5.887E853A5A39C569BB1290544A10BFFE] - 12/01/2014 - 16:57:28 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-1605FA5B.pf
O45 - LFCP:[MD5.B5113E39E02A2224960A5A31A4256819] - 12/01/2014 - 16:57:28 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf
O45 - LFCP:[MD5.641E58CEC40627E11BCD22FA75C283C5] - 12/01/2014 - 16:57:28 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf
O45 - LFCP:[MD5.0D577E61D22CC972F4AC7BF5722E92CC] - 12/01/2014 - 17:01:10 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-A8839C15.pf
O45 - LFCP:[MD5.2C47A0B29B4F5535EBA3B293FBD6FEA9] - 12/01/2014 - 17:01:44 ---A- - C:\Windows\Prefetch\CMD.EXE-AC113AA8.pf
O45 - LFCP:[MD5.6B27EC6B7D9DF71995E7E7D1A35325A0] - 12/01/2014 - 17:01:44 ---A- - C:\Windows\Prefetch\CONHOST.EXE-1F3E9D7E.pf
O45 - LFCP:[MD5.A3F1D0E237C90E684F2BB0CC49C7114E] - 12/01/2014 - 17:01:44 ---A- - C:\Windows\Prefetch\CSCRIPT.EXE-0FB3F22C.pf
O45 - LFCP:[MD5.880E1F483940A832B0803DE912208883] - 12/01/2014 - 17:01:46 ---A- - C:\Windows\Prefetch\PV.EXE-34B75B82.pf
O45 - LFCP:[MD5.3D8DCF7699D822FAD8C9AAADE1D9D5BE] - 12/01/2014 - 17:01:50 ---A- - C:\Windows\Prefetch\SUBINACL.EXE-AB0CE9D9.pf
O45 - LFCP:[MD5.80FDA901F1C4ABD55BFF107ABA5AB417] - 12/01/2014 - 17:01:51 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-BDFD3029.pf
O45 - LFCP:[MD5.100104DAB4D5E440594519F8731DAF2C] - 12/01/2014 - 17:01:53 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-B0F8131B.pf
O45 - LFCP:[MD5.58A631998AFB287031CCF6ED7D8443A4] - 12/01/2014 - 17:01:53 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-6768A320.pf
O45 - LFCP:[MD5.EFAACB991315F6BC315D4ABC25014A92] - 12/01/2014 - 17:01:58 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-AD598958.pf
O45 - LFCP:[MD5.9CC8435099277609F63BD6256D742342] - 14/12/2013 - 17:31:20 ---A- - C:\Windows\Prefetch\SPOTIFY.EXE-1C706617.pf
O45 - LFCP:[MD5.A0AF9E51163121ED6B063554A4656FFA] - 14/12/2013 - 17:40:38 ---A- - C:\Windows\Prefetch\VLC.EXE-CC6F4A79.pf
O45 - LFCP:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 16/04/2853 - 03:27:13 ----D - C:\Windows\Prefetch\ReadyBoot
O45 - LFCP:[MD5.B73743E6DB73B87CFE2DDED9421358A4] - 16/12/2013 - 12:00:14 ---A- - C:\Windows\Prefetch\PICASA3.EXE-753FC546.pf
O45 - LFCP:[MD5.06CCC0B27552CFF27B0E16C9C1CFEA06] - 16/12/2013 - 17:23:56 ---A- - C:\Windows\Prefetch\SCRIPTHELPER.EXE-EB010518.pf
O45 - LFCP:[MD5.15F4D652D22059C6A67B69AE477D373E] - 17/12/2013 - 11:37:35 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-B72D66AF.pf
O45 - LFCP:[MD5.04355D746641D87FB4799978B27A0F11] - 23/12/2013 - 10:17:45 ---A- - C:\Windows\Prefetch\POWERPNT.EXE-E0C7CE05.pf
O45 - LFCP:[MD5.719AF06187AB47375E424400F55F94FD] - 24/12/2013 - 12:03:45 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-E84BC0A7.pf
O45 - LFCP:[MD5.DE00C90829AFD11F831B528938C58521] - 24/12/2013 - 14:22:45 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-99654477.pf
O45 - LFCP:[MD5.0A86086244678D235A34DC5122B107E3] - 26/12/2013 - 11:17:46 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-DB10D083.pf
O45 - LFCP:[MD5.466DAEFCDF9498B1627BD9A8B6A05787] - 26/12/2013 - 15:11:37 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-2C33D36A.pf
O45 - LFCP:[MD5.99A4EFB69B04F814FE7EAEB3A469A08B] - 26/12/2013 - 15:12:41 ---A- - C:\Windows\Prefetch\WWAHOST.EXE-DC935829.pf
O45 - LFCP:[MD5.920791CF90E4C46E4BE72DF176877088] - 26/12/2013 - 15:50:20 ---A- - C:\Windows\Prefetch\IE11-WINDOWS6.1.EXE-9EC74D3B.pf
O45 - LFCP:[MD5.CFAB138CEA7BC2F57009D457740C11B6] - 28/12/2013 - 09:41:50 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-82223D7B.pf
O45 - LFCP:[MD5.4C9438E10A99B92B0B5909657BFAB91E] - 28/12/2013 - 10:45:43 ---A- - C:\Windows\Prefetch\MOBOGENIE.EXE-0D86EF7B.pf
O45 - LFCP:[MD5.6AC3E259BA24FC9F0F1A77F6AC43115E] - 28/12/2013 - 10:52:31 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-82223D7C.pf
O45 - LFCP:[MD5.5F2B2072C140C601B9926DA0EF05EB36] - 28/12/2013 - 11:14:36 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-AE53F85A.pf
O45 - LFCP:[MD5.7CA618D883D8E048D475AA563CCE2901] - 28/12/2013 - 11:38:03 ---A- - C:\Windows\Prefetch\FONDUE.EXE-142C2D15.pf
O45 - LFCP:[MD5.A45188E5CDD2B6C589A61321994E09F8] - 28/12/2013 - 12:03:58 ---A- - C:\Windows\Prefetch\SETUP.EXE-23E2A0A3.pf
O45 - LFCP:[MD5.ED044FEE89B88E03FFBD8150D53B38CB] - 28/12/2013 - 12:35:48 ---A- - C:\Windows\Prefetch\TASKKILL.EXE-E0105477.pf
O45 - LFCP:[MD5.72F6333B2BF2E74D2F7B1764842F30A5] - 28/12/2013 - 15:30:16 ---A- - C:\Windows\Prefetch\WLOOBE.EXE-DC0D19A2.pf
O45 - LFCP:[MD5.810D8489235E18BA9AF3C79E48EF270D] - 28/12/2013 - 15:49:59 ---A- - C:\Windows\Prefetch\WLARP.EXE-87988E88.pf
O45 - LFCP:[MD5.E5B8EABA58DC7A576551809CA5A3090E] - 28/12/2013 - 16:05:19 ---A- - C:\Windows\Prefetch\WLSETUP-WEB.EXE-F7A4CB7D.pf
O45 - LFCP:[MD5.B7754C54B56FEF078A91310F1D269C28] - 31/12/2013 - 15:30:11 ---A- - C:\Windows\Prefetch\JRE-7U45-WINDOWS-X64.EXE-E5736E34.pf
~ Prefetcher: 308 Scanned in 00mn 03s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Fournisseur de sécurité TLS/SSL.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Live Security Package.) -- C:\Windows\System32\livessp.dll
~ LSA: 9 Scanned in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (...) -- C:\Windows\System32\Drivers\rdpencdd.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ CSB: 17 Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.i420"="lvcod64.dll" . (.Logitech Inc. - Video Codec.) -- C:\Windows\System32\lvcod64.dll
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ TDSD: 3 Scanned in 00mn 00s



---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ MSCP: 2 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableCursorSuppression"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 17 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoSaveSettings"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
~ MWPE Keys: 12 Scanned in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:[MD5.4F18D4C7EA14F11A7211F60D553C03DB] - 26/07/2012 - 06:00:49 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [106736]
O58 - SDL:[MD5.93C6388592B99925C1D1576E465BC80F] - 26/07/2012 - 06:00:49 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [492272]
O58 - SDL:[MD5.D27763E0247292654E7F7D16444C7C72] - 26/07/2012 - 06:00:48 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [340720]
O58 - SDL:[MD5.67B90070FF48F794AF19F9FCF0080D75] - 26/07/2012 - 06:00:49 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\Drivers\adpu320.sys [184048]
O58 - SDL:[MD5.35A0EB5AECB0FA3C41A2FB514A562304] - 26/07/2012 - 06:00:49 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [76016]
O58 - SDL:[MD5.00452671904F5EE94B50BF0219C97164] - 26/07/2012 - 06:00:49 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\System32\Drivers\amdsbs.sys [258288]
O58 - SDL:[MD5.EA3FFE53E92E59C87E3ECA9BEB20D9B7] - 26/07/2012 - 06:00:48 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [26352]
O58 - SDL:[MD5.E933401B392387F4BE34DE8BAF1722A7] - 26/07/2012 - 06:00:49 ---A- . (.PMC-Sierra, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [104688]
O58 - SDL:[MD5.07CA323EF2E8247A568AB0F3662AD644] - 26/07/2012 - 06:00:48 ---A- . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [108272]
O58 - SDL:[MD5.8DC532B5BF820E48194C6AFC8862FCBC] - 25/07/2012 - 23:53:22 ---A- . (.Advanced Micro Devices, Inc. - Pilote en mode noyau ATI Radeon.) -- C:\Windows\System32\Drivers\atikmdag.sys [11926528]
O58 - SDL:[MD5.AA48FEABA50C2DED9C485DFDBA044E40] - 29/06/2012 - 03:00:48 ---A- . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\Drivers\atikmpag.sys [360448]
O58 - SDL:[MD5.D278B7C0205249398F434856F5329FC9] - 23/09/2013 - 14:04:04 ---A- . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Driver.) -- C:\Windows\System32\Drivers\au630x64.sys [792648]
O58 - SDL:[MD5.87AB5BB072A3F128541D5B815F82FFDD] - 20/09/2012 - 08:55:24 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbda.sys [533224]
O58 - SDL:[MD5.27069CFFF29B7F04F4B1BB10154BE52B] - 19/10/2012 - 04:52:32 ---A- . (.Windows (R) Win 7 DDK provider - IEEE-1284.4-1999 Driver.) -- C:\Windows\System32\Drivers\Dot4.sys [151968]
O58 - SDL:[MD5.0BD906A79F9CE3013F7D9D0AC45F9F9D] - 19/10/2012 - 04:52:30 ---A- . (.Windows (R) Win 7 DDK provider - IEEE-1284.4 Print Class Driver.) -- C:\Windows\System32\Drivers\Dot4Prt.sys [27040]
O58 - SDL:[MD5.5AB97B3282D7D6114949D1EB5C8598E4] - 20/09/2012 - 08:55:27 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbda.sys [3265256]
O58 - SDL:[MD5.06691B7CB86444BE0F95ACEB700F8140] - 17/11/2010 - 16:27:38 ---A- . (.Huawei Tech. Co., Ltd. - HUAWEI USB Smart Card Driver.) -- C:\Windows\System32\Drivers\ewdcsc.sys [32768]
O58 - SDL:[MD5.6E05228393CD614B983568EC40C262C3] - 17/11/2010 - 16:27:38 ---A- . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\Drivers\ewusbmdm.sys [121600]
O58 - SDL:[MD5.D83EB7ADE99D99A4CD6568AC1261D35E] - 17/11/2010 - 16:27:38 ---A- . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\Windows\System32\Drivers\ewusbnet.sys [256000]
O58 - SDL:[MD5.86F7951BBCEE4A86E79A97306BD14318] - 17/11/2010 - 16:27:38 ---A- . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\Drivers\ew_hwusbdev.sys [117248]
O58 - SDL:[MD5.C2212C930D7A6CC21972B9882683D271] - 17/11/2010 - 16:27:40 ---A- . (.Huawei Technologies Co., Ltd. - ew_jubusenum Driver.) -- C:\Windows\System32\Drivers\ew_jubusenum.sys [85504]
O58 - SDL:[MD5.018B56F099B35E2335B962A68BDF7260] - 17/11/2010 - 16:27:40 ---A- . (.Huawei Technologies Co., Ltd. - ew_jucdcacm Driver.) -- C:\Windows\System32\Drivers\ew_jucdcacm.sys [91136]
O58 - SDL:[MD5.4919C5492DCA2CCA36D6B8902713C8D0] - 17/11/2010 - 16:27:40 ---A- . (.Huawei Technologies Co., Ltd. - ew_jucdcecm Driver.) -- C:\Windows\System32\Drivers\ew_jucdcecm.sys [55296]
O58 - SDL:[MD5.50C4915469A0A3B49F075BDC182913E7] - 17/11/2010 - 16:27:40 ---A- . (.Huawei Technologies Co., Ltd. - ew_juextctrl Driver.) -- C:\Windows\System32\Drivers\ew_juextctrl.sys [29184]
O58 - SDL:[MD5.4824408B3C4606AEBA8DC0431EDFF417] - 17/11/2010 - 16:27:40 ---A- . (.Huawei Technologies Co., Ltd. - ew_jucdcecm Driver.) -- C:\Windows\System32\Drivers\ew_juwwanecm.sys [196608]
O58 - SDL:[MD5.55E0EDA185869F7EA67EA97FD0655B39] - 17/11/2010 - 16:27:38 ---A- . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\Windows\System32\Drivers\ew_usbenumfilter.sys [13952]
O58 - SDL:[MD5.8E98D21EE06192492A5671A6144D092F] - 21/08/2012 - 13:01:20 ---A- . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\Drivers\GEARAspiWDM.sys [33240]
O58 - SDL:[MD5.64DB7A8D97CA53DCCF93D0A1E08342CF] - 26/07/2012 - 06:00:52 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [64752]
O58 - SDL:[MD5.5E394EBD26FD68AA9300332C46BEDD62] - 26/07/2012 - 06:00:52 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\Drivers\iaStorV.sys [411888]
O58 - SDL:[MD5.24847A06B84339FEEDE5CABF3D27D320] - 26/07/2012 - 06:00:52 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [45296]
O58 - SDL:[MD5.022CDD12161B063D7852B1075BF3FFF2] - 26/07/2012 - 06:00:52 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [108784]
O58 - SDL:[MD5.07AD59D669B996F29F91817F0ECFA34F] - 26/07/2012 - 06:00:52 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [92400]
O58 - SDL:[MD5.216FB796AA4E252ACCE93B1BCB80B5EC] - 26/07/2012 - 06:00:52 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [116976]
O58 - SDL:[MD5.5E80530AF37102488EE980B4A92AF99F] - 26/07/2012 - 06:00:52 ---A- . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sss.sys [81136]
O58 - SDL:[MD5.A0A527569856B9814E8920F52EBB67F5] - 26/10/2012 - 16:42:22 ---A- . (.Logitech Inc. - Logitech Kernel Audio Improvement Filter Driver.) -- C:\Windows\System32\Drivers\lvrs64.sys [351520]
O58 - SDL:[MD5.415E344294D1C0D04627B29146F68481] - 26/10/2012 - 16:42:22 ---A- . (.Logitech Inc. - Logitech USB Video Class Driver.) -- C:\Windows\System32\Drivers\lvuvc64.sys [4758176]
O58 - SDL:[MD5.0BB97D43299910CBFBA59C461B99B910] - 04/04/2013 - 14:50:32 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25928]
O58 - SDL:[MD5.9B0D829C3BE4E7472DB9DD2B79908E3C] - 26/07/2012 - 06:00:52 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\Drivers\megasas.sys [51952]
O58 - SDL:[MD5.ECC3F54C7AFC318271C4F0B4606D8DB0] - 26/07/2012 - 06:00:52 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [353008]
O58 - SDL:[MD5.3047B186C71B082C031AEFCA783B329C] - 17/11/2010 - 16:27:40 ---A- . (.DiBcom SA - DiBcom AVSTREAM BDA driver.) -- C:\Windows\System32\Drivers\mod7700.sys [999936]
O58 - SDL:[MD5.3A1E095277BBD406CEA8EA6B76950664] - 26/07/2012 - 06:00:55 ---A- . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\Drivers\mvumis.sys [64240]
O58 - SDL:[MD5.12DD2800E4EEA37DC9AE256AD62423B4] - 26/07/2012 - 06:00:55 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [52464]
O58 - SDL:[MD5.D6D34118263412D3AAA8348A9572B7F2] - 26/07/2012 - 06:00:55 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [150256]
O58 - SDL:[MD5.27AFC428D1D32ABD04A86763A4EDDEA9] - 26/07/2012 - 06:00:55 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [168176]
O58 - SDL:[MD5.15923AA360F7675D3D43C9669316A0BA] - 02/06/2012 - 15:31:56 ---A- . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Driver.) -- C:\Windows\System32\Drivers\Rt630x64.sys [589824]
O58 - SDL:[MD5.5B116AFACF56CE24A4D288D94ECE1291] - 01/10/2013 - 13:23:22 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\RTKVHD64.sys [3674712]
O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 26/07/2012 - 09:11:43 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [23040]
O58 - SDL:[MD5.2560721D6F16D5B611C36A3A9D28C1B2] - 26/07/2012 - 06:00:55 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [44784]
O58 - SDL:[MD5.3AA8FDE1DBF65BB8B88B053529554A0D] - 26/07/2012 - 06:00:56 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [81648]
O58 - SDL:[MD5.E428DFFA96FAD07D8CA3C9082563A225] - 21/08/2013 - 05:31:40 ---A- . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudbus.sys [103576]
O58 - SDL:[MD5.AAF6F247F1DC370C593B4430974EAD9C] - 21/08/2013 - 05:31:40 ---A- . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudmdm.sys [204568]
O58 - SDL:[MD5.3248B5CC4AA7942EE7BC26F1EB00210B] - 20/08/2013 - 07:02:12 ---A- . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile Logging Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudserd.sys [204568]
O58 - SDL:[MD5.4E85355B94CFCB67C135F6521A4895A7] - 26/07/2012 - 06:00:55 ---A- . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Windows x64.) -- C:\Windows\System32\Drivers\stexstor.sys [30960]
O58 - SDL:[MD5.B9657A0AFF28C1CB114ACC0CB93EE4BB] - 11/01/2014 - 21:14:36 ---A- . (.Windows (R) Win 7 DDK provider - Spyware Terminator 2012 driver.) -- C:\Windows\System32\Drivers\stflt.sys [51496]
O58 - SDL:[MD5.97E11C50CE52277B377396EA8838E539] - 08/11/2013 - 19:39:41 ---A- . (.Symantec Corporation - Symantec Event Library.) -- C:\Windows\System32\Drivers\SYMEVENT64x86.SYS [177752]
O58 - SDL:[MD5.F5B4A14B00E89250C50982AC762DDD1D] - 26/07/2012 - 06:00:58 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [19184]
O58 - SDL:[MD5.38A60CD9C009C55C6D3B5586F8E6A353] - 26/07/2012 - 06:00:58 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [164080]
O58 - SDL:[MD5.A0F6FE0FC2F647C22BBFD6BD4249DBCC] - 26/07/2012 - 06:00:58 ---A- . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\Drivers\VSTXRAID.SYS [322800]
O58 - SDL:[MD5.A3D04EBF5227886029B4532F20D026F7] - 16/02/2011 - 17:53:00 ---A- . (.Western Digital Technologies - WD SCSI Architecture Model (SAM) driver.) -- C:\Windows\System32\Drivers\wdcsam64.sys [14464]
~ Drivers: 17 Scanned in 00mn 01s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 09/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\ElevatedDiagnostics\733862231\2014010910.000\PCW.debugreport.xml [3949]
O61 - LFC: 09/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\ElevatedDiagnostics\733862231\2014010910.000\ResultReport.xml [2110]
O61 - LFC: 09/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\ElevatedDiagnostics\733862231\2014010910.000\results.xml [443]
O61 - LFC: 09/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\ElevatedDiagnostics\733862231\2014010910.000\results.xsl [49097]
O61 - LFC: 09/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\ElevatedDiagnostics\733862231\latest.cab [8708]
O61 - LFC: 09/01/2014 - 17:02:13 ---A- . (...) -- C:\Users\fernand\AppData\Local\Packages\AdobeSystemsIncorporated.AdobeReader_ynb6jyjzte8ga\Settings\settings.dat [8192]
O61 - LFC: 09/01/2014 - 17:02:13 ---A- . (...) -- C:\Users\fernand\AppData\Local\Packages\GoogleInc.GoogleSearch_yfg5n0ztvskxp\Settings\settings.dat [8192]
O61 - LFC: 09/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\1252_21288\crl-set [736]
O61 - LFC: 09/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\1252_21288\manifest.fingerprint [12]
O61 - LFC: 09/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\1252_21288\manifest.json [34]
O61 - LFC: 10/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Login Data [12288]
O61 - LFC: 10/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\README [180]
O61 - LFC: 10/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\User StyleSheets\Custom.css [0]
O61 - LFC: 10/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\First Run [0]
O61 - LFC: 10/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\fr-FR-3-0.bdic [1074744]
O61 - LFC: 10/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\4808_15931\crl-set [1413]
O61 - LFC: 10/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\4808_15931\manifest.fingerprint [12]
O61 - LFC: 10/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\4808_15931\manifest.json [34]
O61 - LFC: 10/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\Documents\cc_20140110_210948.reg [27886]
O61 - LFC: 10/01/2014 - 17:02:14 R--A- . (...) -- C:\Users\fernand\AppData\Roaming\Microsoft\Installer\{72AAF455-1E54-475B-B0AB-5413C78D0E63}\Icon1226A4C5.exe [110080]
O61 - LFC: 10/01/2014 - 17:02:16 ---A- . (.Farbar.) -- C:\Users\fernand\Downloads\FRST64.exe [1932166]
O61 - LFC: 10/01/2014 - 17:02:16 ---A- . (.Nicolas Coolman.) -- C:\Users\fernand\Downloads\ZHPDiag2.exe [6863312] =>.Nicolas Coolman
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\CrashDumps\815049.rbf.280.dmp [1893008]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\CrashDumps\AdAwareUpdater.exe.1264.dmp [1961889]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Archived History [57344]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Archived History-journal [512]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Bookmarks [262371]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Bookmarks.bak [262371]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\000050.ldb [377]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\000068.ldb [197]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\ar\messages.json [374]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\bg\messages.json [428]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\ca\messages.json [207]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\cs\messages.json [230]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\da\messages.json [216]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\de\messages.json [217]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\el\messages.json [416]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\en_GB\messages.json [208]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\en_US\messages.json [209]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\es\messages.json [206]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\es_419\messages.json [206]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\et\messages.json [216]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\fi\messages.json [216]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\fil\messages.json [219]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\fr\messages.json [224]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\he\messages.json [293]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\hi\messages.json [375]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\hu\messages.json [251]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\id\messages.json [209]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\it\messages.json [213]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\ja\messages.json [263]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\ko\messages.json [254]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\lt\messages.json [234]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\lv\messages.json [232]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\ms\messages.json [207]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\nl\messages.json [217]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\no\messages.json [195]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\pl\messages.json [217]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\pt_BR\messages.json [206]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\pt_PT\messages.json [208]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\ro\messages.json [225]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\ru\messages.json [434]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\sk\messages.json [225]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\sl\messages.json [218]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\sr\messages.json [380]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\sv\messages.json [214]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\th\messages.json [329]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\tr\messages.json [243]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\uk\messages.json [428]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\vi\messages.json [252]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\zh_CN\messages.json [233]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\_locales\zh_TW\messages.json [233]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\icon_128.png [3009]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\icon_16.png [143]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\main.html [92]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\main.js [98]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\manifest.json [724]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\128.png [7654]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ar\messages.json [422]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\bg\messages.json [559]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ca\messages.json [265]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\cs\messages.json [283]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\da\messages.json [251]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\de\messages.json [256]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\el\messages.json [565]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\en_GB\messages.json [249]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\en_US\messages.json [249]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\es\messages.json [259]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\es_419\messages.json [259]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\et\messages.json [259]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\eu\messages.json [243]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\fi\messages.json [277]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\fil\messages.json [260]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\fr\messages.json [260]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\he\messages.json [438]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\hi\messages.json [492]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\hr\messages.json [263]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\hu\messages.json [276]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\id\messages.json [261]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\it\messages.json [258]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ja\messages.json [395]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ko\messages.json [365]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\lt\messages.json [309]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\lv\messages.json [262]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ms\messages.json [254]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\nl\messages.json [250]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\no\messages.json [218]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\pl\messages.json [261]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\pt_BR\messages.json [250]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\pt_PT\messages.json [272]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ro\messages.json [309]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ru\messages.json [614]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\sk\messages.json [293]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\sl\messages.json [268]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\sr\messages.json [467]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\sv\messages.json [261]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\th\messages.json [521]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\tr\messages.json [302]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\uk\messages.json [657]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\vi\messages.json [321]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\zh_CN\messages.json [360]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\zh_TW\messages.json [348]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\manifest.json [996]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\128.png [3524]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\ar\messages.json [401]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\bg\messages.json [427]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\ca\messages.json [250]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\cs\messages.json [255]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\da\messages.json [242]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\de\messages.json [226]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\el\messages.json [475]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\en\messages.json [227]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\es\messages.json [240]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\fi\messages.json [222]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\fil\messages.json [236]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\fr\messages.json [249]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\he\messages.json [419]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\hi\messages.json [408]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\hr\messages.json [220]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\hu\messages.json [253]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\id\messages.json [231]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\it\messages.json [224]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\ja\messages.json [349]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\ko\messages.json [323]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\lt\messages.json [266]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\lv\messages.json [245]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\nl\messages.json [225]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\no\messages.json [216]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\pl\messages.json [274]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\pt_BR\messages.json [237]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\pt_PT\messages.json [236]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\ro\messages.json [248]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\ru\messages.json [394]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\sk\messages.json [241]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\sl\messages.json [245]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\sr\messages.json [437]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\sv\messages.json [238]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\th\messages.json [365]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\tr\messages.json [255]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\uk\messages.json [442]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\vi\messages.json [310]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\zh_CN\messages.json [257]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\zh_TW\messages.json [269]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\manifest.json [785]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\databases\Databases.db [7168]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\databases\Databases.db-journal [5672]
O61 - LFC: 11/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\databases\http_download.cnet.com_0\1 [4096]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\128.png [5367]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\16.png [499]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\32.png [1154]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\48.png [1872]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\ar\messages.json [423]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\bg\messages.json [515]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\ca\messages.json [330]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\cs\messages.json [355]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\da\messages.json [328]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\de\messages.json [307]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\el\messages.json [569]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\en\messages.json [314]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\en_GB\messages.json [314]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\en_US\messages.json [314]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\es\messages.json [340]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\es_419\messages.json [341]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\et\messages.json [314]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\fi\messages.json [305]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\fil\messages.json [337]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\fr\messages.json [329]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\he\messages.json [471]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\hi\messages.json [326]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\hr\messages.json [340]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\hu\messages.json [336]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\id\messages.json [319]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\it\messages.json [324]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\ja\messages.json [388]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\ko\messages.json [380]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\lt\messages.json [359]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\lv\messages.json [360]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\nl\messages.json [323]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\no\messages.json [300]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\pl\messages.json [336]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\pt_BR\messages.json [332]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\pt_PT\messages.json [331]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\ro\messages.json [332]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\ru\messages.json [471]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\sk\messages.json [338]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\sl\messages.json [329]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\sr\messages.json [483]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\sv\messages.json [333]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\th\messages.json [472]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\tr\messages.json [330]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\uk\messages.json [501]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\vi\messages.json [363]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\zh_CN\messages.json [346]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\zh_TW\messages.json [346]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\manifest.json [817]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Add_New.png [1141]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Add_notes.png [1483]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Amex_Card.png [27083]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\BOOKMARK_ADD_CARDS.PNG [3971]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\BOOKMARK_ADD_LOGINS.PNG [6944]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\BOOKMARK_ADD_NOTES.PNG [3596]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\BOOKMARK_AMAZON.PNG [11637]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\BOOKMARK_EBAY.PNG [8710] =>Toolbar.eBay
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\BOOKMARK_FACEBOOK.PNG [16734]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\BOOKMARK_GMAIL.PNG [8033]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\BOOKMARK_LINKEDIN.PNG [6766]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\BOOKMARK_NETFLIX.PNG [12797]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\BOOKMARK_TWITTER.PNG [6725]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\BOOKMARK_YMAIL.PNG [7661]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\BOOKMARK_YOUTUBE.PNG [14102]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Browse_the_net.png [25695]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Btt_up.png [5220]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\CLOSE_CLICK_HOMEPAGE.PNG [613]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\CLOSE_CLICK_HOVER.PNG [691]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\CLOSE_CLICK_NORMAL.PNG [675]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Cards.png [3776]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Cards_icon.png [455]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\FAVICON_FACEBOOK.PNG [3119]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\FAVICON_GMAIL.PNG [3264]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\FAVICON_LINKEDIN.PNG [3533]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\FAVICON_TWITTER.PNG [3317]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\FAVICON_YAHOO.PNG [3463]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\FooterSymantecLogo.png [2295]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Grid_view.png [999]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\ID-Safe.png [22145]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\ID_SAfe_logo.png [7370]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\ID_Safe_Logo_Big.png [6483]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\ID_Safe_logo_small.png [4098]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\List_view.png [1278]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Logged_out_image.png [17530]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Login_icon.png [683]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Master_card.png [28473]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\My_Card.png [8465]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\My_Notes.png [8361]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\N_logo_big.png [4729]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Norton_brand_line.png [3888]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Notes.png [3743]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Notes_icon.png [614]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Open_Your_vault.png [27452]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Password.png [4882]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Safe.png [3664]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Safe_Web.png [5038]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Safe_search_icon.png [2102]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\add_cards.png [1511]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\add_logins.png [2578]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\arrow_down.png [2936]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\arrow_right.png [2935]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\bg_buttonDisabled.png [209]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\bg_buttonHover.png [234]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\bg_button_click.png [223]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\bg_button_normal.png [265]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\border_left.png [595]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\border_right.png [614]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\bot_440.png [7878]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\bot_600.png [4717]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\cards_icon_generic.png [3163]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\edit_icon.png [1572]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\edit_icon_big.png [3184]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\gradient.png [4530]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\green_tick.png [3497]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\grid_view_click.png [2876]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\grid_view_hover.png [2814]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\grid_view_normal.png [2831]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\home.png [1003]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\icon_android.png [3539]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\icon_home.png [517]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\icon_ios.png [4677]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\ids_sprite.png [20977]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\img_bannerGrafic.png [7844]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\left_arrow.png [2926]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\list_view_click.png [2865]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\list_view_hover.png [2816]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\list_view_normal.png [2821]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\logged_out.png [11840]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\mid_440.png [2844]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\mid_600.png [2851]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\norton_secured_logo.png [6910]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\notes_icon_generic.png [2990]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\notesicon.png [16424]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\preview_not_available.png [5645]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\right_arrow.png [2939]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\safe_search_safe_web.png [26516]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\search_login_click.png [3166]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\search_login_hover.png [3031]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\search_login_normal.png [3139]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\search_web_bg.png [39285]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\background.js [5337]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\docend.js [0]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\docstart.js [5726]
O61 - LFC: 11/01/2014 - 17:02:10 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\docstart_notoolbar.js [5671]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Share-Quickly.png [34922]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Showall_drop_down_arrow.png [991]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Symantec_card.png [30021]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Visa_Card.png [31223]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Visit_Your_Site.png [8611]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\Warning.png [3733]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\WebPageNotFound-FAV.png [1670]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\show_all_arrow.png [973]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\sprite_arrows.png [4864]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\sprite_icons.png [12898]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\toolbar.png [16030]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\top_440.png [3571]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\top_600.png [934]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\top_head_divider_grad.png [2913]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\trash_icon.png [1206]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\IdentitySafe\vault_open.png [11840]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\BrowserBadRedirect.html [1166]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\KBRedirect.css [2741]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\KnownBadRedirect.html [1173]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\PIIFormSuspRedirect.html [1183]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\PIIRedirect.css [8093]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\PageBadRedirect.html [1176]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\RedirectPages.js [1856]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\SiteAge_New.png [5653]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\SiteAge_Young.png [5261]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\SitePop_Low.png [4717]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\SitePop_None.png [4756]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\SuspiciousRedirect.html [1168]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\blocked-norton-logo.png [7123]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\blocked-piiformrisk.png [4032]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\blocked-redx.png [1666]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\blocked_btn_click.png [213]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\blocked_btn_default.png [213]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\RedirectPages\blocked_btn_hover.png [205]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\_locales\en\messages.json [104]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\48_Norton_Ext_Icon.png [3473]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\SafeBrowse\sb_nortoncertified.png [1361]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\SafeBrowse\sb_safeAnnotation.png [3392]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\SafeBrowse\sb_safeshopAnnotation.png [3942]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\SafeBrowse\sb_unknownAnnotation.png [1452]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\SafeBrowse\sb_unsafeAnnotation.png [1478]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\SafeBrowse\sb_unsafeshopAnnotation.png [2527]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\SafeBrowse\sb_unsafeshoppagebadAnnotation.png [2037]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\SafeBrowse\sb_webnuisanceAnnotation.png [1445]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\StatusButton\coBA_Safe.png [3390]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\StatusButton\coBA_dangerous.png [3391]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\StatusButton\coBA_suspicious.png [920]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\StatusButton\coBA_unknown.png [702]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\images\Widgets\norton_tb_mm_logo_watermark.png [3420]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\manifest.json [2331]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\wax.js [15463]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\wcid.js [9109]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\AppFramework\appAPI_bg.js [2497] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\AppFramework\appAPI_browseraction.js [743] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\AppFramework\appAPI_common.js [6351] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\AppFramework\appAPI_content.js [1253] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\AppFramework\appAPI_settings.js [706] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\AppFramework\appAPI_webrequest.js [1112] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\AppFramework\jquery.min.js [83258] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\CanvasFramework\canvas_bg.js [5558] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\CanvasFramework\canvasscript_engine.js [440] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\CanvasFramework\webrequest.js [2590] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\background.html [2160] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\extension_info.json [1832] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework-ui\browser_button.js [1712] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework-ui\context_menu.js [806] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework-ui\framework_api.js [1183] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework-ui\notifications.js [1765] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework-ui\options.js [625] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework-ui\remote_popup_host.html [558] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework-ui\remote_popup_host.js [1458] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework-ui\ui_base.js [1780] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\backgroundscript_engine.js [1295] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\base.js [2928] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\browser.js [7765] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\console.js [354] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\framework.js [2031] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\i18n.js [1560] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\initialize.js [255] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\invoke_async.js [2267] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\io.js [305] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\lang.js [449] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\legacy.js [1273] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\message_target.js [857] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\messaging.js [2235] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\storage.js [3192] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\timer.js [376] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\userscript_client.js [313] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\userscript_engine.js [2713] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\utils.js [2436] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\framework\xhr.js [2158] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\icons\button.png [582] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\icons\icon100.png [9458] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\icons\icon128.png [14848] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\icons\icon32.png [1580] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\icons\icon48.png [2739] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\includes\content.js [5544] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac\1.0_0\manifest.json [1283] =>PUP.DiscountDragon
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\bg\messages.json [1585]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\ca\messages.json [682]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\cs\messages.json [743]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\da\messages.json [665]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\de\messages.json [714]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\el\messages.json [1764]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\craw_background.js [125750]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\craw_window.js [155992]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\css\craw_window.css [1741]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\css\craw_window.css~ [1702]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\html\craw_window.html [810]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\images\icon_128.png [9460]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\images\icon_16.png [702]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\images\topbar_floating_button.png [160]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\images\topbar_floating_button_close.png [252]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\images\topbar_floating_button_hover.png [160]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\images\topbar_floating_button_maximize.png [166]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\images\topbar_floating_button_pressed.png [160]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\manifest.json [1275]
O61 - LFC: 11/01/2014 - 17:02:11 ---A- . (.Symantec Corporation.) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_0\npcoplgn.dll [1008992]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\en\messages.json [611]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\en_GB\messages.json [611]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\es\messages.json [713]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\es_419\messages.json [671]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\et\messages.json [615]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\fi\messages.json [738]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\fil\messages.json [672]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\fr\messages.json [721]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\hi\messages.json [1406]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\hr\messages.json [662]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\hu\messages.json [766]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\id\messages.json [612]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\it\messages.json [626]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\ja\messages.json [1181]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\ko\messages.json [892]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\lt\messages.json [706]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\lv\messages.json [735]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\nb\messages.json [665]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\nl\messages.json [630]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\pl\messages.json [701]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\pt_BR\messages.json [701]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\pt_PT\messages.json [702]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\ro\messages.json [700]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\ru\messages.json [1296]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\sk\messages.json [739]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\sl\messages.json [647]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\sr\messages.json [1507]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\sv\messages.json [687]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\th\messages.json [1626]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\tr\messages.json [728]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\uk\messages.json [1403]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\vi\messages.json [798]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\zh_CN\messages.json [760]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\_locales\zh_TW\messages.json [814]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\128.png [5920]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\ar\messages.json [556]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\bg\messages.json [492]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\ca\messages.json [262]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\cs\messages.json [289]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\da\messages.json [240]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\de\messages.json [239]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\el\messages.json [624]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\en\messages.json [215]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\es\messages.json [281]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\fi\messages.json [284]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\fil\messages.json [234]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\fr\messages.json [272]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\hi\messages.json [391]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\hr\messages.json [246]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\hu\messages.json [234]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\id\messages.json [242]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\it\messages.json [260]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\ja\messages.json [364]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\ko\messages.json [328]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\lt\messages.json [269]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\lv\messages.json [262]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\nl\messages.json [232]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\no\messages.json [210]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\pl\messages.json [292]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\pt_BR\messages.json [230]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\pt_PT\messages.json [231]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\ro\messages.json [281]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\ru\messages.json [482]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\se\messages.json [210]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\sk\messages.json [238]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\sl\messages.json [249]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\sr\messages.json [511]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\th\messages.json [471]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\tr\messages.json [250]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\uk\messages.json [536]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\vi\messages.json [257]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\zh_CN\messages.json [339]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\zh_TW\messages.json [321]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\manifest.json [755]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Google Profile.ico [181623]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eemcgdkfndhakfknompkggombfjjjeno_0.localstorage [3072]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lavasoft.com_0.localstorage [3072]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lavasoft.com_0.localstorage-journal [3608]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage [3072]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal [3608]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.fr_0.localstorage [3072]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.fr_0.localstorage-journal [3608]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage [3072]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage-journal [3608]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\NFM4FTX6\macromedia.com\##83C0B6D6C616631A\00000001.sol [192]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\NFM4FTX6\macromedia.com\support\flashplayer\sys\#discountdragon-a.akamaihd.net\settings.sol [99]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\NFM4FTX6\macromedia.com\support\flashplayer\sys\#s.ytimg.com\settings.sol [81]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\NFM4FTX6\macromedia.com\support\flashplayer\sys\settings.sol [528]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Preferences.new [49427]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\QuotaManager [13312]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\QuotaManager-journal [6704]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\PnaclTranslationCache\data_0 [8192]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\PnaclTranslationCache\data_1 [270336]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\PnaclTranslationCache\data_2 [8192]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\PnaclTranslationCache\data_3 [8192]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\PnaclTranslationCache\index [524656]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.1.376\imgs\icon-128x128.png [1630]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.1.376\manifest.fingerprint [66]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.1.376\manifest.json [848]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_64\pnacl_public_pnacl_json [439]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_64\pnacl_public_x86_64_crtbeginS_o [2520]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_64\pnacl_public_x86_64_crtbegin_for_eh_o [2144]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_64\pnacl_public_x86_64_crtbegin_o [2288]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_64\pnacl_public_x86_64_crtendS_o [1350]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_64\pnacl_public_x86_64_crtend_o [1349]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_64\pnacl_public_x86_64_ld_nexe [2191960]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_64\pnacl_public_x86_64_libcrt_platform_a [5674]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_64\pnacl_public_x86_64_libgcc_a [47406]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_64\pnacl_public_x86_64_libgcc_eh_a [234936]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_a [180862]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_dummy_a [1774]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\_platform_specific\x86_64\pnacl_public_x86_64_pnacl_llc_nexe [9167128]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\manifest.fingerprint [66]
O61 - LFC: 11/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\pnacl\0.1.0.12181\manifest.json [572]
O61 - LFC: 11/01/2014 - 17:02:13 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.1.376\_platform_specific\win_x86\widevinecdm.dll [6940304]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\2972_6066\crl-set [267309]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\2972_6066\manifest.fingerprint [12]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\2972_6066\manifest.json [34]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\4158643.od [134]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\CFF205DA-123E-432A-BF81-7725872A9E67.dat [28674]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\CVR74B3.tmp.cvr [0]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\FXSAPIDebugLogFile.txt [0]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\GoogleChromeDLL-log.txt [1291]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\RHSetup.exe [5855312]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\SHSetup.exe [0] =>Crapware.SpyHunter
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\adawaretb_Install_Log.txt [3487] =>Toolbar.Adaware
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\adawaretb_Uninstall_Log.txt [1617] =>Toolbar.Adaware
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\hosts.bk [872]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\system.ini.bk [219]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\win.ini.bk [167]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\{6c97a91e-4524-4019-86af-2aa2d567bf5c}\geodata.xml [207]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Inbox Storage\storage.db [1024]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\LavasoftStatistics\adaware.xml [818]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Microsoft\MMC\eventvwr [140450]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Microsoft\Office\Word12.pip [1684]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Microsoft\Outlook\Outlook.NK2 [58797]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\ooVoo Details\Logs\20140111_1904_00.ovolog [9736]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\ooVoo Details\Logs\20140111_2128_00.ovolog [9736]
O61 - LFC: 11/01/2014 - 17:02:14 ---A- . (.Lavasoft.) -- C:\Users\fernand\AppData\Local\Temp\a1e55c9e-049a-4bfb-8abd-39c343c765e6.exe [4040952]
O61 - LFC: 11/01/2014 - 17:02:15 ---A- . (...) -- C:\Users\fernand\Documents\Inbox Storage\InboxReadMe.doc [167426]
O61 - LFC: 11/01/2014 - 17:02:15 ---A- . (...) -- C:\Users\fernand\Documents\Inbox Storage\InboxReadMe.txt [2079]
O61 - LFC: 11/01/2014 - 17:02:16 ---A- . (...) -- C:\Users\fernand\Documents\élections 2014.docx [12227]
O61 - LFC: 11/01/2014 - 17:02:16 ---A- . (...) -- C:\Users\fernand\Downloads\Addition.txt [16470]
O61 - LFC: 11/01/2014 - 17:02:16 ---A- . (...) -- C:\Users\fernand\Downloads\AdwCleaner (2).exe [1233962]
O61 - LFC: 11/01/2014 - 17:02:16 ---A- . (...) -- C:\Users\fernand\Downloads\FRST.txt [71098]
O61 - LFC: 11/01/2014 - 17:02:16 ---A- . (...) -- C:\Users\fernand\Downloads\SXCU.exe [365568]
O61 - LFC: 11/01/2014 - 17:02:16 ---A- . (...) -- C:\Users\fernand\Downloads\rapport_SX.txt [719]
O61 - LFC: 11/01/2014 - 17:02:16 ---A- . (.Farbar.) -- C:\Users\fernand\Downloads\FRST64 (1).exe [2076672]
O61 - LFC: 11/01/2014 - 17:02:16 ---A- . (.Nicolas Coolman.) -- C:\Users\fernand\Downloads\ZHPDiag2 (1).exe [6863312] =>.Nicolas Coolman
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\CrashDumps\backgroundTaskHost.exe.4592.dmp [14282464]
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [267409]
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Cookies [83968]
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Cookies-journal [16384]
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Current Tabs [9439]
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\CURRENT [16]
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG [145]
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG.old [145]
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\MANIFEST-000084 [519]
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extension State\000029.ldb [285]
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extension State\CURRENT [16]
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG [766]
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old [264]
O61 - LFC: 12/01/2014 - 17:02:09 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extension State\MANIFEST-000026 [900] =>.Google Inc
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Favicons [133120]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Favicons-journal [16384]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\History [212992]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache [34193]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\History-journal [16384]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Last Session [48879]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Last Tabs [662]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nikdaiaidiiiogaidkkekcmokcgcdeac_0.localstorage [91136] =>PUP.DiscountDragon
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nikdaiaidiiiogaidkkekcmokcgcdeac_0.localstorage-journal [16384] =>PUP.DiscountDragon
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_googleads.g.doubleclick.net_0.localstorage [3072]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_googleads.g.doubleclick.net_0.localstorage-journal [512]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor [65536]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor-journal [16384]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Origin Bound Certs [18432]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Origin Bound Certs-journal [4640]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\NFM4FTX6\discountdragon-a.akamaihd.net\items\e6a00\storage.swf\gpl.sol [330]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Preferences [70144]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000120.ldb [81142]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000122.ldb [15787]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000125.ldb [21751]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Session Storage\CURRENT [16]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG [271]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG.old [271]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Session Storage\MANIFEST-000124 [203] =>.Google Inc
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Shortcuts [12288]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Shortcuts-journal [12824]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Top Sites [65536]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Top Sites-journal [16384]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity [1284]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Visited Links [131072]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Web Data [75776]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal [10792]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Local State [49721]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom [7425072]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom Prefix Set [1345918]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Safe Browsing Cookies [6144]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Safe Browsing Cookies-journal [2576]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Safe Browsing Csd Whitelist [135496]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Safe Browsing Download [1270800]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Safe Browsing Download Whitelist [19504]
O61 - LFC: 12/01/2014 - 17:02:12 ---A- . (...) -- C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Safe Browsing Extension Blacklist [6928]
O61 - LFC: 12/01/2014 - 17:02:13 --HA- . (...) -- C:\Users\fernand\AppData\Local\IconCache.db [173710]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\784_25786\crl-set [757]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\784_25786\manifest.fingerprint [12]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\784_25786\manifest.json [34]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\geColladaModelCacheLock [0]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Local\Temp\geIconCacheLock [0]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Inbox Storage\config.dat [4096]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Inbox Storage\storage.db-shm [32768]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Inbox Storage\storage.db-wal [286136]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\MBAM-log-2014-01-12 (14-53-56).txt [182300]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-01-12 (14-51-38).txt [182300]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-01-12 (15-08-46).txt [211942]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2014-01-12 (16-44-34).txt [2138]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Microsoft\HTML Help\hh.dat [8682]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Microsoft\Spelling\fr-FR\default.acl [6]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Microsoft\Spelling\fr-FR\default.dic [6]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Microsoft\Spelling\fr-FR\default.exc [6]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Skype\shared_dynco\dc.db [2441216]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\Skype\shared_dynco\dc.db-journal [1276856]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\ZHP\Log.txt [183609] =>.Nicolas Coolman
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\ZHP\TestsZHPDiag.txt [2880] =>.Nicolas Coolman
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\ZHP\ZHPADSReport.txt [351] =>.Nicolas Coolman
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\ZHP\ZHPDiag.3.txt [312242] =>.Nicolas Coolman
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\ZHP\ZHPDiag.txt [312242] =>.Nicolas Coolman
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\ooVoo Details\Logs\20140112_1337_00.ovolog [4282]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\ooVoo Details\Logs\20140112_1410_00.ovolog [8842]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\ooVoo Details\Logs\20140112_1640_00.ovolog [4282]
O61 - LFC: 12/01/2014 - 17:02:14 ---A- . (...) -- C:\Users\fernand\AppData\Roaming\ooVoo Details\Users\fernand0039\UD.Hist [120]
O61 - LFC: 12/01/2014 - 17:02:14 -SHA- . (...) -- C:\Users\fernand\AppData\Roaming\Microsoft\Protect\S-1-5-21-2416844428-2729830873-3903884127-1001\4ee81302-be64-41b5-bb3d-5b1dc3407a58 [468]
O61 - LFC: 12/01/2014 - 17:02:15 ---A- . (...) -- C:\Users\fernand\Documents\Notes\.2.txt [31086]
O61 - LFC: 12/01/2014 - 17:02:15 ---A- . (...) -- C:\Users\fernand\Documents\Notes\AdwCleaner[S10] - Raccourci.lnk [3278]
O61 - LFC: 12/01/2014 - 17:02:15 ---A- . (...) -- C:\Users\fernand\Documents\Notes\AdwCleaner[S10].txt [7287]
O61 - LFC: 12/01/2014 - 17:02:15 ---A- . (...) -- C:\Users\fernand\Documents\Notes\MBAM-log-2014-01-12 (14-36-18).txt [182300]
O61 - LFC: 12/01/2014 - 17:02:15 ---A- . (...) -- C:\Users\fernand\Documents\Notes\ZHPDiag.txt [296760] =>.Nicolas Coolman
~ 56 Fichiers temporaires (Temporary files)
~ Files: 666 Scanned in 00mn 08s



---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 11 Scanned in 00mn 00s



---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] BB46F576BB2F493B995769F556ACE6AC [DefaultScope] - (Conduit Search) - http://search.conduit.com
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {1F6C2E4E-DBD2-4F06-8A6D-1C284664E0F3} - (Google) - http://www.google.com
~ Keys: Scanned in 00mn 00s



---\\ Enumère les service demarrés par Svchost (SSS) (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [190976]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [149504]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [149504]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [309248]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1366016]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1160192]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [99840]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à distance.) -- C:\Windows\System32\rasmans.dll [358400]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [107520]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [62976]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [438784]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [305664]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [3279872]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [826368]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [565760]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [894464]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151552]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [105472]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1285632]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [219648]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [80896]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [134144]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [291328]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [97792]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [190976]
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1964544]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [47104]
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [207872]
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Microsoft.) -- C:\Windows\System32\ncasvc.dll [161792]
O83 - Search Svchost Services: SystemEventsBroker (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) -- C:\Windows\System32\SystemEventsBrokerServer.dll [180224]
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [187392]

~ Services: 35 Scanned in 00mn 00s



---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.8363FEA33D20C9D1F0D6ABE8BA79F13C] [SPRF][11/01/2014] (.Lavasoft - Ad-Aware Security Add-on Installer.) -- C:\Users\fernand\AppData\Local\Temp\a1e55c9e-049a-4bfb-8abd-39c343c765e6.exe [4040952]
[MD5.8C33B3D518C51798AAF3655B408BF47B] [SPRF][11/01/2014] (...) -- C:\Users\fernand\AppData\Local\Temp\CFF205DA-123E-432A-BF81-7725872A9E67.dat [28674]
[MD5.3B32CAA07D672F8A2E0DF5CB3A873F45] [SPRF][22/06/2012] (...) -- C:\Users\fernand\AppData\Local\Temp\ESGScanner.sys [22704]
[MD5.F0A5B44B9B8A23E2F2950B346B5C7718] [SPRF][23/12/2013] (...) -- C:\Users\fernand\AppData\Local\Temp\Quarantine.exe [360051]
[MD5.DCE305BBC8F903EEAB6F31979AC1064D] [SPRF][11/01/2014] (...) -- C:\Users\fernand\AppData\Local\Temp\RHSetup.exe [5855312]
[MD5.D41D8CD98F00B204E9800998ECF8427E] [SPRF][11/01/2014] (...) -- C:\Users\fernand\AppData\Local\Temp\SHSetup.exe [0] =>Crapware.SpyHunter
[MD5.2ABFCC8E228192393A854483BBE168D3] [SPRF][07/08/2013] (.Microsoft Corporation - Mail Migration.) -- C:\Windows\Downloaded Program Files\MailMigrationTool.dll [743576]
[MD5.04F5893DDB2AD254225B766B8E88B6AD] [SPRF][07/08/2013] (.Microsoft Corporation - Mail Migration Broker.) -- C:\Windows\Downloaded Program Files\mmbroker.exe [29336]
[MD5.46D3FDE5D497A4EE3948C3EF44CB21C6] [SPRF][05/08/2013] (.Microsoft Corporation - Microsoft® C++ Runtime Library.) -- C:\Windows\Downloaded Program Files\msvcp90.dll [561104]
[MD5.986F4853A4E39DDAF9C280313A759248] [SPRF][05/08/2013] (.Microsoft Corporation - Microsoft® C Runtime Library.) -- C:\Windows\Downloaded Program Files\msvcr90.dll [648144]
[MD5.A980FA784B1F3089BAC8CA31EBAB2CF5] [SPRF][07/08/2013] (.Microsoft Corporation - Mail Migration wlcomm Proxy.) -- C:\Windows\Downloaded Program Files\WlcommProxy.exe [359576]
[MD5.E3084489F4795BD662B7D62DE3951478] [SPRF][05/08/2013] (.Microsoft Corporation - Windows Live Desktop Logging.) -- C:\Windows\Downloaded Program Files\wldlog.dll [34304]
~ Files: 12 Scanned in 00mn 01s



---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "vm-monitoring-rpc" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "vm-monitoring-dcom" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "SNMPTRAP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Interruption SNMP.) -- C:\Windows\system32\snmptrap.exe
O87 - FAEL: "Wininit-Shutdown-In-Rule-TCP-RPC" | In - None - P6 - FALSE | .(.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\system32\wininit.exe
O87 - FAEL: "Wininit-Shutdown-In-Rule-TCP-RPC-EPMapper" | In - None - P6 - FALSE | .(.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\system32\wininit.exe
O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Netlogon-TCP-RPC-In" | In - None - P6 - FALSE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\System32\lsass.exe
O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-ASYNC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "WMI-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-WINMGMT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMI-ASYNC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Sink to receive asynchronous callbacks for WMI client application.) -- C:\Windows\system32\wbem\unsecapp.exe
O87 - FAEL: "MsiScsi-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MsiScsi-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "ProximityUxHost-Sharing-In-TCP-NoScope" | In - None - P6 - TRUE | .(.Microsoft Corporation - Hôte UX de proximité.) -- C:\Windows\system32\proximityuxhost.exe
O87 - FAEL: "ProximityUxHost-Sharing-Out-TCP-NoScope" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Hôte UX de proximité.) -- C:\Windows\system32\proximityuxhost.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-LLMNR-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "FPS-LLMNR-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnPHost-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnPHost-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-DAS-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP-Active" | Out - Private - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnP-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-UPnPHost-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDPHOST-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-DAS-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Device Association Framework Provider Host.) -- C:\Windows\system32\dashost.exe
O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-LLMNR-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNTS-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "NETDIS-WSDEVNT-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" | In - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" | Out - Private - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" | In - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" | Out - Private - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-RAServer-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-RAServer-Out-TCP-NoScope-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\system32\raserver.exe
O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-In-TCP-EdgeScope-Active" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-Out-TCP-Active" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Assistance à distance Windows.) -- C:\Windows\system32\msra.exe
O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Service Microsoft Distributed Transaction Coordinator.) -- C:\Windows\system32\msdtc.exe
O87 - FAEL: "MSDTC-KTMRM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MSDTC-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-In-UDP-NoScope" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-UDP-NoScope" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-QWave-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-In-UDP" | In - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-UDP" | Out - Public - P17 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-WMP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.) =>.Microsoft Corporation
O87 - FAEL: "WMPNSS-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-In-UDP-NoScope" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-UDP-LocalSubnetScope" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-UDP-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-Out-UDP-NoScope" | Out - Domain - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-Out-UDP-LocalSubnetScope" | Out - Private - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-Out-UDP-PlayToScope" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-RTSP-NoScope" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-RTSP-LocalSubnetScope" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-In-RTSP-PlayToScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Serveur Lire sur.) -- C:\Windows\system32\mdeserver.exe
O87 - FAEL: "PlayTo-SSDP-Discovery-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-QWave-In-UDP-PlayToScope" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-QWave-Out-UDP-PlayToScope" | Out - Public - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-QWave-In-TCP-PlayToScope" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PlayTo-QWave-Out-TCP-PlayToScope" | Out - Public - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "TPMVSCMGR-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "TPMVSCMGR-Server-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "TPMVSCMGR-Server-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "TPMVSCMGR-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "TPMVSCMGR-Server-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "TPMVSCMGR-Server-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - TPM Virtual Smart Card Manager DCOM Server.) -- C:\Windows\system32\RmtTpmVscMgrSvr.exe
O87 - FAEL: "Collab-PNRP-In-UDP" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-PNRP-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "PerfLogsAlerts-PLASrv-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Performance Logs and Alerts DCOM Server.) -- C:\Windows\system32\plasrv.exe
O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCP-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCP-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCPV6-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DHCPV6-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-Teredo-In" | In - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-Teredo-Out" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-IPHTTPS-Out" | Out - None - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-GP-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-DNS-Out-UDP" | Out - None - P17 - TRUE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Local Security Authority Process.) -- C:\Windows\system32\lsass.exe
O87 - FAEL: "RVM-VDS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RVM-VDS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Service de disque virtuel.) -- C:\Windows\system32\vds.exe
O87 - FAEL: "RVM-VDSLDR-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Virtual Disk Service Loader.) -- C:\Windows\system32\vdsldr.exe
O87 - FAEL: "RVM-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteTask-RPCSS-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteDesktop-UserMode-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "RemoteDesktop-UserMode-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes.) -- C:\Windows\system32\wudfhost.exe
O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "WPDMTP-UPnP-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "SPPSVC-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - KMS Connection Broker.) -- C:\Windows\system32\sppextcomobj.exe
O87 - FAEL: "SPPSVC-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - KMS Connection Broker.) -- C:\Windows\system32\sppextcomobj.exe
O87 - FAEL: "Microsoft-Windows-PeerDist-WSD-In" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "Microsoft-Windows-PeerDist-WSD-Out" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-SSDPSrv-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-SSDPSrv-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-In-UDP" | In - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-QWave-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-TERMSRV-In-TCP" | In - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-MCX2SVC-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-PlayTo-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-PlayTo-Out-UDP" | Out - None - P17 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "MCX-FDPHost-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Processus hôte pour les services Windows.) -- C:\Windows\system32\svchost.exe =>.Microsoft Corporation
O87 - FAEL: "{FF7D8B94-FD9C-437A-BFB2-E79EB9418EDE}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Microsoft Office Outlook.) -- C:\Program Files (x86)\Microsoft Office\Office12\outlook.exe =>.Microsoft Corporation
O87 - FAEL: "{2A807F67-3B8F-4029-A8E8-64EC010738C4}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Microsoft Office Groove.) -- C:\Program Files (x86)\Microsoft Office\Office12\GROOVE.exe
O87 - FAEL: "{1C6C05BD-B05C-44B5-A9B9-F5E975EF2E4B}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Microsoft Office Groove.) -- C:\Program Files (x86)\Microsoft Office\Office12\GROOVE.exe
O87 - FAEL: "{883BAEE2-0164-41CF-8DCD-15578BDCE9AD}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe
O87 - FAEL: "{F1BF51C3-A78F-4982-B094-88A86749380D}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe
O87 - FAEL: "{A740858C-BA63-41FA-8851-D592C2B74D97}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O87 - FAEL: "{1EB465C9-CE4C-4E1E-BD4E-A5A4A69091C4}" | In - Private - P6 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\Program Files (x86)\SFR\Media Center\httpd\httpd.exe
O87 - FAEL: "{656B3252-44CC-43C3-92E2-1EFAAF16903F}" | In - Private - P17 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\Program Files (x86)\SFR\Media Center\httpd\httpd.exe
O87 - FAEL: "{D40273FA-FE08-49CC-A1F3-EE3A07BB7B8B}" | In - None - P17 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
O87 - FAEL: "{059FB666-3091-4982-B6C3-D12D1F25B1A8}" | In - Private - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{F8285357-4731-43D1-A9FA-BA1A92DDA482}" | In - Private - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{A9D83F36-2D33-4028-9188-1A2D5EFD2AF3}" | In - Private - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O87 - FAEL: "{FBD5EB23-ED3E-4B8E-ACF6-7E0379DD9C09}" | In - Private - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O87 - FAEL: "{D39C9AFA-8645-4F96-A1B0-63C3F3B74F81}" | In - None - P17 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files (x86)\iTunes\iTunes.exe
O87 - FAEL: "{6F9E0DC0-E425-436F-B284-D1814AE9DA9F}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Sync.) -- C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe
~ Firewall: 209 Scanned in 00mn 00s



---\\ Enumère les codes produits des logiciels (PUC) (O90)
O90 - PUC: "00002105501100000000000000F01FEC" . (.Microsoft Office 2007 Primary Interop Assemblies.) -- C:\WINDOWS\Installer\{50120000-1105-0000-0000-0000000FF1CE}\misc.exe,6
O90 - PUC: "0336A2D4B8F23E11C9048BCAF6798BE8" . (.Google Earth.) -- C:\WINDOWS\Installer\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}\ARPPRODUCTICON.exe
O90 - PUC: "1038C85769625584FA5435B4210089A0" . (.Samsung Kies.) -- C:\WINDOWS\Installer\{758C8301-2696-4855-AF45-534B1200980A}\ARPPRODUCTICON.exe
O90 - PUC: "23F465F473650034677A7A857BC07000" . (.Oovoo Toolbar.) -- C:\WINDOWS\Installer\{4F564F32-5637-4300-76A7-A758B70C0700}\ToolbarIcon.exe =>Toolbar.Oovoo
O90 - PUC: "2B0163E6D0340BE4183EB2758E9BEDD8" . (.Bonjour.) -- C:\WINDOWS\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico
O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\WINDOWS\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico =>.Apple Inc
O90 - PUC: "4BA27099597D5D44D9563E9C8F23C279" . (.TomTom HOME.) -- C:\WINDOWS\Installer\{99072AB4-D795-44D5-9D65-E3C9F8322C97}\ARPPRODUCTICON.exe
O90 - PUC: "5A440F64B8EC691489E4B56D25E563D1" . (.Apple Application Support.) -- C:\WINDOWS\Installer\{46F044A5-CE8B-4196-984E-5BD6525E361D}\WinInstall.ico
O90 - PUC: "67451528B75A34C46B24F593E6026C84" . (.ACDSee for PENTAX 3.0.) -- C:\WINDOWS\Installer\{82515476-A57B-4C43-B642-5F396E20C648}\ARPPRODUCTICON.exe
O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.05) - Français.) -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico
O90 - PUC: "907018673D7AD86419761A87C0E167C6" . (.Windows Live FolderShare.) -- C:\WINDOWS\Installer\{76810709-A7D3-468D-9167-A1780C1E766C}\FolderShare48x48.ico
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- C:\WINDOWS\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon
O90 - PUC: "DAEC106DF4E2BBB458CC2CA9C46E3A0C" . (.iTunes.) -- C:\WINDOWS\Installer\{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}\Installer.ico
O90 - PUC: "E78D5FE2DB7BF85448824E0D8B4B6EC5" . (.Apple Mobile Device Support.) -- C:\WINDOWS\Installer\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}\Installer.ico
O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype™ 6.11.) -- C:\WINDOWS\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe
O90 - PUC: "FF8F7AAF50C316A4F8418D6A9EDE6632" . (.ooVoo.) -- C:\WINDOWS\Installer\{FAA7F8FF-3C05-4A61-8F14-D8A6E9ED6623}\_6FEFF9B68218417F98F549.exe
~ Update Products: 51 Scanned in 00mn 00s



---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
[MD5.A3AEEC9A9B6984F2E22B90FDC9A23AB8] [WIS][27/11/2013] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\137d9002.msi [24993792]
[MD5.5FF2B0F7835519063800D9F2DB535131] [WIS][28/12/2013] (.QwertyBox Team - FrameFox Extensions 1.0.7.0 Setup.) -- C:\Windows\Installer\3f8a39e.msi [417792] =>PUP.FrameFox
[MD5.5B49B174EBC7CCC96BF2F017CD1D3BFF] [WIS][11/11/2013] (.APN, LLC - Oovoo Toolbar.) -- C:\Windows\Installer\5702e86.msi [363520] =>Toolbar.Oovoo
~ WIS: 51 Scanned in 00mn 05s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 03/01/2014 257416 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Auto 08/11/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 08/11/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 08/11/2013 194032 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Demand 02/11/2013 641352 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SS - | Auto 05/09/2013 171680 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SS - | Demand 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
SS - | Demand 20/09/2012 29696 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe

SR - | Auto 05/09/2013 65640 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SR - | Auto 07/09/2013 55624 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Auto 04/04/2013 418376 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
SR - | Auto 04/04/2013 701512 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
SR - | Auto 08/10/2013 275696 | (NIS) . (.Symantec Corporation.) - C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\NIS.exe
SR - | Auto 11/10/2013 32160 | (SFR.DashBoard.Service) . (.SFR.) - C:\Program Files (x86)\SFR\Gestionnaire de Connexion\SFR.DashBoard.Service.exe
SR - | Auto 27/08/2013 93072 | (TomTomHOMEService) . (.TomTom.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
SR - | Demand 10/07/1658 0 | (WinDefend) . (...) - C:\Program Files (x86)\Windows Defender\MsMpEng.exe

~ Services: Scanned in 00mn 05s



---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Run by fernand at 12/01/2014 17:02:46
~ OS 64 not supported by MBR tool

~ MBR: 0 Scanned in 00mn 00s



---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by fernand at 12/01/2014 17:02:48

********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin

~ MBR: Scanned in 00mn 02s



---\\ Scan Additionnel (O88)
Database Version : 13019 - (10/01/2014)
Clés trouvées (Keys found) : 13
Valeurs trouvées (Values found) : 3
Dossiers trouvés (Folders found) : 4
Fichiers trouvés (Files found) : 5

[HKLM\Software\Google\Chrome\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac] =>PUP.DiscountDragon^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] =>Trojan.FindFDSearch^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4F564F32-5637-4300-76A7-A758B70C0700}] =>Toolbar.Oovoo ^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{F94A63D7-9A61-403B-8F6F-90B1BF77211A}] =>Crapware.RegHunter^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6c97a91e-4524-4019-86af-2aa2d567bf5c}] =>Toolbar.AdAware
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\1C875DDE39636004CA8CDAEC335B4160] =>Adware.PredictAd
[HKCR\VirtualStore\MACHINE\Software\CToolbar] =>Toolbar.Crawler
[HKLM\Software\Wow6432Node\VBMZ] =>Toolbar.Conduit
[HKLM\Software\Wow6432Node\Google\Chrome\Extensions\oejkcgajlodefenbbjdnaiahmbnnoole] =>Toolbar.AdAware
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\38D5CDD0A851B3940A43CC50ABBA251C] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AAC05EAA51DC78A41A1DCE3B31038584] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:VNT =>Toolbar.Ask^
C:\Users\fernand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikdaiaidiiiogaidkkekcmokcgcdeac =>PUP.DiscountDragon^
C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter =>Crapware.SpyHunter^
C:\Users\fernand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop =>Adware.Lollipop^
C:\Users\fernand\AppData\Local\Software =>Adware.Boxore
C:\Users\fernand\AppData\Local\VNT\vntldr.exe =>Toolbar.Ask^
C:\Users\fernand\AppData\Local\Temp\SHSetup.exe =>Crapware.SpyHunter^
C:\Windows\Installer\3f8a39e.msi =>PUP.FrameFox^
C:\Windows\Installer\5702e86.msi =>Toolbar.Oovoo ^
C:\Users\fernand\Desktop\SpyHunter.lnk =>Crapware.SpyHunter
~ Additionnel Scan: 244319 Items scanned in 00mn 17s



---\\ Récapitulatif des détections trouvées sur votre station
~ http://nicolascoolman.webs.com/apps/blog/show/28927746-toolbar-ask =>Toolbar.Ask
~ http://nicolascoolman.webs.com/apps/blog/show/34817643-trojan-findfdsearch =>Trojan.FindFDSearch
~ http://nicolascoolman.webs.com/apps/blog/show/34571753-crapware-reghunter =>Crapware.RegHunter
~ http://nicolascoolman.webs.com/apps/blog/show/26609241-crapware-spyhunter =>Crapware.SpyHunter
~ http://nicolascoolman.webs.com/apps/blog/show/37752731-pup-duuqu =>PUP.Duuqu
~ http://nicolascoolman.webs.com/apps/blog/show/26630902-adware-lollipop =>Adware.Lollipop
~ http://nicolascoolman.webs.com/apps/blog/show/29507721-toolbar-conduit =>Toolbar.Conduit
~ http://nicolascoolman.webs.com/apps/blog/show/33105275-adware-toolbarcleaner =>Adware.ToolbarCleaner
~ http://nicolascoolman.webs.com/apps/blog/show/32789922-pup-framefox =>PUP.FrameFox
~ http://nicolascoolman.webs.com/apps/blog/show/27229962-adware-predictad =>Adware.PredictAd
~ http://nicolascoolman.webs.com/apps/blog/show/26626977-adware-boxore =>Adware.Boxore
~ MSI: 11 link(s) detected in 00mn 17s



End of the scan (2374 lines in 01mn 28s)(0)

Publicité


Signaler le contenu de ce document

Publicité